|
Log-Analyse und Auswertung: Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht behebenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
02.01.2024, 13:47 | #1 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Frohes Neues Jahr! Seid gestern meldet mein Windows Defender zwei aktuelle Bedrohungen, die sich nicht beheben lassen. Die beiden Dateien, auf die sich die Bedrohungen beziehen, habe ich manuell gelöscht, aber der Fehler bleibt. Es folgen die Logs von FRST, AdwCleaner und Malwarebytes FRST-Log Teil 1 von 2: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 01.01.2024 durchgeführt von Win7Admin (Administrator) auf LOCUTUS (Gigabyte Technology Co., Ltd. Z390 M GAMING) (02-01-2024 13:16:11) Gestartet von C:\Users\Win7Admin\Desktop\FRST64.exe Geladene Profile: Win7Admin Plattform: Microsoft Windows 11 Pro Version 22H2 22621.2861 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: FF Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\1.3.817.1\DropboxCrashHandler.exe (C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe ->) (Gigabyte Technology CO., LTD.) [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\Smart TimeLock\AlarmClock.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-ui.exe ->) (Synology Inc. -> Synology Inc.) C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-connect.exe (C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-ui.exe ->) (Synology Inc. -> Synology Inc.) C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-daemon.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (explorer.exe ->) (Kenneth Skovhede -> Duplicati Team) C:\Program Files\Duplicati 2\Duplicati.GUI.TrayIcon.exe <2> (explorer.exe ->) (O&O Software GmbH -> O&O Software GmbH) C:\Program Files\OO Software\DiskImage\ooditray.exe (explorer.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe (explorer.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <14> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (ROCCAT GmbH) [Datei ist nicht signiert] C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.exe (services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\avmwlanstick\AvmSwitchUsb.exe (services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Belkin\F7D4101\V1\wlansrv.exe (services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\No-IP\ducservice.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\System32\PnkBstrA.exe (services.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> Microsoft) C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe (services.exe ->) (Gigabyte Technology CO., LTD.) [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel Corporation) [Datei ist nicht signiert] C:\Windows\System32\IPROSetMonitor.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (services.exe ->) (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_866484083fc526af\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (O&O Software GmbH -> O&O Software GmbH) C:\Program Files\OO Software\DiskImage\oodiag.exe (services.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (services.exe ->) (Synology Inc. -> ) C:\Program Files (x86)\Synology\SynologyDrive\bin\vss-service-x64.exe (services.exe ->) (TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (svchost.exe ->) (ENTER S.R.L. -> Enter Srl) C:\Program Files (x86)\Iperius Backup\Iperius.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SecHealthUI_1000.22621.1.0_x64__8wekyb3d8bbwe\SecHealthUI.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vdsldr.exe (svchost.exe ->) (Paragon Software GmbH -> Paragon Software) C:\Program Files\Paragon Software\Backup and Recovery 17 Free\program\hdmengine_scriptsapp.exe <2> (Synology Inc. -> Synology Inc.) C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-ui.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17361016 2016-12-20] (Logitech Inc -> Logitech Inc.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [856288 2019-10-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319520 2018-07-30] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [11859680 2023-11-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) HKLM\...\Run: [OODITRAY.EXE] => C:\Program Files\OO Software\DiskImage\ooditray.exe [8479088 2021-06-18] (O&O Software GmbH -> O&O Software GmbH) HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [445800 2021-10-08] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [162856 2013-06-10] (Geek Software GmbH -> Geek Software GmbH) HKLM-x32\...\Run: [RoccatKonePure] => C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\KonePureMonitor.EXE [561152 2013-10-22] (ROCCAT GmbH) [Datei ist nicht signiert] HKLM-x32\...\Run: [FireStormStartUpAutoRun] => C:\Program Files (x86)\ZotacFireStorm\FireStorm.exe [24278016 2015-03-11] (PC Partner Co.Ltd) [Datei ist nicht signiert] HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11561184 2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [1034240 2016-02-18] (Cisco Systems, Inc. -> Cisco Systems, Inc.) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1151872 2016-11-18] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [tsnp2uvc] => C:\WINDOWS\tsnp2uvc.exe [241664 2008-10-21] () [Datei ist nicht signiert] HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATISFE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\Run: [EPLTarget\P0000000000000001] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATISFE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\Run: [EpicGamesLauncher] => D:\Spiele\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37180368 2023-12-22] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\Run: [MicrosoftEdgeAutoLaunch_026F961320B9BD2080D79BBD1DC052BF] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3854280 2023-12-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\Run: [EPSDNMON] => C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE [350032 2022-07-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [Dropbox Update] => C:\Users\Locutus\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-22] (Dropbox, Inc -> Dropbox, Inc.) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [C2FF17C2C8DEA46B3B4824BAD19A727A37BD828F._service_run] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --type=service /prefetch:8 [3854280 2023-12-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Locutus\AppData\Local\WebEx\ciscowebexstart.exe [4932432 2021-10-22] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [EPSDNMON] => C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE [350032 2022-07-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATISFE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATISFE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [Iperius Backup] => C:\Program Files (x86)\Iperius Backup\Iperius.exe [90826752 2023-01-13] (ENTER S.R.L. -> Enter Srl) HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Run: [MicrosoftEdgeAutoLaunch_3EBF720B499346D34CDD40D2FC0C3B84] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3854280 2023-12-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1660700513-2118892591-3807124189-1002\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATISFE.EXE [418736 2019-08-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM\...\Windows x64\Print Processors\BJ Print Processor4: C:\Windows\System32\spool\prtprocs\x64\CNBPP4.DLL [84992 2009-07-14] (CANON INC.) [Datei ist nicht signiert] HKLM\...\Windows x64\Print Processors\Canon iP3600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD99.DLL [30208 2012-08-27] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\hpzppwn7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] HKLM\...\Print\Monitors\LIDIL hpzllwn7: C:\Windows\system32\hpzllwn7.dll [51712 2009-07-14] (Microsoft Windows -> Hewlett-Packard Company) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\120.0.6099.130\Installer\chrmstp.exe [2023-12-27] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> HKLM\Software\...\Authentication\Credential Providers: [{5EF9A232-5B5B-4768-95F2-3F601FB184E3}] -> C:\Windows\system32\AutoGreenCP.dll [2019-03-22] () [Datei ist nicht signiert] HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Drive Client.lnk [2024-01-02] ShortcutTarget: Synology Drive Client.lnk -> C:\Program Files (x86)\Synology\SynologyDrive\bin\launcher.exe (Synology Inc. -> Synology Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Duplicati 2.lnk [2021-08-15] ShortcutTarget: Duplicati 2.lnk -> C:\Program Files\Duplicati 2\Duplicati.GUI.TrayIcon.exe (Kenneth Skovhede -> Duplicati Team) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2015-10-25] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Play Wireless USB Adapter Utility.lnk [2014-01-22] ShortcutTarget: Play Wireless USB Adapter Utility.lnk -> C:\Program Files (x86)\Belkin\F7D4101\V1\PBN.exe () [Datei ist nicht signiert] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WISO Mein Steuer-Sparbuch heute.lnk [2014-03-24] ShortcutTarget: WISO Mein Steuer-Sparbuch heute.lnk -> C:\Program Files (x86)\WISO\Steuersoftware 2014\mshaktuell.exe (Buhl Data Service GmbH -> ) GroupPolicy: Beschränkung ? <==== ACHTUNG Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {09936241-BF6D-49C4-B82F-D1F067B67292} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {2BB3FECE-66CB-4406-84C0-4FD5B75A9C68} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\OutOfIdle -> Keine Datei <==== ACHTUNG Task: {39FAB4C7-74F3-43CD-A1CD-6D4560F6E323} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\OnIdle -> Keine Datei <==== ACHTUNG Task: {3F27E72D-DCAE-4876-9D8F-AF88715507FC} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {4B78D084-E1BC-451C-B37F-72869E3603AB} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {612BE055-4CD2-4BC7-81B3-D9C3C5546D75} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {6AB42A97-6F6D-4DD0-A572-A359A6F3F6BC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {9A7CDFB8-2237-431A-ACCE-8CAF410AE7E7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {9C90EE02-1DBB-49E1-8BF1-2E1A5A515702} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG Task: {A85040C7-6395-4BDE-B4FE-AB7049A5D687} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {B50F6070-2666-4FD9-9415-7CED0D1530F2} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Time -> Keine Datei <==== ACHTUNG Task: {C02DA506-7A10-411F-8816-BDAE0DBFB398} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {C0CBFF7E-954C-40C9-81D9-BEDD08718041} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {E4E942BA-6159-441D-906F-9E677495F265} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\RunCampaignManager2 -> Keine Datei <==== ACHTUNG Task: {ECA8A209-F77B-4C57-9D76-99C0F2D7AD45} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Unlock -> Keine Datei <==== ACHTUNG Task: {EE7031FD-D7B7-4EF6-A6DD-5FBAB41644DA} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Logon -> Keine Datei <==== ACHTUNG Task: {EE7FB4AB-1CAB-4EA3-9D80-5822A22AAE94} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG Task: {F977AB27-B7CC-44F3-83D6-26E2CBB8EE54} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Keine Datei <==== ACHTUNG Task: {FE236773-DE84-4B15-BEE7-478A5DFF470D} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {AC4C8BD2-8707-4B67-9B4B-5D498A924721} - System32\Tasks\{626D9EDA-EB30-47F5-A710-6B3C6A1F8CD5} => C:\Program Files\Microsoft Office 15\root\office15\msouc.exe (Keine Datei) Task: {68E61E74-7CFC-4C0C-B9F6-1B0C7EC1109F} - System32\Tasks\{81F04510-C76C-4696-84FC-ACA8966DA9FC} => D:\Spiele\Steam\Steam.exe [4386664 2023-12-08] (Valve Corp. -> Valve Corporation) Task: {E6779E8D-4743-4DDB-9851-52F969779107} - System32\Tasks\{E74951E7-DF59-4A2E-848E-C9314987CCEF} => C:\Program Files\Microsoft Office 15\root\office15\msouc.exe (Keine Datei) Task: {C0EB8EDA-1153-4096-B870-C0B13FA64748} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.) Task: {CCA5DE07-2C92-41A5-876A-CAC6C750BE38} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.) Task: {DC1A40FC-444B-4D57-BE7B-38FE308E7043} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe /launch (Keine Datei) Task: {5B79F9DE-91F7-43C5-B140-8E4D8BA814CF} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) Task: {FCE1F924-3933-407C-8CA8-FD4FAC278210} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) Task: {4EFC8B94-FD53-438B-BDE0-DF04052D9990} - System32\Tasks\EasyTune => C:\Program Files (x86)\GIGABYTE\EasyTune\etinit.exe [15792 2018-08-07] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) Task: {58E138A8-30EE-4FC2-8450-DC1BB248FE20} - System32\Tasks\EasyTune 1 => C:\Program Files (x86)\GIGABYTE\EasyTune\etocfile.exe [18352 2018-08-07] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) Task: {DF2B1E8A-C8D0-460A-8894-79F2123F868E} - System32\Tasks\EPSON ET-3750 Series Update {3A9BD2A9-F754-4ED5-BC8C-A1C171F87B9A} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSSFE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {3EF60697-EE6E-4957-81F0-B42C61B67F0C} - System32\Tasks\EPSON ET-3750 Series Update {FEE18488-3992-47A4-A66D-EA44A3180DE2} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSSFE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {C74666C5-5066-44C6-9D8C-BDB96453242A} - System32\Tasks\G2MUpdateTask-S-1-5-21-1660700513-2118892591-3807124189-1001 => C:\Users\Locutus\AppData\Local\GoToMeeting\19950\g2mupdate.exe [33456 2022-04-26] (LogMeIn, Inc. -> LogMeIn, Inc.) Task: {043FEAD4-3353-4BDA-BAC8-1051FFF1E4B9} - System32\Tasks\G2MUploadTask-S-1-5-21-1660700513-2118892591-3807124189-1001 => C:\Users\Locutus\AppData\Local\GoToMeeting\19950\g2mupload.exe [33456 2022-04-26] (LogMeIn, Inc. -> LogMeIn, Inc.) Task: {441E71FB-3617-48A6-9B43-DF950B63C495} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-14] (Google Inc -> Google Inc.) Task: {D9EF2E3D-83BC-4C8E-A981-01AA4B793C79} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-10-14] (Google Inc -> Google Inc.) Task: {661C0E78-610B-4977-9FB3-E7F3584D7FC6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /f (Keine Datei) Task: {90D38805-20A7-490A-9996-80A177232654} - System32\Tasks\Iperius Backup Startup at Logon => C:\Program Files (x86)\Iperius Backup\Iperius.exe [90826752 2023-01-13] (ENTER S.R.L. -> Enter Srl) Task: {DF7D7152-3FFC-441A-BEA6-EC7190661B5F} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation) Task: {22939B67-E468-47C0-990F-A2C2BDF256BD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28175440 2024-01-02] (Microsoft Corporation -> Microsoft Corporation) Task: {87329582-FC75-4A25-8611-9FD305C8D179} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28175440 2024-01-02] (Microsoft Corporation -> Microsoft Corporation) Task: {8DA7BFFB-768E-4BE5-8A9C-4D5C11CE41FB} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [218048 2024-01-02] (Microsoft Corporation -> Microsoft Corporation) Task: {C93B2064-0FF4-499E-AC5F-F6155048AC58} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [218048 2024-01-02] (Microsoft Corporation -> Microsoft Corporation) Task: {6B863CA8-F3A2-4700-A685-C14A0D2A406A} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch (Keine Datei) Task: {BF783AC3-B428-47AD-9E66-701930878C54} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (Keine Datei) Task: {E1E47E40-1940-4496-8F9C-D10D51B5BA2C} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (Keine Datei) Task: {94EE4ADF-79F0-4DE6-845C-C4A486552A09} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe /DRMInit (Keine Datei) Task: {90F15404-DB56-4D67-B2FF-18741CCCE202} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (Keine Datei) Task: {E143BF6D-9B4C-4FBA-A160-2024E5DAB7DF} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate $(Arg0) (Keine Datei) Task: {B19D5847-88EF-41BF-B309-49A5940EB813} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15 (Keine Datei) Task: {5566F434-EBFE-456E-A510-2D761E189511} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask (Keine Datei) Task: {ECC24CB6-CDFA-4EA3-8FD5-1846F975EB5F} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask (Keine Datei) Task: {2CEB173D-CCB9-4FED-8570-95DB535180E0} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate (Keine Datei) Task: {A2378764-1528-410E-B370-4F2B7467059B} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (Keine Datei) Task: {5DF48AEA-12C9-4FD5-A00B-5C0B7DCBD7DE} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery (Keine Datei) Task: {5E03A2D4-630D-4617-87FC-09EF7A8AEB57} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (Keine Datei) Task: {83D9F7ED-D65F-4F85-8453-4C233815BF60} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (Keine Datei) Task: {1829FB82-BFAF-4492-AB94-CBF006C87634} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe -pscn 0 (Keine Datei) Task: {627EF556-C5CE-44B4-99D7-8D548DAD1361} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask (Keine Datei) Task: {25880166-68BA-40EE-ABE5-84106C520CAA} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe -PvrSchedule (Keine Datei) Task: {278867EB-C35A-440D-BF98-4905B926685F} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec /RestartRecording (Keine Datei) Task: {5B77DCF1-6997-4F6E-BE89-DAC8DF6FD94F} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (Keine Datei) Task: {1E08588A-1D1E-46FB-ABA6-A660C97BA0CE} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot (Keine Datei) Task: {BF785EB7-7825-4FBA-88D5-E432E407010F} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask (Keine Datei) Task: {F201AD9F-481D-4FFB-AB76-CB5982EF9ACC} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => %SystemRoot%\ehome\ehrec /StartRecording (Keine Datei) Task: {37116F3F-C44D-45E0-87E9-C918FEDCB0D6} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (Keine Datei) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Keine Datei) Task: {9BD90033-576F-4D7A-B85C-1375FDA4A0F7} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {519F412E-4473-4480-A35F-35CCAE1D8C5B} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {EFBCDCC4-9CF0-4A39-85F6-6FBB77978497} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {6B3773B3-84DA-4FE8-8355-A7ABC21A11D1} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {FFA4AA98-A01B-4279-8CE1-F090D2DF04D7} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe Reboot (Keine Datei) Task: {D0B0CC9E-58A2-4B06-AA4A-FB47569E3406} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (Keine Datei) Task: {B5BB259E-9BCE-44E5-BB58-168A5ACFA54D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (Keine Datei) Task: {021734FB-2752-4CA6-A72D-56A6E1880FF6} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (Keine Datei) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Keine Datei) Task: {A693E48A-E0E1-4980-8DD6-A89386029CF6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {00958742-36C3-4F6D-AFEB-5188E54CA18A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1EA90AAE-0E7B-437C-9B82-B5EE5F7E0656} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {10CEE171-1C77-4C9D-8D57-AF8661853990} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A3458294-6850-40D0-91F4-B2F0C2052AA7} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [674720 2023-12-22] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {721C64CE-5619-4939-B09C-8E240585EECD} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [35232 2023-12-22] (Mozilla Corporation -> Mozilla Foundation) Task: {30350DC4-8A8D-4356-9E2F-DFF1F42BF09C} - System32\Tasks\Mozilla\Firefox Default Browser Agent 80FC072F9FE5981D => C:\Users\Katja *******\AppData\Local\Mozilla Firefox\default-browser-agent.exe [35232 2023-12-04] (Mozilla Corporation -> Mozilla Foundation) Task: {8F058258-6BFB-42F0-B38D-D75EFB3DA754} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1005096 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {F331CA3A-73AE-4FBC-9891-11CFE891B6D1} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3345448 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9D8F9D22-2E7D-41D7-A502-F9AE17587EF1} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4D144FF6-157F-48C5-9297-FAD1F611FEB8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3CEFE9B0-C3C9-4CB8-8BC3-CA01423F533C} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {96DD0A22-C4EE-4537-A8E8-B4E56E79F0F0} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E99BE7E1-1610-45F9-B530-76D9E40CB235} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {35DF547C-7985-4A83-A541-21D1B00D3FDB} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4681065E-11E9-42A3-87C7-00981B79AFAC} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E60ECED9-BF46-4EDC-8EE5-19F614FC6818} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1660700513-2118892591-3807124189-1001 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (Keine Datei) Task: {B6942A1F-5432-4D32-B0A8-F27E6DA4CC62} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1660700513-2118892591-3807124189-1002 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (Keine Datei) Task: {C0BC6609-57F0-43C2-9E09-33EE80A624B9} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1660700513-2118892591-3807124189-1001 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Keine Datei) Task: {8B05A681-1047-407E-9BE3-46011CBA4621} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1660700513-2118892591-3807124189-1002 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Keine Datei) Task: {80DA102B-3AAD-4373-B7BD-2D6D6FE65A8B} - System32\Tasks\Paragon Auftrag (Laufwerks- oder Dateisicherung) - {332f05ce-0ac5-45ac-9bb6-5e864378b135} => C:\Program Files\Paragon Software\Backup and Recovery 17 Free\program\hdmengine_scriptsapp.exe [3283208 2018-09-06] (Paragon Software GmbH -> Paragon Software) Task: {B48256EC-38AD-4AD4-B833-4C48C2F35CA1} - System32\Tasks\Paragon Auftrag (Laufwerks- oder Dateisicherung) - {39184d82-1eeb-471c-adfe-2e73b869bb79} => C:\Program Files\Paragon Software\Backup and Recovery 17 Free\program\hdmengine_scriptsapp.exe [3283208 2018-09-06] (Paragon Software GmbH -> Paragon Software) Task: {09F0378D-2562-4BC7-9729-6C78828A2202} - System32\Tasks\Paragon Auftrag (Laufwerks- oder Dateisicherung) - {bfca0047-79a7-4d48-a280-54322d1c1d3a} => C:\Program Files\Paragon Software\Backup and Recovery 17 Free\program\hdmengine_scriptsapp.exe [3283208 2018-09-06] (Paragon Software GmbH -> Paragon Software) Task: {744B6F1B-1B59-4320-A959-B83E2267000D} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe /startHidingGadgets (Keine Datei) Task: {6F08F186-EC1A-436A-92F5-B41595B00179} - System32\Tasks\SmartSurvey => C:\Program Files (x86)\GIGABYTE\SmartSurvey\GbtCareBotCmd.exe [139696 2018-05-22] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) Task: {D222C6E0-4EF8-4BD6-A677-066FDD8431A4} - System32\Tasks\SynologyDrive => C:\Program Files (x86)\Synology\SynologyDrive\bin\launcher.exe [1974144 2022-11-16] (Synology Inc. -> Synology Inc.) Task: {29603E11-5268-4C4F-8335-FDAB63D41553} - System32\Tasks\ViGEmBusUpdater => C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\ViGEmBusUpdater.exe [888344 2019-12-28] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1660700513-2118892591-3807124189-1001Core1d0df4677364444.job => C:\Users\Locutus\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\EPSON ET-3750 Series Update {3A9BD2A9-F754-4ED5-BC8C-A1C171F87B9A}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSSFE.EXE:/EXE:{3A9BD2A9-F754-4ED5-BC8C-A1C171F87B9A} /F:UpdateWORKGROUP\LOCUTUS$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON ET-3750 Series Update {FEE18488-3992-47A4-A66D-EA44A3180DE2}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSSFE.EXE:/EXE:{FEE18488-3992-47A4-A66D-EA44A3180DE2} /F:UpdateWORKGROUP\LOCUTUS$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1660700513-2118892591-3807124189-1001.job => C:\Users\Locutus\AppData\Local\GoToMeeting\19950\g2mupdate.exe Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-1660700513-2118892591-3807124189-1001.job => C:\Users\Locutus\AppData\Local\GoToMeeting\19950\g2mupload.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{04074625-403f-4651-983e-71dc729836e1}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{0734a357-7c18-4daf-a63e-61f6a753d96d}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{0734a357-7c18-4daf-a63e-61f6a753d96d}: [DhcpDomain] fritz.box Tcpip\..\Interfaces\{623d394e-16d4-44c6-96bd-1da8579b10af}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{e9658fe0-f86a-4e57-bb11-3be30c2b19a5}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{f49e4d80-9771-46fb-8c9f-b67f3d918bb8}: [DhcpNameServer] 192.168.178.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Win7Admin\AppData\Local\Microsoft\Edge\User Data\Default [2024-01-02] Edge Extension: (Google Docs Offline) - C:\Users\Win7Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-02] Edge Extension: (Edge relevant text changes) - C:\Users\Win7Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-02] FireFox: ======== FF DefaultProfile: utpdapg1.default FF DefaultProfile: mtdm9bvj.default FF ProfilePath: C:\Users\Win7Admin\AppData\Roaming\Mozilla\Firefox\Profiles\utpdapg1.default [2024-01-02] FF ProfilePath: C:\Users\Win7Admin\AppData\Roaming\Mozilla\Firefox\Profiles\4c9ucv0x.default-release [2024-01-02] FF ProfilePath: C:\Users\Win7Admin\AppData\Roaming\CLIQZ\Profiles\mtdm9bvj.default [2022-01-16] FF ProfilePath: C:\Users\Win7Admin\AppData\Roaming\CLIQZ\Profiles\fltep1b2.default-release [2022-01-16] FF Homepage: CLIQZ\Profiles\fltep1b2.default-release -> moz-extension://783cdba9-667e-4c00-a96d-a522fa725b7c/modules/freshtab/home.html FF HomepageOverride: CLIQZ\Profiles\fltep1b2.default-release -> Enabled: cliqz@cliqz.com FF NewTabOverride: CLIQZ\Profiles\fltep1b2.default-release -> Enabled: cliqz@cliqz.com FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [2015-04-30] (Electronic Arts -> EA Digital Illusions CE AB) FF Plugin: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-11-05] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1221171.dll [2015-10-19] (Adobe Systems, Inc.) [Datei ist nicht signiert] FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (Electronic Arts -> EA Digital Illusions CE AB) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google Inc -> Google) FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> D:\Spiele\Arc\plugins\npArcPluginFF.dll [2017-08-03] (Perfect World Entertainment, Inc. -> Perfect World Entertainment Inc) FF Plugin HKU\S-1-5-21-1660700513-2118892591-3807124189-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Win7Admin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-01-08] (Unity Technologies ApS -> Unity Technologies ApS) FF Plugin HKU\S-1-5-21-1660700513-2118892591-3807124189-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2015-08-17] (Ubisoft Entertainment Sweden AB -> ) FF Plugin HKU\S-1-5-21-1660700513-2118892591-3807124189-1001: SkypeForBusinessPlugin-16.2 -> C:\Users\Locutus\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-1660700513-2118892591-3807124189-1001: SkypeForBusinessPlugin64-16.2 -> C:\Users\Locutus\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi-x64.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-1660700513-2118892591-3807124189-1002: SkypeForBusinessPlugin-16.2 -> C:\Users\Katja *******\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-1660700513-2118892591-3807124189-1002: SkypeForBusinessPlugin64-16.2 -> C:\Users\Katja *******\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi-x64.