Probleme mit der Tastatur und Stottern bei Spielen Liste der Anhänge anzeigen (Anzahl: 1) Hallo,
seit Windows Defender einen Trojaner entdeckt hat, funktionieren die Tasten "s" sowie "alt gr" nicht mehr. Ich habe geprüft, ob es ein Treiberproblem ist, indem ich den Treiber neu installiert habe und den PC im abgesicherten Modus gestartet und dort die Tasten ausprobiert habe - leider ohne Erfolg. Außerdem habe ich seit der Erkennung des Trojaners ein Stottern in Spielen, was ich vorher nicht hatte. Können solche Probleme durch einen Trojaner ausgelöst werden?
Ich habe einen vollständigen scan mit Malwarebytes durchgeführt. Es wurden keine bösartigen Elemente erkannt.
Den durch Windows Defender erkannten Trojaner habe ich im Anhang hochgeladen.
Es ist das erste Mal, dass ich in diesem Forum schreibe, daher hoffe ich, dass ich alles richtig gemacht habe.
Log-File: FRST.txt Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 16-06-2022
durchgeführt von Hite (Administrator) auf DESKTOP-E1CH2D4 (Micro-Star International Co., Ltd. MS-7A38) (19-06-2022 14:02:17)
Gestartet von C:\Users\Hite\OneDrive\Desktop
Geladene Profile: Hite
Plattform: Microsoft Windows 10 Pro Version 21H2 19044.1766 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Edge
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (The Qt Company Ltd.) [Datei ist nicht signiert] C:\Program Files\AMD\CNext\CNext\QtWebEngineProcess.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Riot Games\League of Legends\LeagueClient.exe ->) (Riot Games, Inc. -> ) C:\Riot Games\League of Legends\LeagueCrashHandler.exe
(C:\Riot Games\League of Legends\LeagueClient.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Riot Games\League of Legends\LeagueClientUx.exe
(C:\Riot Games\League of Legends\LeagueClientUx.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Riot Games\League of Legends\LeagueClientUxRender.exe <5>
(C:\Riot Games\Riot Client\RiotClientServices.exe ->) () [Datei ist nicht signiert] C:\Riot Games\Riot Client\RiotClientCrashHandler.exe
(C:\Riot Games\Riot Client\RiotClientServices.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Riot Games\League of Legends\LeagueClient.exe
(DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\atieclxx.exe
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Riot Games\Riot Client\RiotClientServices.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <25>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\atiesrxx.exe
(services.exe ->) (Cisco Systems, Inc. -> Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(services.exe ->) (Geek Software GmbH -> Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3dd75df32535321a\RtkAudUService64.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3dd75df32535321a\RtkAudUService64.exe [1361000 2021-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [480904 2020-04-06] (Geek Software GmbH -> Geek Software GmbH)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133216 2017-03-23] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [1674368 2021-01-22] (Cisco Systems, Inc. -> Cisco Systems, Inc.)
HKU\S-1-5-21-2416251289-1379030167-1483101971-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4261640 2021-10-08] (Valve -> Valve Corporation)
HKU\S-1-5-21-2416251289-1379030167-1483101971-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Hite\AppData\Local\Microsoft\Teams\Update.exe [2339472 2020-05-06] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2416251289-1379030167-1483101971-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Hite\AppData\Local\WebEx\ciscowebexstart.exe [2391360 2020-09-29] (Cisco WebEx LLC -> Cisco Webex LLC)
HKU\S-1-5-21-2416251289-1379030167-1483101971-1001\...\Run: [Discord] => C:\Users\Hite\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2416251289-1379030167-1483101971-1001\...\Run: [MicrosoftEdgeAutoLaunch_CAEB579C58BDB4C3B19F0208A13FED72] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3595168 2022-06-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2416251289-1379030167-1483101971-1001\...\Run: [btweb] => "C:\Users\Hite\AppData\Roaming\BitTorrent Web\btweb.exe" /MINIMIZED (Keine Datei)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\102.0.5005.115\Installer\chrmstp.exe [2022-06-14] (Google LLC -> Google LLC)
GroupPolicy: Beschränkung ? <==== ACHTUNG
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {1B647B96-4F7B-4FCA-B255-5D3E87C7D76C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5310D59E-0C09-4F50-886E-AD1887F13E69} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.)
