|
Log-Analyse und Auswertung: Wieder Meldungen....Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
23.08.2023, 17:26 | #1 |
Gesperrt | Wieder Meldungen.... Hallo zusammen, ihr habt mir zwar erst vor Kurzem geholfen (danke, danke, danke!), aber irgendwie kommen immer wieder neue komische Dinge: Kurz zuvor ging auf der Seite kicker.de einfach ein schwarzes Fenster auf und wieder weg. So ein DOS-Fenster. Das ist doch nicht normal, oder? Könnt ihr bitte einmal schauen? Langsam glaube ich zwar selbst, dass ich paranoid bin was das Themas angeht aber so ganz richtig fühlt sich das nicht an. Danke! Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 23-08-2023 durchgeführt von timof (Administrator) auf DESKTOP-P3NKH8T (Micro-Star International Co., Ltd. MS-7C56) (23-08-2023 18:18:13) Gestartet von C:\Users\timof\Downloads\FRST64 (2).exe Geladene Profile: timof Plattform: Microsoft Windows 10 Home Version 22H2 19045.3324 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Chrome Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncherService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe (C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe ->) (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe <5> (C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe (C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe (C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.CpuIdRemote64.exe (C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.DisplayAdapter.exe (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE.exe (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler64.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\timof\AppData\Local\Microsoft\Teams\current\Teams.exe <8> (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe <8> (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\System32\PnkBstrA.exe (services.exe ->) (geek software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe (services.exe ->) (Logitech Inc -> Logitech) C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\NisSrv.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncherService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe (services.exe ->) (Razer USA Ltd. -> THX) C:\Windows\System32\THXV2HSAService.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.BingWeather_4.53.51922.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3266_none_7e25389a7c7bcadb\TiWorker.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [CORSAIR iCUE 4 Software] => C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE Launcher.exe [185424 2022-06-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.) HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [592608 2022-07-13] (geek software GmbH -> geek software GmbH) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3071192 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [543736 2023-08-17] (Razer USA Ltd. -> Razer Inc.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.) HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" [63018400 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Keine Datei) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2609016 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [MicrosoftEdgeAutoLaunch_CAB73CC8F7913F5E45BE26E54AD4E106] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4088272 2023-08-10] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [152025856 2023-02-03] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3562248 2023-07-25] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4374376 2023-07-28] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\timof\AppData\Local\Microsoft\Teams\Update.exe [2588520 2023-08-18] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1785864 2023-08-03] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [2671208 2023-07-27] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32823248 2023-03-10] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Run: [Opera Stable] => C:\Users\timof\AppData\Local\Programs\Opera\launcher.exe [2730912 2023-08-09] (Opera Norway AS -> Opera Software) HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3562248 2023-07-25] (Razer USA Ltd. -> Razer Inc.) HKLM\...\Windows x64\Print Processors\Canon MG5700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCS.DLL [30208 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5700 series: C:\Windows\system32\CNMLMCS.DLL [406528 2015-03-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\116.0.5845.110\Installer\chrmstp.exe [2023-08-23] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {7ACDDD2A-F7AC-4021-9578-CC9D613E5046} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.) Task: {DF97F45F-6D37-4B97-919F-5D8CDEC45692} - System32\Tasks\GoogleUpdateTaskMachineCore{0DEC3C7E-FA51-480E-801D-381A16099AA2} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-07-21] (Google LLC -> Google LLC) Task: {A04E1E41-7485-418F-B896-A644376EE487} - System32\Tasks\GoogleUpdateTaskMachineUA{AFDEE95D-3102-4D25-AA64-150D4E571E60} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-07-21] (Google LLC -> Google LLC) Task: {36F76827-213E-4F16-8843-B0E22354AC80} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26656848 2023-08-11] (Microsoft Corporation -> Microsoft Corporation) Task: {520F084D-1A28-4330-BD5F-EFA4BA668303} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26656848 2023-08-11] (Microsoft Corporation -> Microsoft Corporation) Task: {3B1EB042-08D9-43A2-B068-CD3E74AC3DC2} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-08-11] (Microsoft Corporation -> Microsoft Corporation) Task: {E41B3DD4-B443-4C89-A7E1-D2A8646CB7B6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-08-11] (Microsoft Corporation -> Microsoft Corporation) Task: {D4F9B238-AC45-4E6B-93F6-4D1D852AE820} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [167864 2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Task: {F06085CA-7599-4DFD-A788-6228ABA980FC} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(1): %windir%\system32\compattelrunner.exe -> -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc Task: {F06085CA-7599-4DFD-A788-6228ABA980FC} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(2): %windir%\system32\compattelrunner.exe -> -m:appraiser.dll -f:DoScheduledTelemetryRun Task: {F06085CA-7599-4DFD-A788-6228ABA980FC} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(3): %windir%\system32\compattelrunner.exe -> -m:aemarebackup.dll -f:BackupMareData Task: {26E1EF72-429C-4BF4-8933-5A21494BEF54} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe [1596320 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D4D893FA-FEBA-44EB-8593-0F8A6E307E83} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe [1596320 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {48B0AEE4-EAC3-4320-B6A2-3DA02BD58565} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe [1596320 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0361E671-C938-445C-8650-65895EB1195F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Update => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe [1596320 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BAE9DCAF-E517-42F2-96A3-D6F4DD3AACC9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MpCmdRun.exe [1596320 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {19651507-326C-4A68-9246-B01BC3F14FD1} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {36295F6F-E798-4908-9101-F7D9E5AB846D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {527B2813-2703-4B0C-909A-E1797492940E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CA066170-C4EE-4D9C-B609-754FB3B92FB1} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E54C4D31-7A86-473C-B90A-1F11AFBD558F} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C108F4D5-C209-47AC-B13B-9A9EE483DBA9} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4CFBD850-08A4-4925-86A3-DB4D66321E26} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8638FB6A-9557-453F-953B-BEF88117062F} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8BB7FB06-AFFB-4DE8-8810-2E6C592FC1B6} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3E093C02-7761-449B-9167-4D89CC7A3353} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4125600 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) Task: {97BBC320-3E09-482D-BC17-E0215BFCD047} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3154798328-3649536837-3844507433-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4125600 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) Task: {86ECA412-EF36-4398-A465-03EB916D0BC3} - System32\Tasks\Opera scheduled Autoupdate 1684037655 => C:\Users\timof\AppData\Local\Programs\Opera\launcher.exe [2730912 2023-08-09] (Opera Norway AS -> Opera Software) Task: {97CDAB14-21BC-4B5B-AD2F-46203010887E} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641416 2023-08-03] (Overwolf Ltd -> Overwolf LTD) Task: {53A1C184-F5D4-44D1-9D6B-531BB443A438} - System32\Tasks\RazerCortexScheduleClean => C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [543736 2023-08-17] (Razer USA Ltd. -> Razer Inc.