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default [2022-02-01] CHR Extension: (Docs) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-20] CHR Extension: (Google Drive) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-01-16] CHR Extension: (YouTube) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-18] CHR Extension: (Google-Suche) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-21] CHR Extension: (Adobe Acrobat) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-02-01] CHR Extension: (Avira Browserschutz) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2022-02-01] CHR Extension: (Google Docs Offline) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-01] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-16] CHR Extension: (Google Mail) - C:\Users\Win7Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-01-16] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-1660700513-2118892591-3807124189-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.) S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] (Giga-Byte Technology -> ) S3 ArcService; D:\Spiele\Arc\ArcService.exe [243176 2023-06-14] (Gearbox Publishing San Francisco Inc -> Gearbox Publishing) R2 AvmSwitchUsb; C:\Program Files (x86)\avmwlanstick\AVMSwitchUsb.exe [125440 2015-10-01] () [Datei ist nicht signiert] S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-06-15] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13233744 2023-12-05] (Microsoft Corporation -> Microsoft Corporation) S4 CliqzMaintenance; C:\Program Files (x86)\Cliqz Maintenance Service\maintenanceservice.exe [248128 2020-07-23] (Cliqz GmbH -> Cliqz GmbH) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46824 2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11593320 2023-05-17] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-11-24] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [954704 2023-12-28] (EasyAntiCheat Oy -> Epic Games, Inc.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029472 2021-11-05] (Epic Games Inc. -> Epic Games, Inc.) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [145224 2018-04-09] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342240 2015-08-17] (FUTUREMARK INC -> Futuremark) S2 GbtCareBotService; C:\Program Files (x86)\GIGABYTE\SmartSurvey\GbtCareBotService.exe [138160 2018-05-22] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R2 Gservice; C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe [19888 2016-12-02] (GIGA-BYTE TECHNOLOGY CO., LTD. -> Microsoft) R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [Datei ist nicht signiert] R2 Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [505856 2018-05-02] (Intel Corporation) [Datei ist nicht signiert] R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [14280 2019-12-06] (Microsoft Corporation -> Microsoft Corporation) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2016-12-20] (Logitech Inc -> Logitech Inc.) R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [13004248 2023-11-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [9343840 2023-12-03] (Malwarebytes Inc. -> Malwarebytes) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert] R2 NoIPDUCService4; C:\Program Files (x86)\No-IP\ducservice.exe [12288 2015-07-20] () [Datei ist nicht signiert] R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_866484083fc526af\Display.NvContainer\NVDisplay.Container.exe [1274992 2023-12-08] (NVIDIA Corporation -> NVIDIA Corporation) R2 OO DiskImage; C:\Program Files\OO Software\DiskImage\oodiag.exe [10454384 2021-06-18] (O&O Software GmbH -> O&O Software GmbH) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert] R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-09-12] (Even Balance, Inc. -> ) S4 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2017-01-06] (CyberLink Corp. -> CyberLink) S3 Rockstar Service; D:\Rockstar Games\Launcher\RockstarService.exe [2199024 2023-05-20] (Rockstar Games, Inc. -> Rockstar Games) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534592 2024-01-02] (Microsoft Windows Publisher -> Microsoft Corporation) R2 Smart TimeLock; C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe [102400 2013-02-22] (Gigabyte Technology CO., LTD.) [Datei ist nicht signiert] S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 Synology Drive VSS Service x64; C:\Program Files (x86)\Synology\SynologyDrive\bin\vss-service-x64.exe [360320 2022-11-16] (Synology Inc. -> ) S3 ViGEmBusUpdater; C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\ViGEmBusUpdater.exe [888344 2019-12-28] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WLANBelkinService; C:\Program Files (x86)\Belkin\F7D4101\V1\wlansrv.exe [36864 2009-12-28] () [Datei ist nicht signiert] ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) S3 artrht; C:\WINDOWS\system32\drivers\artrht64.sys [34816 2015-11-03] (Creative Technology Ltd.) [Datei ist nicht signiert] S3 AthDfu; C:\WINDOWS\System32\Drivers\AthDfu.sys [55336 2012-08-22] (Atheros Communications Inc. -> Windows (R) Win 7 DDK provider) S3 avmeject; C:\WINDOWS\System32\drivers\avmeject.sys [14120 2015-10-01] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin) R3 BioNTDrv; C:\Program Files\Paragon Software\Backup and Recovery 17 Free\program\BioNTDrv.SYS [38192 2018-01-31] (Paragon Software GmbH -> Paragon Software GmbH) S3 camdrv42; C:\WINDOWS\System32\drivers\camdrv42.sys [1533952 2007-05-04] (Microsoft Windows Hardware Compatibility Publisher -> ) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 gdrv; C:\Windows\gdrv.sys [26792 2019-03-22] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) S3 gdrv2; C:\Windows\gdrv2.sys [32720 2019-03-22] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech) S3 LGJoyHidFilter; C:\WINDOWS\system32\drivers\LGJoyHidFilter.sys [57368 2016-12-20] (Logitech Inc -> Logitech Inc.) S3 LGJoyHidLo; C:\WINDOWS\system32\drivers\LGJoyHidLo.sys [47256 2016-12-20] (Logitech Inc -> Logitech Inc.) R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2016-12-20] (Logitech Inc -> Logitech Inc.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222784 2024-01-02] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-10-15] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2023-12-20] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S3 MpKsl3f3178fb; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{8D8DCAF6-AA3C-4A5D-A9A6-A3942AD30CC8}\MpKslDrv.sys [263560 2024-01-01] (Microsoft Windows -> Microsoft Corporation) S3 MpKsl5b2f56ed; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{93716AB8-1A69-4844-B48C-9EA375DB9FA5}\MpKslDrv.sys [263560 2024-01-02] (Microsoft Windows -> Microsoft Corporation) S3 MpKsla31c63e4; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{93716AB8-1A69-4844-B48C-9EA375DB9FA5}\MpKslDrv.sys [263560 2024-01-02] (Microsoft Windows -> Microsoft Corporation) R3 MpKsle6d1d6bb; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{93716AB8-1A69-4844-B48C-9EA375DB9FA5}\MpKslDrv.sys [263560 2024-01-02] (Microsoft Windows -> Microsoft Corporation) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation) R0 oodisr; C:\WINDOWS\System32\DRIVERS\oodisr.sys [116888 2021-06-18] (O&O Software GmbH -> O&O Software GmbH) R0 oodisrh; C:\WINDOWS\System32\DRIVERS\oodisrh.sys [41112 2021-06-18] (O&O Software GmbH -> O&O Software GmbH) R0 oodivd; C:\WINDOWS\System32\DRIVERS\oodivd.sys [274424 2021-06-18] (O&O Software GmbH -> O&O Software GmbH) R0 oodivdh; C:\WINDOWS\System32\DRIVERS\oodivdh.sys [60920 2021-06-18] (O&O Software GmbH -> O&O Software GmbH) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 UimBus; C:\WINDOWS\System32\drivers\uimbus.sys [108896 2017-09-12] (Paragon Software GmbH -> Paragon Software GmbH) R1 Uim_DEVIM; C:\WINDOWS\System32\drivers\uimdevim.sys [44904 2017-09-12] (Paragon Software GmbH -> Paragon Software GmbH) S1 Uim_IM; C:\WINDOWS\System32\drivers\uim_im.sys [701232 2015-08-26] (Paragon Software GmbH -> ) S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] (GIGA-BYTE TECHNOLOGY CO., LTD. -> ) R3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [69168 2019-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) R3 vpnva; C:\WINDOWS\System32\drivers\vpnva64-6.sys [52592 2014-08-15] (Cisco Systems, Inc. -> Cisco Systems, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-12-09] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2023-12-09] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-09] (Microsoft Windows -> Microsoft Corporation) R1 WinSetupMon; C:\WINDOWS\System32\DRIVERS\WinSetupMon.sys [107928 2023-12-02] (Microsoft Windows -> Microsoft Corporation) U3 idsvc; kein ImagePath |
02.01.2024, 13:48 | #2 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben FRST-Log, Teil 2 von 2
__________________Code:
ATTFilter ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2024-01-02 13:16 - 2024-01-02 13:16 - 000060241 _____ C:\Users\Win7Admin\Desktop\FRST.txt 2024-01-02 12:48 - 2024-01-02 12:48 - 000835770 _____ C:\WINDOWS\system32\perfh007.dat 2024-01-02 12:48 - 2024-01-02 12:48 - 000184100 _____ C:\WINDOWS\system32\perfc007.dat 2024-01-02 12:45 - 2024-01-02 12:45 - 000004912 _____ C:\WINDOWS\system32\Tasks\Paragon Auftrag (Laufwerks- oder Dateisicherung) - {39184d82-1eeb-471c-adfe-2e73b869bb79} 2024-01-02 12:45 - 2024-01-02 12:45 - 000004382 _____ C:\WINDOWS\system32\Tasks\Paragon Auftrag (Laufwerks- oder Dateisicherung) - {bfca0047-79a7-4d48-a280-54322d1c1d3a} 2024-01-02 12:45 - 2024-01-02 12:45 - 000004236 _____ C:\WINDOWS\system32\Tasks\Paragon Auftrag (Laufwerks- oder Dateisicherung) - {332f05ce-0ac5-45ac-9bb6-5e864378b135} 2024-01-02 12:45 - 2024-01-02 12:45 - 000003810 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA 2024-01-02 12:45 - 2024-01-02 12:45 - 000003682 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-01-02 12:45 - 2024-01-02 12:45 - 000003586 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore 2024-01-02 12:45 - 2024-01-02 12:45 - 000003568 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2024-01-02 12:45 - 2024-01-02 12:45 - 000003488 _____ C:\WINDOWS\system32\Tasks\EPSON ET-3750 Series Update {FEE18488-3992-47A4-A66D-EA44A3180DE2} 2024-01-02 12:45 - 2024-01-02 12:45 - 000003488 _____ C:\WINDOWS\system32\Tasks\EPSON ET-3750 Series Update {3A9BD2A9-F754-4ED5-BC8C-A1C171F87B9A} 2024-01-02 12:45 - 2024-01-02 12:45 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2024-01-02 12:45 - 2024-01-02 12:45 - 000003458 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-01-02 12:45 - 2024-01-02 12:45 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000003344 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2024-01-02 12:45 - 2024-01-02 12:45 - 000003260 _____ C:\WINDOWS\system32\Tasks\G2MUploadTask-S-1-5-21-1660700513-2118892591-3807124189-1001 2024-01-02 12:45 - 2024-01-02 12:45 - 000003164 _____ C:\WINDOWS\system32\Tasks\G2MUpdateTask-S-1-5-21-1660700513-2118892591-3807124189-1001 2024-01-02 12:45 - 2024-01-02 12:45 - 000003160 _____ C:\WINDOWS\system32\Tasks\Adobe-Online-Aktualisierungsprogramm 2024-01-02 12:45 - 2024-01-02 12:45 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000003138 _____ C:\WINDOWS\system32\Tasks\Java Update Scheduler 2024-01-02 12:45 - 2024-01-02 12:45 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1660700513-2118892591-3807124189-1002 2024-01-02 12:45 - 2024-01-02 12:45 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1660700513-2118892591-3807124189-1001 2024-01-02 12:45 - 2024-01-02 12:45 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002974 _____ C:\WINDOWS\system32\Tasks\SynologyDrive 2024-01-02 12:45 - 2024-01-02 12:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002886 _____ C:\WINDOWS\system32\Tasks\ViGEmBusUpdater 2024-01-02 12:45 - 2024-01-02 12:45 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1660700513-2118892591-3807124189-1002 2024-01-02 12:45 - 2024-01-02 12:45 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1660700513-2118892591-3807124189-1001 2024-01-02 12:45 - 2024-01-02 12:45 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002668 _____ C:\WINDOWS\system32\Tasks\EasyTune 1 2024-01-02 12:45 - 2024-01-02 12:45 - 000002654 _____ C:\WINDOWS\system32\Tasks\SmartSurvey 2024-01-02 12:45 - 2024-01-02 12:45 - 000002568 _____ C:\WINDOWS\system32\Tasks\EasyTune 2024-01-02 12:45 - 2024-01-02 12:45 - 000002538 _____ C:\WINDOWS\system32\Tasks\CreateChoiceProcessTask 2024-01-02 12:45 - 2024-01-02 12:45 - 000002520 _____ C:\WINDOWS\system32\Tasks\Iperius Backup Startup at Logon 2024-01-02 12:45 - 2024-01-02 12:45 - 000002178 _____ C:\WINDOWS\system32\Tasks\SidebarExecute 2024-01-02 12:45 - 2024-01-02 12:45 - 000002136 _____ C:\WINDOWS\system32\Tasks\{E74951E7-DF59-4A2E-848E-C9314987CCEF} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002136 _____ C:\WINDOWS\system32\Tasks\{626D9EDA-EB30-47F5-A710-6B3C6A1F8CD5} 2024-01-02 12:45 - 2024-01-02 12:45 - 000002126 _____ C:\WINDOWS\system32\Tasks\{81F04510-C76C-4696-84FC-ACA8966DA9FC} 2024-01-02 12:45 - 2024-01-02 12:45 - 000000446 __RSH C:\ProgramData\ntuser.pol 2024-01-02 12:45 - 2024-01-02 12:45 - 000000020 ___SH C:\Users\Win7Admin\ntuser.ini 2024-01-02 12:45 - 2024-01-02 12:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-01-02 12:45 - 2024-01-02 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\WPD 2024-01-02 12:45 - 2024-01-02 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Safer-Networking 2024-01-02 12:45 - 2024-01-02 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\OfficeSoftwareProtectionPlatform 2024-01-02 12:45 - 2024-01-02 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2024-01-02 12:45 - 2024-01-02 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard 2024-01-02 12:45 - 2024-01-02 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2024-01-02 12:45 - 2024-01-02 12:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Abelssoft 2024-01-02 12:44 - 2024-01-02 12:45 - 000040008 _____ C:\WINDOWS\diagwrn.xml 2024-01-02 12:44 - 2024-01-02 12:45 - 000040008 _____ C:\WINDOWS\diagerr.xml 2024-01-02 12:43 - 2024-01-02 12:48 - 001979294 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-01-02 12:42 - 2024-01-02 12:42 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Network 2024-01-02 12:42 - 2024-01-02 12:42 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2024-01-02 12:42 - 2024-01-02 12:42 - 000000000 ____D C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Network 2024-01-02 12:42 - 2024-01-02 12:42 - 000000000 ____D C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Network 2024-01-02 12:41 - 2024-01-02 12:41 - 000000000 ____D C:\WINDOWS\LastGood 2024-01-02 12:40 - 2024-01-02 12:40 - 000000000 ____D C:\WINDOWS\system32\config\BFS 2024-01-02 12:39 - 2024-01-02 12:45 - 000000000 ____D C:\Windows.old 2024-01-02 12:39 - 2024-01-02 12:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-01-02 12:39 - 2024-01-02 12:39 - 000372752 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-01-02 12:26 - 2024-01-02 12:39 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Microsoft\Crypto 2024-01-02 12:26 - 2024-01-02 12:26 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Microsoft\SystemCertificates 2024-01-02 12:26 - 2024-01-02 12:26 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Microsoft\Network 2024-01-02 12:25 - 2024-01-02 12:39 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Crypto 2024-01-02 12:25 - 2024-01-02 12:25 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\SystemCertificates 2024-01-02 12:25 - 2024-01-02 12:25 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Network 2024-01-02 12:24 - 2024-01-02 12:39 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Crypto 2024-01-02 12:24 - 2024-01-02 12:24 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\SystemCertificates 2024-01-02 12:24 - 2024-01-02 12:24 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Network 2024-01-02 12:09 - 2024-01-02 12:39 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2024-01-02 12:09 - 2024-01-02 12:09 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines 2024-01-02 12:06 - 2024-01-02 12:06 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\CLR Security Config 2024-01-02 12:05 - 2024-01-02 12:05 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\CLR Security Config 2024-01-02 12:04 - 2024-01-02 12:47 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows 2024-01-02 12:04 - 2024-01-02 12:46 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Spelling 2024-01-02 12:04 - 2024-01-02 12:45 - 000000000 ____D C:\Users\Win7Admin 2024-01-02 12:04 - 2024-01-02 12:42 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows 2024-01-02 12:04 - 2024-01-02 12:42 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Microsoft\Windows 2024-01-02 12:04 - 2024-01-02 12:42 - 000000000 ____D C:\Users\DefaultAppPool 2024-01-02 12:04 - 2024-01-02 12:42 - 000000000 ____D C:\Users\.NET v4.5 Classic 2024-01-02 12:04 - 2024-01-02 12:42 - 000000000 ____D C:\Users\.NET v4.5 2024-01-02 12:04 - 2024-01-02 12:39 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Spelling 2024-01-02 12:04 - 2024-01-02 12:39 - 000000000 ____D C:\Users\Locutus 2024-01-02 12:04 - 2024-01-02 12:39 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Microsoft\Spelling 2024-01-02 12:04 - 2024-01-02 12:39 - 000000000 ____D C:\Users\Katja ******* 2024-01-02 12:04 - 2024-01-02 12:07 - 000000000 ____D C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Windows 2024-01-02 12:04 - 2024-01-02 12:06 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows 2024-01-02 12:04 - 2024-01-02 12:05 - 000000000 ____D C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Windows 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Vorlagen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Startmenü 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Netzwerkumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Lokale Einstellungen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Eigene Dateien 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Druckumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Documents\Eigene Videos 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Documents\Eigene Musik 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Documents\Eigene Bilder 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\AppData\Local\Verlauf 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\AppData\Local\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Win7Admin\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Vorlagen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Startmenü 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Netzwerkumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Lokale Einstellungen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Eigene Dateien 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Druckumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Documents\Eigene Videos 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Documents\Eigene Musik 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Documents\Eigene Bilder 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\AppData\Local\Verlauf 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\AppData\Local\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Locutus\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Vorlagen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Startmenü 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Netzwerkumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Lokale Einstellungen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Eigene Dateien 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Druckumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Documents\Eigene Videos 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Documents\Eigene Musik 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Documents\Eigene Bilder 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\AppData\Local\Verlauf 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\AppData\Local\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\Katja *******\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Vorlagen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Startmenü 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Lokale Einstellungen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Eigene Dateien 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Videos 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\DefaultAppPool\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Vorlagen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Startmenü 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Netzwerkumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Lokale Einstellungen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Eigene Dateien 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Druckumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Documents\Eigene Videos 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Documents\Eigene Musik 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Documents\Eigene Bilder 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Verlauf 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Vorlagen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Startmenü 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Netzwerkumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Lokale Einstellungen 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Eigene Dateien 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Druckumgebung 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Eigene Videos 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Eigene Musik 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Eigene Bilder 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Verlauf 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Anwendungsdaten 2024-01-02 12:04 - 2024-01-02 12:04 - 000000000 _SHDL C:\Users\.NET v4.5 Classic\Anwendungsdaten 2024-01-02 12:04 - 2022-05-07 06:24 - 000000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Spelling 2024-01-02 12:04 - 2022-05-07 06:24 - 000000000 ____D C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Spelling 2024-01-02 12:04 - 2022-05-07 06:24 - 000000000 ____D C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Spelling 2024-01-02 12:03 - 2024-01-02 12:03 - 000000000 ____D C:\WINDOWS\system32\Samsung 2024-01-02 12:02 - 2024-01-02 12:09 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2024-01-02 12:00 - 2024-01-02 12:00 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2024-01-02 12:00 - 2024-01-02 12:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\mde 2024-01-02 11:56 - 2024-01-02 11:56 - 000060462 _____ C:\WINDOWS\SysWOW64\ctac.json 2024-01-02 11:55 - 2024-01-02 11:55 - 000060462 _____ C:\WINDOWS\system32\ctac.json 2024-01-02 11:55 - 2024-01-02 11:55 - 000016240 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2024-01-02 11:52 - 2024-01-02 11:52 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2024-01-02 11:52 - 2024-01-02 11:52 - 000000000 ____D C:\WINDOWS\system32\msmq 2024-01-02 11:52 - 2024-01-02 11:52 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2024-01-02 11:52 - 2024-01-02 11:52 - 000000000 ____D C:\inetpub 2024-01-02 11:51 - 2024-01-02 11:51 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2024-01-02 11:51 - 2024-01-02 11:51 - 000000000 ____D C:\Program Files\Reference Assemblies 2024-01-02 11:51 - 2024-01-02 11:51 - 000000000 ____D C:\Program Files\MSBuild 2024-01-02 11:51 - 2024-01-02 11:51 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2024-01-02 11:51 - 2024-01-02 11:51 - 000000000 ____D C:\Program Files (x86)\MSBuild 2024-01-02 11:50 - 2024-01-02 11:50 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2024-01-02 11:50 - 2024-01-02 11:50 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2024-01-02 11:50 - 2024-01-02 11:50 - 000000000 ____D C:\WINDOWS\addins 2024-01-02 11:38 - 2024-01-02 11:38 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2024-01-02 11:30 - 2024-01-02 11:36 - 000000015 _____ C:\Users\Win7Admin\Desktop\Neues Textdokument.txt 2024-01-02 11:21 - 2024-01-02 11:21 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\com.adobe.dunamis 2024-01-02 11:21 - 2024-01-02 11:21 - 000000000 ____D C:\Users\Win7Admin\.ms-ad 2024-01-02 11:17 - 2024-01-02 11:17 - 000000000 ____D C:\Users\Win7Admin\AppData\Local\Mozilla 2024-01-02 11:16 - 2024-01-02 12:45 - 000000000 ___DC C:\WINDOWS\Panther 2024-01-02 11:16 - 2024-01-02 10:58 - 008791352 _____ (Malwarebytes) C:\Users\Win7Admin\Desktop\adwcleaner.exe 2024-01-02 11:16 - 2024-01-02 10:54 - 002387456 _____ (Farbar) C:\Users\Win7Admin\Desktop\FRST64.exe 2024-01-02 11:08 - 2024-01-02 12:46 - 000000000 ____D C:\Users\Win7Admin\AppData\Local\Malwarebytes 2024-01-02 11:02 - 2024-01-02 11:03 - 000000000 ____D C:\AdwCleaner 2024-01-02 10:58 - 2024-01-02 11:01 - 000178291 _____ C:\Users\Locutus\Downloads\Addition.txt 2024-01-02 10:58 - 2024-01-02 10:58 - 008791352 _____ (Malwarebytes) C:\Users\Locutus\Downloads\adwcleaner.exe 2024-01-02 10:56 - 2024-01-02 13:16 - 000000000 ____D C:\FRST 2024-01-02 10:56 - 2024-01-02 11:01 - 000063575 _____ C:\Users\Locutus\Downloads\FRST.txt 2024-01-02 10:54 - 2024-01-02 10:54 - 002387456 _____ (Farbar) C:\Users\Locutus\Downloads\FRST64.exe 2024-01-02 10:24 - 2024-01-02 10:24 - 000000735 _____ C:\Users\Locutus\AppData\Local\recently-used.xbel 2023-12-30 09:51 - 2023-12-30 09:51 - 000634414 _____ C:\Users\Locutus\Martin-20231230.bak 2023-12-29 12:10 - 2023-12-29 12:10 - 000633408 _____ C:\Users\Locutus\Martin-20231229.bak 2023-12-29 12:06 - 2023-12-29 12:06 - 000356426 _____ C:\Users\Locutus\Downloads\29 Görhring Rg 231449.pdf 2023-12-28 14:47 - 2023-12-28 14:47 - 000077379 _____ C:\Users\Locutus\Downloads\Buchungsbestaetigung-51752-BVJIcN4REi4IYAZn.pdf 2023-12-28 09:20 - 2023-12-28 09:20 - 000633216 _____ C:\Users\Locutus\Martin-20231228.bak 2023-12-27 09:33 - 2023-12-27 09:33 - 000632831 _____ C:\Users\Locutus\Martin-20231227.bak 2023-12-26 10:30 - 2024-01-01 10:34 - 000018888 _____ C:\Users\Locutus\Documents\Wertentwicklung.xlsx 2023-12-23 12:15 - 2023-12-23 12:15 - 000149825 _____ C:\Users\Locutus\Downloads\RSAG_Jahreskalender_2024_Stand_20231128.PDF 2023-12-23 12:10 - 2023-12-23 12:10 - 000632718 _____ C:\Users\Locutus\Martin-20231223.bak 2023-12-21 09:44 - 2024-01-02 12:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2023-12-20 19:03 - 2023-12-20 21:52 - 000000000 ____D C:\Users\Locutus\Documents\SeaOrama 2023-12-20 19:03 - 2023-12-20 19:03 - 000000000 ____D C:\Users\Locutus\AppData\LocalLow\Hidden Tower Studios 2023-12-18 21:19 - 2023-12-18 21:19 - 000046824 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2023-12-18 16:18 - 2023-12-18 16:18 - 000000000 ____D C:\Users\Locutus\AppData\Local\AvenColony 2023-12-15 17:17 - 2023-12-15 17:17 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\IO Interactive 2023-12-15 16:15 - 2023-12-15 16:15 - 000082062 _____ C:\Users\Locutus\Downloads\Grundstückseigentümererklärung-1.pdf 2023-12-15 16:15 - 2023-12-15 16:15 - 000082062 _____ C:\Users\Locutus\Downloads\Grundstückseigentümererklärung.pdf 2023-12-15 15:49 - 2023-12-15 15:49 - 000071414 _____ C:\Users\Locutus\Downloads\2023-12-15-solaris-document.pdf 2023-12-15 15:39 - 2023-12-15 15:39 - 000315127 _____ C:\Users\Locutus\Downloads\OC444Q47.pdf 2023-12-14 19:50 - 2023-12-14 19:50 - 000000000 ___HD C:\$WinREAgent 2023-12-13 16:25 - 2023-12-07 00:05 - 000121880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2023-12-13 16:20 - 2023-12-08 02:23 - 001487368 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2023-12-13 16:20 - 2023-12-08 02:23 - 001424064 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2023-12-13 16:20 - 2023-12-08 02:23 - 001424064 _____ C:\WINDOWS\system32\vulkan-1.dll 2023-12-13 16:20 - 2023-12-08 02:23 - 001246400 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2023-12-13 