renessaince | 20.10.2022 19:12 | Code:
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com
Da befinden sich 7943 mehr Seiten.
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\123simsen.com -> www.123simsen.com
Da befinden sich 7943 mehr Seiten.
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\...\123simsen.com -> www.123simsen.com
Da befinden sich 7942 mehr Seiten.
==================== Hosts Inhalt: =========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 04:34 - 2022-10-19 14:14 - 000455368 ____R C:\Windows\system32\drivers\etc\hosts
127.0.0.1 activate.adobe.com
127.0.0.1 practivate.adobe.com
127.0.0.1 ereg.adobe.com
127.0.0.1 activate.wip3.adobe.com
127.0.0.1 wip3.adobe.com
127.0.0.1 3dns-3.adobe.com
127.0.0.1 3dns-2.adobe.com
127.0.0.1 adobe-dns.adobe.com
127.0.0.1 adobe-dns-2.adobe.com
127.0.0.1 adobe-dns-3.adobe.com
127.0.0.1 ereg.wip3.adobe.com
127.0.0.1 activate-sea.adobe.com
127.0.0.1 wwis-dubc1-vip60.adobe.com
127.0.0.1 activate-sjc0.adobe.com
1325-1558-5864-4422-1094-1126
127.0.0.1 activation.acronis.com
127.0.0.1 liveupdate.acronis.com
127.0.0.1 web-api-tih.acronis.com
127.0.0.1 download.acronis.com
127.0.0.1 orders.acronis.com
127.0.0.1 ns1.acronis.com
127.0.0.1 ns2.acronis.com
127.0.0.1 ns3.acronis.com
127.0.0.1 account.acronis.com
127.0.0.1 gateway.acronis.com
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
Da befinden sich 15628 zusätzliche Einträge.
==================== Andere Bereiche ===========================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\AMD APP\bin\x86_64;C:\Program Files (x86)\AMD APP\bin\x86;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\Smart Projects\IsoBuster;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile64\;C:\Program Files (x86)\Common Files\Acronis\FileProtector\;C:\Program Files (x86)\Common Files\Acronis\FileProtector64\
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\News\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [TCP Query User{41F8DFB6-259A-4BC1-8DBC-D29299300E26}C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe] => (Allow) C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe (hxxp://www.emule-project.net) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{E50B75D8-C298-4F36-B545-D5C616FA0755}C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe] => (Allow) C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe (hxxp://www.emule-project.net) [Datei ist nicht signiert]
FirewallRules: [{E9A54696-69D4-44BD-9344-B192BA4400A8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8C011ADA-2C3C-48BB-B619-938E83630F60}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2B8A4343-C905-4C54-952A-B2D0409111FD}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{6C02517A-3DFF-45DD-929E-FEC84100007B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{69E86067-3CF6-4E42-9D04-09CEE255B69C}] => (Allow) LPort=5354
FirewallRules: [{EEA9FD6D-7179-4D22-A972-CBE8BAB2CDE0}] => (Allow) LPort=5354
FirewallRules: [{13774E0A-590D-43CC-B609-0E2A1F7B7C2A}] => (Allow) LPort=5354
FirewallRules: [{86160CC4-050F-43F1-AA06-CC42FAF90907}] => (Allow) LPort=5354
FirewallRules: [TCP Query User{BC217EFE-AD46-46E7-8C3D-AD2A5DC365A9}C:\program files (x86)\sonos\sonos.exe] => (Allow) C:\program files (x86)\sonos\sonos.exe (Sonos, Inc. -> Sonos, Inc.)
FirewallRules: [UDP Query User{D1C60FB4-D262-4E04-95BD-8E9A1A992276}C:\program files (x86)\sonos\sonos.exe] => (Allow) C:\program files (x86)\sonos\sonos.exe (Sonos, Inc. -> Sonos, Inc.)
FirewallRules: [TCP Query User{2B604401-F3D5-4FCD-B8EA-61677C4BCA6A}C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe] => (Allow) C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe (hxxp://www.emule-project.net) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{1BD65002-BB66-498C-A0BA-5D91FC7BAF42}C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe] => (Allow) C:\users\news\downloads\emule-0.49b-sivka-v19b1-bin\emule0.49b27.sivka.mod.v19b1\emule.exe (hxxp://www.emule-project.net) [Datei ist nicht signiert]
FirewallRules: [{4EA23679-BA9B-402E-91A8-23996F8ADAA3}] => (Allow) LPort=5354
FirewallRules: [{3AB93127-8196-4933-A52D-D46E86C53383}] => (Allow) LPort=5354
FirewallRules: [{E74540DF-B1EC-4C1C-98DC-E29AB0C9FED2}] => (Allow) LPort=5354
FirewallRules: [{A11F1990-F352-4224-BD4B-D5A49C0E5CBB}] => (Allow) LPort=5354
FirewallRules: [{73405F16-8DF9-4365-B4E5-79D8C56D31E9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{6C90EF4B-43C0-4A18-ADB4-0E8408669A9E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C63F024E-3B8B-4CD1-97F6-719CF6E9C6AF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{08328F78-7D34-4B8A-9AE9-91A852C2E95C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{974686F9-9005-4643-AECD-154C9DE254EA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A9803070-E352-4699-AEEE-FEB6D3F065C5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{61D081F4-F510-4AA4-9A3B-CC8D97E9378D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{DAEC6E02-6B8B-4AB4-BD2D-A161BD910245}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{07F0374E-D354-477C-9577-8E9789288581}C:\users\news\appdata\roaming\upcam\searchtool4.exe] => (Allow) C:\users\news\appdata\roaming\upcam\searchtool4.exe (upCam) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{5F8582B7-7C4D-4935-A404-F41B39A5A06E}C:\users\news\appdata\roaming\upcam\searchtool4.exe] => (Allow) C:\users\news\appdata\roaming\upcam\searchtool4.exe (upCam) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{8BBD2B89-A0B9-4F70-89BF-9DE81A75258E}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{D0B219DF-8FD1-4DDF-9B70-B616D91335AD}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{474F559D-C2CC-4C6E-9B93-DF3DB24D89F3}C:\users\news\appdata\roaming\upcam\searchtool4.exe] => (Allow) C:\users\news\appdata\roaming\upcam\searchtool4.exe (upCam) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{B1016109-13C7-4704-8FAD-3DDF02406FCE}C:\users\news\appdata\roaming\upcam\searchtool4.exe] => (Allow) C:\users\news\appdata\roaming\upcam\searchtool4.exe (upCam) [Datei ist nicht signiert]
FirewallRules: [{0448177E-E161-466C-8A8C-4A81CF9DF91D}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{12C2470F-16A0-43DA-8379-579AD02C6C57}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\FaxApplications.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{BE2ACEE2-CDD7-4F41-BC72-B0BC5A2576B5}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\DigitalWizards.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{A370E191-7399-40C8-BD6B-093C5F5E9035}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\SendAFax.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{51FB5D10-90BD-4404-9B53-5C651D2AEA12}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\bin\FaxPrinterUtility.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{CD5D2004-D712-40AA-9D74-25F6DB72D7AA}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{2F618B39-D3FF-445D-992B-D6F0496F9F8E}] => (Allow) LPort=5357
FirewallRules: [{863CDCF7-A14B-49F7-BA7D-B7B9009BD068}] => (Allow) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{7AE29494-D6EE-4308-A11F-2CB8C5995345}] => (Allow) LPort=5354
FirewallRules: [{71BC16FF-EA47-4BF8-A3F9-CBB3E363B7FC}] => (Allow) LPort=5354
FirewallRules: [{C510D57C-B135-40C1-8450-AD039BE23B65}] => (Allow) LPort=5354
FirewallRules: [{5BEB9198-FBA2-43FD-ABBE-E3DBE7FC4729}] => (Allow) LPort=5354
FirewallRules: [{D8BA5980-F1AA-47D1-8993-9C946B090FFA}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{8DF6491F-D411-4DD7-AFF4-B85BBA432414}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{89B6861C-480D-4375-A197-651C54399B8F}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (devolo AG -> devolo AG)