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{dafd290e-065e-4a15-8113-f5b7dc9d5e7c}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\timof\AppData\Local\Microsoft\Edge\User Data\Default [2023-08-23] Edge Extension: (Edge relevant text changes) - C:\Users\timof\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-08-08] FireFox: ======== FF DefaultProfile: e9kzebf2.default FF ProfilePath: C:\Users\timof\AppData\Roaming\Mozilla\Firefox\Profiles\e9kzebf2.default [2022-09-03] FF ProfilePath: C:\Users\timof\AppData\Roaming\Mozilla\Firefox\Profiles\mn0xtzwz.default-release-1691460822429 [2023-08-08] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-08-01] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [Datei ist nicht signiert] FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Datei ist nicht signiert] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default [2023-08-23] CHR Notifications: Default -> hxxps://meet.google.com CHR StartupUrls: Default -> "hxxp://www.spiegel.de/" CHR Extension: (Google Docs Offline) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-22] CHR Extension: (AdBlock*– der beste Ad-Blocker) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-08-09] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\timof\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-21] Opera: ======= OPR Profile: C:\Users\timof\AppData\Roaming\Opera Software\Opera Stable [2023-08-23] OPR StartupUrls: Opera Stable -> "hxxps://www.office.com/?auth=2" OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={searchTerms}&sourceid=opera&ie={inputEncoding}&oe={outputEncoding} OPR DefaultSearchKeyword: Opera Stable -> g OPR Extension: (Rich Hints Agent) - C:\Users\timof\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-07-12] OPR Extension: (Opera Wallet) - C:\Users\timof\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-08-03] OPR Extension: (Aria) - C:\Users\timof\AppData\Roaming\Opera Software\Opera Stable\Extensions\igpdmclhhlcpoindmhkhillbfhdgoegm [2023-08-18] OPR Extension: (Amazon Assistant Promotion) - C:\Users\timof\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2023-05-14] OPR Extension: (opera-intro) - C:\Users\timof\AppData\Local\Programs\Opera\101.0.4843.33\resources\opera_intro_extension [2023-08-08] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.) R2 CIJSRegister; C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe [144464 2015-02-19] (Canon Inc. -> CANON INC.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11878368 2023-08-11] (Microsoft Corporation -> Microsoft Corporation) R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [610352 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe [233040 2022-06-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CorsairService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe [84048 2022-06-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.) S2 CorsairUniwillService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueUniwillService.exe [107088 2022-06-14] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 CortexLauncherService; C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncherService.exe [588712 2023-08-17] (Razer USA Ltd. -> Razer Inc.) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11513448 2023-07-27] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-11-19] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [935344 2023-07-23] (EasyAntiCheat Oy -> Epic Games, Inc.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-02-10] (Epic Games Inc. -> Epic Games, Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncHelper.exe [3448224 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [347408 2022-11-22] (Underwriters Laboratories Inc. -> Futuremark) R3 iCUEDevicePluginHost; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe [452176 2022-06-14] (Corsair Memory, Inc. -> Corsair) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> ) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10207488 2022-12-14] (Logitech Inc -> Logitech, Inc.) R2 LogiFacecamService; C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe [497568 2021-10-25] (Logitech Inc -> Logitech) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.158.0730.0001\OneDriveUpdaterService.exe [3785656 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641416 2023-08-03] (Overwolf Ltd -> Overwolf LTD) R2 PDF24; C:\Program Files\PDF24\pdf24.exe [592608 2022-07-13] (geek software GmbH -> geek software GmbH) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2023-03-12] (Even Balance, Inc. -> ) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [2121640 2023-07-12] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [510896 2023-07-06] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1361360 2023-03-06] (Razer USA Ltd. -> Razer Inc.) R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256264 2023-02-10] (Razer USA Ltd. -> Razer Inc) R2 Razer Game Manager Service 3; C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe [362760 2023-06-14] (Razer USA Ltd. -> Razer Inc) R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [297736 2023-07-25] (Razer USA Ltd. -> Razer Inc.) R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [538424 2023-08-08] (Razer USA Ltd. -> Razer Inc.) R2 THXV2HSAService; C:\Windows\System32\THXV2HSAService.exe [264664 2020-11-19] (Razer USA Ltd. -> THX) S3 TwitchService; C:\Program Files\Common Files\Twitch\TwitchService.exe [340240 2022-09-20] (Twitch Interactive, Inc. -> ) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10450928 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\NisSrv.exe [3104488 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MsMpEng.exe [133576 2023-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [2986792 2023-06-02] (Activision Publishing Inc -> Activision Blizzard, Inc.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [287232 2022-06-17] (Microsoft Corporation) [Datei ist nicht signiert] S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [63024 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) R3 CorsairVBusDriver; C:\Windows\System32\drivers\CorsairVBusDriver.sys [46600 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 CorsairVHidDriver; C:\Windows\System32\drivers\CorsairVHidDriver.sys [22536 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 cpuz153; C:\Windows\temp\cpuz153\cpuz153_x64.sys [36864 2023-08-12] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [44880 2022-09-22] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-22] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [73040 2022-09-22] (Logitech Inc -> Logitech) R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation) R3 RzCommon; C:\Windows\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0084; C:\Windows\System32\drivers\RzDev_0084.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0528; C:\Windows\System32\drivers\RzDev_0528.sys [54112 2021-03-22] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0c02; C:\Windows\System32\drivers\RzDev_0c02.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc) R3 sTHXV2VAD; C:\Windows\System32\drivers\THXVAD2.sys [166048 2022-01-20] (Razer USA Ltd. -> Windows (R) Win 7 DDK provider) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8746536 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55704 2023-08-09] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [572656 2023-08-09] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [104688 2023-08-09] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-08-23 18:17 - 2023-08-23 18:17 - 000000000 ____D C:\Users\timof\Downloads\FRST-OlderVersion 2023-08-22 14:35 - 2023-08-22 14:35 - 001535302 _____ C:\Users\timof\Downloads\Gluehbirne_Licht_aufgehen_AdobeStock_324081901_happyvector071.jpeg 2023-08-20 06:08 - 2023-08-20 06:08 - 000165971 _____ C:\Users\timof\Downloads\Dr. Timo Schöber2.pdf 2023-08-19 14:42 - 2023-08-19 14:43 - 002485254 _____ C:\Users\timof\Downloads\SHZ3.pdf 2023-08-19 14:41 - 2023-08-19 14:41 - 002266211 _____ C:\Users\timof\Downloads\SHZ2.pdf 2023-08-19 14:39 - 2023-08-19 14:39 - 000669370 _____ C:\Users\timof\Downloads\WhatsApp Image 2023-08-19 at 10.36.10.jpeg 2023-08-19 09:04 - 2023-08-19 09:04 - 000148348 _____ C:\Users\timof\Downloads\Dr. Timo Schöber (Postdoc _Research Fellow) • Faculty of Business Administration and Economics • European University Viadrina333333333.pdf 2023-08-19 09:04 - 2023-08-19 09:04 - 000120241 _____ C:\Users\timof\Downloads\Staff Members • Faculty of Business Administration and Economics • European University Viadrina2222.pdf 2023-08-19 07:56 - 2023-08-19 07:56 - 000404684 _____ C:\Users\timof\Downloads\E&M paypernews (1).pdf 2023-08-19 07:53 - 2023-08-19 07:53 - 001550687 _____ C:\Users\timof\Downloads\ebbrwer (3).pdf 2023-08-18 19:49 - 2023-08-18 19:49 - 000201492 _____ C:\Users\timof\Downloads\_timo schöber_ - Google Suche.pdf 2023-08-18 19:37 - 2023-08-18 19:37 - 000404684 _____ C:\Users\timof\Downloads\E&M paypernews.pdf 2023-08-18 17:43 - 2023-08-18 17:43 - 001550687 _____ C:\Users\timof\Downloads\ebbrwer (2).pdf 2023-08-18 15:59 - 2023-08-18 15:59 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2023-08-18 15:51 - 2023-08-18 15:51 - 001550687 _____ C:\Users\timof\Downloads\SHZ.pdf 2023-08-18 15:48 - 2023-08-18 15:48 - 001550687 _____ C:\Users\timof\Downloads\ebbrwer.pdf 2023-08-18 15:44 - 2023-08-18 15:44 - 000084815 _____ C:\Users\timof\Downloads\Café Kö.m4a 2023-08-18 06:11 - 2023-08-18 06:11 - 000000571 _____ C:\Users\timof\Downloads\VotreRDV_A20032173233 (2).ics 2023-08-18 06:11 - 2023-08-18 06:11 - 000000571 _____ C:\Users\timof\Downloads\VotreRDV_A20032173233 (1).ics 2023-08-16 04:29 - 2023-08-16 04:29 - 000000000 ____D C:\Windows\LastGood 2023-08-16 04:29 - 2023-06-21 04:50 - 001487856 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2023-08-16 04:29 - 2023-06-21 04:50 - 001227248 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2023-08-16 04:29 - 2023-06-21 04:50 - 000848936 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2023-08-16 04:29 - 2023-06-21 04:50 - 000848936 _____ C:\Windows\system32\vulkaninfo.exe 2023-08-16 04:29 - 2023-06-21 04:50 - 000713768 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2023-08-16 04:29 - 2023-06-21 04:50 - 000713768 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2023-08-16 04:29 - 2023-06-21 04:50 - 000653352 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2023-08-16 04:29 - 2023-06-21 04:50 - 000653352 _____ C:\Windows\system32\vulkan-1.dll 2023-08-16 04:29 - 2023-06-21 04:50 - 000636968 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2023-08-16 04:29 - 2023-06-21 04:50 - 000636968 _____ C:\Windows\SysWOW64\vulkan-1.dll 2023-08-16 04:29 - 2023-06-21 04:46 - 000668688 _____ C:\Windows\system32\nvofapi64.dll 2023-08-16 04:29 - 2023-06-21 04:46 - 