Task: {577A9DB7-6D02-4718-9D40-0B232198E031} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [966072 2022-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {6029D3E3-C844-43B1-A9C8-34BF722BD7DA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-01] (Google Inc -> Google LLC)
Task: {60B11FA6-684D-4D62-A2A6-DADA0BF9C9AD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {783191E3-1BB2-4CC0-8293-2AA63ABE55E1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8304072 2022-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {7AA4C50F-4CC4-4D65-825C-D3D6028D7531} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144800 2022-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {804FA396-1451-4824-AC95-7CD028D26B61} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [56368 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {8F64FFB3-6921-4666-A03E-BD312BF45192} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {91230422-4C0D-4B8B-95A2-DA969FEB6954} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {9221EA3B-27C6-4778-B4D2-E30CF0992D19} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [261680 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {A2C69990-F290-45E6-99CC-7EC735681FC1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-04-01] (Google Inc -> Google LLC)
Task: {BC78E00D-A306-4E8B-BE64-E345057A0E03} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task
Task: {BD4A6F4A-34C7-4022-9D61-3D3DE8626838} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1147440 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {C138B621-CECE-4108-B07E-FBAB2A41AE6B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144800 2022-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {C9E65EBA-F355-452F-899A-4793ABF73B6D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MpCmdRun.exe [992992 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CA1F53A4-FAAC-423A-A4C5-4BFC356ABE17} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [329216 2022-04-28] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
Task: {E28F2374-922A-4899-84EC-863303020E01} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [67472 2022-05-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {E6312D60-23C4-4E74-8850-FC853B6DF22D} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1147440 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {E668A853-7C03-4537-8C99-E82AE07B0701} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {EC6347F3-01EA-4F0F-8B2E-26B91660D8D6} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {FF6BA300-8618-40FF-A587-6CF14DE6BE81} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8304072 2022-06-18] (Microsoft Corporation -> Microsoft Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 208.67.222.222 208.67.220.220
Tcpip\..\Interfaces\{079b7fe6-b5ba-4e90-8843-e0e5d7dedee0}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{38386a43-86fd-45d4-a5c1-3aed2199d6a5}: [DhcpNameServer] 208.67.222.222 208.67.220.220
Tcpip\..\Interfaces\{b69e79af-f7a1-4927-9663-cd7b85010283}: [DhcpNameServer] 192.168.43.1
Edge:
=======
DownloadDir: C:\Users\Hite\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-2416251289-1379030167-1483101971-1001 -> about:start
Edge Session Restore: HKU\S-1-5-21-2416251289-1379030167-1483101971-1001 -> ist aktiviert.
Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden]
Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden]
Edge Extension: (uBlock Origin) -> EdgeExtension_37833NikRollsuBlockOrigin_f8jsg5mm64m62 => C:\Program Files\WindowsApps\37833NikRolls.uBlockOrigin_1.15.24.0_neutral__f8jsg5mm64m62 [2019-03-11]
Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden]
Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Hite\AppData\Local\Microsoft\Edge\User Data\Default [2022-06-19]
Edge DownloadDir: Default -> C:\Users\Hite\Downloads
Edge Notifications: Default -> hxxps://www.mydealz.de
Edge HomePage: Default -> hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
Edge Session Restore: Default -> ist aktiviert.