FirewallRules: [TCP Query User{2D43A51F-F50E-49F3-8F2E-A2131C52120B}C:\users\news\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\news\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{C15C73D5-889B-4EAC-8FEF-BF26B3A9556A}C:\users\news\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\news\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BB439502-FBE1-4C45-A9D0-FBCCDD80F061}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2E5F1C71-0A00-4AD3-9DFC-5526BBE9CBCB}] => (Allow) LPort=8090
FirewallRules: [{B3F9C3E7-C899-4712-B144-A262054C3672}] => (Allow) C:\Program Files\Agent\Agent.exe (Developer In A Box -> Developerinabox)
FirewallRules: [TCP Query User{B1443ED5-ECDB-4BA3-B97F-4A2454B09F11}C:\program files\blue iris 5\blueiris.exe] => (Block) C:\program files\blue iris 5\blueiris.exe (Perspective Software -> Perspective Software)
FirewallRules: [UDP Query User{B1ED692A-19F8-4012-915E-F449F17BBFB5}C:\program files\blue iris 5\blueiris.exe] => (Block) C:\program files\blue iris 5\blueiris.exe (Perspective Software -> Perspective Software)
FirewallRules: [{6F486E20-092C-443F-B179-C9F4552DC2CD}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (devolo AG -> devolo AG)
FirewallRules: [{FB6D8A28-FD45-46C9-AE30-FC82887E0074}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe (devolo AG -> devolo AG)
FirewallRules: [{5047BCF0-FD2E-4E8E-ABF1-BE27285C38C5}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Acronis International GmbH -> )
FirewallRules: [{83F588DC-3191-4D15-99C5-9547FF168946}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{E011DA31-DF97-4473-9386-85B4CFE09183}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\CyberProtectHomeOffice.exe (Acronis International GmbH -> )
FirewallRules: [{03CDC77E-B2DE-4243-B374-EAEC314FFF02}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\CyberProtectHomeOfficeMonitor.exe (Acronis International GmbH -> )
FirewallRules: [{A6B33A22-4FF7-46E2-8BDE-41CD9E32BDE1}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\CyberProtectHomeOfficeTools.exe (Acronis International GmbH -> )
FirewallRules: [{2A797403-A80D-40CE-9510-594A4DF2245E}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\CyberProtectHomeOffice\CyberProtectHomeOfficeService.exe (Acronis International GmbH -> )
FirewallRules: [{48ABC568-02CC-464D-87A9-1363B1D57709}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\MediaBuilder.exe (Acronis International GmbH -> )
FirewallRules: [{34AB4CD6-C972-4BC5-8DBC-4E3A520E9F9A}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\SystemReport.exe (Acronis International GmbH -> )
FirewallRules: [{4877655E-2CAE-4A46-A4BE-08E5B5A47492}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\acronis_drive.exe (Acronis International GmbH -> )
FirewallRules: [{2D2CE7DF-187C-4A39-825A-F2B8AE051252}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{0F0AE438-F758-404B-9F75-70DA63D8000D}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\mobile_backup_status_server.exe (Acronis International GmbH -> )
FirewallRules: [{3C907749-FB7C-4E6B-81C1-75A8FF1E5706}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\ga_service.exe (Acronis International GmbH -> )
FirewallRules: [{E8005AC7-D177-48FC-B400-1121EF91892A}] => (Allow) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\LicenseActivator.exe (Acronis International GmbH -> )
FirewallRules: [{2C8EDD85-2988-4971-938D-5042FE81741A}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Home\report_sender.exe (Acronis International GmbH -> )
FirewallRules: [{192C8285-AA42-4DE7-ACE1-17EFE39ABF75}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{429BCB31-A5B2-4C7A-9139-D8503440CE36}] => (Allow) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{A44A6808-7512-47D2-9318-825BB143380E}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (Acronis International GmbH -> )
FirewallRules: [{C7A5C602-773A-4480-AC5A-461E6AA2A33E}] => (Allow) C:\Program Files (x86)\Acronis\Agent\aakore.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{069B1747-F19E-438A-A957-20255C7699B1}] => (Allow) C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe (Acronis International GmbH -> Acronis International GmbH)
FirewallRules: [{07DE2B21-5516-41E9-900E-1DED9ED171E7}] => (Allow) C:\Users\News\AppData\Roaming\Zoom\bin\Zoom.exe () [Datei ist nicht signiert]
FirewallRules: [{607CB46B-BCC4-4093-BE45-3DE368A73F10}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D4BEF7DC-6B1F-4E4A-AB92-40D16F7079D8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{8F92656F-4EFB-4D77-B25B-8CA9D587BCEA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{6C54B51D-8E82-4E34-B60F-59F6606693FA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{A3FAB88F-0A3F-4D67-98B6-2E188ACADA48}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{21869B67-6C79-4BC3-8B6C-7D9307437B01}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\106.0.1370.47\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{577A1B13-4179-4CBD-BF1F-7F2A1D205C4C}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{F6B0B49C-46FF-4513-AF00-55AB91A9B4CF}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{8B8AE1DA-F566-45C6-B070-7CB85166E941}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{4F9A1D63-BAA7-4EAC-965D-D62BF2FDFB29}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{68FA945A-500C-4BB7-9CA6-678D4A5CB9B7}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{722E8CE0-BA32-4478-94E5-50C45BC25D0B}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{0EE95D29-10E5-42C3-B983-85D681D5F4AF}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
FirewallRules: [{E01A9737-0589-471F-8753-EFFB9E3EBA9D}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
==================== Wiederherstellungspunkte =========================
==================== Fehlerhafte Geräte im Gerätemanager ============
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Fehlereinträge in der Ereignisanzeige: ========================
Applikationsfehler:
==================
Error: (10/20/2022 04:59:20 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: esu.exe, Version: 1.0.0.0, Zeitstempel: 0x58dac8d5
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.24545, Zeitstempel: 0x5e0eb7f5
Ausnahmecode: 0xe0434352
Fehleroffset: 0x0000c5af
ID des fehlerhaften Prozesses: 0x5e8
Startzeit der fehlerhaften Anwendung: 0x01d8e42fef444315
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe
Pfad des fehlerhaften Moduls: C:\Windows\syswow64\KERNELBASE.dll
Berichtskennung: 310b217d-5023-11ed-8a27-74d02b33e6cc
Error: (10/20/2022 04:59:19 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Anwendung: esu.exe
Frameworkversion: v4.0.30319
Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet.
Ausnahmeinformationen: System.IO.FileNotFoundException
bei Garmin.Omt.Service.Shared.Overrides+<UpdateDatacenterOverridesAsync>d__61.MoveNext()
bei System.Runtime.CompilerServices.AsyncTaskMethodBuilder.Start[[Garmin.Omt.Service.Shared.Overrides+<UpdateDatacenterOverridesAsync>d__61, ExpressSelfUpdater, Version=1.0.0.0, Culture=neutral, PublicKeyToken=null]](<UpdateDatacenterOverridesAsync>d__61 ByRef)
bei Garmin.Omt.Service.Shared.Overrides.UpdateDatacenterOverridesAsync(Boolean)
bei Garmin.Omt.Service.Shared.Overrides..cctor()
Ausnahmeinformationen: System.TypeInitializationException
bei Garmin.Omt.Service.Shared.Overrides.get_OmtBaseUrl()
bei Garmin.Omt.Express.SelfUpdater.Program.RealMain()
bei Garmin.Omt.Express.SelfUpdater.Program.Main(System.String[])
Error: (10/20/2022 04:43:42 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: Ein Problem hat das Senden von Daten aus dem Programm zur Verbesserung der Benutzerfreundlichkeit an Microsoft verhindert (Fehler 80004005).
