![]() |
|
Log-Analyse und Auswertung: Search Engine Optimizer hat sich unerwünscht auf den Computer geladen und kann nicht deinstalliert werdenWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Search Engine Optimizer hat sich unerwünscht auf den Computer geladen und kann nicht deinstalliert werden Guten Tag, Ich habe vor kurzem einen Autoklicker bei der Website Chip installiert, wobei noch weitere unerwünschte Dateien mit installiert wurden (ich habe jetzt bei einem anderen post herausgefunden, dass diese Website nicht vertauenswürdig ist) Die meisten dieser Dateien konnte ich mühelos deinstallieren, den Search Enginge Optimizer jedoch nicht. Ich habe mir dann das Programm Malwarebytes herunter geladen und mehrere scans über die letzten Tage gemacht wo immer wieder PuP dateien gefunden wurden. Jetzt habe ich mir das FRST Tool runter geladen und die Untersuchung gemacht, hier sind die Ergebnisse: 1. FRST 2. Addition 3. SEO (ist ebenfalls mit aufgetaucht) leider passt jetzt erstmals nur FRST in den Beitrag, ich werde SEO und Addition noch anhängen wenn das erwünscht ist ![]() Vielen Dank für die Hilfe! Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 22.05.2024 01 durchgeführt von wolfa (Administrator) auf PC-VON-WOLF (24-05-2024 11:27:23) Gestartet von C:\Users\wolfa\Downloads\FRST64.exe Geladene Profile: wolfa Plattform: Microsoft Windows 11 Pro Version 23H2 22631.3593 (X64) Sprache: Deutsch (Deutschland) Standard-Browser: Chrome Start-Modus: Normal ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI.CentralServer.exe (C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe (C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe ->) (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\apps\engine\prism\SteelSeriesPrism.exe (C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe ->) (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\apps\moments\SteelSeriesSvcLauncher.exe (C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe ->) (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\apps\engine\SteelSeriesEngine.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <29> (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe (explorer.exe ->) (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.02.12\atkexComSvc.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_84b2c943d6816eb7\Display.NvContainer\NVDisplay.Container.exe <2> (sihost.exe ->) (1539F157-3B11-4C68-B0C7-6E8113B7B1BD -> ) C:\Program Files\WindowsApps\15191PeakPlayer.NeatOffice_3.4.6.0_x64__y5c4dfz5b21fm\FileWatcher\FileWatcher.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2405.1001.5.0_x64__8wekyb3d8bbwe\XboxGameBarWidgets.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2405.1001.5.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_424.1301.450.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControlEngine.exe ==================== Registry (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3023152 2024-03-06] (Riot Games, Inc. -> Riot Games, Inc.) HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [15845712 2024-05-13] (SteelSeries ApS -> SteelSeries ApS) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [748624 2023-10-04] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Beschränkung <==== ACHTUNG HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Beschränkung <==== ACHTUNG HKU\S-1-5-21-345432855-2133662985-3921909539-1001\...\Run: [Steam] => D:\Launcher\Steam\steam.exe [4379496 2024-05-21] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-345432855-2133662985-3921909539-1001\...\Run: [WallpaperEngine] => D:\Launcher\Steam\steamapps\common\wallpaper_engine\wallpaper64.exe [4060096 2024-02-28] (Skutta Software GmbH -> ) HKU\S-1-5-21-345432855-2133662985-3921909539-1001\...\Run: [Discord] => C:\Users\wolfa\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-345432855-2133662985-3921909539-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [46113536 2024-04-21] (Logitech Inc -> Logitech, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\125.0.6422.77\Installer\chrmstp.exe [2024-05-22] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {b75d199c-35e6-40b4-a532-f556e4ead4dd} - kein Dateipfad. <==== ACHTUNG Task: {D1B6EDD8-062B-4820-94AD-00106B7FA879} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d7d58f60fc8ee => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-11-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {624208FB-0793-4DCA-9463-8CE34FC92EAD} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-11-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {88066A45-415F-47C8-BF23-47DA15927B24} - System32\Tasks\Google Play Games Notifier => C:\Program Files\Google\Play Games\Bootstrapper.exe [374560 2024-05-10] (Google LLC -> Google LLC) Task: {69C43E31-DF49-4721-B8C6-34F10576BEA0} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem127.0.6490.0{3CF64835-534C-4712-80C9-D5C518B899B0} => C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe [4785440 2024-05-20] (Google LLC -> Google LLC) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Keine Datei) Task: {78F7909E-26EE-435B-B034-8FAC36292B6D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval => %systemroot%\system32\MusNotification.exe Display (Keine Datei) Task: {79874917-735B-4E71-97D9-D00EF7EA293C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (Keine Datei) Task: {01C934E2-CFB4-4BEA-BC8E-B0E5483FCFC7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (Keine Datei) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Keine Datei) Task: {0A67D2D0-21BF-48F4-B898-867FF50C37D4} - System32\Tasks\MSI Task Host - Detect_Monitor => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74528 2020-09-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {30E066D7-2EAA-489D-86A8-72DF07A3A44F} - System32\Tasks\MSI Task Host - DisplayID => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74528 2020-09-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {E6D77A08-D5C2-4AB5-AFEA-4267E7D541F5} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDKeeper2.exe [1634824 2021-01-14] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {3F183BEA-FEB0-4DF6-A762-423B908EC5F7} - System32\Tasks\MSI Task Host - MSI.True Color => C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe [44720 2020-05-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {E2EE1253-0622-4EC1-9C9F-FFE2328C3B3F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1277480 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {81CCBB97-03EE-4B28-A5E1-236249991B08} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3347496 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {FB9EF4ED-E969-4C29-96BB-0AC4FB5C8581} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646696 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler Task: {F88875D9-732A-4BC0-A2CB-282480FE2681} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A07ACB95-B8CD-43E4-BFA9-CF8E5D5D4509} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5931AF44-739C-4E39-9540-E987652D569C} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8BCEBCA1-7DDB-4D6A-85C6-3E1FAD3014B4} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6623A06D-AC20-42D3-BADC-B665E804FED4} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {819C6A05-07EB-41EB-A802-FE53F4A9EBC9} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A9DF36C5-C1E9-4EE9-8A3D-BFC692B97E5A} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-345432855-2133662985-3921909539-1001 => C:\Users\wolfa\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [4165016 2022-09-26] () [Datei ist nicht signiert] Task: {6CF803F5-8706-4F65-BB6E-34BB139176B0} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-345432855-2133662985-3921909539-1002 => C:\Users\wolfa\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [4165016 2022-09-26] () [Datei ist nicht signiert] Task: {0EA20BF7-349A-4D47-82A9-3FC1E4438207} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-345432855-2133662985-3921909539-1001 => C:\Users\wolfa\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [4165016 2022-09-26] () [Datei ist nicht signiert] Task: {CCC5977C-0692-47BC-AA57-6BBD7864E6A3} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-345432855-2133662985-3921909539-1002 => C:\Users\wolfa\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [4165016 2022-09-26] () [Datei ist nicht signiert] Task: {8C81A537-54F7-4992-BE35-7DF971B7B957} - System32\Tasks\Opera scheduled assistant Autoupdate 1716305849 => C:\Users\wolfa\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5727136 2024-05-14] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --bypasslauncher --installdir="C:\Users\wolfa\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0) Task: {0A9D838C-DB89-4AB2-ABBD-813EAA20A87B} - System32\Tasks\Opera scheduled Autoupdate 1669324322 => C:\Users\wolfa\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Keine Datei) Task: {C3FEF9A4-39E2-498A-BC44-3C52290C748B} - System32\Tasks\Opera scheduled Autoupdate 1669388655 => C:\Users\wolfa\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Keine Datei) Task: {31A78D54-4515-4FE8-B956-A0B4A838D4D0} - System32\Tasks\Opera scheduled Autoupdate 1716305847 => C:\Users\wolfa\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5727136 2024-05-14] (Opera Norway AS -> Opera Software) Task: {4ADF82DE-CAA5-46D3-8FCC-8C77DD036E2F} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2369544 2024-05-15] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule Task: {D9DA779A-8F03-4804-9E83-9283DD92AB62} - System32\Tasks\SEO => C:\Users\wolfa\AppData\Roaming\SEO\SEO.exe [11273824 2024-05-21] (BUSINESS CONVERS TRACK S.R.L. -> Business Convers Track S.R.L.) <==== ACHTUNG (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9ca833c5-8613-4538-ada9-d4b279dc75d5}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9ca833c5-8613-4538-ada9-d4b279dc75d5}: [DhcpDomain] localdomain Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Default [2024-05-22] Edge Extension: (Avira Safe Shopping) - C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2024-05-21] Edge Extension: (Avira Password Manager) - C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emgfgdclgfeldebanedpihppahgngnle [2024-05-21] Edge Extension: (Google Docs Offline) - C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-03] Edge Extension: (Bitcleaner Surfguard) - C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gidnhakgfijhghmilgiiffidakihnbnb [2024-05-21] Edge Extension: (Edge relevant text changes) - C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] Edge Profile: C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2021-09-24] Edge Extension: (Cisco Webex Extension) - C:\Users\wolfa\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\cmihkeafcknlomclapaddfljaeegfbdl [2021-02-23] Edge HKU\S-1-5-21-345432855-2133662985-3921909539-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [gidnhakgfijhghmilgiiffidakihnbnb] Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip] Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle] FireFox: ======== FF Plugin-x32: @java.com/DTPlugin,version=11.391.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.391.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default [2024-05-24] CHR Notifications: Default -> hxxps://www.netflix.com CHR HomePage: Default -> hxxps://www.bing.com?pc=COS2&ptag=D112422-N0330A9E20638FA0&form=CONBDF&conlogo=CT3335159 CHR Extension: (Bitcleaner Surfguard) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aeefnonlfngaeblgiipagcfmcakbmmjk [2024-05-21] CHR Extension: (BetterTTV) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2024-05-02] CHR Extension: (Honey: Automatische Coupons & Prämien) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2024-04-05] CHR Extension: (Avira Password Manager) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2024-05-21] CHR Extension: (Avira Safe Shopping) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2024-05-21] CHR Extension: (Avira Browserschutz) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2024-05-21] CHR Extension: (Google Docs Offline) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-21] CHR Extension: (AdBlock*– der beste Ad-Blocker) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-05-23] CHR Extension: (Kopieren und Einfügen in Office Online) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifbmcpbgkhlpfcodhjhdbllhiaomkdej [2022-02-12] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Profile: C:\Users\wolfa\AppData\Local\Google\Chrome\User Data\System Profile [2022-03-20] CHR HKU\S-1-5-21-345432855-2133662985-3921909539-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [aeefnonlfngaeblgiipagcfmcakbmmjk] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] ==================== Dienste (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ArmouryCrateService; C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe [382112 2022-08-19] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.02.12\atkexComSvc.exe [457544 2021-10-21] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-11-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [313008 2021-10-21] (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.) S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-11-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [652624 2021-11-09] (ASUSTeK Computer Inc. -> ASUS) S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [2567304 2024-05-17] (Blizzard Entertainment, Inc. -> Blizzard Entertainment) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [14991976 2024-04-17] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2024-02-13] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [954704 2024-04-27] (EasyAntiCheat Oy -> Epic Games, Inc.