Zitat:
Zitat von cosinus
(Beitrag 1772667)
Und FRST hast du auch nicht richtig gelesen. Anders kann man sich das
nicht erklären.
Und nun erzähl mal welche Anleitung du angeblich gelesen und umgesetzt hast. | Ich habe hier das als Vorlage geholt : https://www.trojaner-board.de/198858-anleitung-farbar-recovery-scan-tool-frst-wiederherstellungsumgebung.html
Aber ich vermute mal anhand dem Text und deiner Frage, das es so nicht korrekt war. Ich werde sie morgen nochmal in der normalen Umgebung machen. Dann sollte ich vermutlich diese addition.txt bekommen wenn ich das richtig deute.
Sorry werde morgen die benutzen:
https://www.trojaner-board.de/145752-anleitung-farbar-recovery-scan-tool-frst.html
So, ich habe das Programm jetzt nochmal auf der normalen Windows Umgebung gestartet und auch meine Addition.txt erhalten.
Ich hoffe das es jetzt die richtige Datei ist. Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 12-03-2023
durchgeführt von P-Dah (17-03-2023 14:09:32)
Gestartet von C:\Users\P-Dah\OneDrive\Desktop
Microsoft Windows 11 Pro Version 22H2 22621.1413 (X64) (2022-09-23 10:51:35)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
Administrator (S-1-5-21-2787191250-3404766156-214563740-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2787191250-3404766156-214563740-503 - Limited - Disabled)
Gast (S-1-5-21-2787191250-3404766156-214563740-501 - Limited - Disabled)
P-Dah (S-1-5-21-2787191250-3404766156-214563740-1001 - Administrator - Enabled) => C:\Users\P-Dah
WDAGUtilityAccount (S-1-5-21-2787191250-3404766156-214563740-504 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
7D2D Mod Launcher Installer (HKLM\...\{657ACA20-7BA6-45E6-8B6E-98871D5F7B02}) (Version: 2.1.25 - SphereII Software)
Amazon Games (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\{4DD10B06-78A4-4E6F-AA39-25E9C38FA568}) (Version: 1.7.172.1 - Amazon.com Services, Inc.)
Apple Application Support (32-Bit) (HKLM-x32\...\{9738288C-21BC-4F54-AB4F-72F059339376}) (Version: 8.6 - Apple Inc.)
Apple Application Support (64-Bit) (HKLM\...\{DEB339C1-2687-43AB-816A-8714F3E26846}) (Version: 8.6 - Apple Inc.)
ARMOURY CRATE Lite Service (HKLM\...\{EF3944FF-2501-4568-B15C-5701E726719E}) (Version: 5.4.8 - ASUS)
ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.1.14.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AIOFan HAL (HKLM-x32\...\{f196b8da-b6a6-4cee-ac4e-8cec4ab4d508}) (Version: 1.1.14.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.13 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{c398adfb-d090-4897-8845-baca53f7ecde}) (Version: 1.1.0.13 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM\...\{D800D836-DE15-4B00-8273-521F022CD837}) (Version: 1.0.69.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM-x32\...\{1ed19b57-ef0e-474d-946f-aac911f8b0e3}) (Version: 1.0.69.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.04.20 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA VGA Component (HKLM\...\{71BB96A6-EAC4-45AE-A17D-D3ED43FF1D14}) (Version: 0.0.4.3 - ASUSTek COMPUTER INC. ) Hidden
ASUS AURA VGA Component (HKLM-x32\...\{7a0d5159-cb5e-4f66-91f8-bab46f864f14}) (Version: 0.0.4.3 - ASUSTek COMPUTER INC. ) Hidden
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 3.1.3.2 - ASUSTeK Computer Inc.)
ASUS GLCKIO2 Driver (HKLM-x32\...\{3507c756-a80f-4b0e-8475-975d8b432176}) (Version: 1.0.20 - ASUSTeK Computer Inc.) Hidden
ASUS GLCKIO2 Driver (HKLM-x32\...\{5960FD0F-BB3B-49AF-B175-F77DC91E995A}) (Version: 1.0.20 - ASUSTeK Computer Inc.) Hidden
ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 1.04.21 - ASUSTek Computer Inc.)