Error: (10/20/2022 03:59:15 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: Ein Problem hat das Senden von Daten aus dem Programm zur Verbesserung der Benutzerfreundlichkeit an Microsoft verhindert (Fehler 80004005).
Error: (10/19/2022 02:14:27 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.
Error: (10/19/2022 02:13:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: CsrBtOBEXService.exe, Version: 2.1.63.0, Zeitstempel: 0x4f68683b
Name des fehlerhaften Moduls: CsrBtOBEXService.exe, Version: 2.1.63.0, Zeitstempel: 0x4f68683b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000006f58
ID des fehlerhaften Prozesses: 0xbec
Startzeit der fehlerhaften Anwendung: 0x01d8e31a7cfc3233
Pfad der fehlerhaften Anwendung: C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe
Pfad des fehlerhaften Moduls: C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe
Berichtskennung: 640de6d1-4fa7-11ed-9bf3-74d02b33e6cc
Error: (10/19/2022 09:57:24 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: Ein Problem hat das Senden von Daten aus dem Programm zur Verbesserung der Benutzerfreundlichkeit an Microsoft verhindert (Fehler 80004005).
Error: (10/19/2022 08:38:33 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: Ein Problem hat das Senden von Daten aus dem Programm zur Verbesserung der Benutzerfreundlichkeit an Microsoft verhindert (Fehler 80004005).
Systemfehler:
=============
Error: (10/20/2022 07:41:28 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: Der Server "{BB6DF56B-CACE-11DC-9992-0019B93A3A84}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (10/20/2022 06:33:26 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 70.
Error: (10/20/2022 06:33:26 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 70.
Error: (10/20/2022 05:30:25 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 70.
Error: (10/20/2022 05:30:25 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 70.
Error: (10/20/2022 03:49:21 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 70.
Error: (10/20/2022 03:49:21 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 70.
Error: (10/20/2022 02:33:44 PM) (Source: Schannel) (EventID: 4103) (User: NT-AUTORITÄT)
Description: Schwerwiegender Fehler beim Erstellen der Anmeldeinformationen Client für SSL. Der interne Fehlerstatus ist 10013.
==================== Speicherinformationen ===========================
BIOS: American Megatrends Inc. 1801 02/28/2013
Hauptplatine: ASUSTeK COMPUTER INC. P8Z77-V LX
Prozessor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz
Prozentuale Nutzung des RAM: 91%
Installierter physikalischer RAM: 8139.39 MB
Verfügbarer physikalischer RAM: 698.9 MB
Summe virtueller Speicher: 16276.92 MB
Verfügbarer virtueller Speicher: 5053.73 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:238.37 GB) (Free:24.01 GB) (Model: ATA Samsung SSD 840 SCSI Disk Device) NTFS
Drive e: (VERBATIM HD) (Fixed) (Total:1862.56 GB) (Free:354.14 GB) (Model: ST2000LM 003 HN-M201R USB Device) FAT32
Drive f: (TOSHIBA EXT) (Fixed) (Total:1863.01 GB) (Free:1135.51 GB) (Model: TOSHIBA External USB 3.0 USB Device) NTFS
\\?\Volume{43e2f3f4-db4b-11dd-b3ed-806e6f6e6963}\ (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS
==================== MBR & Partitionstabelle ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: A480698A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=238.4 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Size: 1863 GB) (Disk ID: 4E360F5E)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=0C)
==========================================================
Disk: 3 (Size: 1863 GB) (Disk ID: 30BFC015)
Partition 1: (Active) - (Size=1863 GB) - (Type=07 NTFS)
==================== Ende von Addition.txt ======================= Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2022
durchgeführt von News (Administrator) auf NEWS-PC (20-10-2022 19:32:24)
Gestartet von C:\Users\News\AppData\Local\Temp\FRST64_exe_6201020221930288176645709
Geladene Profile: News & _ashbackup_
Plattform: Microsoft Windows 7 Ultimate Service Pack 1 (X64) Sprache: Englisch (USA) -> Deutsch (Deutschland)
Standard-Browser: Edge
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Acronis International GmbH -> ) C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\CyberProtectHomeOfficeMonitor.exe
(Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe
(Advanced Micro Devices Inc.) [Datei ist nicht signiert] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atieclxx.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(AVM Berlin) [Datei ist nicht signiert] C:\Program Files (x86)\avmwlanstick\WLanGUI.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\grpm-mini.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe
(C:\Program Files (x86)\Acronis\Agent\aakore.exe ->) (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe
(C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe ->) (ATI Technologies Inc.) [Datei ist nicht signiert] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(C:\Program Files\Ashampoo\Ashampoo Backup 2021\bin\backupService-ab.exe ->) () [Datei ist nicht signiert] C:\Program Files\Ashampoo\Ashampoo Backup 2021\bin\oxHelper.exe <2>
(C:\Windows\SysWOW64\srvany.exe ->) () [Datei ist nicht signiert] C:\Windows\KMService.exe
(explorer.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Plustek\OpticFilm 8200i\QuickScan_x64.exe
(explorer.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(explorer.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(explorer.exe ->) (Ashampoo GmbH & Co. KG -> ) C:\Program Files\Ashampoo\Ashampoo Backup 2021\bin\backupClient-ab.exe
(explorer.exe ->) (Cambridge Silicon Radio Ltd. -> ) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe
(explorer.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe
(explorer.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe
(explorer.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe
(explorer.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe
(explorer.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe
(explorer.exe ->) (Developer In A Box -> Developerinabox) C:\Program Files\Agent\AgentTray.exe
(explorer.exe ->) (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe
(explorer.exe ->) (Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\ScanToPCActivationApp.exe
(explorer.exe ->) (P2PCamLive) [Datei ist nicht signiert] C:\Program Files (x86)\P2PCamLive\P2PCamWin\P2PCamWin.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (VIA Technologies, Inc.) [Datei ist nicht signiert] C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPNetworkCommunicatorCom.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <29>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Safer-Networking Limited -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(services.exe ->) () [Datei ist nicht signiert] C:\Windows\SysWOW64\srvany.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
(services.exe ->) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe
(services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(services.exe ->) (Ashampoo GmbH & Co. KG -> ) C:\Program Files\Ashampoo\Ashampoo Backup 2021\bin\backupService-ab.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe
(services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe
(services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe
(services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe
(services.exe ->) (AVM Berlin) [Datei ist nicht signiert] C:\Program Files (x86)\avmwlanstick\WLanNetService.exe
(services.exe ->) (Buhl Data Service GmbH -> Buhl Data Service GmbH) C:\Program Files (x86)\Buhl\WISO Mein Geld 365\Buhl.MeinGeld.UpdateService.exe
(services.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe
(services.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe
(services.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe
(services.exe ->) (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited) C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe
(services.exe ->) (Developer In A Box -> Developerinabox) C:\Program Files\Agent\Agent.exe
(services.exe ->) (devolo AG -> devolo AG) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe
(services.exe ->) (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(services.exe ->) (nordvpn s.a. -> TEFINCOM S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe
(services.exe ->) (nordvpn s.a. -> TEFINCOM S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (pdfforge GmbH -> © pdfforge GmbH.) C:\Program Files (x86)\PDF Architect 5 Manager\PDF Architect 5\Architect Manager.exe
(services.exe ->) (philandro Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe <2>
(services.exe ->) (Safer-Networking Limited -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(services.exe ->) (Safer-Networking Limited -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(services.exe ->) (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(taskeng.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe
(taskeng.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(taskeng.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277520 2020-05-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CsrHCRPServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrHCRPServer.exe [1134288 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [CsrAudioguiCtrl] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrAudioguiCtrl.exe [511696 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [CsrSyncMLServer] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrSyncMLServer.exe [244944 2012-03-22] (Cambridge Silicon Radio Ltd. -> )
HKLM\...\Run: [vksts] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\vksts.exe [25792 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [HarmonyUserStartup] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\HarmonyUserStartup.exe [39128 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [CSRHarmonySkypePlugin] => C:\Program Files (x86)\CSR\CSR Harmony Wireless Software Stack\CSRHarmonySkypePlugin.exe [146656 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [TrayApplication] => C:\Program Files\CSR\CSR Harmony Wireless Software Stack\TrayApplication.exe [529616 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Run: [VIAxHCUtl] => C:\Program Files\VIA XHCI UASP Utility\usb3Monitor.exe [331776 2011-07-12] (VIA Technologies, Inc.) [Datei ist nicht signiert]
HKLM\...\Run: [] => [X]
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [333784 2021-03-31] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Ashampoo Backup] => C:\Program Files\Ashampoo\Ashampoo Backup 2021\bin\backupClient-ab.exe [322944 2020-11-05] (Ashampoo GmbH & Co. KG -> )
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [637784 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [212184 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-20] (Intel Corporation -> Intel Corporation)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Datei ist nicht signiert]
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [402432 2010-07-22] (Adobe Systems Incorporated) [Datei ist nicht signiert]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-08-30] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [76600 2020-07-24] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Avira System Speedup User Starter] => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [333760 2022-08-30] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [5204968 2021-11-16] (Safer-Networking Limited -> Safer-Networking Ltd.)