000504352 _____ C:\Windows\SysWOW64\nvofapi.dll 2023-08-16 04:29 - 2023-06-21 04:45 - 002167824 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2023-08-16 04:29 - 2023-06-21 04:45 - 001621520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2023-08-16 04:29 - 2023-06-21 04:45 - 001537504 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2023-08-16 04:29 - 2023-06-21 04:45 - 001195024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2023-08-16 04:29 - 2023-06-21 04:45 - 000992272 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2023-08-16 04:29 - 2023-06-21 04:45 - 000777200 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2023-08-16 04:29 - 2023-06-21 04:45 - 000768520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2023-08-16 04:29 - 2023-06-21 04:44 - 014520288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2023-08-16 04:29 - 2023-06-21 04:44 - 012066800 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2023-08-16 04:29 - 2023-06-21 04:44 - 006190088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2023-08-16 04:29 - 2023-06-21 04:44 - 005844496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2023-08-16 04:29 - 2023-06-21 04:44 - 005550624 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll 2023-08-16 04:29 - 2023-06-21 04:44 - 000853536 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2023-08-16 04:29 - 2023-06-21 04:44 - 000459760 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2023-08-16 04:29 - 2023-06-21 04:12 - 000107938 _____ C:\Windows\system32\nvinfo.pb 2023-08-12 06:37 - 2023-08-12 06:37 - 000073865 _____ C:\Users\timof\Downloads\vwerewrewrewrewewr.txt 2023-08-12 06:37 - 2023-08-12 06:37 - 000051785 _____ C:\Users\timof\Downloads\vrvvrewrewrewe.txt 2023-08-12 06:33 - 2023-08-23 18:17 - 002381824 _____ (Farbar) C:\Users\timof\Downloads\FRST64 (2).exe 2023-08-12 06:25 - 2023-08-12 06:25 - 002823788 _____ C:\Windows\Minidump\081223-12375-01.dmp 2023-08-09 17:31 - 2023-08-09 17:31 - 000438778 _____ C:\Users\timof\Downloads\Rechnung_EDEL.pdf 2023-08-09 15:56 - 2023-08-09 15:56 - 000000000 ___HD C:\$WinREAgent 2023-08-07 13:31 - 2023-08-07 17:05 - 000000248 _____ C:\Users\timof\Downloads\verlag.txt 2023-08-06 16:28 - 2023-08-06 16:28 - 000398968 _____ (Mozilla) C:\Users\timof\Downloads\Firefox Installer.exe 2023-08-06 13:20 - 2023-08-06 13:20 - 000606184 _____ C:\Users\timof\Downloads\kernaussagenKriminalitaetZuwanderung2022.pdf 2023-08-06 06:56 - 2023-08-06 06:56 - 080090005 _____ C:\Users\timof\Downloads\Esportpedia 6 - 2023-20230806T045527Z-001.zip 2023-08-06 06:48 - 2023-08-06 06:48 - 001296939 _____ C:\Users\timof\Downloads\KriminalitaetImKontextVonZuwanderung_2020.pdf 2023-08-04 19:17 - 2023-08-04 19:17 - 001928792 _____ C:\Users\timof\Downloads\lvlupHR_Kurzinfo_Beobachter_innen_GMSH.pdf 2023-08-04 19:16 - 2023-08-04 19:16 - 001436435 _____ C:\Users\timof\Downloads\lvlupHR_Kompetenzworkshop_GMSH.pdf 2023-08-04 18:14 - 2023-08-04 20:25 - 005907316 _____ C:\Users\timof\Downloads\230804_E-Sport_HR.pptx 2023-08-04 05:21 - 2023-08-04 05:22 - 004875265 _____ C:\Users\timof\Downloads\Bildschirm-Athleten wanted _ ESB Marketing Netzwerk.pdf 2023-08-03 05:52 - 2023-08-03 05:52 - 002349170 _____ C:\Users\timof\Downloads\UnterlagenFrankEbben.pdf 2023-08-01 05:08 - 2023-08-01 05:08 - 000078352 _____ C:\Users\timof\Downloads\v4324322v3424.txt 2023-08-01 05:08 - 2023-08-01 05:08 - 000054307 _____ C:\Users\timof\Downloads\111.txt 2023-07-31 07:25 - 2023-07-31 07:25 - 004201281 _____ C:\Users\timof\Downloads\wl_jahrbuch_2023_de.pdf 2023-07-30 08:28 - 2023-07-30 08:28 - 000163360 _____ C:\Users\timof\Downloads\Price differentiation in video games_ A closer look at the free-to-play segment — University of Southern Denmark.pdf 2023-07-30 08:08 - 2023-07-30 08:08 - 000615668 _____ C:\Users\timof\Downloads\419_Moritz_Schoeber_Stadtmann.pdf 2023-07-30 08:07 - 2023-07-30 08:07 - 000436650 _____ C:\Users\timof\Downloads\98-1-755-2-10-20220723.pdf 2023-07-30 08:06 - 2023-07-30 08:06 - 000442105 _____ C:\Users\timof\Downloads\177224158X.pdf 2023-07-30 08:05 - 2023-07-30 08:05 - 000376014 _____ C:\Users\timof\Downloads\EB-20-V40-I4-P291.pdf 2023-07-30 08:02 - 2023-07-30 08:02 - 001125633 _____ C:\Users\timof\Downloads\Definitionen und Diskussion_ Sport, Gaming und E-Sport - Paidia.pdf 2023-07-29 20:19 - 2023-07-29 20:19 - 000000000 ____D C:\Users\timof\AppData\Local\OneDrive 2023-07-29 20:05 - 2023-07-29 20:05 - 003755776 _____ C:\Users\timof\Downloads\BA_53604_Phillip-Anzenberger_geschwaerzt.pdf 2023-07-28 18:11 - 2023-07-28 18:11 - 000104742 _____ C:\Users\timof\Downloads\642aa88edbe09.jpeg 2023-07-28 14:37 - 2023-07-28 14:38 - 000285041 _____ C:\Users\timof\Downloads\Einverständnis.pdf 2023-07-27 07:45 - 2023-07-27 07:45 - 000221662 _____ C:\Users\timof\Downloads\230726_Lebenslauf_Hay, Arne.pdf 2023-07-26 06:35 - 2023-07-26 06:35 - 000505571 _____ C:\Users\timof\Downloads\Exposé_HRM_Schöber.pdf ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2023-08-23 18:18 - 2023-05-28 20:03 - 000032708 _____ C:\Users\timof\Downloads\FRST.txt 2023-08-23 18:18 - 2022-07-28 19:49 - 000000000 ____D C:\FRST 2023-08-23 18:18 - 2022-07-21 19:16 - 000000000 ____D C:\Users\timof\Documents\ActivePresenter Templates 2023-08-23 18:18 - 2022-07-21 19:16 - 000000000 ____D C:\Users\timof\Documents\ActivePresenter 2023-08-23 18:03 - 2022-07-21 17:43 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-08-23 18:03 - 2022-07-21 07:40 - 000000000 ___HD C:\Program Files\WindowsApps 2023-08-23 18:03 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\AppReadiness 2023-08-23 18:03 - 2022-07-21 07:40 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-08-23 17:50 - 2022-07-21 20:42 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Word 2023-08-23 17:49 - 2022-07-21 19:39 - 000000000 ____D C:\Users\timof\Documents\Selbstständigkeit 2023-08-23 17:48 - 2022-07-22 06:39 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Teams 2023-08-23 17:48 - 2022-07-21 19:35 - 000000000 ____D C:\Users\timof\Documents\Büro 2023-08-23 17:36 - 2022-08-31 14:32 - 000004172 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{A31D6C58-ACFD-4F17-9FE4-E00EAC192C7B} 2023-08-23 17:35 - 2022-07-21 17:43 - 000000000 ____D C:\ProgramData\NVIDIA 2023-08-23 17:33 - 2022-07-21 20:45 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2023-08-23 17:33 - 2022-07-21 20:22 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2023-08-23 17:33 - 2022-07-21 20:22 - 000002155 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-08-23 17:33 - 2022-07-21 20:09 - 000003978 _____ C:\Windows\system32\Tasks\RazerCortexScheduleClean 2023-08-23 17:33 - 2022-07-21 20:03 - 000000000 ____D C:\Users\timof\AppData\Roaming\LGHUB 2023-08-23 17:33 - 2022-07-21 20:03 - 000000000 ____D C:\Users\timof\AppData\Local\LGHUB 2023-08-23 17:33 - 2022-07-21 19:17 - 000000000 ____D C:\Program Files (x86)\Google 2023-08-23 17:33 - 2022-07-21 18:34 - 000003596 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3154798328-3649536837-3844507433-1001 2023-08-23 17:33 - 2022-07-21 18:34 - 000000000 ___RD C:\Users\timof\OneDrive 2023-08-23 17:33 - 2022-07-21 17:43 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-08-23 17:33 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\SystemTemp 2023-08-23 04:20 - 2022-07-21 20:09 - 000000000 ____D C:\Users\timof\AppData\Local\Razer 2023-08-23 04:20 - 2022-07-21 20:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer Cortex 2023-08-23 04:20 - 2022-07-21 19:17 - 000002246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-08-22 19:46 - 2022-07-22 05:50 - 000000000 ____D C:\Users\timof\AppData\Local\Battle.net 2023-08-22 18:12 - 2022-07-22 11:55 - 000000000 ____D C:\Users\timof\Documents\SWFL 2023-08-22 14:30 - 2022-07-22 05:46 - 000000000 ____D C:\Program Files (x86)\Steam 2023-08-22 10:52 - 2022-07-30 09:35 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\PowerPoint 2023-08-22 08:55 - 2022-07-23 05:46 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Excel 2023-08-22 06:49 - 2022-07-21 18:32 - 000000000 ____D C:\Users\timof\AppData\Local\Packages 2023-08-19 13:41 - 2022-07-21 20:22 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Office 2023-08-18 17:20 - 2022-07-21 19:16 - 000000000 ____D C:\Users\timof\AppData\Roaming\ActivePresenter 2023-08-18 16:01 - 2022-07-24 16:21 - 000000000 ____D C:\Users\timof\Documents\Sonstiges 2023-08-18 15:59 - 2022-07-22 06:33 - 000000000 ____D C:\Users\timof\AppData\Roaming\Zoom 2023-08-18 07:32 - 2022-07-21 20:13 - 000000000 ____D C:\ProgramData\CanonIJPLM 2023-08-18 06:49 - 2022-07-21 07:39 - 000000000 ____D C:\Windows\INF 2023-08-18 06:18 - 2022-07-22 06:39 - 000002375 _____ C:\Users\timof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2023-08-16 19:28 - 2023-05-14 06:14 - 000004228 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1684037655 2023-08-16 19:28 - 2023-05-14 06:14 - 000001416 _____ C:\Users\timof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera-Browser.lnk 2023-08-16 19:28 - 2022-07-21 18:35 - 000000000 ____D C:\Users\timof\AppData\Local\D3DSCache 2023-08-16 04:30 - 2022-07-22 07:02 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2023-08-15 18:39 - 2022-09-20 10:39 - 000000000 ____D C:\Program Files (x86)\Overwolf 2023-08-14 16:00 - 2022-07-21 19:37 - 000000000 ____D C:\Users\timof\Documents\E-Sport 2023-08-14 15:42 - 2022-07-21 19:38 - 000000000 ____D C:\Users\timof\Documents\E-Sport und HR 2023-08-14 04:32 - 2022-07-30 15:45 - 000000000 ____D C:\Users\timof\AppData\Local\CrashDumps 2023-08-13 14:27 - 2023-05-07 18:51 - 000009604 _____ C:\Users\timof\Documents\Abnehmen.xlsx 2023-08-12 09:10 - 2022-07-21 18:30 - 000000000 ____D C:\Users\timof 2023-08-12 06:36 - 2023-05-28 20:04 - 000073865 _____ C:\Users\timof\Downloads\Addition.txt 2023-08-12 06:32 - 2022-07-21 17:49 - 001590252 _____ C:\Windows\system32\PerfStringBackup.INI 2023-08-12 06:32 - 2022-07-21 07:41 - 000684798 _____ C:\Windows\system32\perfh007.dat 