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.93 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (HKLM\...\{9AFE5429-866B-457D-A864-80BCF7672EE8}) (Version: 1.1.16 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{41a78792-5489-400c-a567-b78d40b8c878}) (Version: 1.1.16 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.28 - ASUS)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.28 - ASUS)
AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.06.14 - ASUSTeK Computer Inc.) Hidden
AURA Service (HKLM-x32\...\{7818852d-4182-406d-946b-7b54067ff419}) (Version: 3.06.14 - ASUSTeK Computer Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.62.9 - Bethesda Softworks)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
CopyTrans Control Center nur deinstallieren (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\CopyTrans Suite) (Version: 4.100 - WindSolutions)
Core Temp 1.15.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.15.1 - ALCPU)
CurseForge (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 0.220.2.9362 - Overwolf app)
Darksiders II Deathinitive Edition (HKLM-x32\...\{790F3B07-FC9C-4EFE-BB66-32BD348A9D23}) (Version: - DVG Nordic Games)
Discord (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
Doom Eternal (HKLM-x32\...\Doom Eternal) (Version: - Bethesda Softworks)
ElsterFormular (HKLM-x32\...\{E87F334F-CD4E-47F3-AFCD-19EBFCFFA6A3}) (Version: 21.3 - Thüringer Landesamt für Finanzen)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.37.0 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{413fe4b8-1352-4234-a775-ff2f04ad9042}) (Version: 1.1.37.0 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.9.1 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{bf1d7028-d935-477f-b5b2-053062f9b527}) (Version: 1.0.9.1 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{422FC196-EA1D-448E-A505-BC7DFC21C880}) (Version: 1.1.236.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Free DLC program (16 DLC) (HKLM-x32\...\1430743168_is1) (Version: 1.32 - GOG.com)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 111.0.5563.65 - Google LLC)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
HWiNFO64 Version 6.06 (HKLM\...\HWiNFO64_is1) (Version: 6.06 - Martin Malík - REALiX)
Intel(R) Chipset Device Software (HKLM\...\{9796DAAB-D3AD-4FA4-B8F3-6061DBBE1352}) (Version: 10.1.18295.8201 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{b666e502-9089-483b-9816-0774ccc9cb61}) (Version: 10.1.18295.8201 - Intel(R) Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1823.12.0.1137 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{B39E9D6B-906D-47C0-8FA1-833987DA6F63}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{CE08DF9B-FD93-4667-8D88-55A216DC6669}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{BEB5BAB5-60E3-46D3-BC68-748807F35B8E}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 28.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7323 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.2.0.1009 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{8B93CAC3-6008-4C17-9FB0-B4F6F90FF316}) (Version: 17.2.0.1009 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.50.295.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.295.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{c700a043-5a4c-4d61-aa88-6c4191f25b64}) (Version: 1.50.295.0 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000030-0210-1033-84C8-B8D95FA3C8C3}) (Version: 21.30.0.5 - Intel Corporation)
IrfanView 4.59 (64-bit) (HKLM\...\IrfanView64) (Version: 4.59 - Irfan Skiljan)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.12 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{2237a879-7fa4-4e21-ae3b-00f6a649b9d9}) (Version: 1.1.12 - KINGSTON COMPONENTS INC.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech Capture (HKLM\...\Capture) (Version: 2.06.12 - Logitech)
Logitech Gaming Software (HKLM\...\{690285C2-2481-44FB-8402-162EA970A6DD}) (Version: 8.30.28 - Logitech Inc.) Hidden
Logitech Gaming Software 9.02 (HKLM\...\Logitech Gaming Software) (Version: 9.02.65 - Logitech Inc.)
Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.16130.20218 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 111.0.1661.41 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.69 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\OneDriveSetup.exe) (Version: 23.038.0219.0001 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{EF9EBC42-6969-45CE-A8D2-B9249B00C838}) (Version: 5.69.0.0 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{66C00D72-5E34-495E-A4A1-1A31D7BE2FA7}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{632D85A6-B94C-440E-B565-26F73CF778D3}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29334 (HKLM\...\{2E11EF4E-901F-4B2D-B68E-3DB2A566C857}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29334 (HKLM\...\{8A3F7D5B-422D-49D9-84F7-8DC1B7782967}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Move or Die - Couch Party Edition (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\AmazonGames/Move or Die - Couch Party Edition) (Version: - Those Awesome Guys)
Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 111.0 (x64 de)) (Version: 111.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 71.0 - Mozilla)
MSI Afterburner 4.6.4 (HKLM-x32\...\Afterburner) (Version: 4.6.4 - MSI Co., LTD)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Grafiktreiber 531.29 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 531.29 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
NVIDIA USBC Driver 1.50.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.50.831.832 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 26.1.1 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.16130.20218 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.122.52971 - Electronic Arts, Inc.)
Outplayed (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\Overwolf_cghphpbjeabdkomiphingnegihoigeggcfphdofo) (Version: 95.2.3976 - Overwolf app)
Overlay (HKLM-x32\...\1430742867_is1) (Version: 1.32 - GOG.com)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.220.0.1 - Overwolf Ltd.)
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.2 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{fdc098ce-d76c-4e2e-a0a6-01a24e9a1f7d}) (Version: 1.0.9.2 - Patriot Memory)
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.0.6.4 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{3c403389-0bc5-4298-bebf-09de0c0b745d}) (Version: 1.0.6.4 - Patriot Memory)
PHISON HAL (HKLM\...\{966E33F0-6786-4B38-AA29-C1B3F6C1955D}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
PHISON HAL (HKLM-x32\...\{549da357-1b81-456b-83f2-dcc47c41dfff}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8960.1 - Realtek Semiconductor Corp.)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 2.0.6.0 - ASUSTek COMPUTER INC.)