16:20 - 2023-12-08 02:23 - 001246400 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2023-12-13 16:20 - 2023-12-08 02:23 - 001227288 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2023-12-13 16:20 - 2023-12-08 02:23 - 000850616 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2023-12-13 16:20 - 2023-12-08 02:23 - 000850616 _____ C:\WINDOWS\system32\vulkaninfo.exe 2023-12-13 16:20 - 2023-12-08 02:23 - 000731320 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2023-12-13 16:20 - 2023-12-08 02:23 - 000731320 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2023-12-13 16:20 - 2023-12-08 02:19 - 000957960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2023-12-13 16:20 - 2023-12-08 02:19 - 000670232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll 2023-12-13 16:20 - 2023-12-08 02:19 - 000505480 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 012375688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 002170992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 001624712 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 001541256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 001198728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 000997512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 000810096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2023-12-13 16:20 - 2023-12-08 02:18 - 000773744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2023-12-13 16:20 - 2023-12-08 02:18 - 000459912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2023-12-13 16:20 - 2023-12-08 02:17 - 015095408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2023-12-13 16:20 - 2023-12-08 02:17 - 006462600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2023-12-13 16:20 - 2023-12-08 02:17 - 005862512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2023-12-13 16:20 - 2023-12-08 02:17 - 005861000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2023-12-13 16:20 - 2023-12-08 02:17 - 003620488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2023-12-13 16:20 - 2023-12-08 02:17 - 000853640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2023-12-13 16:20 - 2023-12-08 02:16 - 007869576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2023-12-13 16:20 - 2023-12-08 02:16 - 006745768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2023-12-13 16:20 - 2023-12-07 00:05 - 000113947 _____ C:\WINDOWS\system32\nvinfo.pb 2023-12-11 19:30 - 2023-12-11 19:30 - 000471935 _____ C:\Users\Locutus\Downloads\2709580_E-TICKET.PDF 2023-12-09 18:16 - 2023-12-09 18:16 - 000143622 _____ C:\Users\Locutus\Downloads\100000000127838761.pdf 2023-12-04 16:56 - 2023-12-04 16:56 - 000000000 ____D C:\Users\Katja *******\AppData\Local\Mozilla Firefox 2023-12-03 10:35 - 2023-12-03 20:54 - 000000000 ____D C:\Users\Katja *******\Desktop\Weihnachten2023 ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2024-01-02 13:12 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-01-02 13:11 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-01-02 13:02 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\PrintDialog 2024-01-02 13:02 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-01-02 13:02 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-01-02 13:02 - 2018-07-10 09:11 - 000000000 ____D C:\ProgramData\Packages 2024-01-02 13:02 - 2017-12-26 10:48 - 000000000 ____D C:\Users\Win7Admin\AppData\Local\Packages 2024-01-02 12:52 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF 2024-01-02 12:49 - 2022-03-08 08:59 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-01-02 12:48 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\appcompat 2024-01-02 12:47 - 2021-08-30 16:11 - 000000000 ____D C:\Users\Win7Admin\AppData\Local\SynologyDrive 2024-01-02 12:47 - 2016-08-14 11:15 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Duplicati 2024-01-02 12:47 - 2016-08-09 14:30 - 000000000 ____D C:\ProgramData\NVIDIA 2024-01-02 12:46 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-01-02 12:45 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-01-02 12:45 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-01-02 12:45 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Registration 2024-01-02 12:45 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Windows NT 2024-01-02 12:45 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Windows Defender 2024-01-02 12:45 - 2022-05-07 06:17 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2024-01-02 12:45 - 2015-09-10 06:44 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-01-02 12:45 - 2014-01-22 16:47 - 000000000 ____D C:\Program Files (x86)\Google 2024-01-02 12:43 - 2015-10-14 10:40 - 000023056 _____ C:\WINDOWS\system32\emptyregdb.dat 2024-01-02 12:43 - 2014-01-22 16:49 - 000002299 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-01-02 12:43 - 2014-01-22 16:49 - 000002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2024-01-02 12:42 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Media 2024-01-02 12:41 - 2022-05-07 06:17 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2024-01-02 12:41 - 2018-07-14 16:12 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2024-01-02 12:40 - 2022-05-07 06:24 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2024-01-02 12:40 - 2020-06-25 15:13 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-01-02 12:40 - 2020-06-25 15:13 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2024-01-02 12:39 - 2023-04-28 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA 2024-01-02 12:39 - 2023-04-07 15:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dm-Fotowelt 2024-01-02 12:39 - 2023-01-14 11:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iperius Backup 2024-01-02 12:39 - 2023-01-04 09:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO Steuer 2023 2024-01-02 12:39 - 2022-12-26 12:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Synology 2024-01-02 12:39 - 2022-12-09 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paragon Backup & Recovery™ 17 Free 2024-01-02 12:39 - 2022-09-01 15:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft 2024-01-02 12:39 - 2022-09-01 15:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2024-01-02 12:39 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 __SHD C:\Program Files\Windows Sidebar 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\spool 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\NDF 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\IME 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ServiceState 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\schemas 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-01-02 12:39 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-01-02 12:39 - 2022-03-15 16:45 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2024-01-02 12:39 - 2022-01-21 19:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO Steuer-Sparbuch 2022 2024-01-02 12:39 - 2022-01-16 09:34 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net 2024-01-02 12:39 - 2022-01-15 20:27 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2024-01-02 12:39 - 2021-12-10 18:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Westwood Online 2024-01-02 12:39 - 2021-12-01 17:30 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon Games 2024-01-02 12:39 - 2021-11-18 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Macrium 2024-01-02 12:39 - 2021-09-11 10:27 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tyre 2024-01-02 12:39 - 2021-09-11 10:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tyre 2024-01-02 12:39 - 2021-05-28 13:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2024-01-02 12:39 - 2021-01-08 13:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO Steuer-Sparbuch 2021 2024-01-02 12:39 - 2020-11-24 19:38 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2024-01-02 12:39 - 2020-05-27 16:00 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeCAD 0.18 2024-01-02 12:39 - 2020-05-20 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STO Keybind 2024-01-02 12:39 - 2020-05-17 18:15 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2024-01-02 12:39 - 2020-05-12 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Video Device 2024-01-02 12:39 - 2020-04-01 08:22 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cisco Webex Meetings Desktop-App 2024-01-02 12:39 - 2020-02-01 08:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO steuer Sparbuch 2020 2024-01-02 12:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2024-01-02 12:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2024-01-02 12:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2024-01-02 12:39 - 2019-07-29 17:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2024-01-02 12:39 - 2019-03-22 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software 2024-01-02 12:39 - 2019-03-22 17:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE 2024-01-02 12:39 - 2019-03-22 17:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit 2024-01-02 12:39 - 2019-03-22 17:26 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2024-01-02 12:39 - 2019-03-22 17:22 - 000000000 ____D C:\Program Files\Intel 2024-01-02 12:39 - 2019-03-22 15:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO steuer Sparbuch 2019 2024-01-02 12:39 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2024-01-02 12:39 - 2018-03-06 14:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO steuer Sparbuch 2018 2024-01-02 12:39 - 2018-01-16 12:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roberts Space Industries 2024-01-02 12:39 - 2017-12-01 10:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClockworkMod 2024-01-02 12:39 - 2017-12-01 10:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\ClockworkMod 2024-01-02 12:39 - 2017-11-18 10:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2024-01-02 12:39 - 2017-10-31 10:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2024-01-02 12:39 - 2017-10-28 10:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HomeBank 2024-01-02 12:39 - 2017-09-29 16:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xvid 2024-01-02 12:39 - 2017-05-03 16:08 - 000000000 ____D C:\Program Files\UNP 2024-01-02 12:39 - 2017-04-12 11:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN 2024-01-02 12:39 - 2017-01-08 11:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mass Effect 2 2024-01-02 12:39 - 2017-01-06 09:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2024-01-02 12:39 - 2016-12-10 12:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gearbox Publishing 2024-01-02 12:39 - 2016-10-03 18:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74 2024-01-02 12:39 - 2016-05-30 18:47 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\No-IP DUC 2024-01-02 12:39 - 2016-05-20 16:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer 2024-01-02 12:39 - 2016-04-09 10:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO steuer Sparbuch 2016 2024-01-02 12:39 - 2016-01-16 12:19 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Android SDK Tools 2024-01-02 12:39 - 2015-11-13 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2024-01-02 12:39 - 2015-10-25 10:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2024-01-02 12:39 - 2015-10-18 12:04 - 000000000 ___HD C:\WINDOWS\system32\CanonIJ Uninstaller Information 2024-01-02 12:39 - 2015-10-18 12:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon iP3600 series 2024-01-02 12:39 - 2015-09-11 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4 2024-01-02 12:39 - 2015-08-30 17:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZotacFireStorm 2024-01-02 12:39 - 2015-06-08 14:10 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps 2024-01-02 12:39 - 2015-05-31 20:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVBViewer 2024-01-02 12:39 - 2015-05-31 18:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LAV Filters 2024-01-02 12:39 - 2015-03-14 11:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO Steuer-Sparbuch 2015 2024-01-02 12:39 - 2015-01-17 15:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Max Local Application 2024-01-02 12:39 - 2014-12-25 11:12 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Logitech 2024-01-02 12:39 - 2014-11-07 15:26 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DC++ 2024-01-02 12:39 - 2014-11-07 15:23 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2024-01-02 12:39 - 2014-10-17 17:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2024-01-02 12:39 - 2014-09-20 11:19 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2024-01-02 12:39 - 2014-09-20 09:54 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2024-01-02 12:39 - 2014-08-09 13:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mHotspot 2024-01-02 12:39 - 2014-07-23 20:09 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2024-01-02 12:39 - 2014-07-23 20:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pharao - Gold Edition 2024-01-02 12:39 - 2014-07-02 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2024-01-02 12:39 - 2014-06-03 18:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Batman Arkham Origins 2024-01-02 12:39 - 2014-03-24 11:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WISO Steuer-Sparbuch 2014 2024-01-02 12:39 - 2014-02-28 12:30 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2024-01-02 12:39 - 2014-02-23 20:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2024-01-02 12:39 - 2014-02-11 18:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MetaGeek 2024-01-02 12:39 - 2014-01-31 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2024-01-02 12:39 - 2014-01-22 19:41 - 000000000 ____D C:\WINDOWS\SysWOW64\Adobe 2024-01-02 12:39 - 2014-01-22 19:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2024-01-02 12:39 - 2014-01-22 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2024-01-02 12:39 - 2014-01-22 15:57 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-01-02 12:39 - 2009-07-14 06:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2024-01-02 12:39 - 2009-07-14 04:20 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2024-01-02 12:31 - 2022-05-07 06:28 - 000000000 ____D C:\WINDOWS\Setup 2024-01-02 12:27 - 2022-05-07 06:24 - 000000000 __RHD C:\Users\Public\Libraries 2024-01-02 12:10 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Resources 2024-01-02 12:10 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Help 2024-01-02 12:10 - 2022-01-16 14:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2024-01-02 12:10 - 2022-01-16 13:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\O&O Software 2024-01-02 12:10 - 2016-09-20 19:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2024-01-02 12:10 - 2015-10-25 10:22 - 000000000 ____D C:\WINDOWS\SysWOW64\spool 2024-01-02 12:10 - 2015-08-30 17:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unigine 2024-01-02 12:10 - 2014-10-17 14:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate 2024-01-02 12:10 - 2014-06-23 16:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT 2024-01-02 12:10 - 2014-01-22 17:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Renesas Electronics 2024-01-02 12:09 - 2019-03-22 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2024-01-02 12:09 - 2018-01-16 20:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2024-01-02 12:09 - 2016-07-11 13:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco 2024-01-02 12:09 - 2015-08-30 08:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D 2024-01-02 12:09 - 2009-07-14 06:32 - 000000000 ____D C:\Program Files\Microsoft Games 2024-01-02 12:07 - 2022-07-12 15:51 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Technisat 2024-01-02 12:07 - 2022-05-07 06:24 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows 2024-01-02 12:07 - 2018-05-02 19:23 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2024-01-02 12:07 - 2017-12-26 10:47 - 000000000 ____D C:\Users\Katja *******\AppData\Local\Packages 2024-01-02 12:05 - 2020-12-15 17:17 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2024-01-02 12:05 - 2017-12-26 10:48 - 000000000 ____D C:\Users\Locutus\AppData\Local\Packages 2024-01-02 12:00 - 2022-05-07 11:39 - 000000000 ___SD C:\WINDOWS\system32\AppV 2024-01-02 12:00 - 2022-05-07 11:39 - 000000000 ____D C:\WINDOWS\InboxApps 2024-01-02 12:00 - 2022-05-07 11:39 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2024-01-02 12:00 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\SysWOW64\de 2024-01-02 12:00 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\system32\de 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\UNP 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\WUModels 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\UUS 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemApps 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\setup 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\migwiz 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\id-ID 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\et-EE 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\es-MX 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\DDFs 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Provisioning 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\DiagTrack 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-01-02 12:00 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\System 2024-01-02 12:00 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\servicing 2024-01-02 12:00 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-01-02 11:59 - 2022-05-07 11:39 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2024-01-02 11:59 - 2022-05-07 11:39 - 000023775 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2024-01-02 11:59 - 2022-05-07 06:25 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2024-01-02 11:59 - 2022-05-07 06:24 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2024-01-02 11:51 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2024-01-02 11:51 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\MUI 2024-01-02 11:51 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\OCR 2024-01-02 11:50 - 2022-05-07 11:39 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2024-01-02 11:50 - 2022-05-07 11:39 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\system32\winrm 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\system32\WCN 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\system32\slmgr 2024-01-02 11:50 - 2022-05-07 11:29 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2024-01-02 11:50 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2024-01-02 11:50 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2024-01-02 11:50 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\F12 2024-01-02 11:50 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\dsc 2024-01-02 11:50 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-01-02 11:50 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2024-01-02 11:50 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2024-01-02 11:45 - 2019-08-02 11:33 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER 2024-01-02 11:32 - 2018-09-29 08:21 - 000000000 ____D C:\Users\Win7Admin\AppData\Local\D3DSCache 2024-01-02 11:06 - 2015-10-25 09:22 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard 2024-01-02 11:05 - 2023-10-15 12:56 - 000000000 ____D C:\Users\Locutus\AppData\Local\Malwarebytes 2024-01-02 11:05 - 2018-04-07 16:53 - 000000000 ____D C:\Users\Locutus\AppData\Local\Duplicati 2024-01-02 10:49 - 2014-01-23 16:12 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Word 2024-01-02 10:36 - 2023-02-10 11:12 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-01-02 10:36 - 2014-01-22 17:02 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-01-02 10:35 - 2019-07-29 18:16 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2024-01-02 10:24 - 2017-10-28 10:11 - 000000000 ____D C:\Users\Locutus\AppData\Local\homebank 2024-01-02 10:24 - 2014-01-23 08:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2024-01-01 15:20 - 2018-05-02 19:29 - 000000000 ____D C:\Users\Locutus\AppData\Local\Ubisoft Game Launcher 2024-01-01 10:34 - 2014-01-25 08:48 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Microsoft\Excel 2024-01-01 10:14 - 2019-08-18 19:13 - 000432677 _____ C:\Users\Locutus\Documents\VerbrauchHennef.xlsx 2023-12-30 09:51 - 2017-10-28 10:17 - 000634414 _____ C:\Users\Locutus\Martin.xhb~ 2023-12-30 09:51 - 2017-10-28 10:14 - 000634489 _____ C:\Users\Locutus\Martin.xhb 2023-12-28 23:08 - 2018-02-03 16:52 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\rsilauncher 2023-12-28 13:30 - 2023-06-17 14:53 - 000000000 ____D C:\Users\Win7Admin\AppData\Local\Star Citizen 2023-12-28 13:30 - 2014-09-20 11:14 - 000000000 ____D C:\Users\Win7Admin\AppData\Local\NVIDIA 2023-12-28 13:29 - 2022-12-11 16:23 - 000000000 ____D C:\Users\Win7Admin\AppData\Roaming\EasyAntiCheat 2023-12-28 13:29 - 2022-12-11 16:23 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat_EOS 2023-12-28 10:52 - 2023-11-22 16:03 - 000000000 ____D C:\Users\Win7Admin\AppData\LocalLow\NVIDIA 2023-12-25 09:29 - 2016-05-21 09:23 - 000000600 _____ C:\Users\Locutus\AppData\Local\PUTTY.RND 2023-12-25 09:27 - 2017-09-23 09:59 - 000002299 _____ C:\Users\Locutus\Desktop\Nextcloud Update.txt 2023-12-24 11:14 - 2022-02-24 15:33 - 000186427 _____ C:\WINDOWS\Macrium Reflect Patch Log.txt 2023-12-23 15:36 - 2015-12-03 19:01 - 000000000 ____D C:\Users\Locutus\AppData\Local\CrashDumps 2023-12-22 10:58 - 2023-02-10 11:12 - 000001011 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-12-21 09:45 - 2014-01-23 09:01 - 000000000 ____D C:\Users\Locutus\AppData\Roaming\Dropbox 2023-12-21 09:44 - 2016-03-06 18:37 - 000000000 ____D C:\Program Files (x86)\Dropbox 2023-12-21 09:44 - 2015-06-22 14:55 - 000000000 ____D C:\Users\Locutus\AppData\Local\Dropbox 2023-12-20 10:46 - 2023-10-15 12:49 - 000239576 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2023-12-18 16:18 - 2018-12-18 09:46 - 000000000 ____D C:\Users\Locutus\AppData\Local\UnrealEngine 2023-12-15 20:35 - 2014-01-22 16:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2023-12-15 17:51 - 2020-09-15 15:47 - 000002450 _____ C:\Users\Locutus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-12-14 16:35 - 2016-05-18 08:27 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Duplicati 2023-12-13 19:03 - 2023-10-29 09:54 - 000000000 ____D C:\Users\Katja *******\AppData\Local\Malwarebytes 2023-12-13 19:03 - 2018-01-10 10:16 - 000000000 ____D C:\Users\Katja *******\Desktop\Katja Unterlagen 2023-12-11 18:05 - 2020-12-17 20:57 - 000039291 _____ C:\Users\Locutus\Documents\AbrechnungKrankenkasseBeihilfe.xlsx 2023-12-10 19:38 - 2021-11-15 16:42 - 000001346 _____ C:\Users\Katja *******\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-12-10 10:26 - 2018-05-21 18:43 - 000000000 ____D C:\Users\Locutus\AppData\Local\D3DSCache 2023-12-09 18:07 - 2018-05-21 11:27 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-12-07 19:47 - 2018-05-26 16:34 - 000000000 ____D C:\Users\Katja *******\AppData\Local\D3DSCache 2023-12-07 19:47 - 2015-09-03 08:29 - 000000000 ____D C:\Users\Katja *******\AppData\Local\Dropbox 2023-12-07 19:47 - 2014-01-23 09:12 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Dropbox 2023-12-07 19:34 - 2016-03-06 18:08 - 000000000 ____D C:\Users\Katja *******\AppData\Roaming\Microsoft\Word 2023-12-03 20:33 - 2014-10-02 16:21 - 000000000 ____D C:\Users\Locutus\AppData\LocalLow\Unity ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2019-10-27 17:29 - 2019-10-27 17:29 - 000000600 _____ () C:\Users\Win7Admin\AppData\Roaming\winscp.rnd 2015-10-15 09:46 - 2021-05-16 13:29 - 000007597 _____ () C:\Users\Win7Admin\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== |
02.01.2024, 13:51 | #3 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Addition Teil 1 von 2