2023-08-12 06:32 - 2022-07-21 07:41 - 000141256 _____ C:\Windows\system32\perfc007.dat 2023-08-12 06:28 - 2022-08-09 16:31 - 000000001 _____ C:\Windows\vgkbootstatus.dat 2023-08-12 06:28 - 2022-07-22 05:50 - 000000000 ____D C:\Program Files (x86)\Battle.net 2023-08-12 06:25 - 2022-07-21 19:14 - 1945574153 _____ C:\Windows\MEMORY.DMP 2023-08-12 06:25 - 2022-07-21 19:14 - 000000000 ____D C:\Windows\Minidump 2023-08-12 06:25 - 2022-07-21 17:43 - 000008192 ___SH C:\DumpStack.log.tmp 2023-08-12 06:25 - 2022-07-21 17:43 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-08-11 18:24 - 2022-07-21 20:21 - 000000000 ____D C:\Program Files\Microsoft Office 2023-08-11 04:49 - 2022-10-13 12:29 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-08-11 04:49 - 2022-07-22 17:34 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2023-08-09 20:18 - 2022-07-21 07:37 - 000524288 _____ C:\Windows\system32\config\BBI 2023-08-09 20:17 - 2022-07-21 17:43 - 000441104 _____ C:\Windows\system32\FNTCACHE.DAT 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\SystemResources 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\system32\WinMetadata 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\system32\setup 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\system32\migwiz 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\system32\appraiser 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\bcastdvr 2023-08-09 20:16 - 2022-07-21 07:40 - 000000000 ____D C:\Windows\appcompat 2023-08-09 18:01 - 2022-07-21 17:43 - 000000000 ____D C:\Windows\system32\Drivers\wd 2023-08-09 17:23 - 2022-07-21 20:29 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Outlook 2023-08-09 16:02 - 2022-07-21 07:37 - 000000000 ____D C:\Windows\CbsTemp 2023-08-09 16:00 - 2022-07-21 17:47 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2023-08-09 15:56 - 2022-07-22 08:54 - 000000000 ____D C:\Windows\system32\MRT 2023-08-09 15:54 - 2022-07-22 08:54 - 175983240 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2023-08-08 04:15 - 2022-07-22 07:22 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-08-05 07:00 - 2022-07-21 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2023-08-05 06:59 - 2022-07-21 20:07 - 000000000 ____D C:\Program Files (x86)\Razer Chroma SDK 2023-08-02 19:19 - 2022-07-21 19:17 - 000004002 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{AFDEE95D-3102-4D25-AA64-150D4E571E60} 2023-08-02 19:19 - 2022-07-21 19:17 - 000003878 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{0DEC3C7E-FA51-480E-801D-381A16099AA2} 2023-07-31 20:09 - 2022-11-03 19:12 - 000000000 ____D C:\Users\timof\Documents\Soundaufnahmen 2023-07-29 08:10 - 2022-07-21 19:35 - 000000000 ____D C:\Users\timof\Documents\Arbeit 2023-07-29 06:55 - 2022-08-31 14:31 - 000000000 ____D C:\Users\timof\AppData\Roaming\vlc 2023-07-28 10:23 - 2022-07-22 07:09 - 000000000 ____D C:\Users\timof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2023-07-27 18:25 - 2022-07-21 18:00 - 000918960 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2023-07-23 13:07 - 2023-07-23 13:09 - 000000171 _____ () C:\Users\timof\AppData\Roaming\BattleBitConfig.ini ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
23.08.2023, 17:26 | #2 |
Gesperrt | Wieder Meldungen....Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 23-08-2023 durchgeführt von timof (23-08-2023 18:19:08) Gestartet von C:\Users\timof\Downloads Microsoft Windows 10 Home Version 22H2 19045.3324 (X64) (2022-07-21 15:45:05) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-3154798328-3649536837-3844507433-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3154798328-3649536837-3844507433-503 - Limited - Disabled) defaultuser0 (S-1-5-21-3154798328-3649536837-3844507433-1000 - Limited - Disabled) Gast (S-1-5-21-3154798328-3649536837-3844507433-501 - Limited - Disabled) timof (S-1-5-21-3154798328-3649536837-3844507433-1001 - Administrator - Enabled) => C:\Users\timof WDAGUtilityAccount (S-1-5-21-3154798328-3649536837-3844507433-504 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ActivePresenter (HKLM\...\{A2A40277-D807-4754-95A3-2F294C2C51D3}_is1) (Version: 8.5.7 - Atomi Systems, Inc.) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.003.20269 - Adobe) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601047}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Burning Crusade Classic (HKLM-x32\...\Burning Crusade Classic) (Version: - Blizzard Entertainment) Call of Duty (HKLM-x32\...\Call of Duty) (Version: - Blizzard Entertainment) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.20.13 - Canon Inc.) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.4.0 - Canon Inc.) Canon MG5700 series Benutzerregistrierung (HKLM-x32\...\Canon MG5700 series Benutzerregistrierung) (Version: - *Canon Inc.) Canon MG5700 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5700_series) (Version: 1.01 - Canon Inc.) Canon MG5700 series On-screen Manual (HKLM-x32\...\Canon MG5700 series On-screen Manual) (Version: 7.8.0 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.6.4 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.6.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.) CORSAIR iCUE 4 Software (HKLM\...\{ED82C5D7-D600-4B4D-B2FB-62FEDC3570F8}) (Version: 4.25.155 - Corsair) CurseForge (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 0.207.2.6523 - Overwolf app) Diablo II Resurrected (HKLM-x32\...\Diablo II Resurrected) (Version: - Blizzard Entertainment) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Diablo IV (HKLM-x32\...\Diablo IV) (Version: - Blizzard Entertainment) Diablo IV Beta (HKLM-x32\...\Diablo IV Beta) (Version: - Blizzard Entertainment) Discord (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Discord) (Version: 1.0.9005 - Discord Inc.) EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.247.0.5504 - Electronic Arts) Hidden EA app (HKLM-x32\...\{e4638914-e6cf-4b4d-9b8c-717e30d5b8dd}) (Version: 12.247.0.5504 - Electronic Arts) Epic Games Launcher (HKLM-x32\...\{A7273EDD-4192-4A9C-9A96-8056EB2DFC76}) (Version: 1.3.67.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{4757C19B-4CE3-418C-91D2-E15E938091FB}) (Version: 2.0.39.0 - Epic Games, Inc.) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Futuremark SystemInfo (HKLM-x32\...\{79B7A817-AEB4-48A0-B8C5-7DA335D166FA}) (Version: 5.55.1142.0 - Futuremark) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 116.0.5845.110 - Google LLC) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Logitech Capture (HKLM\...\Capture) (Version: 2.08.11 - Logitech) Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2022.12.348746 - Logitech) Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.16626.20170 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 116.0.1938.54 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 115.0.1901.203 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 23.158.0730.0001 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Teams) (Version: 1.6.00.22378 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{BB052C53-34CB-42DE-AF41-66FDFCEEC868}) (Version: 3.72.0.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.31.31103 (HKLM-x32\...\{2aaf1df0-eb13-4099-9992-962bb4e596d1}) (Version: 14.31.31103.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.31.31103 (HKLM-x32\...\{41d7b770-418a-43b7-95a5-f925fff05789}) (Version: 14.31.31103.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.31.31103 (HKLM\...\{A977984B-9244-49E3-BD24-43F0A8009667}) (Version: 14.31.31103 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.31.31103 (HKLM\...\{A181A302-3F6D-4BAD-97A8-A426A6499D78}) (Version: 14.31.31103 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.31.31103 (HKLM-x32\...\{5720EC03-F26F-40B7-980C-50B5D420B5DE}) (Version: 14.31.31103 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.31.31103 (HKLM-x32\...\{799E3FFF-705C-461F-B400-6DE27398B3E5}) (Version: 14.31.31103 - Microsoft Corporation) Hidden NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation) NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation) NVIDIA Grafiktreiber 536.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 536.23 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16626.20170 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16626.20170 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.16626.20170 - Microsoft Corporation) Hidden Opera Stable 101.0.4843.43 (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Opera 101.0.4843.43) (Version: 101.0.4843.43 - Opera Software) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.230.0.10 - Overwolf Ltd.) PDF24 Creator 11.3.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: 11.3.0 - PDF24.org) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 10.8.15.0 - Razer Inc.) Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.8.0731.072514 - Razer Inc.) Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.) StarCraft (HKLM-x32\...\StarCraft) (Version: - Blizzard Entertainment) StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Twitch (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) Twitch Studio (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF372B0}) (Version: 8.0.0 - Twitch Interactive, Inc.) VALORANT (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc) VLC media player (HKLM\...\VLC media player) (Version: 3.0.17.4 - VideoLAN) Warcraft III (HKLM-x32\...\Warcraft III) (Version: - Blizzard Entertainment) Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) Wrath of the Lich King Classic (HKLM-x32\...\Wrath of the Lich King Classic) (Version: - Blizzard Entertainment) Zoom (HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\ZoomUMX) (Version: 5.15.7 (20303) - Zoom Video Communications, Inc.) Packages: ========= Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_3.1.0.0_neutral__6e5tt8cgb93ep [2022-07-21] (Canon Inc.) CORSAIR iCUE Game Bar Widgets -> C:\Program Files\WindowsApps\CorsairInc.CorsairiCUEGameBarWidgets_1.0.13.0_x64__gtpc02cnf9yg0 [2022-07-21] (Corsair Memory, Inc.) Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2308.1005.0_x64__8wekyb3d8bbwe [2023-08-11] (Microsoft Corporation) Disney+ -> C:\Program Files\WindowsApps\Disney.37853FC22B2CE_1.57.3.0_x64__6rarf9sa4v8jt [2023-08-11] (Disney) Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2307.24001.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation) [Startup Task] NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-04-09] (NVIDIA Corp.) Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.17.8040.0_x64__8wekyb3d8bbwe [2023-08-11] (Microsoft Studios) [MS Ad] Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0 [2023-08-18] (Spotify AB) [Startup Task] ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3154798328-3649536837-3844507433-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-3154798328-3649536837-3844507433-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\timof\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.23199.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3154798328-3649536837-3844507433-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-3154798328-3649536837-3844507433-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> C:\Users\timof\AppData\Local\Microsoft\Teams\current\Teams.exe (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.158.0730.0001\FileSyncShell64.dll [2023-08-23] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_7e5fd280efaa5445\nvshext.dll [2023-06-21] (NVIDIA Corporation -> NVIDIA Corporation) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== ==================== Verknüpfungen & WMI ======================== ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2023-03-02 08:55 - 2023-02-27 22:39 - 001393152 _____ () [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.Core.Runtime.dll 2022-06-14 16:39 - 2022-06-14 16:39 - 000057856 _____ () [Datei ist nicht signiert] C:\Program Files\Corsair\CORSAIR iCUE 4 Software\HiResTimers.dll 2022-06-14 16:39 - 2022-06-14 16:39 - 000041472 _____ () [Datei ist nicht signiert] C:\Program Files\Corsair\CORSAIR iCUE 4 Software\PowerStateListener.dll 2022-12-15 07:16 - 2022-12-14 21:29 - 000156160 _____ () [Datei ist nicht signiert] C:\Program Files\LGHUB\resources\app.asar.unpacked\keytar.node 2022-04-26 16:10 - 2022-04-26 16:10 - 000090112 _____ (Silicon Laboratories, Inc.) [Datei ist nicht signiert] C:\Program Files\Corsair\CORSAIR iCUE 4 Software\SiUSBXp.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2022-07-21 07:40 - 2022-09-03 07:06 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts 127.0.0.1 localhost ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\Program Files (x86)\Razer\ChromaBroadcast\bin;C:\Program Files\Razer\ChromaBroadcast\bin;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\WindowsApps;;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\timof\Downloads\12cffabe511f22f9d03966275f81997034f87094.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) HKLM\...\StartupApproved\Run: => "PDF24" HKLM\...\StartupApproved\Run32: => "CanonQuickMenu" HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\StartupApproved\Run: => "Overwolf" HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-3154798328-3649536837-3844507433-1001\...\StartupApproved\Run: => "Opera Stable" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [TCP Query User{1BEFD8B2-3190-4A60-9C95-713279CC5130}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [UDP Query User{F2D0DD88-8DD1-45E4-B8D0-C461D1281EA3}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [TCP Query User{6D72BB5B-3805-4E37-8572-3CC4F358F301}C:\users\timof\appdata\roaming\zoom\bin\zoom.exe] => (Allow) C:\users\timof\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [UDP Query User{02046D55-FD59-483A-9FB8-D63373942367}C:\users\timof\appdata\roaming\zoom\bin\zoom.exe] => (Allow) C:\users\timof\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{B8594B0D-97FE-46AD-B847-24AB85C30D03}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{0C466623-A790-41FD-B3A6-E41249D401B7}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{842B0681-DB89-4C0A-9C4E-B0EA608871E5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{7EA4E79A-0E7A-4175-8437-94A8FE20BBA4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [TCP Query User{D29E0552-6D08-49CE-88E2-952155A44853}D:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe (Valve Corp. -> ) FirewallRules: [UDP Query User{7A7B1574-D465-4E04-B551-07EDA4137589}D:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\csgo.exe (Valve Corp. -> ) FirewallRules: [TCP Query User{3CE74872-FD4E-43E7-B3A8-3D2A24077C5A}D:\steamlibrary\steamapps\common\smite\binaries\win64\smite.exe] => (Allow) D:\steamlibrary\steamapps\common\smite\binaries\win64\smite.exe (Hirez Studios, Inc.) [Datei ist nicht signiert] FirewallRules: [UDP Query User{024EBFA5-B33F-44F9-936C-A921722E6A1E}D:\steamlibrary\steamapps\common\smite\binaries\win64\smite.exe] => (Allow) D:\steamlibrary\steamapps\common\smite\binaries\win64\smite.exe (Hirez Studios, Inc.) [Datei ist nicht signiert] FirewallRules: [{9D2BCFB0-645F-4E07-B2D2-F37B6E33571E}] => (Allow) D:\SteamLibrary\steamapps\common\Halo Infinite\HaloInfinite.exe (343 Industries (Microsoft Corporation) -> ) FirewallRules: [{8D642912-F3A8-4F9A-8EC6-C448E6A5914D}] => (Allow) D:\SteamLibrary\steamapps\common\Halo Infinite\HaloInfinite.exe (343 Industries (Microsoft Corporation) -> ) FirewallRules: [{4D4F46F9-0AA2-4EA3-86AC-6200AD880535}] => (Allow) D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{2BC5C5A1-A27F-425F-9594-E560CE4ED1C4}] => (Allow) D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win64\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{F3512678-C369-441C-ABB3-24487763A403}] => (Allow) D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{7DC98F3A-D8BE-413F-A87C-4E252207DA04}] => (Allow) D:\SteamLibrary\steamapps\common\SMITE\Binaries\Win32\SmiteEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{9FF2166F-D104-4C30-A922-BD25BC8CEE25}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [{27D76993-2E1A-41AE-BEB2-137120BE9ABC}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FirewallRules: [TCP Query User{ED4FD3FA-C883-42FE-87AC-2FACF8FDE258}D:\steamlibrary\steamapps\common\battlefield 4\bf4.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [UDP Query User{B09B3B2E-9D50-4AC6-8977-AB8A12FC0DE0}D:\steamlibrary\steamapps\common\battlefield 4\bf4.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{F66C8DEC-D10E-40AC-9B04-90EDC94EFDEC}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe => Keine Datei FirewallRules: [{EDD5E5A1-4283-43A8-972A-925215C5AC5E}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\3DMarkLauncher.exe => Keine Datei FirewallRules: [TCP Query User{A8E75BFE-8605-4B40-AADA-478C9B83D724}C:\users\timof\appdata\roaming\twitch studio\bin\twitchstudioagent.exe] => (Allow) C:\users\timof\appdata\roaming\twitch studio\bin\twitchstudioagent.exe (Twitch Interactive, Inc. -> ) FirewallRules: [UDP Query User{F02CDC56-73BB-4426-B259-CC1637E63E0B}C:\users\timof\appdata\roaming\twitch studio\bin\twitchstudioagent.exe] => (Allow) C:\users\timof\appdata\roaming\twitch studio\bin\twitchstudioagent.exe (Twitch Interactive, Inc. -> ) FirewallRules: [{70B6C9CB-40B8-4D20-851B-316550B437A6}] => (Allow) D:\SteamLibrary\steamapps\common\Anno 1800\Bin\Win64\Anno1800.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft) FirewallRules: [{A60E3FD4-43DE-499A-81C6-61279C626590}] => (Allow) D:\SteamLibrary\steamapps\common\Anno 1800\Bin\Win64\Anno1800.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft) FirewallRules: [TCP Query User{C1203BA2-1F4C-413B-86E7-40CC838A96C0}D:\blizzard\overwatch\_retail_\overwatch.exe] => (Allow) D:\blizzard\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{B7064C77-1BDB-46CF-BAD6-282A68FBFD27}D:\blizzard\overwatch\_retail_\overwatch.exe] => (Allow) D:\blizzard\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{50BF47EA-414E-4065-A193-F5BCBAC0E4FF}] => (Allow) D:\SteamLibrary\steamapps\common\CnCRemastered\ClientLauncherG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.) FirewallRules: [{74054A7A-0BB5-4E4F-81DD-91BC84863EEC}] => (Allow) D:\SteamLibrary\steamapps\common\CnCRemastered\ClientLauncherG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.) FirewallRules: [{B52CBC67-7B63-4EBC-B4C9-2497CB385AF1}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\cossacks.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{4204F0BE-80EF-4711-8079-ACCC95B0EFB9}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\cossacks.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{986A6C5D-06F1-4EAC-890D-934CED68FABE}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\config.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{D951A709-3E18-48B3-9015-EEE2342611DD}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\config.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{AF076BB2-6972-4768-A36F-550E6EAB27F0}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\editor.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{04D7D248-27FC-4FAE-A020-393F166E0DB0}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\editor.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{169A38D2-39E6-4985-8913-E81A30124682}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\modman.