Samsung NVM Express Driver (HKLM-x32\...\{bfb0503a-76b9-415a-b0a3-dd55d2a01ebe}) (Version: 3.0.0.1802 - Samsung Electronics)
Samsung NVM Express Driver 3.0.0.1802 (HKLM\...\{92729760-681A-42A2-A101-1098CAB4DEC1}) (Version: 3.0.0.1802 - Samsung Electronics Co., Ltd) Hidden
Spotify (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\Spotify) (Version: 1.2.7.1277.g2b3ce637 - Spotify AB)
StarLeaf (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\StarLeaf) (Version: - StarLeaf)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.3.2 - TeamSpeak Systems GmbH)
The Witcher 3 - Wild Hunt (HKLM-x32\...\1207664643_is1) (Version: 1.0.11.0 - GOG.com)
The Witcher 3: Wild Hunt - Free DLC program (16 DLC) (HKLM-x32\...\Free DLC program (16 DLC)_is1) (Version: 1.0.10.0 - GOG.com)
Twitch (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 111.0 - Ubisoft)
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.2 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{6870588f-9f28-488b-a169-cf548ad6b393}) (Version: 1.0.0.2 - PD)
Voicemeeter, The Virtual Mixing Console (HKLM-x32\...\VB:Voicemeeter {17359A74-1236-5467}) (Version: - VB-Audio Software)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Windows-PC-Integritätsprüfung (HKLM\...\{68C9C2A4-C212-4310-AB68-12F97050A416}) (Version: 3.2.2110.14001 - Microsoft Corporation)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
Zoom (HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\ZoomUMX) (Version: 5.7.7 (1105) - Zoom Video Communications, Inc.)
Packages:
=========
ARMOURY CRATE -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_5.4.10.0_x64__qmba6cd70vzyy [2023-03-05] (ASUSTeK COMPUTER INC.)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.97.3.0_x64__kgqvnymyfvs32 [2023-03-07] (king.com)
Clipchamp -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_2.5.15.0_neutral__yxz26nhyzhsrt [2023-01-20] (Microsoft Corp.)
CustomCrosshair -> C:\Program Files\WindowsApps\53349PlayzPub.CustomCrosshair_2.0.0.0_x64__txphe84mn9tz0 [2022-03-17] (Ole Urbigkeit)
Farm Heroes Saga -> C:\Program Files\WindowsApps\king.com.FarmHeroesSaga_5.98.2.0_x64__kgqvnymyfvs32 [2023-03-09] (king.com)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa [2022-12-18] (Apple Inc.) [Startup Task]
Lively Wallpaper -> C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy [2023-02-26] (rocksdanister) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-12-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-12-20] (Microsoft Corporation) [MS Ad]
MPEG-2-Videoerweiterung -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.50901.0_x64__8wekyb3d8bbwe [2022-04-30] (Microsoft Corporation)
ms-resource://MicrosoftCorporationII.QuickAssist/resources/APP_WINDOW_NAME -> C:\Program Files\WindowsApps\MicrosoftCorporationII.QuickAssist_2.0.19.0_x64__8wekyb3d8bbwe [2023-03-02] (Microsoft Corp.)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.RawImageExtension_2.1.40041.0_x64__8wekyb3d8bbwe [2023-01-20] (Microsoft Corporation)
ms-resource:AppxManifest_DisplayName -> C:\Windows\SystemApps\Microsoft.Windows.PrintQueueActionCenter_cw5n1h2txyewy [2022-09-23] (Microsoft Corporation)
ms-resource:ProductPkgDisplayName -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2023-03-16] (ms-resource:ProductPublisherDisplayName)
ms-resource:System_Item_Title_IntelGraphicsControlPanel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.4628.0_x64__8j3eq9eme6ctt [2023-03-12] (INTEL CORP) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-03-12] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.14.221.0_x64__dt26b99r8h8gj [2021-03-26] (Realtek Semiconductor Corp)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2022-12-11] (Microsoft Studios) [MS Ad]
Sonic Radar 3 -> C:\Program Files\WindowsApps\A-Volute.28054DF1F58B4_3.16.21.0_x64__w2gh52qy24etm [2022-01-28] (A-Volute)
Sonic Studio 3 -> C:\Program Files\WindowsApps\A-Volute.SonicStudio3_3.16.21.0_x64__w2gh52qy24etm [2022-01-28] (A-Volute)
WindowsAppRuntime.1.0 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.0_1.440.209.0_x86__8wekyb3d8bbwe [2022-03-21] (Microsoft Corporation)
WindowsAppRuntime.1.0 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.0_3.469.1654.0_x64__8wekyb3d8bbwe [2022-04-21] (Microsoft Corporation)
WindowsAppRuntime.1.0 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.0_3.469.1654.0_x86__8wekyb3d8bbwe [2022-04-21] (Microsoft Corporation)
WindowsAppRuntime.1.1 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.1_1004.584.2120.0_x86__8wekyb3d8bbwe [2022-09-22] (Microsoft Corporation)
WindowsAppRuntime.1.1 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.1_1005.616.1651.0_x64__8wekyb3d8bbwe [2022-10-12] (Microsoft Corporation)
WindowsAppRuntime.1.1 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.1_1005.616.1651.0_x86__8wekyb3d8bbwe [2022-10-12] (Microsoft Corporation)
WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.677.1750.0_x86__8wekyb3d8bbwe [2022-11-18] (Microsoft Corporation)
WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.684.1510.0_x86__8wekyb3d8bbwe [2022-11-29] (Microsoft Corporation)
WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x64__8wekyb3d8bbwe [2023-02-25] (Microsoft Corporation)
WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.777.2143.0_x86__8wekyb3d8bbwe [2023-02-25] (Microsoft Corporation)
XING -> C:\Program Files\WindowsApps\XINGAG.XING_4.0.9.0_x86__xpfg3f7e9an52 [2021-06-23] (New Work SE)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-2787191250-3404766156-214563740-1001_Classes\CLSID\{500C8957-D051-4057-8C54-CBB13E45C719}\localserver32 -> C:\Users\P-Dah\AppData\Local\StarLeaf\StarLeaf\2\StarLeaf.UWP.exe (StarLeaf Ltd -> )
CustomCLSID: HKU\S-1-5-21-2787191250-3404766156-214563740-1001_Classes\CLSID\{5405618e-4c42-4fb9-a80a-d24d89911296}\localserver32 -> C:\Users\P-Dah\AppData\Local\NhNotifSys\sonicstudio\asusns.exe (A-Volute SAS -> A-Volute)
CustomCLSID: HKU\S-1-5-21-2787191250-3404766156-214563740-1001_Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\localserver32 -> C:\Program Files\WindowsApps\Microsoft.Paint_11.2301.22.0_x64__8wekyb3d8bbwe\PaintApp\mspaint.exe () [Datei ist nicht signiert]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_7f07018bb5f7e36a\nvshext.dll [2023-03-09] (NVIDIA Corporation -> NVIDIA Corporation)
==================== Codecs (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Drivers32-x32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll
==================== Verknüpfungen & WMI ========================
==================== Geladene Module (Nicht auf der Ausnahmeliste) =============
2023-02-13 16:55 - 2022-09-01 09:47 - 000522240 _____ () [Datei ist nicht signiert] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\ac_node_addon\prebuilds\win32-ia32\node.napi.node
2023-02-13 16:55 - 2022-09-01 09:47 - 000520192 _____ () [Datei ist nicht signiert] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\ffi-napi\prebuilds\win32-ia32\node.napi.node
2023-02-13 16:55 - 2022-09-01 09:47 - 000483328 _____ () [Datei ist nicht signiert] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\node-system-fonts\build\Release\system-fonts.node
2023-02-13 16:55 - 2022-09-01 09:47 - 000510464 _____ () [Datei ist nicht signiert] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\ref-napi\prebuilds\win32-ia32\node.napi.node
2023-02-13 16:55 - 2022-09-27 14:56 - 000319488 _____ () [Datei ist nicht signiert] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\sharp\prebuilds\win32-ia32\node.napi.node
2023-02-13 16:55 - 2022-09-01 09:47 - 000786432 _____ () [Datei ist nicht signiert] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\usb-detection\prebuilds\win32-ia32\node.napi.node
2023-02-13 16:55 - 2022-06-08 10:33 - 000081920 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\WindowID\WindowID.dll
2021-12-03 14:36 - 2021-12-03 14:36 - 000232960 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2021-12-03 14:36 - 2021-12-03 14:36 - 000057344 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2021-12-03 14:36 - 2021-12-03 14:36 - 000668672 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
2021-12-03 14:36 - 2021-12-03 14:36 - 000074240 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2021-12-03 14:36 - 2021-12-03 14:36 - 000371712 _____ () [Datei ist nicht signiert] C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2018-10-05 09:13 - 2018-10-05 09:13 - 000144896 _____ () [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\LAClient\libssh2.dll
2018-10-05 09:13 - 2018-10-05 09:13 - 000077824 _____ () [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\LAClient\zlib.dll
2022-01-28 02:43 - 2022-01-28 02:43 - 000576000 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\A-Volute.28054DF1F58B4_3.16.21.0_x64__w2gh52qy24etm\DataSystemWRC.dll
2022-01-28 02:43 - 2022-01-28 02:43 - 008870400 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\A-Volute.28054DF1F58B4_3.16.21.0_x64__w2gh52qy24etm\SonicRadar3.dll
2022-01-28 02:43 - 2022-01-28 02:43 - 027551232 _____ () [Datei ist nicht signiert] C:\Program Files\WindowsApps\A-Volute.SonicStudio3_3.16.21.0_x64__w2gh52qy24etm\SonicStudio3.dll
2022-11-20 09:45 - 2022-11-07 11:17 - 000387072 _____ () [Datei ist nicht signiert] D:\Steam\bin\cef\cef.win7x64\libegl.dll
2022-11-20 09:45 - 2022-11-07 11:17 - 008052736 _____ () [Datei ist nicht signiert] D:\Steam\bin\cef\cef.win7x64\libglesv2.dll
2022-08-18 19:25 - 2023-03-17 13:54 - 000069376 _____ (ASUSTeK Computer Inc. -> ) [Datei ist nicht signiert] C:\Program Files (x86)\ASUS\AXSP\4.02.15\PEbiosinterface32.dll
2022-11-18 15:52 - 2022-11-18 15:52 - 000062976 _____ (Google) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\GrpcDotNetNamedPipes.dll
2022-03-12 22:41 - 2022-03-12 22:42 - 000056832 _____ (Linearstar) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\RawInput.Sharp.dll
2023-02-25 17:37 - 2023-02-25 17:37 - 000034304 _____ (Lively) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\de\Lively.resources.dll
2023-02-25 17:37 - 2023-02-25 17:37 - 000641536 _____ (Lively) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\Lively.dll
2023-02-25 17:37 - 2023-02-25 17:37 - 000107008 _____ (Lively.Common) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\Lively.Common.dll
2023-02-25 17:37 - 2023-02-25 17:37 - 000018432 _____ (Lively.Common.Services) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\Lively.Common.Services.dll