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-08-02] (Epic Games Inc. -> Epic Games, Inc.) S2 GoogleUpdaterInternalService127.0.6490.0; C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe [4785440 2024-05-20] (Google LLC -> Google LLC) S2 GoogleUpdaterService127.0.6490.0; C:\Program Files (x86)\Google\GoogleUpdater\127.0.6490.0\updater.exe [4785440 2024-05-20] (Google LLC -> Google LLC) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11154176 2024-04-21] (Logitech Inc -> Logitech, Inc.) R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [4799336 2023-09-13] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 LightKeeperService; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe [86776 2020-12-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray_service.exe [9893864 2024-04-21] (Logitech Inc -> Logitech, Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8887344 2024-05-22] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-05-22] (Malwarebytes Inc. -> Malwarebytes) S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MpDefenderCoreService.exe [1489000 2024-05-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 MSI_Central_Service; C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe [147088 2020-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 MSI_Companion_Service; C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe [131568 2021-01-08] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe [35504 2020-07-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_84b2c943d6816eb7\Display.NvContainer\NVDisplay.Container.exe [1275440 2024-04-12] (NVIDIA Corporation -> NVIDIA Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2369544 2024-05-15] (Overwolf Ltd -> Overwolf LTD) S3 Rockstar Service; D:\Launcher\RockstarService.exe [6291440 2024-04-09] (Rockstar Games, Inc. -> Rockstar Games) R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [1665648 2023-07-25] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522184 2024-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) S3 SteelSeriesGGUpdateServiceProxy; C:\Program Files\SteelSeries\GG\SteelSeriesGGUpdateServiceProxy.exe [1500608 2023-09-18] (SteelSeries ApS -> ) S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [6020336 2022-04-10] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9614144 2024-03-06] (Riot Games, Inc. -> Riot Games, Inc.) R2 VoiceControlService; C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe [32400 2020-07-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\NisSrv.exe [3236840 2024-05-17] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24040.4-0\MsMpEng.exe [133704 2024-05-17] (Microsoft Windows Publisher -> Microsoft Corporation) S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [8971056 2022-04-10] (PUBG CORPORATION -> PUBG Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [55608 2023-06-27] (Apple Inc. -> Apple Inc.) R1 Asusgio2; C:\WINDOWS\system32\drivers\AsIO2.sys [34384 2021-10-21] (ASUSTeK Computer Inc. -> ) R1 Asusgio3; C:\WINDOWS\system32\drivers\AsIO3.sys [43160 2021-10-21] (ASUSTeK Computer Inc. -> ) S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin\brynhildr.sys [2336008 2024-02-17] (Activision Publishing Inc -> Activision Blizzard, Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [532480 2022-11-12] (Microsoft Corporation) [Datei ist nicht signiert] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [184320 2022-11-12] (Microsoft Corporation) [Datei ist nicht signiert] S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Datei ist nicht signiert] S1 EneTechIo; C:\WINDOWS\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> ) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2024-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2024-04-08] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2024-04-08] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2024-04-08] (Logitech Inc -> Logitech) R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_cdf3ca3c77d5f267\logi_lamparray.sys [89064 2024-04-21] (Logitech Inc -> Logitech, Inc.) R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223184 2024-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2024-05-22] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\system32\DRIVERS\farflt11.sys [234856 2024-05-22] (Malwarebytes Inc. -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [78400 2024-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [188784 2024-05-22] (Malwarebytes Inc. -> Malwarebytes) R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-04-03] (NVIDIA Corporation -> NVIDIA Corporation) R3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek) R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [43456 2023-12-19] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS) R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [44480 2024-03-01] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS) R3 SteelSeries_Sonar_VAD; C:\WINDOWS\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_da15ab44a6216a8e\SteelSeries-Sonar-VAD.sys [95440 2023-03-17] (SteelSeries ApS -> Windows (R) Win 7 DDK provider) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [21861160 2024-02-22] (Riot Games, Inc. -> Riot Games, Inc.) R3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [21056 2024-05-17] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation) U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [169232 2022-05-07] (Microsoft Windows -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [601496 2024-05-17] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105880 2024-05-17] (Microsoft Windows -> Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [1431256 2022-04-10] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) S3 qeeyoupacket; \??