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 01.01.2024 durchgeführt von Win7Admin (02-01-2024 13:18:32) Gestartet von C:\Users\Win7Admin\Desktop Microsoft Windows 11 Pro Version 22H2 22621.2861 (X64) (2024-01-02 11:45:46) Start-Modus: Normal ========================================================== ==================== Konten: ============================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) Administrator (S-1-5-21-1660700513-2118892591-3807124189-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1660700513-2118892591-3807124189-503 - Limited - Disabled) Gast (S-1-5-21-1660700513-2118892591-3807124189-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1660700513-2118892591-3807124189-1008 - Limited - Enabled) Katja ********* (S-1-5-21-1660700513-2118892591-3807124189-1002 - Limited - Enabled) => C:\Users\Katja ******* Locutus (S-1-5-21-1660700513-2118892591-3807124189-1001 - Limited - Enabled) => C:\Users\Locutus WDAGUtilityAccount (S-1-5-21-1660700513-2118892591-3807124189-504 - Limited - Disabled) Win7Admin (S-1-5-21-1660700513-2118892591-3807124189-1000 - Administrator - Enabled) => C:\Users\Win7Admin ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) @BIOS (HKLM-x32\...\{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 4.18.0803.1 - GIGABYTE) Hidden @BIOS (HKLM-x32\...\InstallShield_{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 4.18.0803.1 - GIGABYTE) 3DOSD (HKLM-x32\...\{F0D1FAA5-F9F8-4524-9B65-A5BFDDD5A29B}) (Version: 1.00.0050 - GIGABYTE) Hidden 3DOSD (HKLM-x32\...\InstallShield_{F0D1FAA5-F9F8-4524-9B65-A5BFDDD5A29B}) (Version: 1.00.0050 - GIGABYTE) 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1031-1033-7760-BC15014EA700}) (Version: 23.006.20380 - Adobe) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601053}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.1.171 - Adobe Systems, Inc.) Amazon Games (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\{4DD10B06-78A4-4E6F-AA39-25E9C38FA568}) (Version: 2.3.8912.4 - Amazon.com Services, Inc.) Ambient LED (HKLM-x32\...\{BEF97B38-D1B8-45B4-A60A-AF5C1556CC72}) (Version: 1.18.0808.1 - GIGABYTE) Hidden Ambient LED (HKLM-x32\...\InstallShield_{BEF97B38-D1B8-45B4-A60A-AF5C1556CC72}) (Version: 1.18.0808.1 - GIGABYTE) Anki (HKLM-x32\...\Anki) (Version: - ) Anno 1404 - History Edition (HKLM-x32\...\Uplay Install 16232) (Version: - Ubisoft) Anno 1701 - History Edition (HKLM-x32\...\Uplay Install 16238) (Version: - Ubisoft) ANNO 2070 (HKLM-x32\...\{B48E264C-C8CD-4617-B0BE-46E977BAD694}) (Version: 1.0.0.0 - Ubisoft) Anno 2205 (HKLM-x32\...\Uplay Install 1253) (Version: - Ubisoft) Application Compatibility Toolkit (HKLM\...\{3BD6A529-0C2A-1EE9-A123-3EF4D804A1D1}) (Version: 10.1.19041.1 - Microsoft) Hidden Appman Auto Sequencer (HKLM-x32\...\{2942F2D5-2A6D-2061-A152-A736B3277068}) (Version: 10.1.19041.1 - Microsoft) Hidden Appman Sequencer on amd64 (HKLM\...\{7A394A81-957E-FA00-5F3F-46CF5DDEAA4A}) (Version: 10.1.19041.1 - Microsoft) Hidden Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Aslain's WoWs Modpack Version 8.11.0.04 (HKLM-x32\...\ASLAINSWARSHIPSTEST_is1) (Version: 8.11.0.04 - Aslain) AutoGreen (HKLM-x32\...\{CFB76B97-0C1C-4E1A-999A-DE62FA5FEB9A}) (Version: 1.18.0808.1 - GIGABYTE) Hidden AutoGreen (HKLM-x32\...\InstallShield_{CFB76B97-0C1C-4E1A-999A-DE62FA5FEB9A}) (Version: 1.18.0808.1 - GIGABYTE) AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: 06.20.07 - AVM Berlin) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts) Canon iP3600 series Printer Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP3600_series) (Version: - Canon Inc.) Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 4.2.02075 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\{EA0F6FCD-988A-41DE-9D87-036C6B7C545D}) (Version: 4.2.02075 - Cisco Systems, Inc.) Hidden Cisco Webex Meetings (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\ActiveTouchMeetingClient) (Version: 41.11.3 - Cisco Webex LLC) Cliqz 1.38.0 (x64 de) (HKLM\...\Cliqz 1.38.0 (x64 de)) (Version: 1.38.0 - Cliqz GmbH) Cliqz Maintenance Service (HKLM-x32\...\CliqzMaintenanceService) (Version: 1.38.0.7507 - Cliqz GmbH) CM Installer (HKLM-x32\...\{E8F42777-958D-4C14-9A42-8DCA1929FD26}) (Version: 1.0.0.0 - Cyanogen Inc.) Command & Conquer™ Red Alert 2 and Yuri’s Revenge (HKLM-x32\...\{F5275D1C-D133-486D-8F07-D6C571F0A8EC}) (Version: 1.0.0.0 - Electronic Arts, Inc.) CPUID CPU-Z 1.89 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.89 - CPUID, Inc.) CPUID HWMonitor 1.40 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.40 - CPUID, Inc.) DC++ 0.867 (HKLM-x32\...\DC++) (Version: 0.867 - Jacek Sieka) Die Siedler 7 (HKLM-x32\...\{63860309-DA8A-4BAE-9EAE-CE1D6D79340C}) (Version: 1.12.1396 - Ubisoft) Die Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.97.62.1020 - Electronic Arts Inc.) Discord (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Discord) (Version: 1.0.9003 - Discord Inc.) dm-Fotowelt (HKLM\...\dm-Fotowelt) (Version: 7.3.3 - CEWE Stiftung u Co. KGaA) Dropbox (HKLM-x32\...\Dropbox) (Version: 189.4.8395 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.817.1 - Dropbox, Inc.) Hidden Druckerdeinstallation für EPSON ET-3750 Series (HKLM\...\EPSON ET-3750 Series) (Version: - Seiko Epson Corporation) Duplicati 2 (HKLM\...\{D2A5D819-4FA0-493B-8D37-9531C659D95A}) (Version: 2.0.6.3 - Duplicati Team) DVBViewer Pro (HKLM-x32\...\DVBViewer Pro_is1) (Version: 6.1.1 - CM&V) EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.186.0.5443 - Electronic Arts) Hidden EA app (HKLM-x32\...\{4cb062ac-aedd-40b3-a14c-c7fa45784907}) (Version: 12.186.0.5443 - Electronic Arts) EasyTune (HKLM-x32\...\{7F635314-EE21-4E4B-A68D-69AE70BA0E9B}) (Version: 1.18.0808.1 - GIGABYTE) Hidden EasyTune (HKLM-x32\...\InstallShield_{7F635314-EE21-4E4B-A68D-69AE70BA0E9B}) (Version: 1.18.0808.1 - GIGABYTE) Epic Games Launcher (HKLM-x32\...\{42ECB1DB-6B44-4AEC-B112-98ECFF460EF6}) (Version: 1.1.167.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{32C68D93-D32F-4B01-8250-61642BFC22F8}) (Version: 2.0.28.0 - Epic Games, Inc.) Epson Event Manager (HKLM-x32\...\{DBC38C08-9FB5-43A5-B6BA-EB10AC7DA570}) (Version: 3.11.0053 - Seiko Epson Corporation) Epson Printer Connection Checker (HKLM-x32\...\{562C1C83-6199-49DD-987B-60D5FF7BC971}) (Version: 3.3.2.0 - Seiko Epson Corporation) Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation) Epson ScanSmart (HKLM-x32\...\{D310BDCC-D4B4-4DC1-B9DF-D1D7367CAC4F}) (Version: 3.6.1 - Seiko Epson Corporation) Epson Software Updater (HKLM-x32\...\{14898485-6509-496B-8C30-D5DB8C1C8639}) (Version: 4.6.3 - Seiko Epson Corporation) EPSON-Handbücher (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.57.0.0 - Seiko Epson Corporation) EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation) EZRAID (HKLM-x32\...\{8F307CB5-FE1C-4BF3-8747-305D14161916}) (Version: 1.18.0808.1 - GIGABYTE) Hidden EZRAID (HKLM-x32\...\InstallShield_{8F307CB5-FE1C-4BF3-8747-305D14161916}) (Version: 1.18.0808.1 - GIGABYTE) Far Cry Primal (HKLM-x32\...\Uplay Install 2010) (Version: - Ubisoft) Fast Boot (HKLM-x32\...\{FA8FB4F2-F524-48E1-A06C-45602FBF26CD}) (Version: 1.18.0807.1 - GIGABYTE) Hidden Fast Boot (HKLM-x32\...\InstallShield_{FA8FB4F2-F524-48E1-A06C-45602FBF26CD}) (Version: 1.18.0807.1 - GIGABYTE) FileZilla Client 3.31.0 (HKLM-x32\...\FileZilla Client) (Version: 3.31.0 - Tim Kosse) FireStorm version V1.0.45.000 (HKLM-x32\...\FireStorm_is1) (Version: V1.0.45.000 - ) FreeCAD 0.18.4 (Installiert für den aktuellen Benutzer) (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\FreeCAD0184) (Version: 0.18.4 - FreeCAD Team) Futuremark SystemInfo (HKLM-x32\...\{185D7B00-8600-4716-A619-D8CBE689974B}) (Version: 4.40.560.0 - Futuremark) Game Boost (HKLM-x32\...\{644B5310-D2AA-42A8-9F3B-7B92C856C8D7}) (Version: 1.00.0007 - Gigabyte) Hidden Game Boost (HKLM-x32\...\InstallShield_{644B5310-D2AA-42A8-9F3B-7B92C856C8D7}) (Version: 1.00.0007 - Gigabyte) Gear 360 ActionDirector (HKLM-x32\...\{1F01D6CB-E445-405b-84D1-75B8EB5237D0}) (Version: 2.0.0.3231 - CyberLink Corp.) Hidden Gear 360 ActionDirector (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 2.0.0.3231 - CyberLink Corp.) Gear 360 Live Broadcast (HKLM-x32\...\{9A99DE5B-8A05-4E61-9804-E148B53A00CA}) (Version: 1.0.1026.0 - CyberLink Corp.) Hidden Geeks3D FurMark 1.17.0.0 (HKLM-x32\...\{2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1) (Version: - Geeks3D) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 120.0.6099.130 - Google LLC) Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google) GoTo Opener (HKLM-x32\...\{C0F33C38-345C-4C02-B161-11389350C2A5}) (Version: 1.0.533 - LogMeIn, Inc.) GoToMeeting 10.19.0.19950 (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\GoToMeeting) (Version: 10.19.0.19950 - LogMeIn, Inc.) GService (HKLM-x32\...\{D9CB4282-7B2A-4840-AD1D-9DA72B973DD9}) (Version: 1.16.1202.1 - GIGABYTE) Heaven DX11 Benchmark version 3.0 (HKLM\...\Unigine Heaven DX11 Benchmark (Basic Edition)_is1) (Version: 3.0 - Unigine Corp.) Helium (HKLM-x32\...\{9A781940-AC41-4D5E-8E1E-76A04B916FB9}) (Version: 1.0.0 - ClockworkMod) HomeBank 5.5.7 (HKLM-x32\...\{770D94F9-211A-4BC7-9921-FC946ABD82C8}_is1) (Version: 5.5.7 - Maxime DOYEN) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Solutions Framework (HKLM-x32\...\{8F1A441E-AD6D-4732-BD6A-F38D5F1D1E47}) (Version: 12.5.26.37 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Imaging And Configuration Designer (HKLM-x32\...\{8072F2F3-C269-A639-4626-9209FFF6DEDB}) (Version: 10.1.19041.1 - Microsoft) Hidden Imaging Designer (HKLM-x32\...\{2852AE0C-1EEB-72F9-1C5D-FACF6C9304DE}) (Version: 10.1.19041.1 - Microsoft) Hidden Imaging Tools Support (HKLM-x32\...\{30C24881-949F-D09C-5376-9F0DC6B412CD}) (Version: 10.1.19041.1 - Microsoft) Hidden inSSIDer Home (HKLM-x32\...\{9E54E4AE-B67A-4925-8E92-0E1F9817FD73}) (Version: 3.1.2.1 - MetaGeek, LLC) Intel(R) Chipset Device Software (HKLM\...\{03A76284-A1E0-46B1-86A0-3BCF58AD416E}) (Version: 10.1.17711.8088 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1829.12.0.1154 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{29484140-01C3-44ED-85DF-B26E203E0EEF}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{F9DBDF5A-AFE6-4DD7-9BC2-2C62990AF27F}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Driver (HKLM\...\{3E79E2C2-373D-4DE7-9D6E-25665D166EBA}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Network Connections 23.2.0.1006 (HKLM\...\{2B165F54-F534-4856-BA99-C796B94B7983}) (Version: 23.2.0.1006 - Intel) Hidden Intel(R) Network Connections 23.2.0.1006 (HKLM\...\PROSetDX) (Version: 23.2.0.1006 - Intel) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 16.7.0.1009 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{D7832862-06E3-46EB-A35F-73D5CC0948F5}) (Version: 16.7.0.1009 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{72759DFB-9080-46A5-ACCF-5BA26A6FF3FD}) (Version: 30.100.1727.1 - Intel Corporation) Hidden Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1727.1 - Intel Corporation) Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.50.369.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.369.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{aa81bdf2-96a6-4400-a596-c7d1916ce9f7}) (Version: 1.50.369.0 - Intel Corporation) Hidden Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{c30dc778-ac13-4f91-9045-fea2331ceb2e}) (Version: 10.1.17711.8088 - Intel(R) Corporation) Hidden Iperius Backup Version 7.7.9.0 (HKLM-x32\...\Iperius Backup_is1) (Version: 7.7.9.0 - Enter Srl) Java 8 Update 211 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180211F0}) (Version: 8.0.2110.12 - Oracle Corporation) Java 8 Update 211 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180211F0}) (Version: 8.0.2110.12 - Oracle Corporation) Kits Configuration Installer (HKLM-x32\...\{8867E8B9-1539-18F3-54AB-B1F1E641AC14}) (Version: 10.1.19041.1 - Microsoft) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden LAV Filters 0.64 (HKLM-x32\...\lavfilters_is1) (Version: 0.64 - Hendrik Leppkes) Ledger Live 2.26.1 (HKLM\...\c62032b2-0bca-5abc-b458-fd67cfc9e49b) (Version: 2.26.1 - Ledger Live Team) Logitech Gaming Software 8.90 (HKLM\...\Logitech Gaming Software) (Version: 8.90.117 - Logitech Inc.) Macrium Reflect Free Edition (HKLM\...\{E00F3578-4849-40C8-91DE-58F02AF087A8}) (Version: 8.0.6392 - Paramount Software (UK) Ltd.) Hidden Macrium Reflect Free Edition (HKLM\...\MacriumReflect) (Version: 8.0 - Paramount Software (UK) Ltd.) Malwarebytes version 4.6.6.294 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.6.6.294 - Malwarebytes) Mass Effect™ (HKLM-x32\...\{44A570EE-FD93-4086-8997-2C38DFDE0019}) (Version: 1.2.20608.0 - Electronic Arts) Mass Effect™ 2 (HKLM-x32\...\{75D84EF7-0D8C-4e70-B3FA-7B42A5D4E0EB}) (Version: 1.2.1604.0 - Electronic Arts) Mass Effect™ 3 (HKLM-x32\...\{534A31BD-20F4-46b0-85CE-09778379663C}) (Version: 1.05.0.0 - Electronic Arts) Max Local Application (HKLM-x32\...\{2B7885B0-27A9-11E0-91FA-0800200C9A66}) (Version: 1.4.4 - eQ-3 Entwicklung GmbH) Hidden Max Local Application (HKLM-x32\...\{8A551628-20DB-4A9C-A172-572689456C44}) (Version: 1.4.1 - ELV Elektronik AG) Hidden mHotspot version 7.6.0.0 (HKLM-x32\...\{beeb7906-9268-4520-8850-8d8af9b1c7c8}_is1) (Version: 7.6.0.0 - 1BN Software Pvt. Ltd.) Microsoft .NET Framework 4.5.2 (DEU) (HKLM\...\{1DB0C90B-2A9F-3A1E-B1DF-616C5A2A1417}) (Version: 4.5.51209 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.2 (HKLM\...\{26784146-6E05-3FF9-9335-786C7C0FB5BE}) (Version: 4.5.51209 - Microsoft Corporation) Hidden Microsoft .NET Host - 5.0.17 (x64) (HKLM\...\{E663ED1E-899C-40E8-91D0-8D37B95E3C69}) (Version: 40.68.31213 - Microsoft Corporation) Hidden Microsoft .NET Host - 6.0.25 (x64) (HKLM\...\{C7141A99-592B-4226-A4E9-B767C1D0FBAF}) (Version: 48.100.4028 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 5.0.17 (x64) (HKLM\...\{8BA25391-0BE6-443A-8EBF-86A29BAFC479}) (Version: 40.68.31213 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.25 (x64) (HKLM\...\{AE86D888-1404-47CC-A7BB-8D86C0503E58}) (Version: 48.100.4028 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 5.0.17 (x64) (HKLM\...\{5A66E598-37BD-4C8A-A7CB-A71C32ABCD78}) (Version: 40.68.31213 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.25 (x64) (HKLM\...\{3544B2EE-E62F-4D11-B79C-3DDEACE94DA5}) (Version: 48.100.4028 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) (HKLM\...\{25E80DAA-FD87-DCE5-202C-CC02F6673002}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 120.0.2210.91 - Microsoft Corporation) Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 120.0.2210.91 - Microsoft Corporation) Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Office Home and Student 2019 - de-de (HKLM\...\HomeStudent2019Retail - de-de) (Version: 16.0.17029.20108 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\OneDriveSetup.exe) (Version: 23.246.1127.0002 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1660700513-2118892591-3807124189-1002\...\OneDriveSetup.exe) (Version: 23.226.1031.0003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Teams) (Version: 1.5.00.12969 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation) Microsoft VC++ redistributables repacked. (HKLM\...\{640E529F-F80E-44C2-90D5-2A37CF038EA4}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft VC++ redistributables repacked. (HKLM-x32\...\{A70F3F8D-071E-4DD8-894A-118020F83AF3}) (Version: 12.0.0.0 - Intel Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{6F29F195-B11C-3EAD-B883-997BB29DFA17}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3994d355-238a-4612-af93-26d13deddef1}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{3c3aafc8-d898-43ec-998f-965ffdae065a}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{e6e75766-da0f-4ba2-9788-6ea593ce702d}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.31.31103 (HKLM-x32\...\{2aaf1df0-eb13-4099-9992-962bb4e596d1}) (Version: 14.31.31103.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.31.31103 (HKLM-x32\...\{41d7b770-418a-43b7-95a5-f925fff05789}) (Version: 14.31.31103.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.31.31103 (HKLM\...\{A977984B-9244-49E3-BD24-43F0A8009667}) (Version: 14.31.31103 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.31.31103 (HKLM\...\{A181A302-3F6D-4BAD-97A8-A426A6499D78}) (Version: 14.31.31103 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.31.31103 (HKLM-x32\...\{5720EC03-F26F-40B7-980C-50B5D420B5DE}) (Version: 14.31.31103 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.31.31103 (HKLM-x32\...\{799E3FFF-705C-461F-B400-6DE27398B3E5}) (Version: 14.31.31103 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 5.0.17 (x64) (HKLM\...\{3C31CBA1-A0D9-4B95-A807-AD2313D12F47}) (Version: 40.68.31219 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 5.0.17 (x64) (HKLM-x32\...\{20d5df4e-006c-4d6d-a0dc-490d009b9786}) (Version: 5.0.17.31219 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 6.0.25 (x64) (HKLM\...\{E016F2B9-01FE-4FAA-882E-ECC43FA49751}) (Version: 48.100.4037 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.25 (x64) (HKLM-x32\...\{fb0500c1-f968-4621-a48b-985b52884c49}) (Version: 6.0.25.33020 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 121.0 (x64 de)) (Version: 121.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 109.0.1 - Mozilla) Mozilla Thunderbird (x86 de) (HKLM-x32\...\Mozilla Thunderbird 115.4.3 (x86 de)) (Version: 115.4.3 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MXAx64 (HKLM-x32\...\{53B28ABA-8EFB-7BFB-603D-9B1334BBD881}) (Version: 10.1.19041.1 - Microsoft) Hidden MyHarmony (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\036a0e4fc6a247ec) (Version: 1.0.1.257 - Logitech) Need for Speed™ Hot Pursuit Remastered (HKLM-x32\...\{F28231EF-0D0C-41AD-9020-2B993F797F7A}) (Version: 1.0.0.23890 - Electronic Arts, Inc.) No-IP DUC (HKLM-x32\...\NoIPDUC) (Version: 4.1.1 - Vitalwerks Internet Solutions LLC) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.9.1 - Notepad++ Team) NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation) NVIDIA GeForce Experience 3.27.0.120 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.120 - NVIDIA Corporation) NVIDIA Grafiktreiber 546.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 546.33 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation) O&O DiskImage (HKLM\...\{9D22A4A4-B8EA-475E-89D8-94C170622BBD}) (Version: 16.5.226 - O&O Software GmbH) OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) OEM Test Certificates (HKLM-x32\...\{DAF67B85-47AE-B13B-5C22-3A7149E46EB8}) (Version: 10.1.19041.1 - Microsoft) Hidden Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.17029.20000 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.17029.20000 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.17029.20068 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.17029.20000 - Microsoft Corporation) Hidden ON_OFF Charge 2 B18.0621.1 (HKLM-x32\...\{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE) Hidden ON_OFF Charge 2 B18.0621.1 (HKLM-x32\...\InstallShield_{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Paradox Launcher v2 (HKLM\...\{F0072197-FCF6-41BF-9D38-832B145922DC}) (Version: 2.0.0.0 - Paradox Interactive) Paragon Backup & Recovery™ 17 Free (HKLM\...\{95AE8C74-DE43-4D35-8103-27142009F953}) (Version: 10.4.0.3523 - Paragon Software) Hidden Paragon Backup & Recovery™ 17 Free (HKLM-x32\...\{930243cd-9003-4800-965b-595d84ea017e}) (Version: 10.4.0.3523 - Paragon Software GmbH) Paragon UIM (HKLM\...\{BD2D45FC-CF38-4493-9809-3DD41CCC34CB}) (Version: 24.13.0.277 - Paragon Software) Hidden PDF24 Creator 5.6.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Pharao - Gold Edition Version 2.1 (HKLM-x32\...\{56A3F2C0-DECB-4BC8-80D3-6E37901C8722}_is1) (Version: 2.1 - Sierra Entertainment) PlatformPowerManagement (HKLM-x32\...\{7A6EB543-522C-4784-9DB5-4FC87522EBDF}) (Version: 1.18.0808.1 - GIGABYTE) Hidden PlatformPowerManagement (HKLM-x32\...\InstallShield_{7A6EB543-522C-4784-9DB5-4FC87522EBDF}) (Version: 1.18.0808.1 - GIGABYTE) Play Wireless USB Adapter (HKLM-x32\...\{88E62BD7-A532-48F6-8428-D949BB93A2D7}) (Version: 1.0.0.03 - Belkin) Hidden Play Wireless USB Adapter (HKLM-x32\...\InstallShield_{88E62BD7-A532-48F6-8428-D949BB93A2D7}) (Version: 1.0.0.03 - Belkin) PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8475 - Realtek Semiconductor Corp.) Red Wings: Aces of the Sky (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\AmazonGames/Red Wings - Aces of the Sky) (Version: - All in! Games) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.32.0 - Renesas Electronics Corporation) Hidden Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.32.0 - Renesas Electronics Corporation) ROCCAT Kone Pure Mouse Driver (HKLM-x32\...\{4905245D-56E7-4176-BE68-962728B803D6}) (Version: - Roccat GmbH) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.72.1513 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.1.8.4 - Rockstar Games) RSI Launcher 1.6.10 (HKLM\...\81bfc699-f883-50c7-b674-2483b6baae23) (Version: 1.6.10 - Cloud Imperium Games) Samsung i-Launcher 1.1.0.0 (HKLM-x32\...\Samsung i-Launcher) (Version: 1.1.0.0 - Samsung Electronics Co., Ltd.) SeaTools for Windows (HKLM-x32\...\SeaTools for Windows) (Version: - Seagate Technology) Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Skype Meetings App (HKLM-x32\...\{BC1D9E47-8927-4AA1-A891-7763BC2475B7}) (Version: 16.2.0.511 - Microsoft Corporation) Smart Backup (x64) (HKLM-x32\...\{BC1FA5CF-A36F-4C61-9638-09D0B431B006}) (Version: 3.18.0731.1 - GIGABYTE) Smart Survey (HKLM-x32\...\{EF7FC172-E7C8-447F-B9A7-0FFF20F2DC36}) (Version: 1.18.0808.1 - GIGABYTE) Hidden Smart Survey (HKLM-x32\...\InstallShield_{EF7FC172-E7C8-447F-B9A7-0FFF20F2DC36}) (Version: 1.18.0808.1 - GIGABYTE) Smart TimeLock (HKLM-x32\...\{5D93E30A-78A3-4890-962F-56B61A5873DD}) (Version: 2.18.0731.1 - GIGABYTE) Hidden Smart TimeLock (HKLM-x32\...\InstallShield_{5D93E30A-78A3-4890-962F-56B61A5873DD}) (Version: 2.18.0731.1 - GIGABYTE) SmartKeyboard (HKLM-x32\...\{75B74C36-A9C6-4912-B4BB-C461AA36D01E}) (Version: 1.18.0730.1 - GIGABYTE) Hidden SmartKeyboard (HKLM-x32\...\InstallShield_{75B74C36-A9C6-4912-B4BB-C461AA36D01E}) (Version: 1.18.0730.1 - GIGABYTE) Space Crew: Legendary Edition (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\AmazonGames/Space Crew - Legendary Edition) (Version: - Curve Digital) Spellcaster University (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\AmazonGames/Spellcaster University) (Version: - Goblinz Studio) Spore™ (HKLM-x32\...\{4BDCC41C-FFE7-40a4-BCB6-B558916868F7}) (Version: 1.7.0.0 - Electronic Arts) STAR WARS Jedi - Fallen Order™ (HKLM-x32\...\{D00A89F1-2D8C-4589-B1D1-73A6544E3B1F}) (Version: 1.0.10.0 - Electronic Arts, Inc.) STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.8.16162 - Electronic Arts) STAR WARS™: Squadrons (HKLM-x32\...\{04e47f47-22cd-436d-a373-472125e7fcd6}) (Version: 1.0.10.39591 - Electronic Arts) StarCraft (HKLM-x32\...\StarCraft) (Version: - Blizzard Entertainment) STO Keybind (HKLM-x32\...\{DF47A6F2-854C-4410-9AC1-CCFF37BE6B80}) (Version: 1.1.0 - Federation Emergency Services) Hidden STO Keybind (HKLM-x32\...\STO Keybind 1.1.0) (Version: 1.1.0 - Federation Emergency Services) Studio 2.0 version 2.0 (HKLM-x32\...\{BC38679A-F04A-4A76-BE97-F75C890A7429}_is1) (Version: 2.0 - BrickLink Corporation) swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synology Drive Client (remove only) (HKLM\...\Synology Drive) (Version: 7.2.0.13258 - Synology, Inc.) TeamSpeak 3 Client (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.26297 - TeamViewer) TechniPort Plus Beta (HKLM-x32\...\TechniPort Plus Beta) (Version: 0.9.5.4_beta - TechniSat) Terraformers (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\AmazonGames/Terraformers) (Version: - Goblinz Studio) thesettlers (HKLM-x32\...\Uplay Install 11662) (Version: - Ubisoft) thesettlers2 (HKLM-x32\...\Uplay Install 11783) (Version: - Ubisoft) tiptoi® Manager 4.1.2 (HKLM\...\{833392BB-E8C0-4066-9408-3A30FA43972F}_is1) (Version: 4.1.2 - Ravensburger AG) Toolkit Documentation (HKLM-x32\...\{1978CD82-5D9C-F9BD-4FA3-17AFA5AE12B2}) (Version: 10.1.19041.1 - Microsoft) Hidden Twitch (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.) Tyre (HKLM\...\Tyre_is1) (Version: 8.3.2.3 - 't Schrijverke) Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 57.0 - Ubisoft) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) UEV Tools on amd64 (HKLM\...\{91339917-AF30-9EC7-D5AA-05919BB21DB9}) (Version: 10.1.19041.1 - Microsoft) Hidden Unity Web Player (HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Universal Adb Driver (HKLM-x32\...\{C0E08D8D-6076-4117-B644-2AF34F35B757}) (Version: 1.0.4 - ClockworkMod) Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation) USB Video Device (HKLM-x32\...\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}) (Version: 5.8.48200.117 - Sonix) User State Migration Tool (HKLM-x32\...\{2AD80B8E-9213-FEA7-BA85-0EFED76D6F11}) (Version: 10.1.19041.1 - Microsoft) Hidden ViGEm Bus Driver (HKLM\...\{4030BA52-E312-462E-B020-CCB5A2AC5497}) (Version: 1.16.116 - Nefarius Software Solutions e.U.) VLC media player (HKLM\...\VLC media player) (Version: 3.0.10 - VideoLAN) Volume Activation Management Tool (HKLM-x32\...\{4B43C47D-8870-ACFA-C414-6C0884876EB0}) (Version: 10.1.19041.1 - Microsoft) Hidden Wargaming.net Game Center (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\Wargaming.net Game Center) (Version: 23.6.0.4252 - Wargaming.net) WestwoodOnline (HKLM-x32\...\{BBCD6D56-8A26-4DDE-9482-DBC9C7B7341D}) (Version: 1.0.0.0 - WestwoodOnline) Win32DiskImager version 0.9.5 (HKLM-x32\...\{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1) (Version: 0.9.5 - ImageWriter Developers) Windows Assessment and Deployment Kit - Windows 10 (HKLM-x32\...\{9346016b-6620-4841-8ea4-ad91d3ea02b5}) (Version: 10.1.19041.1 - Microsoft Corporation) Windows Assessment and Deployment Kit Windows Preinstallation Environment Add-Ons - Windows 10 (HKLM-x32\...\{353df250-4ecc-4656-a950-4df93078a5fd}) (Version: 10.1.19041.1 - Microsoft Corporation) Windows Deployment Customizations (HKLM-x32\...\{2C4DAAC8-4CD1-9CFC-EBD1-E6A17C8199E4}) (Version: 10.1.19041.1 - Microsoft) Hidden Windows Deployment Tools (HKLM-x32\...\{FE728B5E-3753-0F68-EC2D-66ABE2DEC1C1}) (Version: 10.1.19041.1 - Microsoft) Hidden Windows IP Over USB (HKLM-x32\...\{31F47324-5E87-946A-78F5-55BB06744389}) (Version: 10.1.19041.1 - Microsoft Corporation) Hidden Windows PE ARM ARM64 (HKLM-x32\...\{82FD70CC-4B6F-2D82-A0CE-8ED02C7D9BE1}) (Version: 10.1.19041.1 - Microsoft) Hidden Windows PE ARM ARM64 wims (HKLM-x32\...\{9D3CFC35-ECE8-ADF5-8E36-6B118163CB2B}) (Version: 10.1.19041.1 - Microsoft) Hidden Windows PE x86 x64 (HKLM-x32\...\{CB37C335-2000-4C7B-BD32-F7F28BA6CDA9}) (Version: 10.1.19041.1 - Microsoft) Hidden Windows PE x86 x64 wims (HKLM-x32\...\{57CCDF62-0F8B-8B79-34CD-F504E7228DEF}) (Version: 10.1.19041.1 - Microsoft) Hidden Windows System Image Manager on amd64 (HKLM-x32\...\{D5CE010A-37F1-27CD-D6A1-61FB1F206892}) (Version: 10.1.19041.1 - Microsoft) Hidden Windows-PC-Integritätsprüfung (HKLM\...\{B3956CF3-F6C5-4567-AC38-1FD4432B319C}) (Version: 3.6.2204.08001 - Microsoft Corporation) WinSCP 5.15.5 (HKLM-x32\...\winscp3_is1) (Version: 5.15.5 - Martin Prikryl) WISO Steuer 2023 (HKLM-x32\...\{3A536A8F-7F06-4076-BE3C-393B6F27DC14}) (Version: 30.02.3170 - Buhl Data Service GmbH) WISO steuer:Sparbuch 2016 (HKLM-x32\...\{0CBC8FF3-59EC-4FC7-B035-A76B20954CB4}) (Version: 23.00.1146 - Buhl Data Service GmbH) WISO steuer:Sparbuch 2018 (HKLM-x32\...\{6D85AD0C-7915-4F2A-AF7F-CBA34FEEAED8}) (Version: 25.03.1550 - Buhl Data Service GmbH) WISO steuer:Sparbuch 2019 (HKLM-x32\...\{AB84B657-056A-4B10-835E-B36468CC1199}) (Version: 26.04.1752 - Buhl Data Service GmbH) WISO steuer:Sparbuch 2020 (HKLM-x32\...\{A6A8993C-F29B-4C49-BD21-9B6D30F2CEC8}) (Version: 27.02.1606 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2014 (HKLM-x32\...\{64CBC86D-4306-4C33-BBDC-94C8A24C4D6A}) (Version: 21.00.8480 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2015 (HKLM-x32\...\{DDE91AFD-9055-4308-9932-0002B6E8B14D}) (Version: 22.00.8811 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2021 (HKLM-x32\...\{DEEDE83E-D98C-4750-ABE4-7FF47EE91F4E}) (Version: 28.02.1946 - Buhl Data Service GmbH) WISO Steuer-Sparbuch 2022 (HKLM-x32\...\{C98F5AD9-E9B5-437F-B13E-79088AA614C7}) (Version: 29.02.2590 - Buhl Data Service GmbH) World_of_Warships (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\3235888795) (Version: - Wargaming.net) WPT Redistributables (HKLM-x32\...\{AE00264D-F001-A1D3-F3B8-74A9D2193E7F}) (Version: 10.1.19041.1 - Microsoft) Hidden WPTx64 (HKLM-x32\...\{FD439F85-AD64-B3E5-9FC5-444AE8C8AF7B}) (Version: 10.1.19041.1 - Microsoft) Hidden XSplit Broadcaster (HKLM-x32\...\{631D1400-24D7-46D9-9227-35933EE8006C}) (Version: 3.1.1709.1531 - SplitmediaLabs) Xvid 1.2.2 final uninstall (HKLM-x32\...\Xvid_is1) (Version: 1.2 - Xvid team (Koepi)) Zoom (HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\ZoomUMX) (Version: 5.9.7 (3931) - Zoom Video Communications, Inc.) Zoom (HKU\S-1-5-21-1660700513-2118892591-3807124189-1002\...\ZoomUMX) (Version: 5.4.3 (58891.1115) - Zoom Video Communications, Inc.) Packages: ========= Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-01-02] () Dell Document Hub -> C:\Program Files\WindowsApps\DellPrinter.DellDocumentHub_1.7.0.6_x64__nmdn7k89bxsn6 [2024-01-02] (DELL GLOBAL B.V. (SINGAPORE BRANCH)) Dev Home -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.0.0.0_x64__8wekyb3d8bbwe [2024-01-02] (Microsoft Corporation) Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2024-01-02] (Dropbox Inc.) Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2024-01-02] (INTEL CORP) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-03-22] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-03-22] (Microsoft Corporation) [MS Ad] Microsoft Teams -> C:\Program Files\WindowsApps\MicrosoftTeams_1.0.0.0_x64__8wekyb3d8bbwe [2024-01-02] (Microsoft Corporation) Microsoft.WindowsAppRuntime.CBS -> C:\Windows\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2024-01-02] (Microsoft Corporation) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2024-01-02] (NVIDIA Corp.) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.3.180.0_x64__dt26b99r8h8gj [2021-05-16] (Realtek Semiconductor Corp) Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2024-01-02] (Microsoft Studios) [MS Ad] Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2024-01-02] (Microsoft Corporation) WindowsDVDPlayer -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer_3.6.13291.0_x64__8wekyb3d8bbwe [2024-01-02] (Microsoft Corporation) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> c:\program files\macrium\common\reflectmonitor.exe (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) CustomCLSID: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000_Classes\CLSID\{2C4A5D61-009C-4561-9A33-6AFD542FD237}\InprocServer32 -> C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\ContextMenu.dll (Synology Inc. -> ) CustomCLSID: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000_Classes\CLSID\{472CE1AD-5D53-4BCF-A1FB-3982A5F55138}\InprocServer32 -> C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll (Synology Inc. -> TODO: <Company name>) CustomCLSID: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000_Classes\CLSID\{48AB5ADA-36B1-4137-99C9-2BD97F8788AB}\InprocServer32 -> C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll (Synology Inc. -> TODO: <Company name>) CustomCLSID: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000_Classes\CLSID\{A433C3E0-8B24-40EB-93C3-4B10D9959F58}\InprocServer32 -> C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll (Synology Inc. -> TODO: <Company name>) CustomCLSID: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000_Classes\CLSID\{AEB16659-2125-4ADA-A4AB-45EE21E86469}\InprocServer32 -> C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll (Synology Inc. -> TODO: <Company name>) CustomCLSID: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000_Classes\CLSID\{C701AD67-3DF0-47C9-89CB-DFA6207BE229}\InprocServer32 -> C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll (Synology Inc. -> TODO: <Company name>) ShellIconOverlayIdentifiers: [ 01UnsuppModule] -> {AEB16659-2125-4ADA-A4AB-45EE21E86469} => C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll [2023-01-03] (Synology Inc. -> TODO: <Company name>) ShellIconOverlayIdentifiers: [ 02SyncingModule] -> {48AB5ADA-36B1-4137-99C9-2BD97F8788AB} => C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll [2023-01-03] (Synology Inc. -> TODO: <Company name>) ShellIconOverlayIdentifiers: [ 03SyncedModule] -> {472CE1AD-5D53-4BCF-A1FB-3982A5F55138} => C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll [2023-01-03] (Synology Inc. -> TODO: <Company name>) ShellIconOverlayIdentifiers: [ 04ReadOnlyModule] -> {A433C3E0-8B24-40EB-93C3-4B10D9959F58} => C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll [2023-01-03] (Synology Inc. -> TODO: <Company name>) ShellIconOverlayIdentifiers: [ 05NoPermModule] -> {C701AD67-3DF0-47C9-89CB-DFA6207BE229} => C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\iconOverlay.dll [2023-01-03] (Synology Inc. -> TODO: <Company name>) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Keine Datei ShellIconOverlayIdentifiers: [OODIIcon] -> {14A94384-BBED-47ed-86C0-6BF63FD892D0} => C:\Program Files\OO Software\DiskImage\oodishi.dll [2021-06-18] (O&O Software GmbH -> O&O Software GmbH) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2020-11-02] (Notepad++ -> ) ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2023-11-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) ContextMenuHandlers2: [OODIDismount] -> {BF5F9978-5B95-4F2E-BB19-5D95234187EE} => C:\Program Files\OO Software\DiskImage\oodishd.dll [2021-06-18] (O&O Software GmbH -> O&O Software GmbH) ContextMenuHandlers2: [ReflectShellExt] -> {DEBB9B79-B3DD-47F4-9E5C-EA6975BAB611} => C:\Program Files\Macrium\Reflect\RContextMenu.dll [2023-11-30] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-10-15] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.69.0.dll [2023-12-18] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_866484083fc526af\nvshext.dll [2023-12-08] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert] ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-10-15] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers1_S-1-5-21-1660700513-2118892591-3807124189-1000: [CloudStation.SyncFolderContextMenu] -> {2C4A5D61-009C-4561-9A33-6AFD542FD237} => C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\ContextMenu.dll [2023-01-03] (Synology Inc. -> ) ContextMenuHandlers6_S-1-5-21-1660700513-2118892591-3807124189-1000: [CloudStation.SyncFolderContextMenu] -> {2C4A5D61-009C-4561-9A33-6AFD542FD237} => C:\Users\Win7Admin\AppData\Local\SynologyDrive\SynologyDrive.app\icon-overlay\22\x64\ContextMenu.dll [2023-01-03] (Synology Inc. -> ) ==================== Codecs (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Drivers32: [vidc.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [180224 2009-06-07] () [Datei ist nicht signiert] HKLM\...\Drivers32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2014-09-16] (Electronic Arts -> On2.com) ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============= 2015-07-20 16:34 - 2015-07-20 16:34 - 000073728 _____ () [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files (x86)\No-IP\ducapi.dll 2014-06-23 16:52 - 2012-06-23 13:54 - 000061440 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\ROCCAT\Kone Pure Mouse\hiddriver.dll 2009-09-29 19:17 - 2009-09-29 19:17 - 000204800 _____ (Broadcom Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Belkin\F7D4101\V1\wps_api.dll 2014-01-23 07:59 - 2009-07-14 02:40 - 000084992 _____ (CANON INC.) [Datei ist nicht signiert] C:\WINDOWS\system32\spool\PRTPROCS\x64\CNBPP4.DLL 2014-07-30 19:56 - 2014-07-30 19:56 - 000208896 _____ (Gigabyte Technology CO., LTD.) [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\Smart TimeLock\slmDB.dll 2013-02-22 14:36 - 2013-02-22 14:36 - 000087040 _____ (Gigabyte Technology CO., LTD.) [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\Smart TimeLock\slmWeekCtrlRule.dll 2015-03-19 14:54 - 2015-03-19 14:54 - 000172032 _____ (Gigabyte Technology CO., LTD.) [Datei ist nicht signiert] C:\Program Files (x86)\GIGABYTE\Smart TimeLock\SmartLock.dll 2011-08-18 01:29 - 2011-08-18 01:29 - 001039360 _____ (Hewlett-Packard Co.) [Datei ist nicht signiert] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000071680 _____ (Hewlett-Packard) [Datei ist nicht signiert] c:\windows\system32\hpzinw12.dll 2010-08-06 11:15 - 2010-08-06 11:15 - 000089600 _____ (Hewlett-Packard) [Datei ist nicht signiert] c:\windows\system32\hpzipm12.dll 2006-11-20 15:50 - 2006-11-20 15:50 - 000121856 _____ (Microsoft Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Belkin\F7D4101\V1\XmlLite.dll 2019-12-06 19:37 - 2019-12-06 19:37 - 000262144 _____ (Microsoft Corporation) [Datei ist nicht signiert] C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbPc.DLL 2021-06-17 10:28 - 2021-06-17 10:28 - 001491456 _____ (Robert Simpson, et al.) [Datei ist nicht signiert] C:\Program Files\Duplicati 2\SQLite\win64\SQLite.Interop.dll 2021-06-17 10:28 - 2021-06-17 10:28 - 001625088 _____ (Robert Simpson, et al.) [Datei ist nicht signiert] C:\Program Files\Duplicati 2\x64\SQLite.Interop.dll 2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] C:\WINDOWS\System32\enppmon.dll 2017-06-01 11:40 - 2017-06-01 11:40 - 002093056 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\Paragon Software\Backup and Recovery 17 Free\program\LIBEAY32.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\Users\Locutus\Desktop\Anki_Lehrfächer:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\Locutus\Downloads\ArcInstall_v20140121a.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\chromeinstall-7u55.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\flashplayer_14_ax_debug.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\hmpalert.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\hpusetup.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\jre-7u45-windows-i586.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\jre-7u45-windows-x64.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\jre-7u51-windows-x64.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\jre-8u5-windows-x64.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\NDP45-KB2805226-x64.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\Shockwave_Installer_Slim.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\Silverlight_x64.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\star_trek_online_setup.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\TeamViewer_Setup_de.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\Thunderbird Setup 24.0.1.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\Thunderbird Setup 24.3.0.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\Thunderbird_17.0_de_SPS (1).exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\Thunderbird_17.0_de_SPS.exe:BDU [0] AlternateDataStreams: C:\Users\Locutus\Downloads\vlc-2.1.3-win64.exe:BDU [0] AlternateDataStreams: C:\Users\Win7Admin\Desktop\427222_intl_x64_zip.exe:BDU [0] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ================== ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ================= ==================== Internet Explorer (Nicht auf der Ausnahmeliste) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKU\S-1-5-21-1660700513-2118892591-3807124189-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> C:\Windows\system32\mscoree.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> D:\Spiele\Arc\plugins\ArcPluginIE.dll [2017-08-03] (Perfect World Entertainment, Inc. -> Perfect World Entertainment Inc) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-07-05] (Oracle America, Inc. -> Oracle Corporation) Toolbar: HKLM - Smart Backup - {1d09c093-f71e-43c3-b948-19316cbd695e} - C:\Windows\system32\mscoree.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation) Toolbar: HKU\S-1-5-21-1660700513-2118892591-3807124189-1001 -> Kein Name - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - Keine Datei Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts Inhalt: ========================= (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2018-04-12 00:38 - 2009-06-10 22:00 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2014-06-10 16:34 - 2015-05-10 21:37 - 000000516 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Andere Bereiche =========================== (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Users\Locutus\AppData\Local\Android\android-sdk/platform-tools;C:\Program Files (x86)\AOMEI Backupper;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Program Files (x86)\Windows Kits\10\Windows Performance Toolkit\;C:\Program Files (x86)\Windows Kits\10\Microsoft Application Virtualization\Sequencer\ HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Dell\Win7 Chrome 1920x1200.jpg HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Locutus\Pictures\NASA\2_nasaspacescapes_0006_7.jpg HKU\S-1-5-21-1660700513-2118892591-3807124189-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Katja *******\Desktop\IMG_2211 Kopie.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) HKU\S-1-5-21-1660700513-2118892591-3807124189-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 0) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Keine Datei) ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) MSCONFIG\Services: AVerRemote => 2 MSCONFIG\Services: AVerScheduleService => 2 MSCONFIG\Services: AVerUpdateServer => 2 HKLM\...\StartupApproved\StartupFolder: => "Play Wireless USB Adapter Utility.lnk" HKLM\...\StartupApproved\StartupFolder: => "WISO Mein Steuer-Sparbuch heute.lnk" HKLM\...\StartupApproved\StartupFolder: => "AVer HID Receiver.lnk" HKLM\...\StartupApproved\StartupFolder: => "AVerQuick.lnk" HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk" HKLM\...\StartupApproved\Run: => "Reflect UI" HKLM\...\StartupApproved\Run: => "SecurityHealth" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "Launch LCore" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "EPPCCMON" HKLM\...\StartupApproved\Run32: => "FireStormStartUpAutoRun" HKLM\...\StartupApproved\Run32: => "PDFPrint" HKLM\...\StartupApproved\Run32: => "HP Software Update" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Dropbox" HKLM\...\StartupApproved\Run32: => "Cisco AnyConnect Secure Mobility Agent for Windows" HKLM\...\StartupApproved\Run32: => "UpdReg" HKLM\...\StartupApproved\Run32: => "EEventManager" HKLM\...\StartupApproved\Run32: => "tsnp2uvc" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "OneDriveSetup" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000000" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000001" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "EPSDNMON" HKU\S-1-5-21-1660700513-2118892591-3807124189-1000\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_026F961320B9BD2080D79BBD1DC052BF" HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\StartupApproved\Run: => "Dropbox Update" HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\StartupApproved\Run: => "C2FF17C2C8DEA46B3B4824BAD19A727A37BD828F._service_run" HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\StartupApproved\Run: => "CiscoMeetingDaemon" HKU\S-1-5-21-1660700513-2118892591-3807124189-1001\...\StartupApproved\Run: => "EPLTarget\P0000000000000001" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================ (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{16A4AC5E-8D75-46E1-B013-FFAFF6614F1D}] => (Allow) LPort=9009 FirewallRules: [{4F61E08D-EF7A-44BD-912E-B1F3535DB3FB}] => (Allow) LPort=9009 FirewallRules: [{864E2DBB-BAC3-4BA8-8DF4-94E923FFE95A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{10B516A2-23C3-436F-8D9A-24287CFB4391}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\120.0.2210.91\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{AACF4027-E6EB-4D6C-9CAE-BB9659C0C8CA}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{3F6037F4-18FE-4348-B70C-25E7685AA1E4}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{A0FE1891-9B77-41C6-A264-B51D59CCDD74}] => (Allow) LPort=9009 FirewallRules: [{26F48C7D-2D15-4D29-B74E-7003C02B03E6}] => (Allow) LPort=9009 FirewallRules: [{82E7138B-89C1-4AA5-99E8-EE082FA04763}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{E0D8C639-C47A-4835-9D07-E1408DA47EB5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{1A780916-3D71-41B8-A527-4D30E7B3170B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{6EA307C1-9E18-4A6D-81FA-077A3B850708}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{631D9BDD-6933-449F-B57A-4F9489546755}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1398706D-3B32-486A-AA02-73F4A9F9DB96}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{AEFA1D1F-DFBD-4C78-9B1B-B98D8FC93DA8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{69CA212C-8145-4ECC-B5E3-8414DB6D88A8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{471ECDAC-4BF7-4684-9E45-889D5C09D40F}] => (Allow) LPort=9009 FirewallRules: [{D19888D1-50F8-4F96-B1B1-640DFD78C177}] => (Allow) LPort=9009 FirewallRules: [{ED889B35-840B-486A-AD67-AEB11A66787D}] => (Allow) LPort=9009 FirewallRules: [{EBEB4728-7745-48DC-9BE4-C8103136EBB7}] => (Allow) LPort=9009 FirewallRules: [{4390F701-A463-415F-BDFF-AA04839D5A2B}] => (Allow) LPort=9009 FirewallRules: [{903E05A7-EB49-41E5-A272-758F578D57B2}] => (Allow) LPort=9009 FirewallRules: [{16D63B11-0AC7-4841-8735-92358467DDFF}] => (Allow) LPort=9009 FirewallRules: [{5FAC2138-ECE8-49D1-B48F-9C3ED58F96D5}] => (Allow) D:\Spiele\Steam\SteamApps\common\Portal 2\portal2.exe () [Datei ist nicht signiert] FirewallRules: [{58CA2383-147E-489B-80ED-806ACBEDF829}] => (Allow) D:\Spiele\Steam\SteamApps\common\Portal 2\portal2.exe () [Datei ist nicht signiert] FirewallRules: [{32CB3596-1721-4338-A5B4-C9CCED7C3CC3}] => (Allow) LPort=9009 FirewallRules: [{334DA3C7-84A1-4072-8FCE-3967D51417E6}] => (Allow) D:\Spiele\Steam\SteamApps\common\SimpleRockets2\SimpleRockets2.exe () [Datei ist nicht signiert] FirewallRules: [{7EF7507C-197D-40EC-A430-F74B973AFF36}] => (Allow) D:\Spiele\Steam\SteamApps\common\SimpleRockets2\SimpleRockets2.exe () [Datei ist nicht signiert] FirewallRules: [{5C9C9419-F764-46A5-8BCA-C89A914A690D}] => (Allow) D:\Spiele\Steam\SteamApps\common\Lumberjacks Dynasty\LumberjacksDynasty.exe () [Datei ist nicht signiert] FirewallRules: [{0BD10D27-A03D-435A-AC90-06BF9630FD40}] => (Allow) D:\Spiele\Steam\SteamApps\common\Lumberjacks Dynasty\LumberjacksDynasty.exe () [Datei ist nicht signiert] FirewallRules: [{AA7803ED-2E50-4252-9685-01F338CD19A4}] => (Allow) D:\Spiele\Steam\SteamApps\common\Firefighting Simulator - The Squad\FG.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{36DCF59E-6C16-49F9-8C6A-5C2107C2C00C}] => (Allow) D:\Spiele\Steam\SteamApps\common\Firefighting Simulator - The Squad\FG.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{B599794B-2A9C-4CC9-B60D-328B7AE312F1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{EE1A210E-D31B-4885-AE3C-74486E526C8E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{377A3FB3-8AB4-438E-92B5-FEE0CA978598}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{94427784-092F-41F4-903C-85461C13F83D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{8E1D65B5-553F-47F3-BC32-8C328DB04DBF}] => (Allow) D:\Spiele\Steam\SteamApps\common\Empire Total War\Empire.exe (The Creative Assembly Ltd) [Datei ist nicht signiert] FirewallRules: [{6743AF55-3626-49F0-93DA-C0E770C4CFFC}] => (Allow) D:\Spiele\Steam\SteamApps\common\Empire Total War\Empire.exe (The Creative Assembly Ltd) [Datei ist nicht signiert] FirewallRules: [{CD28751D-9CF3-4DC8-BF4F-C03E36B1BEC0}] => (Allow) LPort=9009 FirewallRules: [{F8A026DA-A4DE-4407-901B-61EC41697F15}] => (Allow) LPort=9009 FirewallRules: [{189752DF-8CD8-4194-A30B-428083811B8A}] => (Allow) LPort=9009 FirewallRules: [{4B1B9019-F164-4656-9332-5E1812371663}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.104.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{A05AD855-8179-44C3-B697-501EFBA50F6F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.104.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{78D929B4-4D67-4C6F-8C8E-A49507E2FFB8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.104.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{615FF75F-49BE-4404-9D1A-8CAEB27790E7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.104.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{41C48926-3A42-46E5-B418-F997E7917019}] => (Allow) LPort=9009 FirewallRules: [{F582F254-4F0E-45F0-A6C6-13221D7C5136}] => (Allow) LPort=9009 FirewallRules: [{2A2C9582-C0FD-4D1F-A89C-C39B2B0B0AF5}] => (Allow) D:\Spiele\Steam\SteamApps\common\Hardspace Shipbreaker\Shipbreaker.exe (Focus Home Interactive S.A -> ) FirewallRules: [{773CE23D-2949-4E52-8F88-B44073ECEF6F}] => (Allow) D:\Spiele\Steam\SteamApps\common\Hardspace Shipbreaker\Shipbreaker.exe (Focus Home Interactive S.A -> ) FirewallRules: [{50EE36A6-0119-44C7-A1EA-EB21A18CCE8F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{449CF930-FC6F-4CD7-9EDC-F1CBF894CE3D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{8F1E71AB-6D9B-401E-AE7B-E72B59D81A2A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{41AE895D-6D70-4140-B00A-A30C9DFBE9E0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{8307BD7A-6909-4B50-8E97-D48DC5A4DAB5}] => (Allow) LPort=9009 FirewallRules: [{3BFECB26-D277-4B39-B204-95001E4FF8AE}] => (Allow) LPort=9009 FirewallRules: [{02145A05-95B4-4254-8440-A9F15AA10697}] => (Allow) LPort=9009 FirewallRules: [{C0FC1F4A-35C7-4600-9136-48DCBEEC8DF2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{13726BC9-1A11-4C74-9EC8-B46495D8654A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{E575629B-A1D7-4241-AA10-13B0CF7DF19B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{F9D9B556-6BA2-4CFC-BAC3-8F31CDDDB5A9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{E083AAEC-8CED-4457-83D2-D0C3DEA108E4}] => (Allow) LPort=9009 FirewallRules: [{92E8013C-C9F9-43FB-A7AD-C7AC67A8D405}] => (Allow) LPort=9009 FirewallRules: [{EF9860B6-2312-4B59-BD0D-55E5F0DFB59F}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{922225E5-A4F7-45E0-AD9E-87B159D24E23}D:\spiele\steam\steamapps\common\destroy all humans!\dh\binaries\win64\dh-win64-shipping.exe] => (Allow) D:\spiele\steam\steamapps\common\destroy all humans!\dh\binaries\win64\dh-win64-shipping.exe (THQ Nordic GmbH) [Datei ist nicht signiert] FirewallRules: [TCP Query User{29F6D0BA-8619-4AA3-9B57-99DE9B275231}D:\spiele\steam\steamapps\common\destroy all humans!\dh\binaries\win64\dh-win64-shipping.exe] => (Allow) D:\spiele\steam\steamapps\common\destroy all humans!\dh\binaries\win64\dh-win64-shipping.exe (THQ Nordic GmbH) [Datei ist nicht signiert] FirewallRules: [{8221418E-8951-48BB-B502-BD370000779D}] => (Allow) D:\Spiele\Steam\SteamApps\common\Destroy All Humans!\DH.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{9809335E-3A18-4BC9-A861-046A48DB4A48}] => (Allow) D:\Spiele\Steam\SteamApps\common\Destroy All Humans!\DH.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{30E102FE-4990-46D8-BAF6-F5072EC46A9C}] => (Allow) LPort=9009 FirewallRules: [{C3799D15-415F-41C8-86D6-F05580E43B6D}] => (Allow) LPort=9009 FirewallRules: [{E7C3B129-E1B9-4D0D-B02B-5E514D3D6948}] => (Allow) LPort=9009 FirewallRules: [{9A1E0477-69E3-47A1-BA28-8644EF1CFFF5}] => (Allow) LPort=9009 FirewallRules: [{918EF619-AC27-4EC8-840B-D0130877A869}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{7E731BA6-CE2D-4D38-9B68-F76C30A4118F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{648B546C-7E11-4E10-93B8-FD4DF583A867}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{4EF90F18-BBE4-459A-AF99-2D4FA7762AB4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{77AD9737-C3B8-4E2F-934A-8A29D1301A23}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{66374802-E4F5-4799-809D-3940ED330255}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{C2DB12CF-75BD-4FD0-8DF0-1108F579F1F8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{ED96197B-7BD6-4A91-84A9-828FD8BC6CC5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3202.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{99E2BD1E-2B1C-403B-9584-076571C1B541}] => (Allow) LPort=9009 FirewallRules: [{10D78295-E26E-48C0-BB90-EA5C900A5FC7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{B0C700E4-B6EC-4CD3-BBF6-67FB2702EBAE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{41AA31D9-0BDD-40DC-9485-78E7D86FA53B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{457E6109-426A-48EF-B94B-E9A2762A6BF6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3407.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{1A31FC11-C6B3-4976-B1D3-07F599508C81}] => (Allow) LPort=9009 FirewallRules: [{B83E5FC6-801F-46DF-B0A1-0273EAAF7BD7}] => (Allow) LPort=9009 FirewallRules: [{738C21B1-3939-4B90-B56D-E425DB873756}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{ED5BFB59-5BFD-4FD6-BB55-86702B043C76}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{D9BC068A-7C72-4B10-93E5-2E0E201F14C6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{20520910-5DE7-4010-A15F-3A6DD1AAFB24}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.98.3206.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{E6798166-65CD-4827-BE4B-7805E49AD198}] => (Allow) LPort=9009 FirewallRules: [{A74EE22C-4002-4B79-B0E9-20CF0B9750FF}] => (Allow) LPort=9009 FirewallRules: [{537949C8-32A5-450B-9D94-97B04AE21724}] => (Allow) LPort=9009 FirewallRules: [{DA2A2727-8973-45DD-8AD9-2D5C3A33CC01}] => (Allow) LPort=9009 FirewallRules: [{AF16A1C6-D1E6-4227-88EC-4BC5B5766383}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{2ED92433-7B96-4E15-9D47-5110E91611A6}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{F23F703B-7D06-43EB-A2F4-DAD1A0993A99}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{83DDCBED-8968-470D-9912-53851B2D7326}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{D909224F-D951-47D9-BFBF-0FE925722655}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{87F8F617-182F-4D5A-A0AC-152C69220DE2}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E94200F2-AF89-40DE-BEA1-7381710F57B6}] => (Allow) D:\Program Files (x86)\Origin Games\Command and Conquer Red Alert II\RA2Launcher.exe (Kalloc Studios, Inc. -> Kalloc Studios) [Datei ist nicht signiert] FirewallRules: [{9BA54F26-94E4-4734-939B-738D1E8A82BE}] => (Allow) D:\Program Files (x86)\Origin Games\Command and Conquer Red Alert II\RA2Launcher.exe (Kalloc Studios, Inc. -> Kalloc Studios) [Datei ist nicht signiert] FirewallRules: [{E5ED5B36-92D0-4F64-87B9-A41218D571AE}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{42EBDA59-F4A8-4962-AB27-2269AF086A5C}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{E647BC32-E987-4DA7-9532-9FE1CE9CAAB1}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{A3180ED0-4BC2-4FED-8CAB-F914C374D46C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{477A4945-49C3-4631-A7F3-82AAD1C4CE6F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{15376FB3-F8F9-47E2-B29A-5F65516C1EE1}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{61245937-0304-4C7C-A77E-91A05D96FFA3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{A21B0523-EE5C-4EAD-BA73-90664EBB0781}] => (Allow) LPort=9009 FirewallRules: [{C28439A7-168C-450D-B0B5-A7B23C312E8C}] => (Allow) LPort=9009 FirewallRules: [{12B99041-5BA9-4135-9BC2-F7F9E9DA9569}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{CFF2716F-B942-462C-BA29-E2872ED4AD63}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{655FE57E-1EEC-4FE3-8C82-767E74AFF03C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{2B13D19A-3735-4142-8683-7FF4EA43EF84}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.96.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{974A7135-C36F-4C02-94DD-B647DFCF2476}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cosmoteer\Bin\Cosmoteer.exe (Walternate Realities LLC -> Cosmoteer) FirewallRules: [{9DDE4DF2-D0DB-4A90-94B9-7BD9256D48C6}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cosmoteer\Bin\Cosmoteer.exe (Walternate Realities LLC -> Cosmoteer) FirewallRules: [{8F25297E-A95A-4610-BB3F-CBE834FB27E7}] => (Allow) LPort=9009 FirewallRules: [{7FDB9558-517D-4602-AD74-997BC9B3D138}] => (Allow) D:\Spiele\Steam\SteamApps\common\AoE2DE\BattleServer\BattleServer.exe (Microsoft Corporation -> ) FirewallRules: [{80CB95D1-5776-4C77-8E9E-88B05C98B0D2}] => (Allow) D:\Spiele\Steam\SteamApps\common\AoE2DE\BattleServer\BattleServer.exe (Microsoft Corporation -> ) FirewallRules: [{071A5319-B33C-45D2-A7AC-B065F19FB09E}] => (Allow) D:\Spiele\Steam\SteamApps\common\AoE2DE\AoE2DE_s.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6B929567-25C7-478D-BCA3-76DA75A94F5C}] => (Allow) D:\Spiele\Steam\SteamApps\common\AoE2DE\AoE2DE_s.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{9B1CC355-D5AD-4551-B717-5F58E05B0F34}] => (Allow) LPort=9009 FirewallRules: [{A57B8687-150A-44B0-96D7-4B682E0B7015}] => (Allow) D:\Spiele\Steam\SteamApps\common\Plan B Terraform\Plan B Terraform.exe () [Datei ist nicht signiert] FirewallRules: [{55D6D8C9-6CEF-4FE1-B77A-6EC1AF96D437}] => (Allow) D:\Spiele\Steam\SteamApps\common\Plan B Terraform\Plan B Terraform.exe () [Datei ist nicht signiert] FirewallRules: [{62B00DD8-052C-4620-92A3-5F2B7E8F1383}] => (Allow) LPort=9009 FirewallRules: [{C48E8C37-3601-4FEC-8BA1-F7B00D56B35C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{22730ABB-B3A0-4448-9094-D23006BED325}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{93335E1D-F2C3-4849-AFC6-695BDC79218F}] => (Allow) LPort=9009 FirewallRules: [{88983FCE-D40B-42A2-BDA1-BC146E15642B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{8B03E4D5-F55A-47A1-9601-66BD44478E6A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{834114F1-B88E-4BB9-9BEA-0F4B3EDDC645}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{ADDCC170-3C4F-4F90-95FF-EEDDB94F462B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{505D2414-D8E1-4E6F-A285-1731FDB59972}] => (Allow) LPort=9009 FirewallRules: [{FA0C87B8-4320-4C96-BB69-DD3A8EFC4123}] => (Allow) C:\Program Files (x86)\Iperius Backup\IperiusService.exe (ENTER S.R.L. -> Enter Srl) FirewallRules: [{19D06C93-8D96-4B32-A6A5-38AF1D1FCB6F}] => (Allow) C:\Program Files (x86)\Iperius Backup\IperiusService.exe (ENTER S.R.L. -> Enter Srl) FirewallRules: [{2DAEE976-3631-4CEB-955F-796C0FB40659}] => (Allow) C:\Program Files (x86)\Iperius Backup\Iperius.exe (ENTER S.R.L. -> Enter Srl) FirewallRules: [{393DFE1F-B84A-443D-922A-593C3D62919A}] => (Allow) C:\Program Files (x86)\Iperius Backup\Iperius.exe (ENTER S.R.L. -> Enter Srl) FirewallRules: [{AFD216A8-312C-4D1F-AD05-B39DA3D89EEC}] => (Allow) LPort=9009 FirewallRules: [{32FD4654-0D2E-495B-9680-3D97367E5ED1}] => (Allow) LPort=9009 FirewallRules: [{215FF668-8DFE-481C-87B2-66996088E53A}] => (Allow) D:\Spiele\Steam\SteamApps\common\Universe Sandbox 2\Universe Sandbox x64.exe () [Datei ist nicht signiert] FirewallRules: [{8BE814E2-E5BB-4910-B183-8562D9933463}] => (Allow) D:\Spiele\Steam\SteamApps\common\Universe Sandbox 2\Universe Sandbox x64.exe () [Datei ist nicht signiert] FirewallRules: [{BBF2692E-4072-4969-ABF4-C4FD0AACADC5}] => (Allow) LPort=9009 FirewallRules: [{DB408B9E-9835-4CCD-B094-03E582C3A65A}] => (Allow) LPort=9009 FirewallRules: [{EB3B1B14-03AE-470B-AD73-BE5E9E55487C}] => (Allow) LPort=9009 FirewallRules: [{BBFE8F4C-B447-4B6F-819B-36D76D708CD6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{65F2231C-C894-48BF-829E-6FBF2476A19D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{6C4E1F65-C4A4-4DC4-BD63-3653E24D6540}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei |
02.01.2024, 13:53 | #4 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Addition Teil 2 von 2 Code:
ATTFilter FirewallRules: [{5AC644A8-3CD4-446E-A95A-B4E4EADCB75B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.91.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{28771115-7F7B-426F-BB73-F2302BAB8BFD}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{88A37D84-AF91-4968-BBD3-777DE52F0CF2}D:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe] => (Allow) D:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [TCP Query User{F40D19B1-8D62-472D-9443-77E1EB931334}D:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe] => (Allow) D:\program files (x86)\origin games\star wars squadrons\starwarssquadrons.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{D5E96EB7-11C4-40FD-BB43-4B9BE0A62FA1}] => (Allow) D:\Program Files (x86)\Origin Games\STAR WARS Squadrons\starwarssquadrons_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{E67D11BA-BDDF-4A02-BD7F-BC41AE2FC9CA}] => (Allow) D:\Program Files (x86)\Origin Games\STAR WARS Squadrons\starwarssquadrons_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc) FirewallRules: [{F7100798-5AF0-46C9-AC06-3634C8E0AC4D}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{44D00819-E14B-40E8-9DC3-4E2C8F43F9BC}] => (Allow) D:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{CE74E629-6FE8-4D84-909A-A3CE55E5C483}] => (Allow) LPort=9009 FirewallRules: [{6666A517-ABEE-4D23-B930-917DE5E3FE73}] => (Allow) LPort=9009 FirewallRules: [{B8408331-E198-4DA1-A523-5970CE8FBFFE}] => (Allow) LPort=9009 FirewallRules: [{49C82D8F-B02B-44C0-B9C4-A22E76EC13BB}] => (Allow) LPort=9009 FirewallRules: [{A14BEC66-A933-412A-90EF-7F8807DC584D}] => (Allow) LPort=9009 FirewallRules: [{A694B77F-739D-40E7-8630-FAC0F6DD2447}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cosmoteer Demo\Bin\Cosmoteer.exe => Keine Datei FirewallRules: [{EA677A35-1EEA-4789-B44B-04402944BE45}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cosmoteer Demo\Bin\Cosmoteer.exe => Keine Datei FirewallRules: [{52C2C6A9-D22C-44AE-8E03-D41AFA53F3DD}] => (Allow) LPort=9009 FirewallRules: [{307F3F3D-F495-45B8-9E47-0F2AC78AABEF}] => (Allow) LPort=9009 FirewallRules: [{3DE5A80D-9355-4781-91B7-729BE0CC67A9}] => (Allow) LPort=9009 FirewallRules: [{F3B29116-2326-4231-86EB-DD39A3F2DCB6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{26B16AC2-7105-4DCE-A896-34AADA515149}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{F526A515-640F-480E-A31F-796CF938CBAC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{5774B14D-D592-4968-A38F-85B838574008}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.89.3403.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{59B2006F-29C7-4E0B-8C50-4051AAD66307}] => (Allow) LPort=9009 FirewallRules: [{D5A86589-242A-43F5-A955-AEF89B2EBCC4}] => (Allow) LPort=9009 FirewallRules: [{C278185B-B98D-48E0-8468-88E6F125EF28}] => (Allow) LPort=9009 FirewallRules: [{AE03F1B7-FA19-4CEF-812D-957D5A172C95}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{D5F5169F-0FE4-4A76-B680-6B8E1D9459D2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{7A6F3D7B-6579-4CCE-BCCB-DF12BD340923}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{59D44B17-E522-4AF1-912D-475792F0F217}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{8F1260C0-6B5B-4A59-86AD-B049EC0E5428}] => (Allow) D:\Spiele\Steam\SteamApps\common\Project Hospital\ProjectHospital.exe () [Datei ist nicht signiert] FirewallRules: [{CD98A7D2-F215-4942-8C02-7C67D34E454B}] => (Allow) D:\Spiele\Steam\SteamApps\common\Project Hospital\ProjectHospital.exe () [Datei ist nicht signiert] FirewallRules: [{70A84B18-6CBF-427D-A848-2541DBD33FA0}] => (Allow) D:\Spiele\Steam\SteamApps\common\Airport CEO\Airport CEO.exe () [Datei ist nicht signiert] FirewallRules: [{6894920C-E319-492B-B452-ADCD51BE10B0}] => (Allow) D:\Spiele\Steam\SteamApps\common\Airport CEO\Airport CEO.exe () [Datei ist nicht signiert] FirewallRules: [{DEAB228E-D745-4F1B-A33F-CD0A0D6FD577}] => (Allow) D:\Spiele\Steam\SteamApps\common\Parkitect\Parkitect.exe () [Datei ist nicht signiert] FirewallRules: [{E22630C6-10C9-4D6E-B1F7-FEB3097C61F8}] => (Allow) D:\Spiele\Steam\SteamApps\common\Parkitect\Parkitect.exe () [Datei ist nicht signiert] FirewallRules: [{6D1C354B-2197-44CF-90A7-4F03BE2F1545}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{3E73E5F3-F8F2-483C-8517-E3F6F27A7558}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{6615E1E1-C1F8-499C-A1D1-F0BDB75F8CC8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{38AF77D6-8466-4647-838D-A7E4BF79FFFD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{C4CA235D-24DF-4B91-97A0-DFA4B86793AA}] => (Allow) LPort=9009 FirewallRules: [{E79017C5-96EE-48F2-A84E-EA0E6A412820}] => (Allow) LPort=9009 FirewallRules: [{6C3E176E-802A-4572-BA67-CE4691E9CDA4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{26E12BB9-4363-4450-9B94-9FE09E9D5582}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{62406189-BD33-419E-9C06-171C7B278748}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{89EBB1D2-E12D-43CF-BDBD-8EF9C0C7CD3A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{B552449E-486B-441E-A16F-C276CE423C14}] => (Allow) LPort=9009 FirewallRules: [{BE69981C-7763-4B45-BDD8-9BCA3ED1E12E}] => (Allow) LPort=9009 FirewallRules: [{073185A5-A617-4893-835D-462FA1729804}] => (Allow) LPort=9009 FirewallRules: [{CD234324-E962-4511-B81E-212BB5FFBBCB}] => (Allow) LPort=9009 FirewallRules: [{67288424-E651-409D-A9AA-2157841134E7}] => (Allow) LPort=9009 FirewallRules: [{9476A78D-EBF2-462C-A6BF-3BBC168482CB}] => (Allow) LPort=9009 FirewallRules: [{FBBA9E09-37A3-4836-B195-C9CAD03DE892}] => (Allow) LPort=9009 FirewallRules: [{64BE69C9-055C-454D-989F-E7096F56FF17}] => (Allow) D:\Spiele\Steam\SteamApps\common\BomberCrew\BomberCrew.exe () [Datei ist nicht signiert] FirewallRules: [{B786B18A-172B-4FEE-AB94-33E94E6CDC2B}] => (Allow) D:\Spiele\Steam\SteamApps\common\BomberCrew\BomberCrew.exe () [Datei ist nicht signiert] FirewallRules: [{A55261FB-88AF-482E-94F0-0E6D95E9E49A}] => (Allow) LPort=9009 FirewallRules: [{D23BD9A7-E9B0-4A2D-9B36-B940503C3EB6}] => (Allow) LPort=9009 FirewallRules: [{3097A755-B491-4635-83BB-DAF439A0B9C2}] => (Allow) LPort=9009 FirewallRules: [{631BC873-5412-4795-8E00-5674BCE61357}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{07A7419F-F8EC-4BE8-A7A5-49577EE92B4D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{774E180F-593C-4858-85F1-01F660557D6C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{2023114D-AC2C-4891-9333-FD90A913A7A6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{C656B315-6CB7-4CF1-8EFE-2BF0E145EDC2}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{93D310F5-A9CE-4234-B6A9-2D3C9F42D056}D:\spiele\epic games\outerverse1nwx7\spacevoxel\binaries\win64\spacevoxel.exe] => (Allow) D:\spiele\epic games\outerverse1nwx7\spacevoxel\binaries\win64\spacevoxel.exe => Keine Datei FirewallRules: [TCP Query User{B2A1421B-A681-4A71-9439-15663C0821C3}D:\spiele\epic games\outerverse1nwx7\spacevoxel\binaries\win64\spacevoxel.exe] => (Allow) D:\spiele\epic games\outerverse1nwx7\spacevoxel\binaries\win64\spacevoxel.exe => Keine Datei FirewallRules: [{373DDFE5-619B-4BC7-B0F9-A577B5CCC555}] => (Allow) D:\Spiele\Steam\SteamApps\common\Total Tank Simulator\TotalTankSim.exe () [Datei ist nicht signiert] FirewallRules: [{6C6C9741-80C8-4F78-B3F5-1D8F147F1620}] => (Allow) D:\Spiele\Steam\SteamApps\common\Total Tank Simulator\TotalTankSim.exe () [Datei ist nicht signiert] FirewallRules: [{594BA53A-89ED-4F63-A153-215895892C53}] => (Allow) LPort=9009 FirewallRules: [{96205D40-CD0D-46AF-99F0-5A2CDAB7FBFD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{E804C80B-F151-4A22-BBF6-77611806231A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{C2B73487-AFB4-4CE6-AEC9-E55C9A796E0B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{8AD95A68-4DBB-46BE-89DA-D9BBAA6B52D0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.82.404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{2B0D0EA7-981D-4869-A34D-5DAF8FFAE23C}] => (Allow) LPort=9009 FirewallRules: [{38F866CB-6609-491C-B20D-BAB949A27AA3}] => (Allow) LPort=9009 FirewallRules: [{FAB33DA6-7209-4FB1-9DD3-B53ECBA2D557}] => (Allow) LPort=9009 FirewallRules: [{7FBFBD34-CD1D-4034-9158-8AC0DFC5313E}] => (Allow) LPort=9009 FirewallRules: [{4AA65E96-C18F-470F-83C9-CDA2E92C8FC5}] => (Allow) LPort=9009 FirewallRules: [{614B220F-C457-4421-A893-BD7F5A7655E9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{D2FF105D-02FC-45D2-93E6-EF6F03B1ECA1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{223162E5-4DE5-4B33-AC63-5C207E067107}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{340EC694-44BD-4EA9-BB82-19EBDEBEB765}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{9406160F-7A52-4539-886F-EA1C7174E1B2}] => (Allow) LPort=9009 FirewallRules: [{1392E74A-7868-473D-B45E-A9BB5387556A}] => (Allow) LPort=9009 FirewallRules: [{1A69C9EB-0299-4CFC-9676-56944C346B80}] => (Allow) LPort=9009 FirewallRules: [{5DDB9FA5-F74F-4A5C-BF25-50ADF016514C}] => (Allow) LPort=9009 FirewallRules: [{5048C9AD-5833-48C9-9978-B88BFE77E285}] => (Allow) LPort=9009 FirewallRules: [{ADED8E64-BE47-4E6E-AAE2-571F85EDD6C2}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{7E550114-8894-43E2-AAA9-88EA4F6CF775}D:\spiele\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\spiele\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{CE183510-CF16-413D-AD03-2F28D8F828F0}D:\spiele\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\spiele\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{342D7DBD-64F2-4AB9-921E-3D27D089C060}] => (Allow) LPort=9009 FirewallRules: [{616BF6EC-2F5D-4545-873D-9039999C8B39}] => (Allow) D:\Spiele\Epic Games\TheSettlers\The_Settlers.exe => Keine Datei FirewallRules: [{47B2BF73-4677-4CCC-9269-BFC6C74E36D0}] => (Allow) D:\Spiele\Steam\SteamApps\common\Door Kickers - Action Squad\tools\ActionSquadEd.exe (ACME) [Datei ist nicht signiert] FirewallRules: [{031A08D6-B790-46BD-8C42-B40F57C76D31}] => (Allow) D:\Spiele\Steam\SteamApps\common\Door Kickers - Action Squad\tools\ActionSquadEd.exe (ACME) [Datei ist nicht signiert] FirewallRules: [{7405F1F9-B5D3-43F0-A4B2-13DBD0D3E970}] => (Allow) LPort=9009 FirewallRules: [{B94A4CE3-2DD5-4525-A497-34D5CE74C5DF}] => (Allow) LPort=9009 FirewallRules: [{DD62EA0D-74CE-43DC-A691-486B644AB29D}] => (Allow) LPort=9009 FirewallRules: [{811118AD-06C6-44EB-A670-AD574BE42FE3}] => (Allow) LPort=9009 FirewallRules: [{80DC380D-59D8-403E-9B41-9EED80337089}] => (Allow) LPort=9009 FirewallRules: [{EA31AC73-26B8-44F2-9E32-8A252F0D6EFD}] => (Allow) LPort=9009 FirewallRules: [{1AB253E6-2947-44A5-AC14-0A513DC50CBA}] => (Allow) LPort=9009 FirewallRules: [{DEFC171C-A1A7-4297-B1FE-A09B71487078}] => (Allow) LPort=9009 FirewallRules: [{DF82AC2C-ED69-430C-B8BE-27751DD6667B}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{659595BC-3CFA-48B0-A112-6EFB0D5E102E}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net) FirewallRules: [TCP Query User{BD0B8101-C1DC-44E6-B56F-89E4E44D8017}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net) FirewallRules: [UDP Query User{A8B2CA61-4D15-4B52-B149-C576E8B28665}D:\spiele\ubisoft\ubisoft game launcher\games\anno 1404 - history edition\anno1404addon.exe] => (Allow) D:\spiele\ubisoft\ubisoft game launcher\games\anno 1404 - history edition\anno1404addon.exe (Ubisoft Blue Byte GmbH -> Ubisoft) FirewallRules: [TCP Query User{BE6C7AAB-3334-4466-8626-9B236E98825D}D:\spiele\ubisoft\ubisoft game launcher\games\anno 1404 - history edition\anno1404addon.exe] => (Allow) D:\spiele\ubisoft\ubisoft game launcher\games\anno 1404 - history edition\anno1404addon.exe (Ubisoft Blue Byte GmbH -> Ubisoft) FirewallRules: [{A722EC63-4E23-43F3-9A4A-D60CAAAFF224}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{C8A7D7EA-CD94-4E6C-B17E-0D1B80C46DF5}C:\users\katja *******\appdata\roaming\zoom\bin\zoom.exe] => (Block) C:\users\katja *******\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [TCP Query User{A26FAD05-20AF-42E1-9623-A0546B5967E4}C:\users\katja *******\appdata\roaming\zoom\bin\zoom.exe] => (Block) C:\users\katja *******\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{01E6555F-B86D-4B28-B629-6B977A6218F0}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{32B5853D-EB97-40B7-96E0-1A73AF9F600D}C:\users\locutus\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\locutus\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{D37D0D4E-3E93-4A8A-9510-4E2FDD430A1E}C:\users\locutus\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\locutus\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{CB967AF9-EE58-4C4D-B7F0-7EF9DDD5C070}] => (Allow) D:\Program Files (x86)\Origin Games\Jedi Fallen Order\SwGame\Binaries\Win64\starwarsjedifallenorder.exe (Respawn Entertainment) [Datei ist nicht signiert] FirewallRules: [{5B9B4DBB-D827-4060-9776-18F412F8EB25}] => (Allow) D:\Program Files (x86)\Origin Games\Jedi Fallen Order\SwGame\Binaries\Win64\starwarsjedifallenorder.exe (Respawn Entertainment) [Datei ist nicht signiert] FirewallRules: [{8794C7D3-A8A7-4F43-8FE2-A58FBE9229F6}] => (Allow) LPort=9009 FirewallRules: [{AE07F611-FE86-403F-9923-C03883475AF8}] => (Allow) D:\Spiele\Steam\SteamApps\common\AreYouReadyForValveIndex\compatapp.exe (Valve -> ) FirewallRules: [{F8BBFA8A-12F6-40A5-8344-BC5DE43406BD}] => (Allow) D:\Spiele\Steam\SteamApps\common\AreYouReadyForValveIndex\compatapp.exe (Valve -> ) FirewallRules: [{C2E4DBE5-A19D-4D3A-AD9B-CC3330E8D69F}] => (Allow) LPort=9009 FirewallRules: [{57053F67-82CA-4327-892C-16FC2A9C1708}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{3966D4B9-575A-4052-AF72-6D2F2770D1BB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{41B62C7B-D343-4BC7-979B-92D0CDA021F0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{6937D034-3573-4FAF-BCB5-BF3B16A967E2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{99EFDC28-3A18-4707-BAD2-3A515882BCF6}] => (Allow) LPort=9009 FirewallRules: [{C9805C75-33C6-4D61-9FE4-2EB8A61F76CC}] => (Allow) D:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts Inc.) [Datei ist nicht signiert] FirewallRules: [{2AEF5CF1-C76A-4C4B-BC69-200F656292C6}] => (Allow) D:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts Inc.) [Datei ist nicht signiert] FirewallRules: [{B9B5DA03-2A68-40A8-8F39-70465FADDA2D}] => (Allow) D:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{6BBAAEC1-CFC1-468F-8E3A-F36715A827C0}] => (Allow) D:\Program Files (x86)\Origin Games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{5F3B181D-AD8D-400F-A717-AABC10EAE939}] => (Allow) D:\Program Files (x86)\Origin Games\Need For Speed Hot Pursuit Remastered\NFS11Remastered.exe (Electronic Arts) [Datei ist nicht signiert] FirewallRules: [{0683D60E-1DE4-4C46-A8F9-C65C04A7F958}] => (Allow) D:\Program Files (x86)\Origin Games\Need For Speed Hot Pursuit Remastered\NFS11Remastered.exe (Electronic Arts) [Datei ist nicht signiert] FirewallRules: [{FB63AAF0-E2C6-49CD-949C-F55E4DECA22A}] => (Allow) LPort=9009 FirewallRules: [{6D5C919B-4976-43A2-9D51-AD864146ABD2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{13FEE164-8BA3-4843-90C4-B876AE04D576}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{913C54BF-F187-4BEB-89DF-9809D0AD316C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{B661E38E-1F15-4E08-9BEF-388DA076CD96}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{93C4B930-BE82-47E2-A939-82BBD0ED0EF6}] => (Allow) LPort=9009 FirewallRules: [{61D7A721-2733-45FA-AC4C-8077DB19CE20}] => (Allow) LPort=9009 FirewallRules: [{EE55F685-087D-4524-9FD3-03798257480D}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{BEADC72D-7839-4893-A542-68520DF5469B}D:\spiele\ubisoft\ubisoft game launcher\games\anno 1701 - history edition\anno1701.exe] => (Allow) D:\spiele\ubisoft\ubisoft game launcher\games\anno 1701 - history edition\anno1701.exe (Ubisoft Blue Byte GmbH -> ) FirewallRules: [TCP Query User{9C1B9E81-AE53-4C2D-A352-AACD2FF95466}D:\spiele\ubisoft\ubisoft game launcher\games\anno 1701 - history edition\anno1701.exe] => (Allow) D:\spiele\ubisoft\ubisoft game launcher\games\anno 1701 - history edition\anno1701.exe (Ubisoft Blue Byte GmbH -> ) FirewallRules: [{D58FDC96-284D-4959-9DEE-3DE656A4D0BD}] => (Allow) LPort=9009 FirewallRules: [{12F2C9CC-66E5-42BE-B032-FBE794A367C7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{89C03E4E-FD82-4A84-8668-E11B659F2276}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{ADC5AD8B-D214-433B-9FEF-ED85E03304C0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{98235094-7EC4-4687-A192-B1F28AC545EE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{CC434297-AB18-446B-8CB6-9E90EB837F0E}] => (Allow) LPort=9009 FirewallRules: [{7A3A3E15-9A8E-4792-A63D-F077C4EE52E9}] => (Allow) LPort=9009 FirewallRules: [{35171A0B-5C6C-45D8-BF9C-92F1286A88CD}] => (Allow) LPort=9009 FirewallRules: [{A9CE169C-C79F-4975-B566-47C95C128D8F}] => (Allow) LPort=9009 FirewallRules: [{24D6B2FD-247D-42F1-A7CC-1E282123EDC9}] => (Allow) D:\Spiele\Steam\SteamApps\common\Turmoil\Turmoil.exe () [Datei ist nicht signiert] FirewallRules: [{3EDB821A-DEC5-4F82-86DA-D383EC6FA901}] => (Allow) D:\Spiele\Steam\SteamApps\common\Turmoil\Turmoil.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{59375CFD-F5C3-409E-9855-1ECD6F6E96BA}D:\spiele\steam\steamapps\common\tropico 6\tropico6\binaries\win64\tropico6-win64-shipping.exe] => (Allow) D:\spiele\steam\steamapps\common\tropico 6\tropico6\binaries\win64\tropico6-win64-shipping.exe (Kalypso Media GmbH) [Datei ist nicht signiert] FirewallRules: [TCP Query User{6495E846-A401-48DE-A959-E9E28B797554}D:\spiele\steam\steamapps\common\tropico 6\tropico6\binaries\win64\tropico6-win64-shipping.exe] => (Allow) D:\spiele\steam\steamapps\common\tropico 6\tropico6\binaries\win64\tropico6-win64-shipping.exe (Kalypso Media GmbH) [Datei ist nicht signiert] FirewallRules: [{7DB6F017-A898-4FC0-9508-56575C0714C2}] => (Allow) LPort=9009 FirewallRules: [{832A6104-05C1-4865-BCB3-7A973EE7C55B}] => (Allow) D:\Spiele\Steam\SteamApps\common\Tropico 6\Tropico6.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{629493C9-65DF-4F1B-B0AB-28B6C20E7000}] => (Allow) D:\Spiele\Steam\SteamApps\common\Tropico 6\Tropico6.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{C85872F7-0C30-46C4-B06C-63677438723B}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{629D75D0-EE33-454A-90F2-A2B77F6770CB}C:\users\win7admin\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe] => (Allow) C:\users\win7admin\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe (Synology Inc. -> Synology Inc.) FirewallRules: [TCP Query User{26982209-4DB0-43F0-88E7-75739DB1B884}C:\users\win7admin\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe] => (Allow) C:\users\win7admin\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe (Synology Inc. -> Synology Inc.) FirewallRules: [UDP Query User{4A5D836A-A582-4AE2-B5EC-DA0F167BC235}C:\users\locutus\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe] => (Allow) C:\users\locutus\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe (Synology Inc. -> Synology Inc.) FirewallRules: [TCP Query User{0048AAA7-5F53-4830-9C6B-7C8CB596523B}C:\users\locutus\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe] => (Allow) C:\users\locutus\appdata\local\synologydrive\synologydrive.app\bin\cloud-drive-ui.exe (Synology Inc. -> Synology Inc.) FirewallRules: [{56610558-9368-4DCE-965F-5A638C41E193}] => (Allow) LPort=9009 FirewallRules: [{4D6EC1D1-297E-45FE-987D-E92BA71F7BD8}] => (Allow) D:\Spiele\Steam\SteamApps\common\Ancestors The Humankind Odyssey\Ancestors\Binaries\Win64\Ancestors-Win64-Shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{C15EC19B-5C8C-4BCB-9895-1790A1429F15}] => (Allow) D:\Spiele\Steam\SteamApps\common\Ancestors The Humankind Odyssey\Ancestors\Binaries\Win64\Ancestors-Win64-Shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert] FirewallRules: [{0AED5943-F580-41C0-A7D4-3B088C0A729D}] => (Allow) LPort=9009 FirewallRules: [{27559BF0-CF25-420D-9420-1CC1A7D13812}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{F26B5D1D-EF7B-4B5E-9B40-F8B441F2FB71}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{3A0FEBF0-84BA-45DC-B56D-120FB3B43C1B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{DE167DA0-7DA9-49A7-9128-38288201989D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{B3076AB1-BAEB-4F33-9AC6-F9CB9AFB70F4}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{40C95B41-FC89-40ED-9BFB-4ACBAA39D12E}D:\spiele\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\spiele\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [TCP Query User{DB30DB8E-19BC-48F7-940E-69CE3934BB62}D:\spiele\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\spiele\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) FirewallRules: [{49CFA60C-DC19-4D80-8675-9DC1128E3927}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{226943D5-9275-4A2C-A053-3E0BEABF77C7}D:\spiele\steam\steamapps\common\hearts of iron iv\hoi4.exe] => (Allow) D:\spiele\steam\steamapps\common\hearts of iron iv\hoi4.exe (Paradox Interactive AB (publ) -> Paradox Interactive) FirewallRules: [TCP Query User{0E0D9E27-425A-45FA-9D99-6583456D9271}D:\spiele\steam\steamapps\common\hearts of iron iv\hoi4.exe] => (Allow) D:\spiele\steam\steamapps\common\hearts of iron iv\hoi4.exe (Paradox Interactive AB (publ) -> Paradox Interactive) FirewallRules: [{AD6C3617-F20E-4784-9D24-8AF868E8139D}] => (Allow) D:\Spiele\Steam\SteamApps\common\Hearts of Iron IV\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{1839FE2C-66DF-4F2E-AE50-A0FF8FA55DFB}] => (Allow) D:\Spiele\Steam\SteamApps\common\Hearts of Iron IV\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{0CBA6187-C1B6-40E8-9028-781BF87A42A6}] => (Allow) LPort=9009 FirewallRules: [{D9A056EC-311F-422D-926F-15A806E93485}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe => Keine Datei FirewallRules: [{EAB0C4E5-389C-494C-B9E3-B936A879ABF1}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\LaunchPad\LaunchPad.exe => Keine Datei FirewallRules: [{136C0D6A-F750-45B1-ABD2-3D7E88B4F3D6}] => (Allow) LPort=9009 FirewallRules: [{C84FCBA9-417A-4532-8C1B-FFDC6232D750}] => (Allow) LPort=9009 FirewallRules: [{1B79B245-5EB0-4073-8F20-4B1566C07C82}] => (Allow) LPort=9009 FirewallRules: [{00DB5F6F-B1F9-4F3C-8CD1-3C7EED63A090}] => (Allow) LPort=9009 FirewallRules: [{17561FAA-5E9E-450D-BBEF-46D2F43FA89E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.72.94.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{590FD45E-1914-4288-9F2C-AE35B7CE728E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.72.94.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{165DD598-F2CC-4EEA-9FD6-1B7F8A48A026}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.72.94.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{B17DC299-2B3E-4063-A9F9-E9A14A283651}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.72.94.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{E7533C32-4242-4675-A41B-59DC4CBEF3D3}] => (Allow) LPort=9009 FirewallRules: [{D24ADCC3-223E-4B23-ABCF-1FDE3EF67FF9}] => (Allow) LPort=9009 FirewallRules: [{009D835C-69E4-4AEE-A3E8-5B8BC88EAD60}] => (Allow) LPort=9009 FirewallRules: [{630D9D9F-8C87-489E-8DF9-A7B0C7974F05}] => (Allow) LPort=9009 FirewallRules: [{17D1097B-D968-4956-A23E-646FB44088E8}] => (Allow) D:\Spiele\Steam\SteamApps\common\TPH\TPH.exe () [Datei ist nicht signiert] FirewallRules: [{F4D51F34-7A24-472F-AD59-7A68C0CF05DE}] => (Allow) D:\Spiele\Steam\SteamApps\common\TPH\TPH.exe () [Datei ist nicht signiert] FirewallRules: [{EEDBF3A5-EA9B-4699-AB57-70A2308A59A6}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{0322D996-B1FB-40F1-A189-A7BC6FF1B128}C:\users\locutus\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe] => (Allow) C:\users\locutus\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{0AF96406-E672-4ADD-954A-6137570F8679}C:\users\locutus\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe] => (Allow) C:\users\locutus\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C43CA9F1-29CB-450A-96E7-6D0DBE217DF7}] => (Allow) LPort=9009 FirewallRules: [{8AE9A5F0-FF85-48A0-A3A1-3FEC715C818A}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization VI\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) FirewallRules: [{1B167005-380D-45F3-9229-F864D07451E2}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization VI\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.) FirewallRules: [{B19C0623-6C37-4AEB-830B-47C3BBDA2C17}] => (Allow) D:\Spiele\Steam\SteamApps\common\Door Kickers - Action Squad\ActionSquad.exe (PixelShard.com) [Datei ist nicht signiert] FirewallRules: [{233489FD-B726-451C-B109-5CEFCAAEF619}] => (Allow) D:\Spiele\Steam\SteamApps\common\Door Kickers - Action Squad\ActionSquad.exe (PixelShard.com) [Datei ist nicht signiert] FirewallRules: [{52B9DF43-E722-4A10-9063-4210546DFE79}] => (Allow) D:\Spiele\Steam\SteamApps\common\LEGO Worlds\LEGO_Worlds.exe (Travellers Tales (UK) Limited -> ) FirewallRules: [{B531FA87-B7FF-483E-909E-A2C5668CA601}] => (Allow) D:\Spiele\Steam\SteamApps\common\LEGO Worlds\LEGO_Worlds.exe (Travellers Tales (UK) Limited -> ) FirewallRules: [UDP Query User{10590CC0-0975-4910-8F1A-C135ED86296F}C:\users\katja *******\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe] => (Allow) C:\users\katja *******\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{A3E96CF9-380C-4077-92B5-C24C4CF7B364}C:\users\katja *******\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe] => (Allow) C:\users\katja *******\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.511\pluginhost.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{9303A4CD-68B6-4E40-8FA6-D390EF4C9D64}] => (Allow) LPort=9009 FirewallRules: [{44FDB6A0-4591-4DD9-9D36-28A8B8AC36DE}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe (Xsolla (USA), Inc -> 2K) FirewallRules: [{4CEE3F2A-D20E-4C9C-B4B5-B44208383AC8}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization VI\LaunchPad\LaunchPad.exe (Xsolla (USA), Inc -> 2K) FirewallRules: [{E10A19A0-7195-414E-85C4-28991620CEAA}] => (Allow) LPort=9009 FirewallRules: [{F2C43383-4F09-4D8C-81C3-10D5FBCA25C6}] => (Allow) LPort=9009 FirewallRules: [{218EABC3-B305-40FE-AF35-819B1BA3A8D8}] => (Allow) LPort=9009 FirewallRules: [{FBE9EB11-9625-4B9E-80B4-1FB5CE5DEE29}] => (Allow) LPort=9009 FirewallRules: [{BD35A442-FBCC-4E50-BBC6-21E2647F22BA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{A08348A3-DAC0-4FB4-A665-E1526A21CF14}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{3A92B963-F1C2-4F5A-8110-09302CAB7C09}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{E8A08480-9199-4EA5-95B4-6F40FF09DC78}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei FirewallRules: [{E2E9856D-3284-494E-BD35-E38A28ACF02C}] => (Allow) LPort=9009 FirewallRules: [{FE90CE9E-E1A3-482E-9D8E-B2238DFD006F}] => (Allow) LPort=9009 FirewallRules: [{0CEEF5F2-4EDB-4F53-B905-C085B2B9423B}] => (Allow) LPort=9009 FirewallRules: [{45A5831E-8367-4AE1-8F68-6FC33DC44FB0}] => (Allow) LPort=9009 FirewallRules: [{C6333436-9039-4060-83EE-9110E6F03633}] => (Allow) D:\Spiele\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{D7109057-8710-488B-AB2B-AA397E36972E}] => (Allow) D:\Spiele\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{304C125E-4639-4B57-A6C6-9A9EEC1B2D7D}] => (Allow) D:\Spiele\Steam\SteamApps\common\Railway Empire\RailwayEmpire.exe (Kalypso Media Group -> Gaming Minds Studios GmbH) FirewallRules: [{71495E14-9F77-43F6-97DC-2059C94AD417}] => (Allow) D:\Spiele\Steam\SteamApps\common\Railway Empire\RailwayEmpire.exe (Kalypso Media Group -> Gaming Minds Studios GmbH) FirewallRules: [{E1FFE085-9803-41FC-A5AE-A463FF373607}] => (Allow) LPort=9009 FirewallRules: [{6D7E5538-410F-4A7A-B709-BC62463E5AE7}] => (Allow) LPort=9009 FirewallRules: [UDP Query User{CB4C103E-6D22-4E8E-A3FB-2AB8DDA1485A}C:\program files (x86)\gigabyte\@bios\flashbios.exe] => (Allow) C:\program files (x86)\gigabyte\@bios\flashbios.