Edge Extension: (BetterTTV) - C:\Users\Hite\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\icllegkipkooaicfmdfaloehobmglglb [2022-05-30]
Edge Extension: (Shazam: Identifiziere Songs in deinem Browser) - C:\Users\Hite\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2022-04-08]
Edge Extension: (uBlock Origin) - C:\Users\Hite\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-05-05]
Edge Profile: C:\Users\Hite\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2022-06-19]
Edge Profile: C:\Users\Hite\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2022-06-19]
Edge Profile: C:\Users\Hite\AppData\Local\Microsoft\Edge\User Data\Profile 2 [2022-06-19]
FireFox:
========
FF DefaultProfile: ntitv4mx.default
FF ProfilePath: C:\Users\Hite\AppData\Roaming\Mozilla\Firefox\Profiles\ntitv4mx.default [2020-08-25]
FF ProfilePath: C:\Users\Hite\AppData\Roaming\Mozilla\Firefox\Profiles\jcysz1hx.default-release [2022-06-19]
FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => nicht gefunden
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-04-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-04-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-04-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-04-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2416251289-1379030167-1483101971-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\Hite\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-12] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
Chrome:
=======
CHR Profile: C:\Users\Hite\AppData\Local\Google\Chrome\User Data\Default [2022-06-19]
CHR Extension: (Google Docs Offline) - C:\Users\Hite\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-07-22]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Hite\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-02]
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-05-17] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11988384 2022-06-10] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-04-14] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2022-03-03] (Epic Games Inc. -> Epic Games, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8677120 2022-06-18] (Malwarebytes Inc. -> Malwarebytes)
S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [9414880 2020-10-15] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2575624 2022-05-27] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3494672 2022-05-27] (Electronic Arts, Inc. -> Electronic Arts)
R2 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [480904 2020-04-06] (Geek Software GmbH -> Geek Software GmbH)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6254368 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\NisSrv.exe [3120968 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.5-0\MsMpEng.exe [133536 2022-06-16] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33728 2021-12-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [27256 2022-01-27] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R2 AMDRyzenMasterDriverV19; C:\WINDOWS\system32\AMDRyzenMasterDriver.sys [43336 2022-04-26] (Advanced Micro Devices INC. -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\amdkmdag.sys [90165704 2022-05-09] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 BrSerIf; C:\WINDOWS\system32\DRIVERS\BrSerIf.sys [97280 2006-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.)
S3 BrUsbSer; C:\WINDOWS\system32\DRIVERS\BrUsbSer.sys [19584 2006-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [284672 2021-04-16] (Microsoft Corporation) [Datei ist nicht signiert]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-06-19] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-06-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-06-19] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43640 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 vpnva; C:\WINDOWS\System32\drivers\vpnva64-6.sys [74048 2021-01-22] (Cisco Systems, Inc. -> Cisco Systems, Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-06-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-16] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-16] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2022-06-19 13:38 - 2022-06-19 13:38 - 000099166 _____ C:\Users\Hite\Downloads\Addition.txt
2022-06-19 13:37 - 2022-06-19 13:38 - 000044532 _____ C:\Users\Hite\Downloads\FRST.txt
2022-06-19 13:23 - 2022-06-19 14:02 - 000000000 ____D C:\FRST
2022-06-19 11:53 - 2022-06-19 11:53 - 000000000 ____D C:\Users\Hite\AppData\LocalLow\AMD
2022-06-19 11:53 - 2022-05-09 16:30 - 000110448 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdkmpfd.sys
2022-06-19 11:52 - 2022-06-19 12:03 - 000000000 ____D C:\Users\Hite\AppData\Local\AMD
2022-06-19 11:52 - 2022-06-19 11:52 - 000003116 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2022-06-19 11:52 - 2022-06-19 11:52 - 000003104 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2022-06-19 11:52 - 2022-06-19 11:52 - 000003080 _____ C:\WINDOWS\system32\Tasks\StartDVR
2022-06-19 11:52 - 2022-06-19 11:52 - 000002622 _____ C:\WINDOWS\system32\Tasks\AMDRyzenMasterSDKTask
2022-06-19 11:52 - 2022-06-19 11:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2022-06-19 11:51 - 2022-06-19 11:53 - 000000000 ____D C:\ProgramData\AMD