\C:\Users\wolfa\AppData\Local\LagoFast\processFilter8.sys [X] S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2024-05-24 11:27 - 2024-05-24 11:27 - 000032702 _____ C:\Users\wolfa\Downloads\FRST.txt 2024-05-24 11:27 - 2024-05-24 11:27 - 000000000 ____D C:\FRST 2024-05-24 11:26 - 2024-05-24 11:26 - 002395136 _____ (Farbar) C:\Users\wolfa\Downloads\FRST64.exe 2024-05-23 09:25 - 2024-05-23 09:25 - 000306114 _____ C:\Users\wolfa\Downloads\1704802135744-5.-pk---vorlagen-f-r-die-schriftliche-ausarbeitung 2 1.pdf 2024-05-22 18:03 - 2024-05-22 18:03 - 000289071 _____ C:\Users\wolfa\Downloads\837b4836-fdf0-41e9-823e-54d47f1fcb5a.pdf 2024-05-22 17:52 - 2024-05-22 17:52 - 000018305 _____ C:\Users\wolfa\Downloads\1704802135744-5.-pk---vorlagen-f-r-die-schriftliche-ausarbeitung 3.odt 2024-05-22 15:08 - 2024-05-22 15:08 - 000758838 _____ C:\WINDOWS\system32\perfh007.dat 2024-05-22 15:08 - 2024-05-22 15:08 - 000157058 _____ C:\WINDOWS\system32\perfc007.dat 2024-05-22 15:02 - 2024-05-22 15:02 - 000234856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt11.sys 2024-05-22 15:02 - 2024-05-22 15:02 - 000188784 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2024-05-22 12:53 - 2024-03-26 21:11 - 000059928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2024-05-22 12:53 - 2024-03-26 19:21 - 000060240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2024-05-22 11:57 - 2024-05-24 11:16 - 000000000 ____D C:\Users\wolfa\AppData\Local\Malwarebytes 2024-05-22 11:57 - 2024-05-22 11:57 - 000002100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2024-05-22 11:57 - 2024-05-22 11:57 - 000002088 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2024-05-22 11:56 - 2024-05-22 11:56 - 000000000 ____D C:\ProgramData\Malwarebytes 2024-05-22 11:56 - 2024-05-22 11:56 - 000000000 ____D C:\Program Files\Malwarebytes 2024-05-22 11:54 - 2024-05-22 11:54 - 002589624 _____ (Malwarebytes) C:\Users\wolfa\Downloads\MBSetup.exe 2024-05-22 11:45 - 2024-05-22 11:45 - 008730176 _____ (Google LLC) C:\Users\wolfa\Downloads\ChromeSetup.exe 2024-05-22 11:45 - 2024-05-22 11:45 - 000002246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-05-22 11:45 - 2024-05-22 11:45 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2024-05-21 17:50 - 2024-05-21 17:50 - 000003534 _____ C:\WINDOWS\system32\Tasks\SEO 2024-05-21 17:45 - 2024-05-21 17:45 - 000000000 ____D C:\Users\Public\Security Sessions 2024-05-21 17:44 - 2024-05-21 17:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avira 2024-05-21 17:43 - 2024-05-21 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\statReporter 2024-05-21 17:43 - 2024-05-21 17:43 - 000000000 ____D C:\Users\wolfa\AppData\Local\AviraWebView2Cache 2024-05-21 17:42 - 2024-05-21 17:44 - 000130096 _____ C:\WINDOWS\system32\rtp.db 2024-05-21 17:42 - 2024-05-21 17:42 - 000000000 ____D C:\Users\wolfa\AppData\Local\Avira 2024-05-21 17:39 - 2024-05-24 11:20 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\SEO 2024-05-21 17:37 - 2024-05-21 17:37 - 000004528 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1716305849 2024-05-21 17:37 - 2024-05-21 17:37 - 000004268 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1716305847 2024-05-21 10:22 - 2024-05-21 10:22 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Play Games 2024-05-20 20:01 - 2024-05-22 17:46 - 000022087 _____ C:\Users\wolfa\Downloads\1704802135744-5.-pk---vorlagen-f-r-die-schriftliche-ausarbeitung.odt 2024-05-20 19:36 - 2024-05-20 19:36 - 002183675 _____ C:\Users\wolfa\Downloads\interne handreichung 5. pk[1] (2).pdf 2024-05-20 19:35 - 2024-05-20 19:35 - 002183675 _____ C:\Users\wolfa\Downloads\interne handreichung 5. pk[1] (1).pdf 2024-05-20 19:33 - 2024-05-20 19:33 - 002183675 _____ C:\Users\wolfa\Downloads\interne handreichung 5. pk[1].pdf 2024-05-20 13:27 - 2024-05-24 11:18 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\Badlion Client 2024-05-20 13:27 - 2024-05-20 13:27 - 000002394 _____ C:\Users\wolfa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Badlion Client.lnk 2024-05-20 13:27 - 2024-05-20 13:27 - 000002386 _____ C:\Users\wolfa\Desktop\Badlion Client.lnk 2024-05-20 13:27 - 2024-05-20 13:27 - 000000000 ____D C:\Users\wolfa\AppData\Local\@badlionnative-desktop-updater 2024-05-20 13:26 - 2024-05-20 13:26 - 111067728 _____ (Badlion) C:\Users\wolfa\Downloads\Badlion Client Setup 4.3.0.exe 2024-05-20 