HKLM-x32\...\Run: [CyberProtectHomeOfficeMonitor.exe] => C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\CyberProtectHomeOfficeMonitor.exe [6248024 2021-10-22] (Acronis International GmbH -> )
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
HKLM\...\RunServicesOnce: [WISO Finanz Update] => C:\ProgramData\Buhl Data Service GmbH\WISO Mein Geld 365 Professional\Download\WISOFinanz365Update_28.0.3.42.exe "/Silent" "/InstallDir=C:\Program Files (x86)\Buhl\WISO Mein Geld 365" "/ProjectName=WI (Der Dateneintrag hat 49 mehr Zeichen). (Keine Datei)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Beschränkung <==== ACHTUNG
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2013-10-29] (Google Inc -> Google Inc.)
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [Polar FlowSync] => [X]
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1421736 2017-03-28] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [HP OfficeJet Pro 7740 (NET)] => C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\ScanToPCActivationApp.exe [3769992 2017-06-30] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38502416 2022-09-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [] => [X]
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [Agent Tray] => C:\Program Files\Agent\AgentTray.exe [921416 2022-03-06] (Developer In A Box -> Developerinabox)
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\Run: [MicrosoftEdgeAutoLaunch_8C9A4B9B0EE987D7493AE51B8A9C6E90] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3852200 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\MountPoints2: {5436c747-ed9a-11e6-8b4a-74d02b33e6cc} - E:\autorun.exe
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\MountPoints2: {7ee7f090-9d55-11e7-b916-74d02b33e6cc} - E:\pushinst.exe
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\...\MountPoints2: {c9a5a804-426a-11e4-9368-74d02b33e6cc} - I:\LaunchU3.exe -a
HKU\S-1-5-21-3252101911-2312040691-2941143720-1000\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-21-3252101911-2312040691-2941143720-1004\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKLM\...\Windows x64\Print Processors\Canon MG5300 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDAT.DLL [30208 2012-03-14] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Windows x64\Print Processors\Canon TS8300 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDFT.DLL [529408 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5300 series: C:\Windows\system32\CNMLMAT.DLL [385024 2012-03-14] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS8300 series: C:\Windows\system32\CNMLMFT.DLL [959488 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [359936 2012-06-14] (CANON INC.) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\HCR Client Port Monitor: C:\Windows\system32\csrportmon.dll [73416 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
HKLM\...\Print\Monitors\HP 0154 Status Monitor: C:\Windows\system32\hpinksts0154LM.dll [393320 2017-06-15] (Hewlett Packard -> HP Inc.)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP OfficeJet Pro 7740 series): C:\Windows\system32\HPDiscoPM0154.dll [840840 2017-06-30] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\106.0.5249.119\Installer\chrmstp.exe [2022-10-12] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2022-09-28] (Adobe Inc. -> Adobe Systems, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{5355DA8C-FE32-49b4-A567-A67535C86592}] -> C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BLEtokenCredentialProvider.dll [2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2020-07-14]
ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\QuickScan (OpticFilm 8200i).lnk [2014-10-06]
ShortcutTarget: QuickScan (OpticFilm 8200i).lnk -> C:\Program Files (x86)\Plustek\OpticFilm 8200i\QuickScan_x64.exe () [Datei ist nicht signiert]
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Beschränkung ? <==== ACHTUNG
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {14112965-933D-49AC-AFED-78DF2348D523} - System32\Tasks\HPCustParticipation HP OfficeJet Pro 7740 series => C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPCustPartic.exe [6438536 2017-06-30] (Hewlett Packard -> HP Inc.)
Task: {1FB73323-4330-4208-BE8A-4C02A320A10D} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2076272 2000-01-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {2A93BCCE-0CE9-4A17-87A3-E65498064372} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2147440 2000-01-01] (Microsoft Corporation -> Microsoft)
Task: {3826B639-DF3A-4CAF-8F35-1968DEBEA1F2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {3996E930-196F-4A34-871A-05EC941563E8} - \Driver Booster Update -> Keine Datei <==== ACHTUNG
Task: {3E423B2B-7121-415E-B56D-566F3D1B8214} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-09-12] (Piriform Software Ltd -> Piriform)
Task: {4885C798-6F3B-488C-96A7-CDF14C44D123} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1466496 2000-01-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {4E319186-07C8-4442-AC1A-6077710B45F2} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1660640 2022-10-10] (Avira Operations GmbH -> Avira Operations GmbH)
Task: {50393537-A5D1-46FA-9F13-8A9B65B006EF} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4666896 2022-09-12] (Piriform Software Ltd -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "52517b3e-51af-45c6-9712-972847c52e78" --version "6.04.10044" --silent
Task: {6097309F-EE81-4257-B047-569EB6C5C10F} - System32\Tasks\HPCustPartic.exe_{830D4E58-81DE-4ADF-B8B2-F128E92E7BEA} => C:\Program Files\HP\HP OfficeJet Pro 7740 series\Bin\HPCustPartic.exe [6438536 2017-06-30] (Hewlett Packard -> HP Inc.)
Task: {61000696-313D-4F5C-A1F2-2B3113DE81AF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {738D7756-3470-47E1-9A6D-8D3B5E7BCADD} - System32\Tasks\{20EB4374-BD7F-413A-9C1B-245A5A49465D} => C:\Windows\system32\pcalua.exe -a "F:\Special\Acronis True Image 2013\Acronis True Image 2013\Acronis True Image 2013\SETuP\Aktivator + Serials Deutsch\ActivationAcronisTIH.exe" -d "F:\Special\Acronis True Image 2013\Acronis True Image 2013\Acronis True Image 2013\SETuP\Aktivator + Serials Deutsch"
Task: {7A859050-D43D-498F-B86B-81FAA1DE1F81} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1466496 2000-01-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {856DC78B-0C39-492A-B9F6-E36C9FD7CFF8} - \Driver Booster Scheduler -> Keine Datei <==== ACHTUNG
Task: {93FBDB8C-AD9C-4F5B-BBBB-71870EFF9A18} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
Task: {97161948-27B3-4DB2-B78A-0648A7072883} - System32\Tasks\AviraSystemSpeedupVerify => C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe [31903104 2022-08-31] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
Task: {9AC54E74-08E6-4987-BED4-810A0E24701B} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [5629064 2021-11-23] (Safer-Networking Limited -> Safer-Networking Ltd.)
Task: {9F417A0A-E322-4019-8EEF-613BB407FC73} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [6093928 2021-12-20] (Safer-Networking Limited -> Safer-Networking Ltd.)
Task: {A2DD2B36-B2F6-4E47-B8FE-D4D5735015D3} - \Driver Booster SkipUAC (News) -> Keine Datei <==== ACHTUNG
Task: {A690FCEF-E825-47BB-B158-13BE54B9F79C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.)