2022-06-19 11:51 - 2022-06-19 11:51 - 000003160 _____ C:\WINDOWS\system32\Tasks\StartCN
2022-06-19 11:51 - 2022-06-19 11:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
2022-06-19 11:51 - 2022-04-28 09:49 - 002940912 _____ (AMD Inc.) C:\WINDOWS\SysWOW64\AMDBugReportTool.exe
2022-06-19 11:47 - 2022-05-09 16:32 - 001973728 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-06-19 11:47 - 2022-05-09 16:32 - 001973728 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-06-19 11:47 - 2022-05-09 16:32 - 001530336 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-06-19 11:47 - 2022-05-09 16:32 - 001530336 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-06-19 11:47 - 2022-05-09 16:32 - 001444352 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 001444352 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 001155952 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 001155952 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 000799736 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 000676832 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 000093664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mcl64.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 000049632 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2022-06-19 11:47 - 2022-05-09 16:32 - 000046560 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 001416664 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 001416664 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000893400 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2022-06-19 11:47 - 2022-05-09 16:31 - 000560608 _____ C:\WINDOWS\system32\GameManager64.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000528352 _____ C:\WINDOWS\system32\atieah64.exe
2022-06-19 11:47 - 2022-05-09 16:31 - 000503264 _____ C:\WINDOWS\system32\dgtrayicon.exe
2022-06-19 11:47 - 2022-05-09 16:31 - 000495072 _____ C:\WINDOWS\system32\EEURestart.exe
2022-06-19 11:47 - 2022-05-09 16:31 - 000471520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000421856 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000396248 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2022-06-19 11:47 - 2022-05-09 16:31 - 000347104 _____ C:\WINDOWS\system32\clinfo.exe
2022-06-19 11:47 - 2022-05-09 16:31 - 000263648 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000222688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000205688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000197088 _____ C:\WINDOWS\system32\mantle64.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000181232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000180192 _____ C:\WINDOWS\system32\mantleaxl64.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000170120 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000169456 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000158176 _____ C:\WINDOWS\SysWOW64\mantle32.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000143856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000143840 _____ C:\WINDOWS\SysWOW64\mantleaxl32.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000142320 _____ C:\WINDOWS\system32\atidxx64.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000116184 _____ C:\WINDOWS\SysWOW64\atidxx32.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000078304 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mcl32.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000031120 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2022-06-19 11:47 - 2022-05-09 16:31 - 000031104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 090032608 _____ C:\WINDOWS\system32\amd_comgr.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 074254832 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 001884120 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 001539040 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiacm64.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000941512 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000768976 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000469472 _____ C:\WINDOWS\system32\amdlogum.exe
2022-06-19 11:47 - 2022-05-09 16:30 - 000213928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000180432 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000153032 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000140784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000136136 _____ C:\WINDOWS\system32\amdxc64.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000133592 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000116720 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000111072 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2022-06-19 11:47 - 2022-05-09 16:30 - 000073176 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 069204424 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 001716424 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 001391912 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000561112 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000553032 _____ C:\WINDOWS\system32\amdmiracast.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000424440 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000163160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000152736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000152736 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000123824 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2022-06-19 11:47 - 2022-05-09 16:29 - 000123792 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2022-06-19 11:47 - 2022-05-09 16:28 - 000137928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2022-06-19 11:47 - 2022-05-09 16:02 - 056774272 _____ C:\WINDOWS\system32\amdxc64.so