13:06 - 2024-05-20 12:55 - 016367913 _____ C:\Users\wolfa\Desktop\DistantHorizons-fabric-2.0.4-a-dev-1.20.6.jar 2024-05-20 13:06 - 2024-05-20 12:55 - 002698708 _____ C:\Users\wolfa\Desktop\iris-1.7.0+mc1.20.6.jar 2024-05-20 13:06 - 2024-05-20 12:55 - 002225556 _____ C:\Users\wolfa\Desktop\fabric-api-0.98.0+1.20.6.jar 2024-05-20 13:06 - 2024-05-20 12:55 - 000964688 _____ C:\Users\wolfa\Desktop\sodium-fabric-0.5.8+mc1.20.6.jar 2024-05-20 12:55 - 2024-05-20 12:55 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\.iris-installer 2024-05-20 12:54 - 2024-05-20 12:54 - 001650021 _____ C:\Users\wolfa\Downloads\Iris-Installer-3.2.0.jar 2024-05-17 18:30 - 2024-05-17 18:31 - 007446757 _____ C:\Users\wolfa\Downloads\OptiFine_1.20.6-rc1_HD_K_J2_pre23.jar 2024-05-17 17:39 - 2024-05-17 17:39 - 002424887 _____ C:\Users\wolfa\Downloads\Fullbright.zip 2024-05-17 17:36 - 2024-05-17 17:37 - 007232045 _____ C:\Users\wolfa\Downloads\OptiFine_1.20.4_HD_U_I7.jar 2024-05-15 16:14 - 2024-05-15 16:14 - 000612786 _____ C:\Users\wolfa\Downloads\optifabric-1.14.3.jar 2024-05-15 16:12 - 2024-05-15 16:12 - 016259740 _____ C:\Users\wolfa\Downloads\DistantHorizons-2.0.1-a-1.20.1.jar 2024-05-15 15:09 - 2024-05-15 15:09 - 000660063 _____ C:\Users\wolfa\Downloads\Population infographics poster.pptx 2024-05-15 15:00 - 2024-05-15 15:00 - 014557648 _____ C:\Users\wolfa\Downloads\Layouts-Template-lourrutiappt.zip 2024-05-14 19:50 - 2024-05-14 19:52 - 000000000 ___HD C:\$WinREAgent 2024-05-01 15:55 - 2024-05-01 15:55 - 000175106 _____ C:\Users\wolfa\Downloads\DB_Ticket_510130214751.pdf 2024-04-29 22:44 - 2024-04-29 22:44 - 000000000 ____D C:\Users\wolfa\AppData\LocalLow\Landfall Games ==================== Ein Monat (geänderte) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2024-05-24 11:18 - 2020-12-02 20:30 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\discord 2024-05-24 11:10 - 2024-02-16 14:56 - 000267768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_4.dll 2024-05-24 11:10 - 2022-10-21 15:46 - 000108024 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe 2024-05-24 11:10 - 2022-10-21 15:46 - 000075256 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe 2024-05-24 11:10 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-05-24 11:10 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-05-24 11:10 - 2021-11-19 21:35 - 000206328 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2024-05-24 11:10 - 2020-12-06 09:16 - 002729464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2024-05-24 11:10 - 2020-12-06 09:16 - 000722424 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2024-05-24 11:10 - 2020-12-06 09:16 - 000218616 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2024-05-24 11:10 - 2020-12-06 09:16 - 000144888 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2024-05-24 11:07 - 2020-12-02 19:14 - 000000000 ____D C:\ProgramData\Packages 2024-05-24 11:05 - 2020-12-02 19:28 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\.minecraft 2024-05-24 11:01 - 2024-04-08 21:16 - 000000000 ____D C:\Users\wolfa\AppData\Local\LGHUB 2024-05-24 11:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-05-24 11:01 - 2021-02-09 09:20 - 000000000 ____D C:\ProgramData\NVIDIA 2024-05-24 11:01 - 2020-12-02 20:30 - 000000000 ____D C:\Users\wolfa\AppData\Local\Discord 2024-05-24 11:00 - 2022-11-12 14:30 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-05-24 11:00 - 2022-11-12 14:30 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-05-24 00:41 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-05-23 18:58 - 2022-11-12 14:26 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-05-23 13:36 - 2022-11-12 14:10 - 000000000 ____D C:\Users\wolfa 2024-05-23 13:31 - 2022-08-19 00:53 - 000000228 _____ C:\SetMatrixLEDScript.xml 2024-05-23 13:31 - 2022-08-19 00:53 - 000000200 _____ C:\QueryAllDevice.xml 2024-05-23 13:31 - 2022-08-19 00:16 - 000004918 _____ C:\GetDeviceStatus.xml 2024-05-23 13:31 - 2022-08-19 00:16 - 000000066 _____ C:\GetDeviceCap.xml 2024-05-22 18:38 - 2021-12-12 22:35 - 000000000 ____D C:\SteamLibrary 2024-05-22 18:15 - 2021-10-31 13:12 - 000000000 ____D C:\Users\wolfa\AppData\Local\CrashDumps 2024-05-22 16:22 - 2020-12-02 20:37 - 000000000 ____D C:\Users\wolfa\AppData\Local\D3DSCache 2024-05-22 15:08 - 2022-11-12 14:28 - 001754660 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-05-22 15:08 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF 2024-05-22 15:04 - 2021-04-18 18:55 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2024-05-22 15:01 - 2022-11-12 14:30 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-05-22 15:01 - 2022-05-07 07:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2024-05-22 15:01 - 2019-12-07 09:05 - 000012288 ___SH C:\DumpStack.log.tmp 2024-05-22 