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) FirewallRules: [TCP Query User{2A4EB2A7-7B46-4125-95B4-6C977F6586FB}C:\program files (x86)\gigabyte\@bios\flashbios.exe] => (Allow) C:\program files (x86)\gigabyte\@bios\flashbios.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) FirewallRules: [{0DEE548A-4334-4EB2-8544-04283EE2CA6B}] => (Allow) LPort=9009 FirewallRules: [{4015548B-2F58-4F3C-928D-14F638C57B9E}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) FirewallRules: [{05275BAD-7106-4CBE-9C45-E0042715A637}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) FirewallRules: [{5AD5EE45-FBA1-4EF6-B8CE-B37CEC958D44}] => (Allow) LPort=9009 FirewallRules: [{0C9AB962-AC61-4D8C-8594-AC6AEFEF4A2E}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Broadcaster\XSplit.cam.exe (SplitmediaLabs Limited -> SplitmediaLabs Limited) FirewallRules: [{9140944D-C338-423A-92C3-22B73E5F0744}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Broadcaster\XSplit.Core.exe (SplitmediaLabs Limited -> SplitMediaLabs) FirewallRules: [{966C2F52-ADFC-4B9B-9AD3-E7E5658674CD}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Broadcaster\XSplit.cam.exe (SplitmediaLabs Limited -> SplitmediaLabs Limited) FirewallRules: [{6E1A2EDB-D40D-4CB6-8071-16D1ECA4194A}] => (Allow) C:\Program Files (x86)\SplitmediaLabs\XSplit Broadcaster\XSplit.Core.exe (SplitmediaLabs Limited -> SplitMediaLabs) FirewallRules: [UDP Query User{DEA03385-535A-4DC4-9D63-7DA2E12CC584}D:\spiele\epic games\subnautica\subnautica.exe] => (Allow) D:\spiele\epic games\subnautica\subnautica.exe () [Datei ist nicht signiert] FirewallRules: [TCP Query User{0F7AD0C1-5013-4576-AEF1-BF0E8A8961F2}D:\spiele\epic games\subnautica\subnautica.exe] => (Allow) D:\spiele\epic games\subnautica\subnautica.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{5ABF3AAB-FB73-4EE0-BF05-88BFBA49D24F}D:\spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{93EB94B3-43CC-4A09-9B36-941F62A1812E}D:\spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [{CC3B61AB-6502-42FD-B8C6-EF559382DDA4}] => (Allow) D:\Spiele\Steam\SteamApps\common\This War of Mine\Storyteller.exe () [Datei ist nicht signiert] FirewallRules: [{BBAC150B-EA7C-42B9-8578-46EA1DCAFD63}] => (Allow) D:\Spiele\Steam\SteamApps\common\This War of Mine\Storyteller.exe () [Datei ist nicht signiert] FirewallRules: [{EF4D43CD-A377-4AD5-8457-D73EC3E0803F}] => (Allow) D:\Spiele\Steam\SteamApps\common\This War of Mine\This War of Mine.exe (11 BIT STUDIOS S.A. -> ) FirewallRules: [{81E5062B-36FF-4164-8229-5C6C0561FAE7}] => (Allow) D:\Spiele\Steam\SteamApps\common\This War of Mine\This War of Mine.exe (11 BIT STUDIOS S.A. -> ) FirewallRules: [{D3797D45-0BA8-4A37-8D5E-C922E26535D5}] => (Allow) D:\Spiele\Steam\SteamApps\common\Patrician IV\Patrician4.exe (Gaming Minds Studios) [Datei ist nicht signiert] FirewallRules: [{27401800-1360-479C-81DE-1DD036F1F7F6}] => (Allow) D:\Spiele\Steam\SteamApps\common\Patrician IV\Patrician4.exe (Gaming Minds Studios) [Datei ist nicht signiert] FirewallRules: [{9C65038C-A22A-49E2-A797-3056DFB47376}] => (Allow) D:\Spiele\Steam\SteamApps\common\Port Royale 3\PortRoyale3.exe (Gaming Minds Studios GmbH) [Datei ist nicht signiert] FirewallRules: [{A77EA3CB-854C-40B8-8551-0AF0CC4B16F9}] => (Allow) D:\Spiele\Steam\SteamApps\common\Port Royale 3\PortRoyale3.exe (Gaming Minds Studios GmbH) [Datei ist nicht signiert] FirewallRules: [UDP Query User{BEA21D7D-C240-4807-AD92-91367AD860B0}D:\spiele\steam\steamapps\common\8bitarmies\instanceserverg.exe] => (Allow) D:\spiele\steam\steamapps\common\8bitarmies\instanceserverg.exe (Petroglyph Games Inc.) [Datei ist nicht signiert] FirewallRules: [TCP Query User{DA18A85F-2F01-4539-93FA-AE8C65628C28}D:\spiele\steam\steamapps\common\8bitarmies\instanceserverg.exe] => (Allow) D:\spiele\steam\steamapps\common\8bitarmies\instanceserverg.exe (Petroglyph Games Inc.) [Datei ist nicht signiert] FirewallRules: [UDP Query User{F80656CC-0833-4FB7-BA4C-F724373B6CF5}D:\spiele\steam\steamapps\common\8bitarmies\clientg.exe] => (Allow) D:\spiele\steam\steamapps\common\8bitarmies\clientg.exe (Petroglyph Games Inc.) [Datei ist nicht signiert] FirewallRules: [TCP Query User{E55F8BE6-4287-4C37-8D07-C6092812E513}D:\spiele\steam\steamapps\common\8bitarmies\clientg.exe] => (Allow) D:\spiele\steam\steamapps\common\8bitarmies\clientg.exe (Petroglyph Games Inc.) [Datei ist nicht signiert] FirewallRules: [{AF906D50-11C7-43CF-8AC2-CE39904E25D3}] => (Allow) D:\Spiele\Steam\SteamApps\common\8BitArmies\ClientLauncherG.exe (Petroglyph Games Inc.) [Datei ist nicht signiert] FirewallRules: [{0903B2B6-2A45-4DD7-B52C-DFBBDDAE3ADC}] => (Allow) D:\Spiele\Steam\SteamApps\common\8BitArmies\ClientLauncherG.exe (Petroglyph Games Inc.) [Datei ist nicht signiert] FirewallRules: [{594BC76D-09E8-4D8D-9B73-FCD4E1605DEC}] => (Allow) D:\Spiele\Steam\SteamApps\common\Interplanetary Enhanced Edition\Interplanetary.exe () [Datei ist nicht signiert] FirewallRules: [{6E6B4D4D-CB04-4477-8827-C2E49E10AB71}] => (Allow) D:\Spiele\Steam\SteamApps\common\Interplanetary Enhanced Edition\Interplanetary.exe () [Datei ist nicht signiert] FirewallRules: [{44E8422F-C085-4055-9D6B-97DD822E0CCF}] => (Allow) \\HOMEBACKUP\PC Backup\Paragon B&R\Install\br17_x64.exe => Keine Datei FirewallRules: [{583E092F-662F-4AC9-A040-4227A35C3CCE}] => (Allow) \\HOMEBACKUP\PC Backup\Paragon B&R\Install\br17_x64.exe => Keine Datei FirewallRules: [{036D7D33-1500-4FA1-8133-B7EDE89B3C79}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{8B6CE19D-08D2-4D1A-AC46-DA84B7C5C274}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{08200C67-F48F-4E85-AF12-1825D2E4000C}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 2205\Bin\Win64\Anno2205.exe (Blue Byte GmbH -> Ubisoft) FirewallRules: [UDP Query User{F81D042D-F037-45EE-A6C8-59958CBB6F8A}D:\spiele\arc\arcchat.exe] => (Allow) D:\spiele\arc\arcchat.exe (Gearbox Publishing San Francisco Inc -> Gearbox Publishing) FirewallRules: [TCP Query User{C415CC62-7665-4610-B943-D6F9BF1B36AC}D:\spiele\arc\arcchat.exe] => (Allow) D:\spiele\arc\arcchat.exe (Gearbox Publishing San Francisco Inc -> Gearbox Publishing) FirewallRules: [{C808CACF-BE3D-4410-A1B5-7A6731C0D4BA}] => (Allow) D:\Program Files (x86)\Origin Games\Spore\Sporebin\SporeApp.exe (Electronic Arts -> Maxis, a division of Electronic Arts Inc.) FirewallRules: [{A8CE1D05-8F6A-4657-8BF8-BD9DCB337EA1}] => (Allow) D:\Program Files (x86)\Origin Games\Spore\Sporebin\SporeApp.exe (Electronic Arts -> Maxis, a division of Electronic Arts Inc.) FirewallRules: [{262527FD-4619-468F-8223-27E47402AF3A}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect 3\Binaries\Win32\MassEffect3.exe (Electronic Arts -> BioWare) FirewallRules: [{ECCBEC06-C59B-4DBC-86F0-EC4BED1EC98F}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect 3\Binaries\Win32\MassEffect3.exe (Electronic Arts -> BioWare) FirewallRules: [{5EA56DAE-0FDE-4B55-BFCD-664AD8F65C54}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect\Binaries\MassEffect.exe (Electronic Arts -> BioWare) FirewallRules: [{16073A1E-EBF6-457E-95F4-FFEBCA3B1876}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect\Binaries\MassEffect.exe (Electronic Arts -> BioWare) FirewallRules: [{0BCAD270-B888-4DD7-AACB-0B7E187B9010}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{2D4866B7-F055-43D5-940B-1E7F1E70E029}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher_x86.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{CCA938EA-D3C0-43C3-BE25-E4DE977C36B9}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{53373FA4-D911-46BE-834B-9170907C0A53}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BFLauncher.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{87FEDC8C-BAA8-44C3-A504-A32A421D8EFC}] => (Allow) C:\Program Files (x86)\CLIQZ\CLIQZ.exe (Cliqz GmbH -> Cliqz GmbH) FirewallRules: [{E1AF184B-8F47-4203-B8E6-EF66E023DCFB}] => (Allow) C:\Program Files (x86)\CLIQZ\CLIQZ.exe (Cliqz GmbH -> Cliqz GmbH) FirewallRules: [{EF77D1F2-DDE7-48FB-A87A-C51CB24A8597}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect 2\Binaries\MassEffect2.exe (Electronic Arts -> BioWare) FirewallRules: [{2857BB87-47E1-4D34-9964-899EC92C88A0}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect 2\Binaries\MassEffect2.exe (Electronic Arts -> BioWare) FirewallRules: [{DEC9F53A-3AD3-410A-9EB7-60F389A5086F}] => (Allow) D:\Spiele\Steam\SteamApps\common\Mad Games Tycoon\MadGamesTycoon.exe () [Datei ist nicht signiert] FirewallRules: [{1EB8CBC4-4A76-4D91-9604-5E8A88B0CF01}] => (Allow) D:\Spiele\Steam\SteamApps\common\Mad Games Tycoon\MadGamesTycoon.exe () [Datei ist nicht signiert] FirewallRules: [{1AF41CA1-BC0E-4A2A-A1B4-7E688F150976}] => (Block) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.) FirewallRules: [{3ECC467F-5817-4C7B-9D1A-DF829A6618D4}] => (Block) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.) FirewallRules: [UDP Query User{46B78E50-3ED5-426A-8792-B9717B2D22F8}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.) FirewallRules: [TCP Query User{8F9DB95F-0C7A-4177-A77C-8825B53C6ABF}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.) FirewallRules: [{49B50B15-E1CB-4593-BCFF-20DC6D7CA3C5}] => (Allow) D:\Spiele\Steam\SteamApps\common\Railroad Tycoon 3\RT3.exe (PopTop Software, Inc.) [Datei ist nicht signiert] FirewallRules: [{83C37837-C27F-4F54-A6B3-ABABBBD1C7C7}] => (Allow) D:\Spiele\Steam\SteamApps\common\Railroad Tycoon 3\RT3.exe (PopTop Software, Inc.) [Datei ist nicht signiert] FirewallRules: [{01D878B6-F635-49A9-945C-65DDD663A2B4}] => (Allow) D:\Spiele\Steam\SteamApps\common\Big Pharma\Big Pharma.exe () [Datei ist nicht signiert] FirewallRules: [{E0D68F56-3193-46CB-9D69-65385E661CC9}] => (Allow) D:\Spiele\Steam\SteamApps\common\Big Pharma\Big Pharma.exe () [Datei ist nicht signiert] FirewallRules: [{CF1CD43B-12BC-4F8A-90E5-A9CB91057A9E}] => (Allow) D:\Spiele\Steam\SteamApps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe () [Datei ist nicht signiert] FirewallRules: [{48B39541-AD8A-49F4-B83A-5673CAA03161}] => (Allow) D:\Spiele\Steam\SteamApps\common\Stronghold Crusader 2\bin\win32_release\Crusader2.exe () [Datei ist nicht signiert] FirewallRules: [{54534C98-0A8F-449D-BCED-FD3E4AB16387}] => (Allow) D:\Spiele\Steam\SteamApps\common\Prison Architect\Prison Architect.exe => Keine Datei FirewallRules: [{E7680125-0BB2-44A7-AC38-5A71697B2ADA}] => (Allow) D:\Spiele\Steam\SteamApps\common\Prison Architect\Prison Architect.exe => Keine Datei FirewallRules: [{C4740A5D-2BAF-467C-8D90-DB4BC1D7E334}] => (Allow) D:\Spiele\Steam\SteamApps\common\Punch Club\Punch Club.exe () [Datei ist nicht signiert] FirewallRules: [{0CCB49C9-297C-4FAD-993A-5329490138FC}] => (Allow) D:\Spiele\Steam\SteamApps\common\Punch Club\Punch Club.exe () [Datei ist nicht signiert] FirewallRules: [{D3E8CCB6-C2C9-4283-9C88-CE620A7C1EDD}] => (Allow) LPort=23272 FirewallRules: [{F237E70D-BCBA-4EC7-AEA6-3440C66ED2AB}] => (Allow) LPort=62910 FirewallRules: [{0DB6B1E8-0B64-41AC-9BAD-2ED16C261BD3}] => (Allow) LPort=62910 FirewallRules: [{89BB16F7-F726-4368-ABF0-A0F9398744D3}] => (Allow) LPort=23272 FirewallRules: [{A4B42C86-ED33-41F0-9C01-2AAB643FD468}] => (Allow) D:\Spiele\Steam\SteamApps\common\Black Mesa\bms.exe () [Datei ist nicht signiert] FirewallRules: [{8D9FC5CB-5ACD-48E5-895F-AD99B75200F9}] => (Allow) D:\Spiele\Steam\SteamApps\common\Black Mesa\bms.exe () [Datei ist nicht signiert] FirewallRules: [{67EDA905-F212-4B00-84F5-A4776DB2BBDC}] => (Allow) D:\Spiele\Steam\SteamApps\common\Turmoil\Turmoil_PC_Full.exe => Keine Datei FirewallRules: [{72F980D0-B7F7-4F6F-B931-61EC2318C618}] => (Allow) D:\Spiele\Steam\SteamApps\common\Turmoil\Turmoil_PC_Full.exe => Keine Datei FirewallRules: [UDP Query User{DFB38323-3846-4B69-BDDE-2D4DB050F6B4}D:\spiele\world_of_warships\wowslauncher.exe] => (Allow) D:\spiele\world_of_warships\wowslauncher.exe => Keine Datei FirewallRules: [TCP Query User{72A15460-F76F-44BF-8ACB-13464E9D340E}D:\spiele\world_of_warships\wowslauncher.exe] => (Allow) D:\spiele\world_of_warships\wowslauncher.exe => Keine Datei FirewallRules: [{B0E00069-62ED-4FCE-B1F5-D6B3E53B2834}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe (Hewlett-Packard Company -> Hewlett-Packard) FirewallRules: [{93FE37C4-752D-4DA2-B638-92775A5434E3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{DE80957D-020A-4982-9B3B-9918FB72A654}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{DB23447B-F19F-4B3C-811B-3E9EB730EBEE}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Hewlett Packard -> Hewlett-Packard) FirewallRules: [{6ED10908-BE66-43C4-B399-EED2547383DD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{FBDD1BCE-3737-4BF6-AB41-D5F86BB9CD85}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{5670AF57-CFE9-4D96-8C2F-D5AEA6B36154}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{9015CFD9-9CD0-47EB-8DF9-7CF89BD3943C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{66C55A2E-C7D5-41A8-8FB4-651F5D6A1652}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe (Hewlett-Packard Co.) [Datei ist nicht signiert] FirewallRules: [{A9CCF178-1EBF-402B-AF6F-75F24F57DC38}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{79884D5D-2DDB-4837-AA83-8B3E59FF7569}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{5CCC1A04-0FE0-4D59-9FEC-37B2E6DEF703}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{11EB6ED3-FBD5-4D41-A26C-BDE1B218F028}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{C7F2ACE9-F37C-4B6E-8B74-61386D51A843}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{363E33C8-1C70-42C1-82E8-D31C1BC7CF8C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{A843A4DA-799B-470C-A2A3-5B12131332F7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{E7F0BEBA-6F19-44DD-BEDC-FB68EEE66246}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{64CFCD5F-DD03-470B-9D6E-17C9974E9305}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{2F0977B3-A650-448C-B956-8EF3075B1203}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{056E4E13-FCCB-4DC6-B612-AE0E795F5E47}] => (Allow) LPort=62910 FirewallRules: [{B1E7276C-5787-41EB-82E1-4372B7975F04}] => (Allow) LPort=23272 FirewallRules: [{5EDF1A98-B6FA-45D6-A3EB-986F631145EF}] => (Allow) LPort=62910 FirewallRules: [{B20C43B6-FAB6-45EA-A972-7419DD75A37B}] => (Allow) LPort=23272 FirewallRules: [{1F54B304-0A2F-40C9-B177-5A39E40A329C}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer -> TeamViewer GmbH) FirewallRules: [{EF84E846-48F5-4896-BFC6-2504B8EF6168}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe (TeamViewer -> TeamViewer GmbH) FirewallRules: [{7C9F1B00-4C85-4660-A19A-CA4A3A600A4B}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer -> TeamViewer GmbH) FirewallRules: [{48A169CE-1260-4883-8AB4-9747BCD0D461}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer -> TeamViewer GmbH) FirewallRules: [{25AACF0B-8696-4ACC-8E31-19FB4B4A32D4}] => (Allow) C:\Program Files (x86)\mHotspot\mHotspot.exe (1BN (www.1bn.in)) [Datei ist nicht signiert] FirewallRules: [{A88AB667-E7C9-40C7-9568-7A2068091527}] => (Allow) C:\Program Files (x86)\mHotspot\mHotspot.exe (1BN (www.1bn.in)) [Datei ist nicht signiert] FirewallRules: [{E5A8B698-5488-4987-85C7-470FB1DBE6D2}] => (Allow) C:\Program Files (x86)\mHotspot\mHotspot.exe (1BN (www.1bn.in)) [Datei ist nicht signiert] FirewallRules: [{F8C0FB3A-7DB8-427A-B83C-A9B5B2062519}] => (Allow) C:\Program Files (x86)\mHotspot\mHotspot.exe (1BN (www.1bn.in)) [Datei ist nicht signiert] FirewallRules: [{9E2CDAD1-D248-4EFB-9949-A1BF16BCAD44}] => (Allow) D:\Spiele\Steam\SteamApps\common\Source SDK Base 2007\hl2.exe () [Datei ist nicht signiert] FirewallRules: [{E68EDBE3-15C5-45F0-9ECE-D1ACB89886EE}] => (Allow) D:\Spiele\Steam\SteamApps\common\Source SDK Base 2007\hl2.exe () [Datei ist nicht signiert] FirewallRules: [{D8EA2785-6CF1-41B6-9709-BFDB07DBBDDE}] => (Allow) D:\Spiele\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe => Keine Datei FirewallRules: [{20E19E7A-449B-428E-AA0E-C81002ED20A6}] => (Allow) D:\Spiele\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe => Keine Datei FirewallRules: [{9C6A0243-EFF0-4CD1-A6E2-42D22212A0CE}] => (Allow) D:\Spiele\Steam\SteamApps\common\Rust\Rust.exe (Facepunch Studios Ltd -> Epic Games, Inc.) FirewallRules: [{3B35274A-F9E6-4CE6-997B-542896B00A4D}] => (Allow) D:\Spiele\Steam\SteamApps\common\Rust\Rust.exe (Facepunch Studios Ltd -> Epic Games, Inc.) FirewallRules: [{15318C73-B914-4437-A83B-AFFD98FAB57D}] => (Allow) D:\Spiele\Steam\SteamApps\common\Banished\Application-steam-x64.exe () [Datei ist nicht signiert] FirewallRules: [{BD64EBE1-6BB7-46A0-8EF1-8CC9C8B89F18}] => (Allow) D:\Spiele\Steam\SteamApps\common\Banished\Application-steam-x64.exe () [Datei ist nicht signiert] FirewallRules: [TCP Query User{D0050C84-DBDD-48FC-B4E3-57B6C6243F10}C:\program files\dc++\dcplusplus.exe] => (Allow) C:\program files\dc++\dcplusplus.exe () [Datei ist nicht signiert] FirewallRules: [UDP Query User{18BA1F80-63DA-4F92-8C88-A20985C3447A}C:\program files\dc++\dcplusplus.exe] => (Allow) C:\program files\dc++\dcplusplus.exe () [Datei ist nicht signiert] FirewallRules: [TCP Query User{7904A434-B9F4-4B01-BA9C-BA1DEB9113EC}D:\spiele\aoe2\age2_x1\age2_x1.exe] => (Allow) D:\spiele\aoe2\age2_x1\age2_x1.exe (Microsoft Corporation) [Datei ist nicht signiert] FirewallRules: [UDP Query User{1EDBE75E-D529-474E-BC4C-6FF6F7F0DB87}D:\spiele\aoe2\age2_x1\age2_x1.exe] => (Allow) D:\spiele\aoe2\age2_x1\age2_x1.exe (Microsoft Corporation) [Datei ist nicht signiert] FirewallRules: [TCP Query User{D9B18C37-8020-4615-A6D1-E34B59AB178F}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [UDP Query User{7F4A6164-EA30-4069-AD4C-C3E40984FA6E}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{6D39725D-841B-44FB-874E-ADF7FDC3F965}] => (Allow) D:\Spiele\Steam\SteamApps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{DEFC12C7-CD78-4161-9D75-C537FF4E3AD1}] => (Allow) D:\Spiele\Steam\SteamApps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert] FirewallRules: [{9F87084E-674B-480F-BDF3-9AD4BE50B19A}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation\PA.exe (Planetary Annihilation Inc -> Planetary Annihilation Inc) FirewallRules: [{01D43564-6D53-42CB-BEBC-43D7538079C9}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation\PA.exe (Planetary Annihilation Inc -> Planetary Annihilation Inc) FirewallRules: [{432FA164-57F2-439A-B5A8-F11EB64DDA90}] => (Allow) D:\Spiele\Steam\SteamApps\common\SpaceEngineers\Bin64\SpaceEngineers.exe (Keen Software House s.r.o. -> Keen Software House) FirewallRules: [{DE407DDE-C83F-4A68-A51C-6A4BC6046394}] => (Allow) D:\Spiele\Steam\SteamApps\common\SpaceEngineers\Bin64\SpaceEngineers.exe (Keen Software House s.r.o. -> Keen Software House) FirewallRules: [{66F0FFB0-D86B-4694-99DC-0570EDED0CB9}] => (Allow) LPort=62910 FirewallRules: [{9BEB6E63-BA8F-4C4B-A409-67F6FD8BEC45}] => (Allow) LPort=23272 FirewallRules: [{5EC2A99C-5131-4713-A66E-FC895BFA0448}] => (Allow) LPort=62910 FirewallRules: [{841E3084-91A8-48BF-9C1C-B29DCB22BD18}] => (Allow) LPort=23272 FirewallRules: [{5324B2FF-6DE4-4D76-838C-01DA92AD038A}] => (Allow) LPort=23272 FirewallRules: [{850A46BC-E35F-466C-B7BB-D9C7583001E0}] => (Allow) LPort=62910 FirewallRules: [{05FD52B1-C7C6-4B33-8FFF-216FDE6C08ED}] => (Allow) LPort=62910 FirewallRules: [{870F8D9F-F030-4101-A092-CB0C38BD5FF4}] => (Allow) LPort=23272 FirewallRules: [{8F43CE1B-E8E4-4B1C-91A1-C978171CD6BB}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe => Keine Datei FirewallRules: [{86FD2991-1DEE-4AC8-ADB6-CFD60C7E5117}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation\bin_x64\PA.exe (Planetary Annihilation Inc -> Planetary Annihilation Inc) FirewallRules: [{FC6D2366-B8B3-4682-8978-E46DA83F24D6}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation\bin_x64\PA.exe (Planetary Annihilation Inc -> Planetary Annihilation Inc) FirewallRules: [{28C3D610-F48E-4631-87E5-8E15FC2A4DB3}] => (Allow) D:\Spiele\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{BDDE1296-4998-4CB4-8D0C-C0620D6C8127}] => (Allow) D:\Spiele\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{3BD45F94-C199-480E-B380-AA5D25C18BEA}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe => Keine Datei FirewallRules: [{2FAA2BFF-B77C-4647-A728-4A2532D8ED64}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe => Keine Datei FirewallRules: [{4A20FBF2-5EF8-4F4A-8BED-280C362C6233}] => (Allow) D:\Spiele\Steam\SteamApps\common\Godus\windows\godus.exe => Keine Datei FirewallRules: [{1FEA02B0-FEB4-4A7C-A696-052B0E3968FC}] => (Allow) D:\Spiele\Steam\SteamApps\common\Godus\windows\godus.exe => Keine Datei FirewallRules: [{667F74E7-AD01-43B1-9A65-E6BF9E540464}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Railroads\RailRoads.exe (Take-Two Interactive Software, Inc. -> Firaxis Games, Inc) FirewallRules: [{18DE0CB3-D094-4C15-80ED-F02F41122D6A}] => (Allow) D:\Spiele\Steam\SteamApps\common\Sid Meier's Railroads\RailRoads.exe (Take-Two Interactive Software, Inc. -> Firaxis Games, Inc) FirewallRules: [{4518EE33-D771-4EA8-A54A-F1CAE13F0959}] => (Allow) D:\Spiele\Steam\SteamApps\common\Homeworld\HWLauncher\Launcher.exe (Gearbox Software) [Datei ist nicht signiert] FirewallRules: [{209C0848-B484-4577-8819-5387A536AA79}] => (Allow) D:\Spiele\Steam\SteamApps\common\Homeworld\HWLauncher\Launcher.exe (Gearbox Software) [Datei ist nicht signiert] FirewallRules: [{C8CFB134-E548-48BD-864F-6F0F493ECF0B}] => (Allow) D:\Spiele\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe (Haemimont Games) [Datei ist nicht signiert] FirewallRules: [{F23CB6AC-724E-4DBA-8FE7-3501977B6FCD}] => (Allow) D:\Spiele\Steam\SteamApps\common\Tropico 5\Tropico5Steam.exe (Haemimont Games) [Datei ist nicht signiert] FirewallRules: [{40A97AAF-04F4-4936-B44D-AE89E9B5FF73}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{FAFC342F-3A5F-4D6B-AE23-7ED0689D520C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{70E63B70-7039-4258-93B5-259F38D6F734}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (Ubisoft Entertainment Sweden AB -> Ubisoft) FirewallRules: [{A7950816-A1C9-4D3E-A133-CDE3CFEDB6C6}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (Ubisoft Entertainment Sweden AB -> Ubisoft) FirewallRules: [{A80491D7-F560-4077-AB30-C6BF92BE684B}] => (Allow) D:\Spiele\Ubisoft\Die Siedler 7\Data\Base\_Dbg\Bin\Release\Settlers7R.exe (Blue Byte GmbH -> Blue Byte GmbH) FirewallRules: [{565AAC16-02B1-460B-A2C3-C916D5041525}] => (Allow) D:\Spiele\Ubisoft\Die Siedler 7\Data\Base\_Dbg\Bin\Release\Settlers7R.exe (Blue Byte GmbH -> Blue Byte GmbH) FirewallRules: [{93CF7A70-CDBB-4186-A107-D085F7AFF78B}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\PA.exe (Planetary Annihilation Inc) [Datei ist nicht signiert] FirewallRules: [{3A5DD97F-CD50-4B1E-A7C4-3ECE8E5E4A31}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\PA.exe (Planetary Annihilation Inc) [Datei ist nicht signiert] FirewallRules: [{D4F225B6-2955-4A41-83A1-9DAD01522285}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\crashupload.exe (Planetary Annihilation Inc) [Datei ist nicht signiert] FirewallRules: [{60CE458E-B01D-44FA-B6D9-DFDE50669452}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\crashupload.exe (Planetary Annihilation Inc) [Datei ist nicht signiert] FirewallRules: [{27E629C1-D0CC-4CCE-9CF0-D341FA5FE4AD}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\host\CoherentUI_Host.exe (Coherent Labs -> Coherent Labs) [Datei ist nicht signiert] FirewallRules: [{EA1687DB-265A-4F88-BDFF-4FB2B5E74B38}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\host\CoherentUI_Host.exe (Coherent Labs -> Coherent Labs) [Datei ist nicht signiert] FirewallRules: [{2BE6F75A-4838-4FA9-A1A0-B377D6903BFD}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\server.exe (Planetary Annihilation Inc) [Datei ist nicht signiert] FirewallRules: [{0B3BEC7B-D918-471F-ADF1-2F66D1084FD3}] => (Allow) D:\Spiele\Steam\SteamApps\common\Planetary Annihilation Titans\bin_x64\server.exe (Planetary Annihilation Inc) [Datei ist nicht signiert] FirewallRules: [TCP Query User{3425D876-7709-4134-9025-47890C6E3E40}D:\spiele\world_of_warships\wowslauncher.exe] => (Allow) D:\spiele\world_of_warships\wowslauncher.exe => Keine Datei FirewallRules: [UDP Query User{0A7CFA5A-8E83-4694-A4C8-37E2D07B53EB}D:\spiele\world_of_warships\wowslauncher.exe] => (Allow) D:\spiele\world_of_warships\wowslauncher.exe => Keine Datei FirewallRules: [{1CB4D8DB-51D2-42F3-B214-CB9811740D2C}] => (Allow) D:\Spiele\Steam\SteamApps\common\3DMark 11\3DMarkLauncher.exe (FUTUREMARK INC -> ) FirewallRules: [{3469E8C5-A4C0-4442-9650-FEF94E8A3835}] => (Allow) D:\Spiele\Steam\SteamApps\common\3DMark 11\3DMarkLauncher.exe (FUTUREMARK INC -> ) FirewallRules: [{7F89CE12-5274-4637-B408-92A9E996E562}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{8E023494-CC31-4B61-A098-50AC2F2F690A}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> ) FirewallRules: [{217F8005-9E43-42F0-B852-EAF575E11ECC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [{2AB04480-8C09-4812-9480-07A1BE814DA4}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> ) FirewallRules: [TCP Query User{C9A453BC-8CDC-4011-94A7-92C6EC141CD0}D:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) D:\program files (x86)\origin games\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [UDP Query User{ECE870FB-DE12-4046-AAD8-B37636E2A2C0}D:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) D:\program files (x86)\origin games\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{C64818EE-7084-4339-9EFE-ED8736BA9DA4}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cities_Skylines\Cities.exe () [Datei ist nicht signiert] FirewallRules: [{38A4ECF1-9268-4D7E-BAE7-2057585CDB36}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cities_Skylines\Cities.exe () [Datei ist nicht signiert] FirewallRules: [{25A323A2-18AB-4642-8CC3-330C99AA03D5}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{DF4116D7-7E9A-4D03-83B7-F3E196A6D113}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BF4WebHelper.