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{07AC122E-0344-4A67-9378-BD92B2E03B34}] => (Allow) D:\SteamLibrary\steamapps\common\Cossacks 3\modman.exe (GSC Game World) [Datei ist nicht signiert] FirewallRules: [{FADC6F2F-DF83-4105-856F-8BF5E7CF92DE}] => (Allow) D:\SteamLibrary\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe (Creative Assembly Ltd) [Datei ist nicht signiert] FirewallRules: [{039344F3-833D-4C3F-9A84-CE7E095F83A8}] => (Allow) D:\SteamLibrary\steamapps\common\Total War WARHAMMER II\launcher\launcher.exe (Creative Assembly Ltd) [Datei ist nicht signiert] FirewallRules: [{09445D8F-4F7E-4907-B64E-608EAE80889D}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019_dx12.exe (Codemasters Software Company Limited) [Datei ist nicht signiert] FirewallRules: [{15E80C8C-2DD1-4F70-BB80-F2B68E44F310}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019_dx12.exe (Codemasters Software Company Limited) [Datei ist nicht signiert] FirewallRules: [{E2EEEBDD-2850-48FC-81B6-BA6A4FFAB898}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019.exe (Codemasters Software Company Limited) [Datei ist nicht signiert] FirewallRules: [{7856B57F-6A3A-443D-8BE8-592F9144BFDC}] => (Allow) D:\SteamLibrary\steamapps\common\F1 2019\F1_2019.exe (Codemasters Software Company Limited) [Datei ist nicht signiert] FirewallRules: [{B9866884-7A95-4453-8AF6-155766B34E92}] => (Allow) D:\SteamLibrary\steamapps\common\Act of War Direct Action\ActOfWar.exe () [Datei ist nicht signiert] FirewallRules: [{47C9E14D-A346-401F-A8CA-94E584A2D5CE}] => (Allow) D:\SteamLibrary\steamapps\common\Act of War Direct Action\ActOfWar.exe () [Datei ist nicht signiert] FirewallRules: [{042CE942-A749-446A-B190-764B771894AF}] => (Allow) D:\SteamLibrary\steamapps\common\AoE3DE\AoE3DE_s.exe (Tantalus Media Pty Ltd -> Microsoft Corporation) FirewallRules: [{3B9AD9D9-913E-4C5D-BB0E-7E3B0BC8B70A}] => (Allow) D:\SteamLibrary\steamapps\common\AoE3DE\AoE3DE_s.exe (Tantalus Media Pty Ltd -> Microsoft Corporation) FirewallRules: [{34B4E4C7-C615-44FE-BD5B-DA3E3CE2E7F2}] => (Allow) D:\SteamLibrary\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{3E90470A-80D1-45B7-91F4-1FD2669F1F95}] => (Allow) D:\SteamLibrary\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{2F69655B-BAA1-49A6-B648-609837611661}] => (Allow) D:\SteamLibrary\steamapps\common\Age of Mythology\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{04BA9340-BAD6-4F27-AC06-9F42469CBCB0}] => (Allow) D:\SteamLibrary\steamapps\common\Age of Mythology\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{0B640130-42A7-4D9D-9088-9017540F3493}] => (Allow) D:\SteamLibrary\steamapps\common\Age of Mythology\AoMX.exe (Microsoft Corp) [Datei ist nicht signiert] FirewallRules: [{63A218CE-9BA7-4385-99BD-51C3C45637D3}] => (Allow) D:\SteamLibrary\steamapps\common\Age of Mythology\AoMX.exe (Microsoft Corp) [Datei ist nicht signiert] FirewallRules: [{9E53638F-F63E-422D-BD85-DC9E238A57FE}] => (Allow) D:\SteamLibrary\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [{C0E91627-670E-4F73-9DC0-BC09D5385B5A}] => (Allow) D:\SteamLibrary\steamapps\common\Half-Life\hl.exe (Valve -> Valve) FirewallRules: [TCP Query User{B062EF20-5AF5-4D2E-B4E7-5A89F419B824}D:\steamlibrary\steamapps\common\need for speed heat\needforspeedheat.exe] => (Allow) D:\steamlibrary\steamapps\common\need for speed heat\needforspeedheat.exe (Electronic Arts) [Datei ist nicht signiert] FirewallRules: [UDP Query User{B4BAF185-5919-4E71-9728-CC7081AA5DC3}D:\steamlibrary\steamapps\common\need for speed heat\needforspeedheat.exe] => (Allow) D:\steamlibrary\steamapps\common\need for speed heat\needforspeedheat.exe (Electronic Arts) [Datei ist nicht signiert] FirewallRules: [{413BDBF3-C46D-476A-994B-16FDD0A08058}] => (Allow) D:\SteamLibrary\steamapps\common\Dawn of War Gold\W40k.exe (Relic Entertainment, Inc. -> Sega Corporation) FirewallRules: [{F844E319-ED71-46AF-9E80-2BFCEBF8E21E}] => (Allow) D:\SteamLibrary\steamapps\common\Dawn of War Gold\W40k.exe (Relic Entertainment, Inc. -> Sega Corporation) FirewallRules: [{1B24256F-14FC-4B2D-A566-7DDC58489A05}] => (Allow) D:\SteamLibrary\steamapps\common\StreetFighterV\StreetFighterV.exe (CAPCOM CO., LTD. -> ) FirewallRules: [{B5A94793-1ED3-4B70-89DE-68B4C8309A2F}] => (Allow) D:\SteamLibrary\steamapps\common\StreetFighterV\StreetFighterV.exe (CAPCOM CO., LTD. -> ) FirewallRules: [{FE209279-A90E-436A-B3CE-062AABBDD04A}] => (Allow) D:\SteamLibrary\steamapps\common\STAR WARS Squadrons\starwarssquadrons_launcher.exe (Electronic Arts, Inc. -> Epic Games, Inc) FirewallRules: [{9C846D22-20F9-49F9-8881-2FD0E98D8AFC}] => (Allow) D:\SteamLibrary\steamapps\common\STAR WARS Squadrons\starwarssquadrons_launcher.exe (Electronic Arts, Inc. -> Epic Games, Inc) FirewallRules: [{E2F7E41C-9B1C-4116-B8CA-E54176A8176B}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer 40,000 Inquisitor - Martyr\Warhammer.exe (NeoCore Games) [Datei ist nicht signiert] FirewallRules: [{57DEE680-E3F5-459B-A218-4BA3BB3445EC}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer 40,000 Inquisitor - Martyr\Warhammer.exe (NeoCore Games) [Datei ist nicht signiert] FirewallRules: [{AE0230BD-0B3B-4D58-9D45-E86367834534}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer 40,000 Space Marine\SpaceMarine.exe (Valve Corp. -> Sega Corporation) FirewallRules: [{F2262745-64C5-452C-9089-02809E996DB4}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer 40,000 Space Marine\SpaceMarine.exe (Valve Corp. -> Sega Corporation) FirewallRules: [{66D5819A-85C4-402A-9421-3BFC800DFBD4}] => (Allow) D:\SteamLibrary\steamapps\common\Worms Rumble\Launch_Game.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{A4D603F0-B7D6-44C7-9EE7-E17977FE49C7}] => (Allow) D:\SteamLibrary\steamapps\common\Worms Rumble\Launch_Game.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{4197DFDF-7B50-4484-815B-B7DA43822125}] => (Allow) C:\Users\timof\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{E10C7425-92DB-456E-BF22-872A777FB798}] => (Allow) C:\Users\timof\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{B92C34A6-DB83-4339-8520-8E5DF3A5E23A}] => (Allow) C:\Users\timof\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{D14F892D-45A9-479C-8D04-A19AE13B64CF}] => (Allow) D:\SteamLibrary\steamapps\common\Warzone 2100\bin\warzone2100.exe (Warzone 2100 Project) [Datei ist nicht signiert] FirewallRules: [{DBC98A57-950F-40CD-BF79-B5730EBC571F}] => (Allow) D:\SteamLibrary\steamapps\common\Warzone 2100\bin\warzone2100.exe (Warzone 2100 Project) [Datei ist nicht signiert] FirewallRules: [TCP Query User{75F03249-B58F-4CBB-8B30-64A2A17C6576}D:\steamlibrary\steamapps\common\battlefield v\bfv.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield v\bfv.exe (EA Digital Illusions CE AB) [Datei ist nicht signiert] FirewallRules: [UDP Query User{8F4B7574-63D6-4B40-91ED-331D1B8A46F8}D:\steamlibrary\steamapps\common\battlefield v\bfv.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield v\bfv.exe (EA Digital Illusions CE AB) [Datei ist nicht signiert] FirewallRules: [TCP Query User{55D35480-4823-4588-8B6C-FC668DD2B747}D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [UDP Query User{01A9134A-5CA6-4E6A-988A-F5EA857E794B}D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [TCP Query User{EA1313B0-E712-47C7-82D3-B34AA6525B44}D:\blizzard\call of duty\_retail_\cod.exe] => (Allow) D:\blizzard\call of duty\_retail_\cod.exe => Keine Datei FirewallRules: [UDP Query User{E9676302-B1BB-4E13-809D-CEDA3B987F6A}D:\blizzard\call of duty\_retail_\cod.exe] => (Allow) D:\blizzard\call of duty\_retail_\cod.exe => Keine Datei FirewallRules: [{2A031602-83D5-497B-AB2F-ED11D49ECC2E}] => (Allow) D:\SteamLibrary\steamapps\common\Predecessor\PredecessorLauncher.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{9A20625A-1D2D-417A-940D-6B771F51F2CC}] => (Allow) D:\SteamLibrary\steamapps\common\Predecessor\PredecessorLauncher.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [TCP Query User{4F768349-D1FD-4226-AF06-87213AD87DF7}D:\steamlibrary\steamapps\common\predecessor\predecessor\binaries\win64\predecessorclient-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\predecessor\predecessor\binaries\win64\predecessorclient-win64-shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [UDP Query User{A3D43171-255D-47D6-B4DE-80E00468DD70}D:\steamlibrary\steamapps\common\predecessor\predecessor\binaries\win64\predecessorclient-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\predecessor\predecessor\binaries\win64\predecessorclient-win64-shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [TCP Query User{3A81BBFC-B8AA-4E5E-A888-5672623BE1B6}C:\users\timof\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\timof\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{C593D418-2D43-4821-B466-C7A89A26AAC0}C:\users\timof\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\timof\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{E79A7F74-8FC5-4C09-B49F-F24E9492CD5C}] => (Allow) D:\SteamLibrary\steamapps\common\Command and Conquer 3 Tiberium Wars\CNC3.exe (Electronic Arts Inc.) [Datei ist nicht signiert] FirewallRules: [{CD9584FE-89C7-4DBF-8E3A-A58476FA00E1}] => (Allow) D:\SteamLibrary\steamapps\common\Command and Conquer 3 Tiberium Wars\CNC3.exe (Electronic Arts Inc.) [Datei ist nicht signiert] FirewallRules: [{BAB10BF5-DE2F-4CF3-99D0-A409C738B3D1}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe => Keine Datei FirewallRules: [{82B83A5F-45A9-4FD8-A6B5-D068300008C8}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x86\3DMark.exe => Keine Datei FirewallRules: [{49A41833-5200-4ADC-9676-1DC50F2985AC}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{4147942E-BEF5-49CA-84D9-9B36662CDB14}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{88BE527B-EC17-45C3-A9CA-FF06C5EB45E0}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{54A17703-A0BC-4E23-8700-4B422BF5AC98}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{A8714ADB-02E9-4926-811E-F7B9CEC4399A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{4FD185F0-322D-4A5A-BAC8-CE00C645BE73}] => (Allow) D:\SteamLibrary\steamapps\common\Hogwarts Legacy\HogwartsLegacy.exe (Warner Bros. Interactive) [Datei ist nicht signiert] FirewallRules: [{6909DE43-7B51-4011-9DA5-3AEB6AB6E3C9}] => (Allow) D:\SteamLibrary\steamapps\common\Hogwarts Legacy\HogwartsLegacy.exe (Warner Bros. Interactive) [Datei ist nicht signiert] FirewallRules: [{CD967787-BC42-417E-B261-56AA59EB59DC}] => (Allow) D:\SteamLibrary\steamapps\common\A.V.A\Binaries\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{4895D4E3-03C4-44A0-93EC-F446ADA25263}] => (Allow) D:\SteamLibrary\steamapps\common\A.V.A\Binaries\start_protected_game.