2022-06-19 11:47 - 2022-05-09 16:02 - 003471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2022-06-19 11:47 - 2022-05-09 16:02 - 003437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2022-06-19 11:47 - 2022-05-09 16:02 - 000571400 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2022-06-19 11:47 - 2022-05-09 16:02 - 000571400 _____ C:\WINDOWS\system32\atiapfxx.blb
2022-06-19 11:47 - 2022-05-09 16:02 - 000204952 _____ C:\WINDOWS\SysWOW64\ativvsvl.dat
2022-06-19 11:47 - 2022-05-09 16:02 - 000204952 _____ C:\WINDOWS\system32\ativvsvl.dat
2022-06-19 11:47 - 2022-05-09 16:02 - 000157144 _____ C:\WINDOWS\SysWOW64\ativvsva.dat
2022-06-19 11:47 - 2022-05-09 16:02 - 000157144 _____ C:\WINDOWS\system32\ativvsva.dat
2022-06-19 11:47 - 2022-05-09 16:02 - 000154384 _____ C:\WINDOWS\system32\samu_krnl_ci.sbin
2022-06-19 11:47 - 2022-05-09 16:02 - 000138832 _____ C:\WINDOWS\system32\samu_krnl_isv_ci.sbin
2022-06-19 11:47 - 2022-05-09 16:02 - 000128048 _____ C:\WINDOWS\system32\kapp_ci.sbin
2022-06-19 11:47 - 2022-05-09 16:02 - 000121168 _____ C:\WINDOWS\system32\kapp_si.sbin
2022-06-19 11:47 - 2022-05-09 16:02 - 000076237 _____ C:\WINDOWS\system32\AMDKernelEvents.man
2022-06-19 11:47 - 2022-05-09 16:02 - 000012344 _____ C:\WINDOWS\system32\brandingWS_RSX.bmp
2022-06-19 11:47 - 2022-05-09 16:02 - 000012344 _____ C:\WINDOWS\system32\brandingRSX.bmp
2022-06-19 11:47 - 2022-05-09 16:02 - 000010702 _____ C:\WINDOWS\system32\atiacmLocalisation.ini
2022-06-19 11:47 - 2022-05-09 16:02 - 000000822 _____ C:\WINDOWS\system32\branding.bmp
2022-06-19 11:47 - 2021-12-13 21:01 - 000591792 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdfendrsr.exe
2022-06-19 11:47 - 2021-12-13 21:01 - 000164800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdfendr.sys
2022-06-19 11:47 - 2021-12-13 21:01 - 000033728 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdfendrmgr.sys
2022-06-19 11:47 - 2021-11-01 07:12 - 000246176 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\AtihdWT6.sys
2022-06-19 11:47 - 2021-08-17 18:34 - 000065168 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdxe.sys
2022-06-19 11:41 - 2022-06-19 11:41 - 000000000 ____D C:\Users\Hite\AppData\Local\AMDSoftwareInstaller
2022-06-19 11:40 - 2022-06-19 11:40 - 042463400 _____ (AMD Inc.) C:\Users\Hite\Downloads\amd-software-adrenalin-edition-22.5.2-minimalsetup-220520_web.exe
2022-06-19 10:15 - 2022-06-19 10:15 - 1007714908 _____ C:\WINDOWS\MEMORY.DMP
2022-06-19 10:15 - 2022-06-19 10:15 - 001220588 _____ C:\WINDOWS\Minidump\061922-7968-01.dmp
2022-06-19 10:08 - 2022-06-19 10:08 - 000380928 _____ C:\Users\Hite\Downloads\ki5xrbhu.exe
2022-06-19 10:06 - 2022-06-19 10:06 - 049055664 _____ (Piriform Software Ltd) C:\Users\Hite\Downloads\ccsetup600 (1).exe
2022-06-19 10:02 - 2022-06-19 10:02 - 049055664 _____ (Piriform Software Ltd) C:\Users\Hite\Downloads\ccsetup600.exe
2022-06-18 13:50 - 2022-06-19 09:41 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-06-18 13:50 - 2022-06-19 09:40 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2022-06-18 13:50 - 2022-06-18 13:50 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2022-06-18 13:50 - 2022-06-18 13:50 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2022-06-18 13:50 - 2022-06-18 13:49 - 000158640 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2022-06-18 13:50 - 2022-06-18 13:49 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2022-06-18 13:49 - 2022-06-18 13:49 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-06-18 13:49 - 2022-06-18 13:49 - 000000000 ____D C:\Program Files\Malwarebytes
2022-06-18 13:48 - 2022-06-18 13:48 - 002549096 _____ (Malwarebytes) C:\Users\Hite\Downloads\MBSetup.exe
2022-06-18 13:35 - 2022-06-18 13:37 - 000000000 ____D C:\AdwCleaner
2022-06-16 12:25 - 2022-06-19 12:44 - 125304832 _____ C:\WINDOWS\system32\config\SOFTWARE
2022-06-16 11:47 - 2022-06-16 11:47 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-06-16 11:47 - 2022-06-16 11:47 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-06-16 11:47 - 2022-06-16 11:47 - 000479744 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2022-06-16 11:47 - 2022-06-16 11:47 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2022-06-16 11:47 - 2022-06-16 11:47 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll
2022-06-16 11:47 - 2022-06-16 11:47 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2022-06-16 11:47 - 2022-06-16 11:47 - 000011787 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-06-16 11:41 - 2022-06-16 11:41 - 000000000 ___HD C:\$WinREAgent