12:53 - 2022-11-12 14:30 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2022-11-12 14:30 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-05-22 12:53 - 2021-07-08 15:02 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2024-05-22 12:53 - 2020-12-02 19:14 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2024-05-22 12:53 - 2020-12-02 19:14 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2024-05-22 12:17 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-05-22 12:02 - 2023-12-20 18:52 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2024-05-22 12:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources 2024-05-22 12:00 - 2022-11-25 17:03 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\stubinstaller 2024-05-22 11:56 - 2024-04-08 21:16 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\G HUB 2024-05-22 11:56 - 2022-05-07 07:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-05-22 01:04 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-05-21 17:48 - 2022-11-12 14:26 - 000295504 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-05-21 17:46 - 2023-06-29 20:01 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LagoFast 2024-05-21 17:45 - 2022-09-13 16:47 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\Opera Software 2024-05-20 13:15 - 2021-11-30 16:40 - 000000000 ____D C:\Users\wolfa\AppData\Local\Overwolf 2024-05-20 13:08 - 2023-07-09 17:26 - 000000000 ____D C:\Program Files (x86)\Overwolf 2024-05-18 22:27 - 2022-05-07 12:35 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\steelseries-gg-client 2024-05-17 12:31 - 2022-10-31 13:06 - 000000000 ____D C:\Users\wolfa\AppData\Local\Battle.net 2024-05-17 12:17 - 2020-12-02 19:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-05-16 18:51 - 2024-02-16 14:56 - 000267784 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_4.dll.0 2024-05-16 18:51 - 2020-12-06 09:16 - 000722440 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll.0 2024-05-14 20:31 - 2023-10-12 22:34 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2024-05-14 20:31 - 2022-05-07 12:39 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2024-05-14 20:31 - 2022-05-07 12:39 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\UNP 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\F12 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\PrintDialog 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\UUS 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemApps 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\setup 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\migwiz 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\BrowserCore 2024-05-14 20:31 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-05-14 20:31 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\servicing 2024-05-14 19:55 - 2022-11-12 14:28 - 003214336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2024-05-14 19:40 - 2020-12-07 18:31 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-05-14 19:39 - 2020-12-07 18:31 - 196465576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2024-05-08 21:13 - 2021-07-10 01:17 - 000000000 ____D C:\Users\wolfa\AppData\Local\Athena 2024-05-08 21:12 - 2022-06-21 20:46 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\EasyAntiCheat 2024-05-08 14:06 - 2020-12-02 19:25 - 000000000 ____D C:\Users\wolfa\AppData\Local\Steam 2024-04-29 22:43 - 2020-12-06 09:47 - 000000000 ____D C:\Users\wolfa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2024-04-28 16:11 - 2022-03-06 16:06 - 000000000 ____D C:\ProgramData\Battle.net_components 2024-04-28 16:06 - 2022-10-31 13:05 - 000000000 ____D C:\Program Files (x86)\Battle.net 2024-04-27 20:59 - 2024-03-25 13:37 - 000000000 ____D C:\ProgramData\EA Desktop 2024-04-27 20:46 - 2021-11-29 19:40 - 000000000 ____D C:\Users\wolfa\AppData\Local\Ubisoft Game Launcher 2024-04-27 19:38 - 2022-01-27 19:55 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat_EOS ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======== 2022-06-13 06:27 - 2022-06-19 20:54 - 000001656 _____ () C:\Users\wolfa\AppData\Roaming\coolcam.ini 2021-09-17 20:40 - 2022-09-01 16:21 - 000007602 _____ () C:\Users\wolfa\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) ==================== Ende von FRST.txt ======================== Geändert von Wolf123 (24.05.2024 um 11:26 Uhr) |
Themen zu Search Engine Optimizer hat sich unerwünscht auf den Computer geladen und kann nicht deinstalliert werden |
.dll, administrator, asus, avira, computer, defender, desktop, geforce, google, homepage, hängen, internet, malware.ai.3921334810, monitor, nvidia, opera, programm, prozesse, pupoptional, realtek, registry, searchengineoptimizer, security, services.exe, software, svchost.exe, system, windows |