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{91738508-9EE1-408A-BA9A-0C3CE4BE97CC}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe (Underwriters Laboratories Inc. -> ) FirewallRules: [{409FEF4D-10AB-43CF-8168-9C2BD4A10E88}] => (Allow) D:\SteamLibrary\steamapps\common\3DMark\bin\x64\3DMark.exe (Underwriters Laboratories Inc. -> ) FirewallRules: [TCP Query User{CDADE287-671B-4916-BFE7-076ADD1ECF58}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{51BD0E95-B723-4B72-9FDF-7C6B0B8946CB}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{6676A6B9-8704-41AD-9C53-DB13B4776142}] => (Allow) D:\SteamLibrary\steamapps\common\Cyberpunk 2077\REDprelauncher.exe (GOG sp. z o.o -> GOG.com) FirewallRules: [{3A43C254-F86F-4A00-A39C-319DD1F54301}] => (Allow) D:\SteamLibrary\steamapps\common\Cyberpunk 2077\REDprelauncher.exe (GOG sp. z o.o -> GOG.com) FirewallRules: [{714B4E86-5F56-4E12-9FDC-82C72B10C68E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{AEBF349B-7993-4CCD-8B47-C12ADF8200F1}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{F2433879-CF64-4273-B37E-9AC821D9BAAC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{6ED57457-0817-419B-B5F1-4DB5C8A69EE6}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [TCP Query User{C51A5ACF-AEBD-4CCB-B67D-134B4E995403}C:\users\timof\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\timof\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{FB4417BC-DBD9-4EE7-971C-50762C565655}C:\users\timof\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\timof\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [TCP Query User{96B4D771-4764-4223-9D49-B330063D857E}D:\blizzard\diablo iv - beta\diablo iv.exe] => (Allow) D:\blizzard\diablo iv - beta\diablo iv.exe => Keine Datei FirewallRules: [UDP Query User{BD3D867B-C47C-4924-A18A-DDD85BB19662}D:\blizzard\diablo iv - beta\diablo iv.exe] => (Allow) D:\blizzard\diablo iv - beta\diablo iv.exe => Keine Datei FirewallRules: [{9EB9CB30-CC0C-49A4-AB8A-EC6E07F5EF0E}] => (Allow) D:\SteamLibrary\steamapps\common\Battlezone 98 Redux\Launcher\BZLauncher.exe () [Datei ist nicht signiert] FirewallRules: [{37771572-883E-475E-B4C6-1CDE3C974209}] => (Allow) D:\SteamLibrary\steamapps\common\Battlezone 98 Redux\Launcher\BZLauncher.exe () [Datei ist nicht signiert] FirewallRules: [{0294303A-F7A2-44EE-9320-C552A6265D87}] => (Allow) D:\SteamLibrary\steamapps\common\Forsaken Remastered\selkis_x64.exe () [Datei ist nicht signiert] FirewallRules: [{15CB0CB7-6FBC-4407-BA16-93B8101D8729}] => (Allow) D:\SteamLibrary\steamapps\common\Forsaken Remastered\selkis_x64.exe () [Datei ist nicht signiert] FirewallRules: [{9360F218-53C2-4FB1-B593-9C75593CE395}] => (Allow) D:\SteamLibrary\steamapps\common\BZ2R\battlezone2.exe (Rebellion, Ltd.) [Datei ist nicht signiert] FirewallRules: [{D1B856F7-E6E6-41C7-B79D-2E61549DD013}] => (Allow) D:\SteamLibrary\steamapps\common\BZ2R\battlezone2.exe (Rebellion, Ltd.) [Datei ist nicht signiert] FirewallRules: [{3EFE72CB-E068-428C-80E0-85836011C7D2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{54713378-FD25-4A4D-A1B8-326EC72343CF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{886A9651-9802-4957-B2D6-DD6A3E0D0C37}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{9463CD2D-527B-4E95-BC7B-EE0CC3FF9F3F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{5A496406-0A90-4A87-BED5-DF9DFA9FE43A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{31D638BD-5652-4A9B-8BC4-5F6A7F48A871}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation) FirewallRules: [{CBD61CA5-D19E-4B38-AF92-681CA6E84F01}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4F734D08-B222-4CA2-BFEA-CCD4AA1DD372}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer Chaosbane\Exe\Chaosbane.exe () [Datei ist nicht signiert] FirewallRules: [{ED2AC196-2096-4828-84FE-BD9DB1AB2712}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer Chaosbane\Exe\Chaosbane.exe () [Datei ist nicht signiert] FirewallRules: [{6B5C5029-E502-4B22-98C9-EFDEEB7196BC}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer Chaosbane\Exe\ResolutionsOptions.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{85BDF426-951E-4515-A01A-A5E17C23E14F}] => (Allow) D:\SteamLibrary\steamapps\common\Warhammer Chaosbane\Exe\ResolutionsOptions.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{9CD15D14-17C8-46D0-A96C-89824D2FDC13}] => (Allow) E:\SteamLibrary\steamapps\common\Anno 1404\Anno4.exe (Related Designs Software -> Related Designs) FirewallRules: [{0FC3F3F0-8EC6-4784-B1EA-261B1D15B705}] => (Allow) E:\SteamLibrary\steamapps\common\Anno 1404\Anno4.exe (Related Designs Software -> Related Designs) FirewallRules: [TCP Query User{F42ABF38-9437-4194-BE7A-25C9008E6C11}E:\diablo iv\diablo iv.exe] => (Allow) E:\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{D38FDE1F-61D7-4982-8AD0-A55E2C50C848}E:\diablo iv\diablo iv.exe] => (Allow) E:\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{4E9F335B-DA24-4C3C-AD10-F5C4893F4285}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{F0A81129-4461-4A6D-A325-BBEAE78183DD}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{96FF65EE-286B-45F0-856E-B494FFC71200}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{8AA57CE2-D4A6-4DC7-8DC8-B772834C207F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E745FE13-1598-4B9E-A154-F311B2BF27BE}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{348D25D2-099D-4565-90AC-DAD31607E48A}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{D5E2C53A-AC00-42BD-A2C4-E07002624464}] => (Allow) E:\SteamLibrary\steamapps\common\Street Fighter 30th Anniversary Collection\SF30thAnniversaryCollection.exe (CAPCOM CO., LTD. -> ) FirewallRules: [{41E9AFD8-826F-4173-AF25-D68B4980B6DA}] => (Allow) E:\SteamLibrary\steamapps\common\Street Fighter 30th Anniversary Collection\SF30thAnniversaryCollection.exe (CAPCOM CO., LTD. -> ) FirewallRules: [{4C43050D-3791-42C8-BB24-951CF49E523E}] => (Allow) E:\SteamLibrary\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{93A62043-34A3-4AC4-A73C-C1ED1FD23321}] => (Allow) E:\SteamLibrary\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{C52BC2B6-6478-4D49-87E0-4CD7C2402583}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\BattleBitEAC.exe (OKIGAMES OYUN VE YAZILIM HİZMETLERİ LİMİTED ŞİRKETİ -> ) FirewallRules: [{B242638B-AAF9-49AB-ADA5-1A9BCC1A999A}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\BattleBitEAC.exe (OKIGAMES OYUN VE YAZILIM HİZMETLERİ LİMİTED ŞİRKETİ -> ) FirewallRules: [{7D99F96D-B11C-4BAF-97C8-CDEEAF99CFEF}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\EasyAntiCheat\EasyAntiCheat_EOS_Setup.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{E589C7E5-8A26-4D16-B6E5-1FB6E8FE18CC}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\EasyAntiCheat\EasyAntiCheat_EOS_Setup.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{1F871B3A-AFB9-48CA-B378-D79394067801}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\BattleBit.exe (OKIGAMES OYUN VE YAZILIM HİZMETLERİ LİMİTED ŞİRKETİ -> ) FirewallRules: [{C41915F4-D3C8-457B-8FBD-124C8070617C}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\BattleBit.exe (OKIGAMES OYUN VE YAZILIM HİZMETLERİ LİMİTED ŞİRKETİ -> ) FirewallRules: [{CBB31381-5919-4785-A71D-9E7F2E6A162A}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\EasyAntiCheat.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{4370EC01-89F9-4C8A-A4B4-D5668DCB99C8}] => (Allow) E:\SteamLibrary\steamapps\common\BattleBit Remastered\EasyAntiCheat.exe (EasyAntiCheat Oy -> Epic Games, Inc.) FirewallRules: [{474B0AA2-D7D0-48D5-B893-1CD529234FC3}] => (Allow) E:\SteamLibrary\steamapps\common\Assassins Creed Origins\ACOrigins.exe () [Datei ist nicht signiert] FirewallRules: [{000EB0AA-005F-4ECF-914F-AAD2F813BD68}] => (Allow) E:\SteamLibrary\steamapps\common\Assassins Creed Origins\ACOrigins.exe () [Datei ist nicht signiert] FirewallRules: [{A08C7C4A-9580-49E5-91B3-3BC4B89FEAA7}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => Keine Datei FirewallRules: [{7C947232-4C9D-4B89-9283-5A5089657558}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\115.0.1901.203\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{9407A83E-F7C7-49F5-B9EF-6EEB96018AAC}] => (Allow) C:\Program Files (x86)\Overwolf\0.228.0.21\OverwolfBrowser.exe => Keine Datei FirewallRules: [{39299B15-975B-46A2-B472-F66061DBD725}] => (Allow) C:\Program Files (x86)\Overwolf\0.228.0.21\OverwolfBrowser.exe => Keine Datei FirewallRules: [{C210CC1C-3326-4F32-BFD0-9EDBB572E8FC}] => (Block) C:\Program Files (x86)\Overwolf\0.228.0.21\OverwolfBrowser.exe => Keine Datei FirewallRules: [{A025B23F-EB13-4148-98AD-59487C23670A}] => (Block) C:\Program Files (x86)\Overwolf\0.228.0.21\OverwolfBrowser.exe => Keine Datei FirewallRules: [{C5F57F9A-07F8-4CE8-A70F-6F6A4CC3FB7C}] => (Allow) C:\Program Files (x86)\Overwolf\0.230.0.10\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{CB40C1B6-7265-468F-9728-C4C68A096718}] => (Allow) C:\Program Files (x86)\Overwolf\0.230.0.10\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{0032B2E6-4C77-4E35-BFC5-A9DEEDF16F67}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{09A91488-80CE-4794-8B13-6D48DADE2A9F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{BD22837D-4CAA-42C6-84B6-E3527FD97A77}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{D0DB44F3-51A8-4E02-B11C-9747296360CE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{6A2A97E4-6D18-4A6F-9D3E-0AD3C30C44C9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{F1AFC601-D0BE-4A42-B643-19B56D0917D7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{5E74C741-4F92-411C-A46F-700C6822B6A7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{E354076E-4BD5-4E01-9E9F-8B48D735D459}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{79B1E521-9DE1-433B-BB95-D0D1235F0E07}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{71C4EB98-0D33-4844-929E-DED6AFA18A31}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.218.999.