Task: {B16733E9-3987-4D13-8C28-AAF90FE6C616} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [5363552 2021-11-16] (Safer-Networking Limited -> Safer-Networking Ltd.)
Task: {B2560F4A-DC1D-46F4-A243-E2DD5B92A469} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2076272 2000-01-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {BEAF9E0B-A089-4C97-846D-9A8C6A410E8C} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [258304 2022-10-10] (Avira Operations GmbH -> Avira Operations GmbH)
Task: {BFE2390D-ADF1-4A2A-935F-69AE0EBACDCE} - System32\Tasks\AdobeAAMUpdater-1.0-News-PC-News => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {C02E1A8F-597E-40A5-822C-DB2B0C8C4AC6} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39848 2017-03-28] (Garmin International, Inc. -> )
Task: {C9D5826D-E896-454F-895C-1DBB8B4F2355} - System32\Tasks\Avira_Security_Update => C:\Windows\system32\net.exe [55808 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
Task: {CCB3DC9B-DF96-4746-884A-3A7727959458} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {D79AF4D1-9F0F-451A-994E-DB598378B580} - System32\Tasks\{607CE22D-BE6C-4AE8-9C98-930EAD95261B} => C:\Windows\system32\pcalua.exe -a C:\Users\News\AppData\Local\Temp\jre-8u161-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== ACHTUNG
Task: {DAC2D570-28F4-4B9F-B2E6-CB692630C10B} - System32\Tasks\CCleanerSkipUAC - News => C:\Program Files\CCleaner\CCleaner.exe [32204304 2022-09-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DD388F75-8FFC-4BD0-AAD6-ABAE39F8C09B} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4936920 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
Task: {DD5FF400-9613-4100-9A56-92AAC8702788} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {E27BCFFC-51DB-4C1D-A1F1-44AE2588B559} - \Sump Task (One-Time) -> Keine Datei <==== ACHTUNG
Task: {FE0F20F2-1D91-4E7E-8EF0-BBD5E5BFD72F} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry
Task: {FE0F20F2-1D91-4E7E-8EF0-BBD5E5BFD72F} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog
Task: {FE0F20F2-1D91-4E7E-8EF0-BBD5E5BFD72F} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== ACHTUNG (Beschränkung - Zones)
Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.58.157.1 10.58.157.2 10.58.157.1
Tcpip\..\Interfaces\{28244E9A-4207-4FD5-BBE7-763F486C1F20}: [DhcpNameServer] 10.58.157.1 10.58.157.2 10.58.157.1
Tcpip\..\Interfaces\{88D11724-BA19-4B8F-9F15-0DF7E8B24C7D}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{C89CF276-6C69-4A0A-A6D9-D73764628BE2}: [NameServer] 8.8.8.8,8.8.4.4,10.58.157.251
Tcpip\..\Interfaces\{C89CF276-6C69-4A0A-A6D9-D73764628BE2}: [DhcpNameServer] 10.58.157.1 10.58.157.2 10.58.157.1
Tcpip\..\Interfaces\{CCDA5BEC-DBD9-4A49-A7AC-1ABFAE33C044}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{E0FFB38A-D296-4211-A557-FEE38690D70B}: [DhcpNameServer] 172.20.10.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\News\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-20]
Edge HomePage: Default -> hxxp://www.arcor.de/
Edge StartupUrls: Default -> "hxxp://arcor.de/"
Edge Extension: (Ruffle) - C:\Users\News\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbaplclbegekdgbdbklnchepjlcmicka [2021-01-25]
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2013-06-11] (VideoLAN) [Datei ist nicht signiert]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2013-04-02] (Google Inc. -> Google, Inc.)
FF Plugin-x32: @google.com/zxwebplugin -> C:\Windows\system32\nptvswebplugin.dll [Keine Datei]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-09-28] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3252101911-2312040691-2941143720-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\News\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2017-05-18] (Unity Technologies SF -> Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-3252101911-2312040691-2941143720-1000: www.mydlink.com/Uplayer -> C:\Users\News\AppData\Roaming\D-Link\mydlink services plugin\1.0.2.7\npUplayer.dll [2015-12-11] (D-LINK CORPORATION -> D-Link Corporation)
Chrome:
=======
CHR Profile: C:\Users\News\AppData\Local\Google\Chrome\User Data\Default [2022-10-18]
CHR StartupUrls: Default -> "hxxp://www.arcor.de/"
CHR Extension: (Google Docs Offline) - C:\Users\News\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-31]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\News\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-07]
CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2016-06-18]
CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2016-06-18]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9031480 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [13716704 2021-10-22] (Acronis International GmbH -> )
S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1420344 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1704216 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe)
R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2022-08-12] (Acronis International GmbH -> )
R2 Agent; C:\Program Files\Agent\Agent.exe [17407816 2022-03-06] (Developer In A Box -> Developerinabox)
R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3853384 2022-08-13] (philandro Software GmbH -> AnyDesk Software GmbH)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.)
R2 ashbackup; c:\Program Files\Ashampoo\Ashampoo Backup 2021\bin\backupService-ab.exe [34176 2020-11-05] (Ashampoo GmbH & Co. KG -> )
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8539152 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [592600 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [592600 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [3004688 2022-07-22] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG)
R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [386864 2022-03-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [267096 2022-10-10] (Avira Operations GmbH -> Avira Operations GmbH)
S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [291208 2022-10-10] (Avira Operations GmbH -> Avira Operations GmbH)
R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R2 BtSwitcherService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe [64216 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 CIJSRegister; C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe [144784 2019-02-19] (Canon Inc. -> CANON INC.)
R2 CSRBtAudioService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe [465624 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 CsrBtOBEX-Dienst; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe [1041616 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 CsrBtService; C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe [825032 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R2 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [5751024 2022-03-30] (devolo AG -> devolo AG)
R2 EndpointProtectionService; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8716120 2022-10-14] (Avira Operations GmbH -> Avira Operations GmbH)
S3 EndpointProtectionService2; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8716120 2022-10-14] (Avira Operations GmbH -> Avira Operations GmbH)
R2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [1099280 2017-03-28] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [443344 2020-05-25] (Canon Inc. -> )
R2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2013-09-08] () [Datei ist nicht signiert]
R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4878896 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\CyberProtectHomeOffice\mobile_backup_status_server.exe [2133920 2021-10-22] (Acronis International GmbH -> )
R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2021-06-07] (nordvpn s.a. -> TEFINCOM S.A.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [281464 2021-06-09] (nordvpn s.a. -> TEFINCOM S.A.)