2023-02-25 17:37 - 2023-02-25 17:37 - 000159232 _____ (Lively.Grpc.Common) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\Lively.Grpc.Common.dll
2023-02-25 17:37 - 2023-02-25 17:37 - 000054784 _____ (Lively.Models) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\Lively.Models.dll
2022-03-12 22:41 - 2022-03-12 22:41 - 000005120 _____ (Matteo Pagani) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\DesktopBridge.Helpers.dll
2020-04-18 10:43 - 2020-04-18 10:43 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2020-04-18 10:43 - 2020-04-18 10:43 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2023-02-25 17:37 - 2023-02-25 17:37 - 000838144 _____ (NLog) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\NLog.dll
2022-03-26 13:25 - 2022-03-26 13:26 - 000032768 _____ (Soroush Falahati (falahati.net)) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.131.0_x86__97hta09mmv6hy\Build\UACHelper.dll
2018-10-05 09:13 - 2018-10-05 09:13 - 000355840 _____ (The cURL library, hxxp://curl.haxx.se/) [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\LAClient\LIBCURL.dll
2020-11-15 22:27 - 2020-05-14 15:15 - 003394560 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\libcrypto-1_1-x64.dll
2020-11-15 22:27 - 2020-05-14 15:15 - 000679424 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\libssl-1_1-x64.dll
2021-01-09 08:51 - 2021-01-09 08:50 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\LIBEAY32.dll
2021-01-09 08:51 - 2021-01-09 08:50 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\ssleay32.dll
2018-10-05 09:13 - 2018-10-05 09:13 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\LAClient\LIBEAY32.dll
2018-10-05 09:13 - 2018-10-05 09:13 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\LAClient\SSLEAY32.dll
2018-04-06 19:29 - 2018-04-06 19:29 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\LIBEAY32.dll
2018-04-06 19:29 - 2018-04-06 19:29 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files\Logitech Gaming Software\ssleay32.dll
2021-01-09 08:51 - 2021-01-09 08:50 - 001611264 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2023-03-15 16:58 - 2021-01-09 08:50 - 005487104 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Core.dll
2023-03-15 16:58 - 2021-01-09 08:50 - 005841920 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Gui.dll
2023-03-15 16:58 - 2021-01-09 08:50 - 001179136 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Network.dll
2023-03-15 16:58 - 2021-01-09 08:50 - 000146432 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2023-03-15 16:58 - 2021-01-09 08:50 - 005089792 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2023-03-15 16:58 - 2021-01-09 08:50 - 000184832 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Xml.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [3514]
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => ""="Memory"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TextInputManagementService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================
==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.live.com/1rewlive4startup/home
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://localoem.msn.com
SearchScopes: HKU\S-1-5-21-2787191250-3404766156-214563740-1001 -> DefaultScope {BE48D656-B2D2-4C64-97AE-3F0F1F4B0B97} URL =
SearchScopes: HKU\S-1-5-21-2787191250-3404766156-214563740-1001 -> {BE48D656-B2D2-4C64-97AE-3F0F1F4B0B97} URL =
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-03-04] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts Inhalt: =========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Andere Bereiche ===========================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\P-Dah\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\WoWScrnShot_012420_220506.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk"
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\StartupApproved\Run: => "launchOnStartup"
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\StartupApproved\Run: => "GogGalaxy"
HKU\S-1-5-21-2787191250-3404766156-214563740-1001\...\StartupApproved\Run: => "Overwolf"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{6C479EBB-4119-4B40-8992-BA7694E333F5}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\InstanceServerG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.)
FirewallRules: [{F37FD6E6-3236-4F36-B20F-BF25831FA710}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\InstanceServerG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.)
FirewallRules: [{11343464-5A3B-4514-B64D-246DF56CE2F8}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\ClientG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.)
FirewallRules: [{E1335162-BBE1-4A10-B0A7-CC2108F44FED}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\ClientG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.)
FirewallRules: [{D55BB771-3ACF-474B-A5E0-8EC34DAC938B}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\ClientLauncherG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.)
FirewallRules: [{E3DAA0DF-6804-4256-84C4-D108DA5CD5E3}] => (Allow) D:\Steam\steamapps\common\CnCRemastered\ClientLauncherG.exe (Electronic Arts, Inc. -> Petroglyph Games Inc.)