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{EE9DEFCC-EFC0-48C3-942E-F7B8603225A6}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{C2D00475-B816-4638-9D7D-8BBADF2D691E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{DDC356FA-0C06-4A6B-AF80-2F68BDC6C71F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{AFC04D41-7240-434C-9344-F9EDF096A69E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{18A5F203-D500-46C3-82B2-7B70AA08CA37}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) ==================== Wiederherstellungspunkte ========================= 09-08-2023 15:56:57 Windows Modules Installer 18-08-2023 06:49:29 Geplanter Prüfpunkt ==================== Fehlerhafte Geräte im Gerätemanager ============ ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (08/23/2023 05:56:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0x45c0 Startzeit der fehlerhaften Anwendung: 0x01d9d5d81a014939 Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: aab93500-3b1d-4e5c-a872-11777b4643da Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/23/2023 05:38:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0xf228 Startzeit der fehlerhaften Anwendung: 0x01d9d5d7202e9b42 Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: d43b6b2c-3179-4582-9a61-b2d01182bc1d Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/23/2023 04:35:49 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0xec90 Startzeit der fehlerhaften Anwendung: 0x01d9d56933c3b333 Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: 46f1facc-5967-4cba-bc41-c2fa213399f1 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/23/2023 04:24:49 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0xe90c Startzeit der fehlerhaften Anwendung: 0x01d9d5209077c6f5 Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: 1113b93f-6de0-45bd-be38-ff2861034dff Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/22/2023 06:10:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0xd2a4 Startzeit der fehlerhaften Anwendung: 0x01d9d5103c7b61d9 Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: 5d91e330-6d8b-4179-8a16-7459a3ddebba Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/22/2023 05:44:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0xb888 Startzeit der fehlerhaften Anwendung: 0x01d9d4f84b78676f Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: c5de007f-a99a-4763-9d86-739ac756d505 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/22/2023 02:48:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0x9e20 Startzeit der fehlerhaften Anwendung: 0x01d9d4e00d43128d Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: d4ae4946-93f8-4cad-a5b0-246cf7858ea0 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (08/22/2023 08:02:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.19041.3155, Zeitstempel: 0x09fc9796 Name des fehlerhaften Moduls: THXSYSVAD2APO.dll, Version: 1.2.6.0, Zeitstempel: 0x5ed576b1 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000002d7b ID des fehlerhaften Prozesses: 0xe600 Startzeit der fehlerhaften Anwendung: 0x01d9d4bc8b8714ce Pfad der fehlerhaften Anwendung: C:\Windows\system32\AUDIODG.EXE Pfad des fehlerhaften Moduls: C:\Windows\System32\THXSYSVAD2APO.dll Berichtskennung: 87bdbcdb-4509-4c05-be58-8136de6e9eff Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Systemfehler: ============= Error: (08/23/2023 04:20:21 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Razer Central Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/16/2023 04:29:55 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "NVIDIA LocalSystem Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 6000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/16/2023 04:29:55 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "NVIDIA LocalSystem Container" wurde mit folgendem Fehler beendet: Für einen allgemeinen Befehl wurde ein Ergebnis zurückgegeben, das auf einen Fehler hinweist. Error: (08/14/2023 04:59:54 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P3NKH8T) Description: Der Server "Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy!App.AppX447jn8wbjb1qsw3jxkndb19cwgsrtrkk.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/13/2023 10:02:28 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-P3NKH8T) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (08/12/2023 06:27:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (08/12/2023 06:27:53 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (60000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (08/12/2023 06:25:35 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: Der Computer wurde nach einem schwerwiegenden Fehler neu gestartet. Der Fehlercode war: 0x00000119 (0x0000000000000002, 0xffffffffc000000d, 0xffff8087f42cf920, 0xffffb30e6b7a6cd0). Ein volles Abbild wurde gespeichert in: C:\Windows\MEMORY.DMP. Berichts-ID: 97edf651-8897-4baf-95c0-ac452d4222ca. Windows Defender: ================ Date: 2023-08-22 18:17:43 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {B74D976C-CB00-431A-A0A5-EB47CAEDC828} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-08-21 18:14:13 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {0FF23145-E003-4FEB-A0CE-D58B9E6992D3} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-08-20 18:34:49 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {02B69DA0-94F3-4678-978B-8E328858B2F5} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-08-20 07:36:09 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {B578FE26-14EE-4B96-8FEF-B8F6E9FF71A2} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Date: 2023-08-18 18:25:48 Description: Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet. Überprüfungs-ID: {6CD3E9B1-8DE6-4B39-BB33-58E0555F3A5A} Überprüfungstyp: Antimalware Überprüfungsparameter: Schnellüberprüfung Benutzer: NT-AUTORITÄT\SYSTEM Event[0]: Date: 2023-07-08 16:48:15 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten. Neue Version der Sicherheitsinformationen: %Vorherige Version der Sicherheitsinformationen: 1.391.3926.0 Update Source: Microsoft Update-Server Sicherheitstyp: AntiVirus Updatetyp: Voll Benutzer: NT-AUTORITÄT\SYSTEM Aktuelle Modulversion: %Vorherige Modulversion: 1.1.23050.3 Fehlercode: 0x80240438 Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support". Date: 2023-05-16 20:20:03 Description: Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Security Intelligence aufgetreten. Es wird versucht, zu einer vorherigen Version zurückzukehren. Security Intelligence versucht: Aktuell Fehlercode: 0x80501102 Fehlerbeschreibung: Unerwartetes Problem. Installieren Sie bei Bedarf verfügbare Updates, und starten Sie das Programm dann erneut. Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support". Security Intelligence-Version: 1.389.1489.0;1.389.1489.0 Modulversion: 1.1.20300.3 CodeIntegrity: =============== Date: 2023-08-12 18:19:09 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\ProgramData\Microsoft\Windows Defender\Platform\4.18.23070.1004-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-08-03 07:55:03 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2023-07-14 09:08:32 Description: Code Integrity determined that a process (\Device\HarddiskVolume6\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume6\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== BIOS: American Megatrends International, LLC. 1.81 08/05/2021 Hauptplatine: Micro-Star International Co., Ltd. MPG B550 GAMING PLUS (MS-7C56) Prozessor: AMD Ryzen 9 5900X 12-Core Processor Prozentuale Nutzung des RAM: 26% Installierter physikalischer RAM: 32693.39 MB Verfügbarer physikalischer RAM: 24056.92 MB Summe virtueller Speicher: 37557.39 MB Verfügbarer virtueller Speicher: 26113.18 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:929.92 GB) (Free:728.77 GB) (Model: Samsung SSD 860 EVO M.2 1TB) NTFS Drive d: (Volume) (Fixed) (Total:1863.02 GB) (Free:355.07 GB) (Model: Samsung SSD 870 QVO 2TB) NTFS Drive e: (Volume) (Fixed) (Total:3726.02 GB) (Free:3509.75 GB) (Model: ST4000VN008-2DR166) NTFS \\?\Volume{6169946c-c0eb-46a4-8b02-9f07868e7288}\ (Recovery) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS \\?\Volume{77b40c68-821c-43e5-8c06-4cc02e91b91b}\ (EFI) (Fixed) (Total:0.97 GB) (Free:0.95 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ========================================================== Disk: 0 (Size: 1863 GB) (Disk ID: 64E0324B) Partition: GPT. ========================================================== Disk: 1 (Size: 3726 GB) (Disk ID: 64E0328D) Partition: GPT. ========================================================== Disk: 2 (Size: 931.5 GB) (Disk ID: 64E030AE) Partition: GPT. ==================== Ende von Addition.txt ======================= |
23.08.2023, 17:31 | #3 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Wieder Meldungen.... Dann geh doch endlich mal weg von Chrome und nimm Firefox. Den ausstatten mit uBlock Origin und am besten noch NoScript.
__________________
__________________ |
25.08.2023, 05:02 | #4 |
Gesperrt | Wieder Meldungen.... Danke dir. Ich muss Chrome leider von der Arbeit aus nutzen. Ich finde Firefox auch wesentlich besser. Ist denn etwas an Malware ersichtlich? Also alles OK? Danke! Ich deute das mal so, dass alles OK ist. Danke euch. |
06.09.2023, 15:51 | #5 |
/// TB-Ausbilder | Wieder Meldungen.... Dieses Thema scheint erledigt und wird aus unseren Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke uns bitte eine Erinnerung inklusive Link zum Thema. Jeder andere bitte hier klicken und ein eigenes Thema erstellen. |
Themen zu Wieder Meldungen.... |
administrator, adobe, defender, geforce, home, internet, langsam, microsoft, mozilla, nvidia, opera, ordner, pdf, performance, prozesse, registry, rundll, scan, services.exe, software, svchost.exe, system, temp, updates, windows |