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2022-06-19 13:47 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-19 13:16 - 2019-04-01 12:49 - 000000000 ____D C:\Program Files (x86)\Google
2022-06-19 12:52 - 2020-06-23 14:31 - 002562028 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-06-19 12:52 - 2020-06-23 11:41 - 000694794 _____ C:\WINDOWS\system32\perfh01F.dat
2022-06-19 12:52 - 2020-06-23 11:41 - 000144208 _____ C:\WINDOWS\system32\perfc01F.dat
2022-06-19 12:52 - 2019-12-07 16:51 - 000743714 _____ C:\WINDOWS\system32\perfh007.dat
2022-06-19 12:52 - 2019-12-07 16:51 - 000150136 _____ C:\WINDOWS\system32\perfc007.dat
2022-06-19 12:52 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-06-19 12:46 - 2019-02-22 16:55 - 000000000 ____D C:\ProgramData\Riot Games
2022-06-19 12:45 - 2020-06-23 14:33 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-06-19 12:45 - 2020-06-23 14:27 - 000495160 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-06-19 12:45 - 2020-06-23 14:27 - 000008192 ___SH C:\DumpStack.log.tmp
2022-06-19 12:45 - 2020-04-07 10:17 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2022-06-19 12:45 - 2019-03-12 15:25 - 000000447 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2022-06-19 12:45 - 2019-02-22 16:44 - 000000000 _____ C:\WINDOWS\system32\Drivers\lvuvc.hs
2022-06-19 12:44 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-06-19 12:44 - 2019-02-21 18:08 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2022-06-19 11:53 - 2019-02-22 22:33 - 000000000 ____D C:\Program Files\AMD
2022-06-19 11:52 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-06-19 11:52 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-06-19 11:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-06-19 11:52 - 2019-02-21 18:00 - 000000000 ____D C:\ProgramData\Packages
2022-06-19 11:52 - 2019-02-21 17:43 - 000000000 ____D C:\Users\Hite\AppData\Local\Packages
2022-06-19 11:49 - 2020-06-23 11:57 - 000000000 ____D C:\Users\Hite
2022-06-19 11:46 - 2019-02-21 19:47 - 000000000 ____D C:\AMD
2022-06-19 11:44 - 2021-01-12 17:58 - 000000000 ____D C:\Users\Hite\AppData\Local\AMD_Common
2022-06-19 10:52 - 2019-02-21 19:44 - 000000000 ____D C:\Users\Hite\AppData\Local\D3DSCache
2022-06-19 10:50 - 2020-06-23 14:27 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-06-19 10:15 - 2020-08-15 11:48 - 000000000 ____D C:\WINDOWS\Minidump
2022-06-19 10:04 - 2020-10-15 13:36 - 000000000 ____D C:\Users\Hite\AppData\Local\CrashDumps
2022-06-19 10:04 - 2020-06-23 11:09 - 000000000 ___DC C:\WINDOWS\Panther
2022-06-19 10:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-06-19 10:04 - 2019-03-05 12:44 - 000000000 ____D C:\Program Files (x86)\Steam
2022-06-19 09:40 - 2019-02-22 22:29 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2022-06-18 20:25 - 2020-03-23 13:08 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-06-18 18:29 - 2019-05-08 15:07 - 000000000 ____D C:\Program Files\Microsoft Office
2022-06-18 13:50 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-06-16 12:25 - 2020-10-15 11:29 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware
2022-06-16 11:51 - 2020-06-23 11:38 - 000000000 ____D C:\Program Files\Hyper-V
2022-06-16 11:51 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-06-16 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-06-16 11:51 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2022-06-16 11:49 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-06-16 11:47 - 2020-06-23 14:29 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-06-16 11:40 - 2019-02-21 18:10 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-06-16 11:39 - 2019-02-21 18:10 - 145918784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-06-16 11:38 - 2019-02-22 00:37 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-06-16 10:06 - 2022-01-14 20:53 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2416251289-1379030167-1483101971-1001
2022-06-16 10:06 - 2020-06-23 14:33 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2416251289-1379030167-1483101971-1001
2022-06-16 10:06 - 2020-06-23 11:57 - 000002396 _____ C:\Users\Hite\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-06-16 10:03 - 2020-06-23 14:33 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-06-16 10:03 - 2020-06-23 14:33 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-06-15 12:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-06-15 12:34 - 2019-02-21 17:45 - 000000000 ____D C:\Users\Hite\AppData\Local\ElevatedDiagnostics
2022-06-14 21:17 - 2019-04-01 12:51 - 000002252 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-06-09 20:23 - 2019-12-01 17:29 - 000000000 ____D C:\Program Files (x86)\Origin
2022-06-09 20:23 - 2019-12-01 17:27 - 000000000 ____D C:\ProgramData\Origin
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2021-12-11 15:03 - 2021-12-27 15:19 - 000000064 _____ () C:\Users\Hite\AppData\Roaming\eData.key
2021-12-11 15:03 - 2021-12-11 15:03 - 000000064 _____ () C:\Users\Hite\AppData\Local\eData.key
2020-05-25 18:25 - 2020-05-25 18:25 - 000000853 _____ () C:\Users\Hite\AppData\Local\recently-used.xbel
2019-02-25 23:04 - 2019-03-04 00:42 - 000007597 _____ () C:\Users\Hite\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== |