FirewallRules: [{F4F4C4D9-7B83-49E5-965E-BA760D368442}] => (Allow) D:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert]
FirewallRules: [{58BC15EA-9DEC-4C9E-BDC4-3AFC65A3C81F}] => (Allow) D:\Steam\steamapps\common\Age2HD\Launcher.exe (TODO: <Company name>) [Datei ist nicht signiert]
FirewallRules: [{0D6EC18F-292C-46BD-9567-9D448C50697B}] => (Allow) D:\Steam\steamapps\common\Resident Evil Village BIOHAZARD VILLAGE\re8.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.)
FirewallRules: [{64314942-9C4C-4FC0-A7DE-0403A63C5ADD}] => (Allow) D:\Steam\steamapps\common\Resident Evil Village BIOHAZARD VILLAGE\re8.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.)
FirewallRules: [{2877CEDD-E4EE-4DAE-9F62-DFEB52116589}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{766B8CB9-6C5C-4FC2-BEF0-A69B31A96602}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
FirewallRules: [{F509A7AC-A428-4480-9B92-C57321C21FF5}] => (Allow) D:\Steam\steamapps\common\Waking Mars\mars-pc.exe () [Datei ist nicht signiert]
FirewallRules: [{80EB86CA-40DD-43FA-834F-7F30EE3FEA89}] => (Allow) D:\Steam\steamapps\common\Waking Mars\mars-pc.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{2DCC4EBA-7E22-424C-B73D-9A6B15FB1B7C}D:\games\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\games\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{60191937-F357-40BA-A941-D0220384B581}D:\games\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\games\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [UDP Query User{CB3D7713-3B51-41D5-A931-5662273ADD95}D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe] => (Allow) D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe => Keine Datei
FirewallRules: [TCP Query User{E8FCEF40-A373-4E84-B90F-D81D68AF3D3B}D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe] => (Allow) D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe => Keine Datei
FirewallRules: [UDP Query User{E453B1E7-8F41-4265-A744-491EC2B70154}D:\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) D:\steam\steamapps\common\7 days to die\7daystodie.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{C4D3B536-0DCC-41F9-A5B2-DF1360185F76}D:\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) D:\steam\steamapps\common\7 days to die\7daystodie.exe () [Datei ist nicht signiert]
FirewallRules: [{81D01E24-80D6-4D82-8849-7DA856BC331D}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe => Keine Datei
FirewallRules: [{DA980E48-908E-410B-BBA7-F96AD4260465}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe => Keine Datei
FirewallRules: [UDP Query User{44EDD75A-7D41-4533-9D47-7989A77A068C}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{FB51CF23-2255-46DE-A154-A74E713C4011}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{0D541A21-D52D-41BC-8D43-3A94F04AA7AC}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{446202F2-A035-4278-8507-D6F8DE5CCC09}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [{6E3B93E1-09B9-42BD-9CCD-BDF851CA48F4}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe => Keine Datei
FirewallRules: [{B47093DC-22F9-4871-99A0-6DB28DBBBF9D}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe => Keine Datei
FirewallRules: [UDP Query User{1199F305-A74D-4EA6-90B0-D19DE62A4177}D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe] => (Allow) D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [TCP Query User{B7A1E7FA-7DF6-45DC-BCEE-2950D3686FB6}D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe] => (Allow) D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [UDP Query User{992B345E-F306-4C8E-9839-E29F70455A51}D:\games\heroes of the storm\versions\base79155\heroesofthestorm_x64.exe] => (Allow) D:\games\heroes of the storm\versions\base79155\heroesofthestorm_x64.exe => Keine Datei
FirewallRules: [TCP Query User{57A1C20D-C608-49B7-BE1C-DB79139D8EEE}D:\games\heroes of the storm\versions\base79155\heroesofthestorm_x64.exe] => (Allow) D:\games\heroes of the storm\versions\base79155\heroesofthestorm_x64.exe => Keine Datei
FirewallRules: [{B5BD047D-04B4-438E-B459-56641BB752B5}] => (Allow) D:\Steam\steamapps\common\Pummel Party\PummelParty.exe () [Datei ist nicht signiert]
FirewallRules: [{4E9B99E3-C1E5-4153-8B55-C1946652C22B}] => (Allow) D:\Steam\steamapps\common\Pummel Party\PummelParty.exe () [Datei ist nicht signiert]
FirewallRules: [{40BA6308-7CBF-45CC-96C6-E3FCF804D2EB}] => (Allow) D:\Steam\steamapps\common\Deponia\deponia.exe (Daedalic Entertainment GmbH) [Datei ist nicht signiert]
FirewallRules: [{DD615C8D-7D97-4DDA-82C0-B97180CFCC6F}] => (Allow) D:\Steam\steamapps\common\Deponia\deponia.exe (Daedalic Entertainment GmbH) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{4EAF141C-4227-4A4D-AD63-CC9EA38A2F07}D:\games\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe] => (Allow) D:\games\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe => Keine Datei
FirewallRules: [TCP Query User{A768352A-3068-4390-99C3-5A0401E12CAC}D:\games\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe] => (Allow) D:\games\heroes of the storm\versions\base78725\heroesofthestorm_x64.exe => Keine Datei
FirewallRules: [{24C54BD4-6122-4A87-B595-858DF6F6E915}] => (Allow) D:\Steam\steamapps\common\The Night of the Rabbit\VisionaireConfigurationTool.exe (Daedalic Entertainment) [Datei ist nicht signiert]
FirewallRules: [{B7EE742D-34BD-4A9A-BB26-2B834745DBB9}] => (Allow) D:\Steam\steamapps\common\The Night of the Rabbit\VisionaireConfigurationTool.exe (Daedalic Entertainment) [Datei ist nicht signiert]
FirewallRules: [{BBFE8144-FABD-4661-80AC-C3025C4077E0}] => (Allow) D:\Steam\steamapps\common\The Night of the Rabbit\rabbit.exe (Daedalic Entertainment GmbH) [Datei ist nicht signiert]
FirewallRules: [{DC80418B-14C5-44A7-93E9-4AF23FC0B9F3}] => (Allow) D:\Steam\steamapps\common\The Night of the Rabbit\rabbit.exe (Daedalic Entertainment GmbH) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{911609CE-02E4-43EC-886E-7C7B69D21580}D:\games\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\games\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{702711DC-8266-4F2F-BC9C-31C27352353F}D:\games\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\games\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{9B5FD316-C967-412B-B0F1-814B08617AFD}] => (Allow) D:\Steam\steamapps\common\RustStaging\Rust.exe (Facepunch Studios Ltd -> Epic Games, Inc.)