R2 PDF Architect 5 Manager; C:\Program Files (x86)\PDF Architect 5 Manager\PDF Architect 5\Architect Manager.exe [985848 2017-05-16] (pdfforge GmbH -> © pdfforge GmbH.)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2782080 2021-11-16] (Safer-Networking Limited -> Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4605312 2021-11-16] (Safer-Networking Limited -> Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [940976 2019-09-04] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Datei ist nicht signiert]
R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7403104 2021-10-22] (Acronis International GmbH -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [14802240 2022-09-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\Windows\system32\WirelessKB850NotificationService.exe [174256 2018-05-14] (Microsoft Corporation -> Microsoft Corporation)
R2 WISOMeinGeld365ProfessionalUpdatedienst; C:\Program Files (x86)\Buhl\WISO Mein Geld 365\Buhl.MeinGeld.UpdateService.exe [116032 2022-07-08] (Buhl Data Service GmbH -> Buhl Data Service GmbH)
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 2310_00; C:\Windows\system32\drivers\2310_00.sys [170528 2009-06-12] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 272x_1x; C:\Windows\system32\drivers\272x_1x.sys [612672 2012-04-24] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 274x_3x; C:\Windows\system32\drivers\274x_3x.sys [240960 2012-04-24] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 ahcix64s; C:\Windows\system32\drivers\ahcix64s.sys [292136 2011-12-29] (Promise Technology -> Advanced Micro Devices, Inc)
S3 arcm_a64; C:\Windows\system32\drivers\arcm_a64.sys [52768 2009-11-09] (Areca Technology Corporation -> ARECA Technology Corporation)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [42304 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [238152 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [390096 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [306128 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [105936 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [48512 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [276520 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [564304 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2022-10-19] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [114464 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [90008 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [862936 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [672272 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [221944 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [327896 2022-10-19] (Avast Software s.r.o. -> AVAST Software)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin)
R2 BdDci; C:\Windows\System32\DRIVERS\bddci.sys [802976 2021-10-22] (Bitdefender SRL -> Bitdefender)
R1 BdSentry; C:\Windows\System32\DRIVERS\BdSentry.sys [215360 2022-04-14] (BullGuard LTD -> Avira Operations GmbH & Co. KG)
S3 csravrcp; C:\Windows\System32\DRIVERS\csravrcp.sys [26304 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
S3 CsrBtPort; C:\Windows\System32\DRIVERS\CsrBtPort.sys [2784968 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
S3 csrpan; C:\Windows\System32\DRIVERS\csrpan.sys [39616 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
S3 csrserial; C:\Windows\System32\DRIVERS\csrserial.sys [61128 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
S3 csrusb; C:\Windows\System32\Drivers\csrusb.sys [47296 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
S3 csrusbfilter; C:\Windows\System32\Drivers\csrusbfilter.sys [23752 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
S3 csr_bthav; C:\Windows\System32\drivers\csrbthav.sys [99520 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
R3 cxbu0x64; C:\Windows\System32\DRIVERS\cxbu0x64.sys [210144 2020-05-30] (HID Global Corporation -> HID Global Corporation)
S3 DC133; C:\Windows\system32\drivers\DC133.sys [39320 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
S3 DC150; C:\Windows\system32\drivers\DC150.sys [39832 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
S3 DC154; C:\Windows\system32\drivers\DC154.sys [48136 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
S3 DC300e; C:\Windows\system32\drivers\DC300e.sys [40344 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
S3 DC324e; C:\Windows\system32\drivers\DC324e.sys [49752 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
R0 DC3410; C:\Windows\System32\drivers\DC3410.sys [48328 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
S3 DC4300; C:\Windows\system32\drivers\DC4300.sys [48360 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
S3 DC600e; C:\Windows\system32\drivers\DC600e.sys [40744 2011-05-02] (Dawicontrol Computersysteme GmbH -> Dawicontrol GmbH)
R2 file_protector; C:\Windows\System32\DRIVERS\file_protector.sys [726160 2022-08-12] (Acronis International GmbH -> Acronis International GmbH)
R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [392840 2022-08-12] (Acronis International GmbH -> Acronis International GmbH)
R0 fltsrv; C:\Windows\System32\DRIVERS\fltsrv.sys [183944 2022-05-29] (Acronis International GmbH -> Acronis International GmbH)
S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (Microsoft Windows Hardware Compatibility Publisher -> AVM GmbH)
S3 GeneStor; C:\Windows\System32\DRIVERS\GeneStor.sys [215608 2016-08-22] (GENESYS LOGIC, INC. -> GenesysLogic)
S3 GigasetGenericUSB_x64; C:\Windows\System32\DRIVERS\GigasetGenericUSB_x64.sys [54272 2017-10-04] (Siemens AG -> Siemens Home and Office Communication Devices GmbH & Co. KG)
S3 hptiop; C:\Windows\system32\drivers\hptiop.sys [17440 2009-05-25] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 hptmv; C:\Windows\system32\drivers\hptmv.sys [93472 2006-09-18] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 hptmv6; C:\Windows\system32\drivers\hptmv6.sys [152096 2007-11-01] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-08-12] (Martin Malik - REALiX -> REALiX(tm))
S3 iteatapi; C:\Windows\system32\drivers\iteatapi.sys [38680 2008-05-14] (ITE Tech. Inc. -> ITE Tech. Inc.)
S3 iteraid; C:\Windows\system32\drivers\iteraid.sys [32768 2007-05-02] (Microsoft Windows Hardware Compatibility Publisher -> ITE Tech. Inc.)
S3 LSI_FC; C:\Windows\system32\drivers\lsi_fc.sys [141152 2007-08-29] (LSI Corporation -> LSI Corporation)
S3 LSI_SAS; C:\Windows\system32\drivers\lsi_sas.sys [133712 2010-12-20] (LSI Corporation -> LSI Corporation)
S3 LSI_SAS2; C:\Windows\system32\drivers\lsi_sas2.sys [108840 2012-03-01] (LSI Corporation -> LSI Corporation)
S3 megasas; C:\Windows\system32\drivers\megasas.sys [31040 2008-05-19] (LSI Corporation -> LSI Corporation)
S3 megasas2; C:\Windows\system32\drivers\megasas2.sys [51496 2012-02-28] (LSI Corporation -> LSI Corporation)
S3 megasr1; C:\Windows\system32\drivers\MegaSR1.sys [461320 2009-04-16] (LSI Corporation -> LSI Corporation, Inc.)
S3 mmrv-ab; C:\Program Files\Ashampoo\Ashampoo Backup 2021\bin\mmrv-ab.sys [41736 2020-11-04] (Ocster GmbH & Co. KG -> )
S3 mv61xx; C:\Windows\system32\drivers\mv61xx.sys [182576 2011-05-06] (Marvell Semiconductor -> Marvell Semiconductor, Inc.)
S3 mv91cons; C:\Windows\system32\drivers\mv91cons.sys [27440 2012-02-23] (Marvell Semiconductor -> Marvell Semiconductor Inc.)
S3 mvs91xx; C:\Windows\system32\drivers\mvs91xx.sys [317744 2012-02-23] (Marvell Semiconductor -> Marvell Semiconductor, Inc.)
R2 NDivert; C:\Program Files\NordVPN\6.45.10.0\Drivers\NDivert.sys [121152 2022-02-07] (nordvpn s.a. -> Nordvpn S.A.)
S3 Netaapl; C:\Windows\System32\DRIVERS\netaapl64.sys [23040 2013-07-25] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R1 netprotection_network_filter; C:\Windows\System32\drivers\netprotection_network_filter.sys [96088 2022-04-29] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
R1 ngscan; C:\Windows\System32\DRIVERS\ngscan.sys [182816 2021-10-22] (Acronis International GmbH -> Acronis International GmbH)
S3 nlwt; C:\Windows\System32\DRIVERS\nlwt.sys [29888 2021-01-07] (TEFINCOM S.A. -> WireGuard LLC)
R1 nordlwf; C:\Windows\System32\DRIVERS\nordlwf.sys [29384 2020-10-14] (TEFINCOM S.A. -> TEFINCOM S.A.)
R2 NPF_devolo; C:\Windows\sysWOW64\drivers\npf_devolo.sys [36496 2022-03-30] (devolo AG -> Riverbed Technology, Inc.)
S3 nvrd64; C:\Windows\system32\drivers\nvrd64.sys [175720 2010-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
R3 phantomtap; C:\Windows\System32\DRIVERS\phantomtap.sys [35664 2020-01-08] (Avira Operations GmbH & Co. KG -> The OpenVPN Project)
S3 Pnp680; C:\Windows\system32\drivers\pnp680.sys [80424 2007-11-13] (Silicon Image, Inc. -> Silicon Image, Inc)
S3 rr172x; C:\Windows\system32\drivers\rr172x.sys [124448 2007-11-01] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr174x; C:\Windows\system32\drivers\rr174x.sys [159264 2007-11-01] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr2210; C:\Windows\system32\drivers\rr2210.sys [153632 2007-11-01] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr232x; C:\Windows\system32\drivers\rr232x.sys [152096 2008-05-05] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr2340; C:\Windows\system32\drivers\rr2340.sys [162400 2009-12-31] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr2522; C:\Windows\system32\drivers\rr2522.sys [168032 2009-12-31] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr276x; C:\Windows\system32\drivers\rr276x.sys [241472 2012-04-24] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr278x; C:\Windows\system32\drivers\rr278x.sys [240960 2012-04-24] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
S3 rr62x; C:\Windows\system32\drivers\rr62x.sys [156256 2010-06-16] (HighPoint Technologies, Inc. -> HighPoint Technologies, Inc.)