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{1B057A12-ADF8-46D9-B827-A4DDA4D7FAFB}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [{E20BB1EC-BFB4-4862-AEE5-BBFC47A87BB7}] => (Allow) D:\Program Files (x86)\Origin Games\Battlefield 4\BF4X86WebHelper.exe (Electronic Arts -> EA Digital Illusions CE AB) FirewallRules: [TCP Query User{0275427E-291B-47F4-8183-262F1C4318AF}D:\spiele\steam\steamapps\common\godus wars\windows\godus wars_data\gameexecutables\release\godus wars.exe] => (Allow) D:\spiele\steam\steamapps\common\godus wars\windows\godus wars_data\gameexecutables\release\godus wars.exe => Keine Datei FirewallRules: [UDP Query User{6295B263-6845-4061-9B0A-68324BACD9E4}D:\spiele\steam\steamapps\common\godus wars\windows\godus wars_data\gameexecutables\release\godus wars.exe] => (Allow) D:\spiele\steam\steamapps\common\godus wars\windows\godus wars_data\gameexecutables\release\godus wars.exe => Keine Datei FirewallRules: [{1A3D1AEB-D925-4251-8D97-83D926701882}] => (Allow) D:\Spiele\Steam\SteamApps\common\Godus Wars\windows\Godus Wars.exe => Keine Datei FirewallRules: [{5FD3FC2A-D532-4696-8E03-F7D1C796D2A4}] => (Allow) D:\Spiele\Steam\SteamApps\common\Godus Wars\windows\Godus Wars.exe => Keine Datei FirewallRules: [{623AC224-0FC9-4F27-8231-4D2F7EBFE284}] => (Allow) D:\Spiele\Steam\SteamApps\common\Stellaris\stellaris.exe (Paradox Interactive AB (publ) -> Paradox Interactive) FirewallRules: [{CBE02E85-54E3-44ED-AF8C-44238F0AF924}] => (Allow) D:\Spiele\Steam\SteamApps\common\Stellaris\stellaris.exe (Paradox Interactive AB (publ) -> Paradox Interactive) FirewallRules: [TCP Query User{A477F971-DCB6-4060-8544-A46184F97563}D:\spiele\world_of_warships\worldofwarships.exe] => (Allow) D:\spiele\world_of_warships\worldofwarships.exe (Wargaming Group Limited -> Wargaming.net) FirewallRules: [UDP Query User{95786FED-853A-4A89-BF25-51FEC286FFBF}D:\spiele\world_of_warships\worldofwarships.exe] => (Allow) D:\spiele\world_of_warships\worldofwarships.exe (Wargaming Group Limited -> Wargaming.net) FirewallRules: [TCP Query User{746F4943-CD30-4094-AF34-D60BB4C43873}D:\spiele\roberts space industries\starcitizen\live\bin64\starcitizen.exe] => (Allow) D:\spiele\roberts space industries\starcitizen\live\bin64\starcitizen.exe (Cloud Imperium Games Corp.) [Datei ist nicht signiert] FirewallRules: [UDP Query User{2DC9E0F9-405F-4368-8E41-F52428F46ACB}D:\spiele\roberts space industries\starcitizen\live\bin64\starcitizen.exe] => (Allow) D:\spiele\roberts space industries\starcitizen\live\bin64\starcitizen.exe (Cloud Imperium Games Corp.) [Datei ist nicht signiert] FirewallRules: [{D48841A6-C6B8-4B92-9077-05B23EDBCB1C}] => (Allow) D:\Spiele\Steam\SteamApps\common\Prison Architect\Prison Architect64.exe () [Datei ist nicht signiert] FirewallRules: [{B26962B7-DCD0-455B-938B-B728244BF76F}] => (Allow) D:\Spiele\Steam\SteamApps\common\Prison Architect\Prison Architect64.exe () [Datei ist nicht signiert] FirewallRules: [{BEC99ABC-C74C-403E-8311-263B93417E2A}] => (Allow) D:\Spiele\Steam\SteamApps\common\Foundation\foundation.exe (Polymorph Games) [Datei ist nicht signiert] FirewallRules: [{A5336CE4-B229-46FD-9306-C4399D825D87}] => (Allow) D:\Spiele\Steam\SteamApps\common\Foundation\foundation.exe (Polymorph Games) [Datei ist nicht signiert] FirewallRules: [{FCFFB6A9-7462-4614-8A8D-A70F0DBF26E2}] => (Allow) D:\Spiele\Steam\SteamApps\common\Crusader Kings II\CK2game.exe (Paradox Interactive AB (publ) -> Paradox Interactive) FirewallRules: [{0E2064A2-AACF-4119-912B-819B6FD0DD28}] => (Allow) D:\Spiele\Steam\SteamApps\common\Crusader Kings II\CK2game.exe (Paradox Interactive AB (publ) -> Paradox Interactive) FirewallRules: [{6D0C47F5-62EB-4FC3-B5E7-DE9F6E1E3CF5}] => (Allow) D:\Spiele\Ubisoft\Related Designs\ANNO 2070\Anno5.exe (Related Designs Software -> Related Designs) [Datei ist nicht signiert] FirewallRules: [{19F959A9-01D2-4EC7-80E8-6C5710051D23}] => (Allow) D:\Spiele\Ubisoft\Related Designs\ANNO 2070\Anno5.exe (Related Designs Software -> Related Designs) [Datei ist nicht signiert] FirewallRules: [{0BB797EF-918F-42E2-A668-7FB88C70A358}] => (Allow) D:\Spiele\Ubisoft\Related Designs\ANNO 2070\AutoPatcher.exe (Related Designs Software -> Related Designs Software) [Datei ist nicht signiert] FirewallRules: [{9DB639F7-73B3-4E63-BE33-C5AB77AAD32B}] => (Allow) D:\Spiele\Ubisoft\Related Designs\ANNO 2070\AutoPatcher.exe (Related Designs Software -> Related Designs Software) [Datei ist nicht signiert] FirewallRules: [{57325B9C-6B0D-4B78-AC58-B9E997C98E88}] => (Allow) D:\Spiele\Ubisoft\Related Designs\ANNO 2070\InitEngine.exe (Related Designs Software -> ) [Datei ist nicht signiert] FirewallRules: [{2726C095-5421-4BF8-A8D6-403E56E0576A}] => (Allow) D:\Spiele\Ubisoft\Related Designs\ANNO 2070\InitEngine.exe (Related Designs Software -> ) [Datei ist nicht signiert] FirewallRules: [{5511D074-E9EE-4482-8C65-AAEEA70F3638}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\Anno4.exe => Keine Datei FirewallRules: [{0C1534E4-0752-4548-8741-2B1C2CD18AE8}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\Anno4.exe => Keine Datei FirewallRules: [{06CD8A43-1001-47D7-84F8-C3F519458FE6}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\Addon.exe => Keine Datei FirewallRules: [{CBEF9C1D-E65F-4019-96D9-07E3982C86D5}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\Addon.exe => Keine Datei FirewallRules: [{91040A0D-9506-4694-AF22-FB4B80779381}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\tools\Anno4Web.exe => Keine Datei FirewallRules: [{E5659E12-4357-4D63-9621-03CAA32CA74D}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\tools\Anno4Web.exe => Keine Datei FirewallRules: [{5B6982CC-C896-46C8-9E59-5854A097BBCF}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\tools\AddonWeb.exe => Keine Datei FirewallRules: [{0F61366D-9924-4BD2-83A4-783FC1B19E85}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Anno 1404\tools\AddonWeb.exe => Keine Datei FirewallRules: [{53B7DC7A-1F39-498F-B556-8B4F512150D9}] => (Allow) D:\Spiele\Steam\SteamApps\common\Star Control - Origins\Game\StarControl_DX11.exe => Keine Datei FirewallRules: [{F5C6AA61-51DA-4B43-84F8-35F407290B7A}] => (Allow) D:\Spiele\Steam\SteamApps\common\Star Control - Origins\Game\StarControl_DX11.exe => Keine Datei FirewallRules: [{00F33DF6-055F-4BB3-95B4-37F5CCCD2D40}] => (Allow) D:\Spiele\Steam\SteamApps\common\Prison Architect\Launcher\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{11FDC13D-24BB-4C50-B27F-FF5BC62FC4D8}] => (Allow) D:\Spiele\Steam\SteamApps\common\Prison Architect\Launcher\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{6D2D4B0F-7FF4-4032-914A-475A022EF62D}] => (Allow) D:\Spiele\Steam\SteamApps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{E067E1F3-95F5-4BF5-B6AB-24015F3D882A}] => (Allow) D:\Spiele\Steam\SteamApps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{9B1BD542-AADD-4129-9EBE-3AD714B08238}] => (Allow) D:\Spiele\Ubisoft\Ubisoft Game Launcher\games\Far Cry Primal\bin\FCPrimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment) FirewallRules: [TCP Query User{BFC2BD5B-E877-402A-ACA6-F4E0182616FE}C:\program files (x86)\common files\oracle\java\javapath_target_1125748687\javaw.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_1125748687\javaw.exe FirewallRules: [UDP Query User{79619CD9-9D9F-4BB7-894F-1E002165F27B}C:\program files (x86)\common files\oracle\java\javapath_target_1125748687\javaw.exe] => (Allow) C:\program files (x86)\common files\oracle\java\javapath_target_1125748687\javaw.exe FirewallRules: [{40B52150-6D50-4E8F-AE92-9DEA99358357}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cities_Skylines\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{91977D78-D6DC-4594-851D-B4FB5CB856A3}] => (Allow) D:\Spiele\Steam\SteamApps\common\Cities_Skylines\dowser.exe (Paradox Interactive AB (publ) -> ) FirewallRules: [{7A832B4F-9901-4CB4-B4EC-287CD5FDC00C}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect 2\Binaries\MassEffect2.exe (Electronic Arts -> BioWare) FirewallRules: [{26A0346F-4811-4D23-8954-9938F70F1181}] => (Allow) D:\Program Files (x86)\Origin Games\Mass Effect 2\Binaries\MassEffect2.exe (Electronic Arts -> BioWare) FirewallRules: [TCP Query User{970348B8-9F43-4116-90F6-BA439DA5CAC9}D:\spiele\star trek online_de\star trek online\live\x64\gameclient.exe] => (Allow) D:\spiele\star trek online_de\star trek online\live\x64\gameclient.exe (CRYPTIC STUDIOS, INC -> ) FirewallRules: [UDP Query User{85227A71-2C40-49AE-A857-142FC928ECA1}D:\spiele\star trek online_de\star trek online\live\x64\gameclient.exe] => (Allow) D:\spiele\star trek online_de\star trek online\live\x64\gameclient.exe (CRYPTIC STUDIOS, INC -> ) FirewallRules: [TCP Query User{5DB0564D-62DA-4421-A904-26232F44FE03}D:\spiele\epic games\gtav\gta5.exe] => (Allow) D:\spiele\epic games\gtav\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{66A46E68-0A68-4F48-B7CD-6AE4DE366F2C}D:\spiele\epic games\gtav\gta5.exe] => (Allow) D:\spiele\epic games\gtav\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [TCP Query User{204F7509-F74C-4D77-B284-24342944D377}D:\spiele\star trek online_de\star trek online\live\crashreporterx64.exe] => (Block) D:\spiele\star trek online_de\star trek online\live\crashreporterx64.exe (CRYPTIC STUDIOS, INC -> ) FirewallRules: [UDP Query User{078C5EAB-84BB-4A08-A3BD-BD09F8DAE48C}D:\spiele\star trek online_de\star trek online\live\crashreporterx64.exe] => (Block) D:\spiele\star trek online_de\star trek online\live\crashreporterx64.exe (CRYPTIC STUDIOS, INC -> ) FirewallRules: [TCP Query User{84406665-E3D6-4CF1-9D65-A00C759537F6}D:\spiele\epic games\totalwarsagatroy\troy.exe] => (Allow) D:\spiele\epic games\totalwarsagatroy\troy.exe => Keine Datei FirewallRules: [UDP Query User{7F5FACD6-D5BE-4AEC-A110-F565CAEE0BFC}D:\spiele\epic games\totalwarsagatroy\troy.exe] => (Allow) D:\spiele\epic games\totalwarsagatroy\troy.exe => Keine Datei FirewallRules: [{03B094A5-FA4F-4341-95DD-FDF28E68AD24}] => (Allow) LPort=9009 ==================== Wiederherstellungspunkte ========================= 02-01-2024 13:02:12 Windows Update 02-01-2024 13:02:16 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============ Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ======================== Applikationsfehler: ================== Error: (01/02/2024 12:46:22 PM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Die Liste der eingeschlossenen und ausgeschlossenen Adressen konnte vvon Windows Search nicht verarbeitet werden. Fehler: <30, 0x80004005, "file:///C:\[a7bcb78d-17da-4b61-b656-ec81066953f6]\Users\">. Error: (01/02/2024 12:46:22 PM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Die Liste der eingeschlossenen und ausgeschlossenen Adressen konnte vvon Windows Search nicht verarbeitet werden. Fehler: <30, 0x80004005, "file:///C:\[a7bcb78d-17da-4b61-b656-ec81066953f6]\ProgramData\Microsoft\Windows\Start Menu\">. Error: (01/02/2024 12:46:21 PM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Die Liste der eingeschlossenen und ausgeschlossenen Adressen konnte vvon Windows Search nicht verarbeitet werden. Fehler: <30, 0x80004005, "file:///C:\[a7bcb78d-17da-4b61-b656-ec81066953f6]\Program Files\Microsoft Office 15\root\Office15\Visio Content\">. Error: (01/02/2024 12:43:36 PM) (Source: GbtCareBotService) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Das Handle ist ungültig Error: (01/02/2024 12:43:06 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: ) Description: Fehler beim Abrufen des Status des Clusterknotens: .Zurückgegebener Fehlercode: 0x8007085A Error: (01/02/2024 12:43:04 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: ) Description: Fehler beim Abrufen des Status des Clusterknotens: .Zurückgegebener Fehlercode: 0x8007085A Error: (01/02/2024 12:43:04 PM) (Source: MSDTC 2) (EventID: 4104) (User: ) Description: Fehler beim Abrufen des Status des Clusterknotens: .Zurückgegebener Fehlercode: 0x8007085A Error: (01/02/2024 12:43:04 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: ) Description: Fehler beim Abrufen des Status des Clusterknotens: .Zurückgegebener Fehlercode: 0x8007085A Systemfehler: ============= Error: (01/02/2024 01:02:25 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80073d02 fehlgeschlagen: 9MSSGKG348SP-MicrosoftWindows.Client.WebExperience Error: (01/02/2024 12:41:58 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "NVIDIA LocalSystem Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 6000 Millisekunden durchgeführt: Neustart des Diensts. Error: (01/02/2024 12:41:58 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "NVIDIA LocalSystem Container" wurde mit folgendem Fehler beendet: Für einen allgemeinen Befehl wurde ein Ergebnis zurückgegeben, das auf einen Fehler hinweist. Error: (01/02/2024 12:41:46 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "Printer Extensions and Notifications" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (01/02/2024 12:41:34 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "MBAMChameleon" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (01/02/2024 12:41:10 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "Smart TimeLock Service" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (01/02/2024 12:41:10 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "EABackgroundService" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Error: (01/02/2024 12:41:10 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Der Dienst "AVM USB Switch" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren. Windows Defender: ================ Date: 2024-01-02 12:46:57 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/InstallCore&threatid=311991&enterprise=0 Name: PUADlManager:Win32/InstallCore Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_D:\JDownloader\JDownloaderD3D.exe; file:_D:\JDownloader\JDUninstall.exe; file:_D:\JDownloader\JDUpdate.exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: System Benutzer: NT-AUTORITÄT\SYSTEM Prozessname: Unknown Sicherheitsversion: AV: 1.403.1516.0, AS: 1.403.1516.0, NIS: 1.403.1516.0 Modulversion: AM: 1.1.23110.2, NIS: 1.1.23110.2 Date: 2024-01-02 12:46:57 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUADlManager:Win32/DownloadSponsor&threatid=311978&enterprise=0 Name: PUADlManager:Win32/DownloadSponsor Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: file:_Z:\FileHistory\Locutus\LOCUTUS (2)\Data\C\Users\Locutus\Downloads\7 Zip 64 Bit - CHIP-Installer (2020_08_17 07_08_57 UTC).exe; file:_Z:\FileHistory\Locutus\LOCUTUS (2)\Data\C\Users\Locutus\Downloads\7 Zip 64 Bit - CHIP-Installer (2021_05_16 15_04_12 UTC).exe; file:_Z:\FileHistory\Locutus\LOCUTUS (2)\Data\C\Users\Locutus\Downloads\7 Zip 64 Bit - CHIP-Installer (2021_05_20 05_18_31 UTC).exe Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: System Benutzer: NT-AUTORITÄT\SYSTEM Prozessname: Unknown Sicherheitsversion: AV: 1.403.1516.0, AS: 1.403.1516.0, NIS: 1.403.1516.0 Modulversion: AM: 1.1.23110.2, NIS: 1.1.23110.2 Date: 2024-01-02 12:46:57 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/YongyuFeed&threatid=228764&enterprise=0 Name: PUA:Win32/YongyuFeed Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: containerfile:_E:\LOCUTUS\Backup Set 2022-02-02 142845\Backup Files 2022-02-02 142845\Backup files 358.zip; containerfile:_E:\LOCUTUS\Backup Set 2022-06-05 180003\Backup Files 2022-06-12 193848\Backup files 193.zip; containerfile:_E:\LOCUTUS\Backup Set 2022-10-30 180008\Backup Files 2022-11-06 180003\Backup files 90.zip; containerfile:_E:\LOCUTUS\Backup Set 2023-02-26 180008\Backup Files 2023-03-06 155121\Backup files 120.zip; containerfile:_E:\LOCUTUS\Backup Set 2023-07-02 183507\Backup Files 2023-07-10 154911\Backup files 300.zip; file:_E:\LOCUTUS\Backup Set 2022-02-02 142845\Backup Files 2022-02-02 142845\Backup files 358.zip->C\Users\Katja *******\Downloads\PDF Kalender 2022 - Installer _W9rxZ.exe; file:_E:\LOCUTUS\Backup Set 2022-06-05 180003\Backup Files 2022-06-12 193848\Backup files 193.zip->C\Users\Katja *******\Downloads\PDF Kalender 2022 - Installer _W9rxZ.exe; file:_E:\LOCUTUS\Backup Set 2022-10-30 180008\Backup Files 2022-11-06 180003\Backup files 90.zip->C\Users\Katja *******\Downloads\PDF Kale Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: System Benutzer: NT-AUTORITÄT\SYSTEM Prozessname: Unknown Sicherheitsversion: AV: 1.403.1516.0, AS: 1.403.1516.0, NIS: 1.403.1516.0 Modulversion: AM: 1.1.23110.2, NIS: 1.1.23110.2 Date: 2024-01-02 12:46:57 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win32/AskToolbar&threatid=227072&enterprise=0 Name: PUA:Win32/AskToolbar Schweregrad: Niedrig Kategorie: Potenziell unerwünschte Software Pfad: containerfile:_E:\LOCUTUS\Backup Set 2022-02-02 142845\Backup Files 2022-02-02 142845\Backup files 331.zip; containerfile:_E:\LOCUTUS\Backup Set 2022-06-05 180003\Backup Files 2022-06-12 193848\Backup files 166.zip; file:_E:\LOCUTUS\Backup Set 2022-02-02 142845\Backup Files 2022-02-02 142845\Backup files 331.zip->C\Users\Locutus\Downloads\OrdnerLöschen\Unlocker1.9.1-x64.exe; file:_E:\LOCUTUS\Backup Set 2022-06-05 180003\Backup Files 2022-06-12 193848\Backup files 166.zip->C\Users\Locutus\Downloads\OrdnerLöschen\Unlocker1.9.1-x64.exe; file:_Z:\FileHistory\Locutus\LOCUTUS (2)\Data\C\Users\Locutus\Downloads\OrdnerLöschen\Unlocker1.9.1-x64 (2020_04_16 16_41_01 UTC).exe; file:_Z:\FileHistory\Locutus\LOCUTUS (2)\Data\C\Users\Locutus\Downloads\OrdnerLöschen\Unlocker1.9.1-x64 (2021_05_16 15_04_12 UTC).exe; file:_Z:\FileHistory\Locutus\LOCUTUS (2)\Data\C\Users\Locutus\Downloads\OrdnerLöschen\Unlocker1.9.1-x64 (2021_05_20 05_18_31 UTC).exe; file:_Z:\FileHistory\Locutus\LOCUTUS\Data\C\Users\Locutus\Downloads\OrdnerLösc Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: System Benutzer: NT-AUTORITÄT\SYSTEM Prozessname: Unknown Sicherheitsversion: AV: 1.403.1516.0, AS: 1.403.1516.0, NIS: 1.403.1516.0 Modulversion: AM: 1.1.23110.2, NIS: 1.1.23110.2 Date: 2024-01-02 12:45:42 Description: Microsoft Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt. Weitere Informationen: https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/Crack!pz&threatid=2147890699&enterprise=0 Name: HackTool:Win32/Crack!pz Schweregrad: Hoch Kategorie: Tool Pfad: file:_D:\Spiele\Call of Duty Ghosts\steam_api.dll; file:_D:\Spiele\Call of Duty Ghosts\steam_api64.dll Erkennungsursprung: Lokaler Computer Erkennungstype: Konkret Erkennungsquelle: Benutzer Benutzer: Prozessname: Unknown Sicherheitsversion: AV: 1.403.1516.0, AS: 1.403.1516.0, NIS: 1.403.1516.0 Modulversion: AM: 1.1.23110.2, NIS: 1.1.23110.2 ==================== Speicherinformationen =========================== BIOS: American Megatrends Inc. F6 04/01/2019 Hauptplatine: Gigabyte Technology Co., Ltd. Z390 M GAMING-CF Prozessor: Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz Prozentuale Nutzung des RAM: 25% Installierter physikalischer RAM: 32700.79 MB Verfügbarer physikalischer RAM: 24309.6 MB Summe virtueller Speicher: 65468.79 MB Verfügbarer virtueller Speicher: 57318.03 MB ==================== Laufwerke ================================ Drive c: (System) (Fixed) (Total:465.16 GB) (Free:90.65 GB) (Model: Samsung SSD 970 EVO Plus 500GB) NTFS Drive d: (Spiele) (Fixed) (Total:1907.71 GB) (Free:392.78 GB) (Model: INTEL SSDPEKNW020T8) NTFS Drive e: (WinSicherung) (Fixed) (Total:2794.39 GB) (Free:500.7 GB) (Model: WDC WD30EZRX-00DC0B0) NTFS Drive y: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: Samsung SSD 840 PRO Series) Drive z: (Dateiversionsverlauf) (Fixed) (Total:1862.89 GB) (Free:334.59 GB) (Model: ST2000DX001-1CM164) NTFS \\?\Volume{a9d85fff-8365-11e3-b408-806e6f6e6963}\ () (Fixed) (Total:0 GB) (Free:0 GB) \\?\Volume{6f0f1443-adeb-4c05-8715-ac7d2bc756d2}\ () (Fixed) (Total:0 GB) (Free:0 GB) \\?\Volume{1288e6ec-0000-0000-0000-40823b000000}\ () (Fixed) (Total:0 GB) (Free:0 GB) \\?\Volume{11e380a4-b678-4f29-b728-dceeb2736ee7}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32 ==================== MBR & Partitionstabelle ==================== ==================== Ende von Addition.txt ======================= Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 8.4.0.0 # ------------------------------- # Build: 08-30-2022 # Database: 2023-07-19.3 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Scan # ------------------------------- # Start: 01-02-2024 # Duration: 00:00:10 # OS: Windows 11 (Build 22621.2861) # Scanned: 32100 # Detected: 0 ***** [ Services ] ***** No malicious services found. ***** [ Folders ] ***** No malicious folders found. ***** [ Files ] ***** No malicious files found. ***** [ DLL ] ***** No malicious DLLs found. ***** [ WMI ] ***** No malicious WMI found. ***** [ Shortcuts ] ***** No malicious shortcuts found. ***** [ Tasks ] ***** No malicious tasks found. ***** [ Registry ] ***** No malicious registry entries found. ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries found. ***** [ Chromium URLs ] ***** No malicious Chromium URLs found. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries found. ***** [ Firefox URLs ] ***** No malicious Firefox URLs found. ***** [ Hosts File Entries ] ***** No malicious hosts file entries found. ***** [ Preinstalled Software ] ***** No Preinstalled Software found. AdwCleaner[S00].txt - [1930 octets] - [02/01/2024 11:02:51] AdwCleaner[C00].txt - [2065 octets] - [02/01/2024 11:03:50] AdwCleaner[S01].txt - [1614 octets] - [02/01/2024 11:05:58] AdwCleaner[C01].txt - [1815 octets] - [02/01/2024 11:06:29] AdwCleaner[S02].txt - [1664 octets] - [02/01/2024 11:16:59] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S03].txt ########## Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 02.01.24 Scan-Zeit: 13:24 Protokolldatei: e67126e2-a969-11ee-8c3d-00059a3c7a00.json -Softwaredaten- Version: 4.6.6.294 Komponentenversion: 1.0.2201 Version des Aktualisierungspakets: 1.0.79165 Lizenz: Kostenlos -Systemdaten- Betriebssystem: Windows 11 (Build 22621.2861) CPU: x64 Dateisystem: NTFS Benutzer: Locutus\Win7Admin -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Scan gestartet von: Manuell Ergebnis: Abgeschlossen Gescannte Objekte: 448448 Erkannte Bedrohungen: 0 In die Quarantäne verschobene Bedrohungen: 0 Abgelaufene Zeit: 3 Min., 31 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristik: Aktiviert PUP: Erkennung PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Datei: 0 (keine bösartigen Elemente erkannt) Physischer Sektor: 0 (keine bösartigen Elemente erkannt) WMI: 0 (keine bösartigen Elemente erkannt) (end) |
02.01.2024, 14:57 | #5 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht behebenZitat:
Cracks, Keygens und andere illegale Software Bitte lesen => Cracks, Keygens und andere illegale Software Es geht weiter wenn du alles Illegale entfernt hast: alle Cracks löschen und alle gecrackten Spiele und Programme sind vollständig zu deinstallieren wenn du hier Hilfe haben willst! Bei wiederholten Crack/Keygen Verstößen behalte ich es mir vor, den Support einzustellen, d.h. Hilfe nur noch bei der Datensicherung und Neuinstallation des Betriebssystems.
__________________ Logfiles bitte immer in CODE-Tags posten |
02.01.2024, 15:24 | #6 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Hallo Cosinus, vielen Dank für Deine Antwort. Die beiden Dateien (inkl. deren gesamten Ordner) habe ich bereits gelöscht. Derartige Software verwende ich nicht mehr. |
02.01.2024, 15:28 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Du hast alles gelesen? Alle gecrackten Spiele und Programme wurden entfernt?
__________________ Logfiles bitte immer in CODE-Tags posten |
02.01.2024, 15:36 | #8 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Ja, ich habe die Hinweise gelesen. Derartige Software wurde entfernt. |
02.01.2024, 16:30 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Ok. Aber dein Rechner ist mit so vielem Programm zugemüllt, dass man hier mit einer Neuinstallation besser dran wäre. Installierst du eigentlich jedes Programm, das du irgendwo findest? System aufräumen: unnötige und veraltete Programme deinstallieren Bitte über Programme und Features (appwiz.cpl) deinstallieren:
__________________ Logfiles bitte immer in CODE-Tags posten |
02.01.2024, 17:56 | #10 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Es hat doch etwas länger gedauert als gedacht. - HP Support Solutions Framework lässt sich nicht deinstallieren. Er fängt an zu arbeiten, bricht aber ohne Fehlermeldung ab. Die restliche HP Software ließ sich nach ein paar Reboots entfernen. - Iperius Backup habe ich nicht deinstalliert, weil es jede Woche produktiv im Einsatz ist. Zugegeben, ich hab viel Schrott auf meinem Rechner, aber über die Jahre sammelt sich halt viel an. Von einer kompletten Neuinstallation schreckt mich ab, dass vielleicht wichtige Daten verloren gehen. Vielen Dank für Deine Hilfe. |
03.01.2024, 00:50 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Hier geht es aber nicht mehr um Bereinigung von Malware. Man sollte diesen Schrottplatz plattmachen und neu aufbauen. Musst du wissen. Kontrollscans mit MBAM und RK Poste nach Abschluss der beiden Scans die Logs in CODE-Tags.
__________________ Logfiles bitte immer in CODE-Tags posten |
03.01.2024, 10:49 | #12 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben MBAM Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 03.01.24 Scan-Zeit: 10:32 Protokolldatei: 08f6d782-aa1b-11ee-b0c0-00059a3c7a00.json -Softwaredaten- Version: 4.6.6.294 Komponentenversion: 1.0.2201 Version des Aktualisierungspakets: 1.0.79205 Lizenz: Kostenlos -Systemdaten- Betriebssystem: Windows 11 (Build 22621.2861) CPU: x64 Dateisystem: NTFS Benutzer: Locutus\Win7Admin -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Scan gestartet von: Manuell Ergebnis: Abgeschlossen Gescannte Objekte: 435655 Erkannte Bedrohungen: 0 In die Quarantäne verschobene Bedrohungen: 0 Abgelaufene Zeit: 3 Min., 19 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristik: Aktiviert PUP: Erkennung PUM: Erkennung -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Datei: 0 (keine bösartigen Elemente erkannt) Physischer Sektor: 0 (keine bösartigen Elemente erkannt) WMI: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Program : RogueKiller Anti-Malware Version : 15.13.1.0 x64 : Yes Program Date : Dec 5 2023 Location : C:\Users\Win7Admin\Desktop\RogueKiller_portable64.exe Premium : No Company : Adlice Software Website : https://www.adlice.com/ Contact : https://adlice.com/contact/ Website : https://adlice.com/download/roguekiller/ Operating System : Windows 11 (10.0.22621) 64-bit 64-bit OS : Yes Startup : 0 WindowsPE : No User : Win7Admin User is Admin : Yes Date : 2024/01/03 09:45:44 Type : Removal Aborted : No Scan Mode : Standard Duration : 314 Found items : 1 Total scanned : 136055 Signatures Version : 20231228_090058 Truesight Driver : Yes Updates Count : 55 ************************* Warnings ************************* ************************* Removal ************************* [PUP.Gen1 (Potenziell bösartig)] HKEY_USERS\S-1-5-21-1660700513-2118892591-3807124189-1000\Software\OCS -- -> Gelöscht [+] scan_what : 2 [+] vendors : PUP.Gen1 [+] Name : HKEY_USERS\S-1-5-21-1660700513-2118892591-3807124189-1000\Software\OCS [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 0 [+] status : 3 [+] status_str : Gelöscht [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 |
04.01.2024, 15:47 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Dann wären wir durch! Wenn Du möchtest, kannst Du das Forum mit einer kleinen Spende unterstützen. Abschließend unbedingt unsere Sicherheitsmaßnahmen lesen und umsetzen - beides ist in folgendem Lesestoff verlinkt:
__________________ Logfiles bitte immer in CODE-Tags posten |
04.01.2024, 20:22 | #14 |
| Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Naja, ich hab in der Windows-Sicherheit immernoch die Anzeige, dass es aktuelle Bedrohungen gibt. Nämlich genau die beiden Dateien, die ich direkt nach dem Fund gelöscht habe. (diese werden jeweils doppelt angezeigt, deswegen 4 Bedrohungen) |
04.01.2024, 22:27 | #15 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben Meine Güte, das ist doch nur die Historie... Wieso müsst ihr euch überall Probleme einreden, wo es keine gibt?
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Defender meldet Bedrohung (Gendows!pz und Crack!pz),aber lässt sich nicht beheben |
.dll, administrator, adobe, avira, defender, desktop, dll, fehler, firefox, geforce, google, homepage, mozilla, no-ip, nvidia, prozesse, realtek, rundll, scan, services.exe, software, stick, system, windows, wiso |