FirewallRules: [{3898396B-25C2-4FF7-BDE2-CC5488982029}] => (Allow) D:\Steam\steamapps\common\RustStaging\Rust.exe (Facepunch Studios Ltd -> Epic Games, Inc.)
FirewallRules: [{21860B8E-43B1-4251-AEEE-279A116A0E7E}] => (Allow) D:\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe () [Datei ist nicht signiert]
FirewallRules: [{8C6BCD4B-8A1A-46F3-AE6B-9D7F8F056606}] => (Allow) D:\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe () [Datei ist nicht signiert]
FirewallRules: [{C1D8E080-71EB-4C6B-A755-BC3EA490729A}] => (Allow) D:\Steam\steamapps\common\Doorways Old Prototype\Doorways.exe () [Datei ist nicht signiert]
FirewallRules: [{3D2400E8-BB9C-4EA6-B85E-310E24CD4811}] => (Allow) D:\Steam\steamapps\common\Doorways Old Prototype\Doorways.exe () [Datei ist nicht signiert]
FirewallRules: [{E300D358-FBE3-44EF-81BD-308F1AF3B045}] => (Allow) D:\Steam\steamapps\common\Crystals of Time\Crystals of Time.exe () [Datei ist nicht signiert]
FirewallRules: [{D49C711B-A846-4DF4-B4DF-69178AD1D02B}] => (Allow) D:\Steam\steamapps\common\Crystals of Time\Crystals of Time.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{C51D07EC-6099-46CC-8B64-E3877E62FB64}D:\steam\steamapps\common\ben and ed\benanded\binaries\win32\benanded.exe] => (Allow) D:\steam\steamapps\common\ben and ed\benanded\binaries\win32\benanded.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{2ECADCE1-FDB3-4D0B-A384-CB695EEB98F4}D:\steam\steamapps\common\ben and ed\benanded\binaries\win32\benanded.exe] => (Allow) D:\steam\steamapps\common\ben and ed\benanded\binaries\win32\benanded.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [{1B26408E-C12E-4EEF-A1C9-EB146433FB04}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe => Keine Datei
FirewallRules: [{7D22C1CA-A335-44DD-8B45-3EC5CAAB1C49}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe => Keine Datei
FirewallRules: [{B1CF9582-7D86-42EA-B55A-3D122ED08292}] => (Allow) D:\Steam\steamapps\common\Ben and Ed\BenAndEd.exe () [Datei ist nicht signiert]
FirewallRules: [{CF35F5E3-5AA6-499C-85A4-DDB6499AE42B}] => (Allow) D:\Steam\steamapps\common\Ben and Ed\BenAndEd.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{157A2AA5-3DC0-41CB-84EA-29C7F6A2AC42}D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe] => (Allow) D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe => Keine Datei
FirewallRules: [TCP Query User{E6659EAE-5588-4A89-85F6-384260172CED}D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe] => (Allow) D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty-win32-debuggame.exe => Keine Datei
FirewallRules: [{0F6B14EB-1668-4211-BE1E-65C50636DD49}] => (Allow) D:\Steam\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe () [Datei ist nicht signiert]
FirewallRules: [{F30551AC-6B71-4216-B237-68CE4C1FEF21}] => (Allow) D:\Steam\steamapps\common\The Binding of Isaac Rebirth\isaac-ng.exe () [Datei ist nicht signiert]
FirewallRules: [{A54DBA05-0F04-4F37-864A-6479FFFFB616}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A73269D3-1BFF-4A5B-B203-745FB66101F1}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [UDP Query User{6786D711-1239-46FF-8200-76F9D9897555}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{038075AD-61DB-4386-97F3-FBB00A61AC08}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{4AB6F090-98DA-412A-8E78-6AFC8D18FDE8}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{E1EC2A07-BF30-458C-BAA3-CCFF092B24CE}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{93218415-4C52-4740-B0F7-92B22CA02C2A}] => (Allow) D:\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe (Edmund Mcmillen & Florian Himsl) [Datei ist nicht signiert]