R2 rtp_filesystem_filter; C:\Windows\System32\DRIVERS\rtp_filesystem_filter.sys [223848 2022-10-14] (Avira Operations GmbH -> Avira Operations GmbH)
R1 rtp_process_monitor; C:\Windows\System32\DRIVERS\rtp_process_monitor.sys [217552 2022-10-14] (Avira Operations GmbH -> Avira Operations GmbH)
R1 rtp_traverse; C:\Windows\System32\DRIVERS\rtp_traverse.sys [61376 2022-10-14] (Avira Operations GmbH -> Avira Operations GmbH)
S3 SI3112r; C:\Windows\system32\drivers\SI3112r.sys [164656 2007-02-01] (Silicon Image, Inc. -> Silicon Image, Inc)
S3 SI3114; C:\Windows\system32\drivers\SI3114.sys [99120 2006-11-10] (Silicon Image, Inc. -> Silicon Image, Inc.)
S3 SI3114r; C:\Windows\system32\drivers\SI3114R.sys [163632 2007-04-11] (Silicon Image, Inc. -> Silicon Image, Inc)
S3 SI3124; C:\Windows\system32\drivers\SI3124.sys [113456 2006-11-02] (Silicon Image, Inc. -> Silicon Image, Inc.)
S3 Si3124r5; C:\Windows\system32\drivers\Si3124r5.sys [334640 2006-09-20] (Silicon Image, Inc. -> Silicon Image, Inc)
S3 SI3132; C:\Windows\system32\drivers\SI3132.sys [90664 2007-10-03] (Silicon Image, Inc. -> Silicon Image, Inc)
S3 Si3531; C:\Windows\system32\drivers\Si3531.sys [333864 2009-02-09] (Silicon Image, Inc. -> Silicon Image, Inc)
R0 SiFilter; C:\Windows\System32\drivers\SiWinAcc.sys [22056 2007-10-03] (Silicon Image, Inc. -> Silicon Image, Inc)
R0 SiRemFil; C:\Windows\System32\drivers\SiRemFil.sys [17448 2007-10-03] (Silicon Image, Inc. -> Silicon Image, Inc)
S3 SWDUMon; C:\Windows\System32\DRIVERS\SWDUMon.sys [16152 2015-09-29] (Slimware Utilities, Inc. -> )
R3 tapnordvpn; C:\Windows\System32\DRIVERS\tapnordvpn.sys [35592 2018-07-24] (TEFINCOM S.A. -> The OpenVPN Project)
S3 tib; C:\Windows\System32\DRIVERS\tib.sys [887032 2022-08-12] (Acronis International GmbH -> Acronis International GmbH)
R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [175648 2022-08-12] (Acronis International GmbH -> Acronis International GmbH)
S3 tnd; C:\Windows\System32\DRIVERS\tnd.sys [694920 2022-08-12] (Acronis International GmbH -> Acronis International GmbH)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 viamrx64; C:\Windows\system32\drivers\viamrx64.sys [161904 2010-12-02] (VIA Technologies Inc. -> VIA Technologies Inc.,Ltd)
S3 videX64; C:\Windows\system32\drivers\videX64.sys [15000 2010-02-11] (VIA Technologies Inc. -> VIA Technologies, Inc.)
R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [340488 2022-08-12] (Acronis International GmbH -> Acronis International GmbH)
R0 volume_tracker; C:\Windows\System32\DRIVERS\volume_tracker.sys [251016 2022-08-12] (Acronis International GmbH -> Acronis International GmbH)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\Windows\System32\DRIVERS\wintun.sys [29680 2021-11-11] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
R3 WirelessKeyboardFilter; C:\Windows\System32\DRIVERS\WirelessKeyboardFilter.sys [49336 2020-05-30] (Microsoft Corporation -> Microsoft Corporation)
R0 xfiltx64; C:\Windows\System32\drivers\xfiltx64.sys [26776 2010-02-11] (VIA Technologies Inc. -> VIA Technologies, Inc.)
U1 aswbdisk; kein ImagePath
U1 avgbdisk; kein ImagePath
S3 MSICDSetup; \??\D:\CDriver64.sys [X]
S3 netprotection_network_filter2; System32\drivers\netprotection_network_filter2.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 WLRAWMp50x64; System32\Drivers\WLRAWMp50x64.sys [X]
S3 WLRAWSp50x64; System32\Drivers\WLRAWSp50x64.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== Code:
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2022-10-20 19:30 - 2022-10-20 19:33 - 000000000 ____D C:\FRST
2022-10-20 19:29 - 2022-10-20 19:29 - 005331520 _____ (CHIP Digital GmbH) C:\Users\News\Downloads\Farbar Recovery Scan Tool (HijackThis Alternative) _ZBaZx.exe
2022-10-19 17:20 - 2022-10-19 17:20 - 000003670 _____ C:\Windows\system32\Tasks\AviraSystemSpeedupVerify
2022-10-19 14:21 - 2022-10-19 14:21 - 000003710 _____ C:\Windows\system32\Tasks\Avira_Security_Maintenance
2022-10-19 14:21 - 2022-10-19 14:21 - 000003232 _____ C:\Windows\system32\Tasks\Avira_Security_Service_SCM_Watchdog
2022-10-19 14:21 - 2022-10-19 14:21 - 000002648 _____ C:\Windows\system32\Tasks\Avira_Security_Systray
2022-10-19 14:13 - 2022-10-19 14:13 - 000000000 ____D C:\Windows\system32\gf2engine
2022-10-19 14:01 - 2022-10-19 14:01 - 000002079 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2022-10-19 14:01 - 2022-10-19 14:01 - 000000000 ____D C:\Users\News\AppData\Roaming\Avast Software
2022-10-19 14:01 - 2022-10-19 14:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2022-10-19 13:58 - 2022-10-19 13:58 - 000003910 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2022-10-19 13:57 - 2022-10-19 13:57 - 000672272 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000564304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000327896 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000306128 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000276520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000221944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000114464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000105936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000090008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000048512 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2022-10-19 13:57 - 2022-10-19 13:57 - 000038152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys
2022-10-19 13:57 - 2022-10-19 13:56 - 000862936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2022-10-19 13:57 - 2022-10-19 13:56 - 000390096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2022-10-19 13:57 - 2022-10-19 13:56 - 000270552 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2022-10-19 13:57 - 2022-10-19 13:56 - 000238152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2022-10-19 13:57 - 2022-10-19 13:56 - 000042304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2022-10-19 13:56 - 2022-10-19 13:56 - 000000000 ____D C:\Program Files\Avast Software
2022-10-19 13:54 - 2022-10-19 13:54 - 000268488 _____ (AVAST Software) C:\Users\News\Downloads\avast_free_antivirus_setup_online.exe
2022-10-14 13:13 - 2022-10-14 13:13 - 000003244 _____ C:\Users\News\Documents\cc_20221014_131344.reg
2022-10-14 00:16 - 2022-10-14 00:16 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2022-10-14 00:16 - 2022-10-14 00:16 - 000002047 _____ C:\Users\Public\Desktop\Acrobat Reader.lnk
2022-10-13 12:31 - 2022-10-13 12:31 - 000044819 _____ C:\Users\News\Downloads\730995-2022-10-13-Grundsteuererklaerug-Vorschau.pdf
2022-10-12 13:22 - 2022-10-12 13:22 - 000093353 _____ C:\Users\News\Downloads\WISO Grundsteuer 2022 Re-Nr. 22RS1738353.pdf
2022-10-12 10:29 - 2022-10-12 10:29 - 000006963 _____ C:\Users\News\Downloads\GWZM_20221012_102908.pdf
2022-10-09 14:19 - 2022-10-09 14:20 - 000000000 ____D C:\Users\News\Desktop\TIME
2022-10-09 14:17 - 2022-10-09 14:17 - 000215627 _____ C:\Users\News\Downloads\E-Book_Selbstbewusstsein_staerken.pdf
2022-10-09 14:16 - 2022-10-09 14:16 - 001107352 _____ C:\Users\News\Downloads\E-Book_Ex_Zurueck_Gewinnen.pdf
2022-10-09 14:16 - 2022-10-09 14:16 - 000804584 _____ C:\Users\News\Downloads\Grosses-Praxishandbuch.pdf
2022-10-09 13:56 - 2022-10-09 13:56 - 000089138 _____ C:\Users\News\Downloads\s-l1600.pdf
2022-09-30 15:42 - 2022-09-30 15:42 - 000095044 _____ C:\Users\News\Downloads\WISO Mein Geld 365 Professional Re-Nr. 22RS1369148.pdf
2022-09-25 00:36 - 2022-09-30 17:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2022-09-24 13:39 - 2022-09-24 13:39 - 014278656 _____ C:\Users\News\Downloads\WindowsPCHealthCheckSetup.msi
2022-09-24 13:35 - 2022-09-24 13:35 - 001395272 ____N (Akeo Consulting) C:\Users\News\Desktop\rufus-3.20.exe
2022-09-21 14:32 - 2019-07-29 20:16 - 000148278 _____ C:\Users\News\Windows 10 Schlüssel.pdf
2022-09-21 03:07 - 2022-10-20 15:07 - 000003362 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2022-09-21 03:07 - 2022-10-20 15:07 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2022-10-20 19:35 - 2017-05-23 15:45 - 000000000 ____D C:\Users\News\AppData\LocalLow\Mozilla
2022-10-20 19:20 - 2014-02-22 20:46 - 000000000 ____D C:\ProgramData\Mozilla
2022-10-20 19:19 - 2015-01-15 14:26 - 000000000 ____D C:\Users\News\Desktop\Kaiwo GmbH Rechnungen
2022-10-20 18:51 - 2013-09-06 00:26 - 000000000 ____D C:\Program Files (x86)\Google
2022-10-20 15:07 - 2015-07-25 12:31 - 000000000 ____D C:\Program Files\CCleaner
2022-10-20 14:18 - 2013-09-12 18:23 - 000000000 ____D C:\Users\News\Desktop\CHEF
2022-10-20 13:28 - 2015-07-20 14:12 - 000000000 ____D C:\Users\News\AppData\Roaming\P2PCamWin
2022-10-20 09:03 - 2009-07-14 06:45 - 000029888 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2022-10-20 09:03 - 2009-07-14 06:45 - 000029888 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2022-10-19 20:50 - 2020-10-20 19:39 - 000256000 ___SH C:\Users\News\Downloads\Thumbs.db
2022-10-19 20:09 - 2022-06-23 12:11 - 000000000 ____D C:\Users\News\AppData\Local\Ashampoo Backup
2022-10-19 14:38 - 2020-07-14 17:59 - 000000000 ____D C:\Program Files (x86)\AnyDesk
2022-10-19 14:36 - 2013-09-06 00:36 - 000000000 ____D C:\Users\News\Documents\WISO Mein Geld
2022-10-19 14:21 - 2021-04-18 14:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2022-10-19 14:21 - 2020-01-29 17:51 - 000003308 _____ C:\Windows\system32\Tasks\Avira_Security_Update
2022-10-19 14:20 - 2021-04-18 14:27 - 000001005 _____ C:\Users\Public\Desktop\Avira.lnk
2022-10-19 14:20 - 2013-09-05 23:39 - 000699092 _____ C:\Windows\system32\perfh007.dat
2022-10-19 14:20 - 2013-09-05 23:39 - 000149232 _____ C:\Windows\system32\perfc007.dat
2022-10-19 14:20 - 2009-07-14 07:13 - 001619284 _____ C:\Windows\system32\PerfStringBackup.INI
2022-10-19 14:20 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2022-10-19 14:14 - 2018-07-06 18:12 - 000000000 ____D C:\ProgramData\AVAST Software
2022-10-19 14:14 - 2018-01-09 19:47 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2022-10-19 14:14 - 2013-09-07 17:40 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2022-10-19 14:14 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-10-19 14:13 - 2022-05-10 13:58 - 007432632 _____ C:\Windows\system32\rtp.db
2022-10-19 14:13 - 2016-11-23 19:10 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2022-10-19 14:02 - 2018-07-06 18:15 - 000000000 ____D C:\Users\News\AppData\Local\AVAST Software
2022-10-18 20:32 - 2014-09-01 14:44 - 000506880 ___SH C:\Users\News\Thumbs.db
2022-10-18 19:53 - 2022-06-23 12:10 - 000000000 ____D C:\Users\_ashbackup_
2022-10-18 01:17 - 2020-02-19 21:12 - 000002221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-10-14 13:11 - 2022-05-12 09:04 - 000000000 ____D C:\Users\News\AppData\Local\CrashDumps
2022-10-14 11:36 - 2022-05-10 13:57 - 000223848 _____ (Avira Operations GmbH) C:\Windows\system32\Drivers\rtp_filesystem_filter.sys
2022-10-14 11:36 - 2022-05-10 13:57 - 000217552 _____ (Avira Operations GmbH) C:\Windows\system32\Drivers\rtp_process_monitor.sys
2022-10-14 11:36 - 2022-05-10 13:57 - 000061376 _____ (Avira Operations GmbH) C:\Windows\system32\Drivers\rtp_traverse.sys
2022-10-14 00:16 - 2015-01-08 09:36 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2022-10-12 19:54 - 2022-03-12 15:05 - 000000000 ____D C:\Program Files\Blue Iris 5
2022-10-12 04:10 - 2020-02-19 21:12 - 000003656 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-10-12 04:10 - 2020-02-19 21:12 - 000003528 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-10-12 03:04 - 2013-09-05 23:05 - 000000000 ____D C:\Windows\system32\MRT
2022-10-12 03:00 - 2013-09-05 23:05 - 147398024 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2022-10-12 02:54 - 2019-04-20 11:21 - 000002216 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-10-11 10:38 - 2020-12-24 23:45 - 000000000 ___RD C:\Users\News\Desktop\Scans
2022-10-11 10:38 - 2020-12-24 23:31 - 000000000 ____D C:\ProgramData\CanonIJPLM
2022-10-09 17:30 - 2016-02-02 18:52 - 000000000 ____D C:\Users\News\Desktop\Frühlingsstraße 80
2022-10-01 13:10 - 2020-01-14 19:00 - 000000000 ____D C:\Users\News\Desktop\Rezepte
2022-10-01 13:10 - 2014-09-02 14:39 - 000000000 ____D C:\Users\News\Desktop\Divers
2022-09-30 17:12 - 2014-02-22 20:46 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-09-29 20:00 - 2018-03-20 14:40 - 000000000 ____D C:\Users\News\AppData\Roaming\foobar2000
2022-09-24 14:24 - 2022-05-27 14:42 - 000000448 __RSH C:\ProgramData\ntuser.pol
2022-09-23 21:20 - 2009-01-05 19:16 - 000000000 ____D C:\Users\News
2022-09-21 03:07 - 2017-11-18 16:52 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2013-09-28 01:08 - 2013-09-28 01:08 - 000003584 _____ () C:\Users\News\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-11-26 23:54 - 2019-04-03 00:29 - 000007670 _____ () C:\Users\News\AppData\Local\Resmon.ResmonCfg
==================== FCheck ================================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
FCheck: C:\Windows\SysWOW64\version_IObitDel.dll [2022-05-12] <==== ACHTUNG (Null Byte Datei/Ordner)
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
LastRegBack: 2022-10-14 00:59
==================== Ende von FRST.txt ======================== |