FirewallRules: [{B02DC506-6D9D-4ED9-9887-4D3737B3D5DA}] => (Allow) D:\Steam\steamapps\common\The Binding Of Isaac\Isaac.exe (Edmund Mcmillen & Florian Himsl) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{57643ACA-A417-43CE-B2C0-E582C0485441}D:\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) D:\steam\steamapps\common\7 days to die\7daystodie.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{0E1CED37-8625-40F2-BC2D-95BE9337AD00}D:\steam\steamapps\common\7 days to die\7daystodie.exe] => (Allow) D:\steam\steamapps\common\7 days to die\7daystodie.exe () [Datei ist nicht signiert]
FirewallRules: [{281568A6-3614-4F69-B7A1-86BE01C0287F}] => (Allow) D:\Steam\steamapps\common\Ben and Ed - Blood Party\BaEBloodParty.exe () [Datei ist nicht signiert]
FirewallRules: [{507FE95A-B18D-4DDF-ABF8-B5E18742A511}] => (Allow) D:\Steam\steamapps\common\Ben and Ed - Blood Party\BaEBloodParty.exe () [Datei ist nicht signiert]
FirewallRules: [{DF945B43-E8C1-4686-9840-B75D1CE008CA}] => (Allow) D:\Steam\steamapps\common\The Forest\TheForestVR.exe () [Datei ist nicht signiert]
FirewallRules: [{97972EBB-4DE8-464F-BD31-CC3015561DA1}] => (Allow) D:\Steam\steamapps\common\The Forest\TheForestVR.exe () [Datei ist nicht signiert]
FirewallRules: [{008F9A78-8DA1-4CEC-881F-938FD3FAB2A2}] => (Allow) D:\Steam\steamapps\common\The Forest\TheForest.exe () [Datei ist nicht signiert]
FirewallRules: [{8F3BB904-7B2F-4161-8C2E-53D8C9E3A538}] => (Allow) D:\Steam\steamapps\common\The Forest\TheForest.exe () [Datei ist nicht signiert]
FirewallRules: [{4057F317-7589-498C-BBE3-82383D3DCED5}] => (Allow) D:\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe => Keine Datei
FirewallRules: [{960E35B0-0791-4295-9788-4739FCDB73B5}] => (Allow) D:\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe => Keine Datei
FirewallRules: [{25556254-EFAB-4ECC-86E0-7A8145008DF5}] => (Allow) D:\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe => Keine Datei
FirewallRules: [{95C01235-E285-4309-B22C-D4D5D74113B7}] => (Allow) D:\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe => Keine Datei
FirewallRules: [{BFB75239-CDFF-4CC8-BB03-12D31ABD204A}] => (Allow) D:\Steam\steamapps\common\Rust\Rust.exe (Facepunch Studios Ltd -> Epic Games, Inc.)
FirewallRules: [{99C5736E-2F03-4AC1-8535-569C8D77F5BA}] => (Allow) D:\Steam\steamapps\common\Rust\Rust.exe (Facepunch Studios Ltd -> Epic Games, Inc.)
FirewallRules: [{78BF4AEC-B3FD-49DB-B8DA-B3EA88F6CB76}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [{BAC2B7B5-6E04-4596-A83B-93DCD4670CA9}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [{4BAAEBFC-05E4-4152-87C5-109539B23A13}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{532D428D-2387-4044-962C-03B4C462EEC9}] => (Allow) D:\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{CEAE2CE0-D0A4-4CB9-B24C-4EC313E752F3}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7dLauncher.exe () [Datei ist nicht signiert]
FirewallRules: [{524E706E-F919-42C0-8568-959D7DF646F9}] => (Allow) D:\Steam\steamapps\common\7 Days To Die\7dLauncher.exe () [Datei ist nicht signiert]
FirewallRules: [{786CBAF7-B1AD-44E4-B594-7C1173F1E4C5}] => (Allow) D:\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{AEC3D28F-2B0A-421E-90BF-CF8578EBE93C}] => (Allow) D:\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{29006A8E-DF95-44FF-AE03-0DAD981C3B14}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{6796F92A-3B35-45F1-A888-543A8C5F3898}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CCEF7240-4F47-4A55-BE5B-288FF9831F3B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B3278EFA-B177-4537-B9C9-0583957E1D61}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{737FE14E-DB38-4C2B-A36D-8ED95127452D}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{978BBEE3-59A2-457C-A3A1-701B459C3F19}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{30D2E480-A1D2-49A2-B7F8-E95CF1734C77}] => (Allow) D:\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{1F6AB379-BC86-4D8F-87B9-1AEE5249FF21}] => (Allow) D:\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{9A83E5C5-1D79-42F6-853E-EC60BCDF8F35}] => (Allow) D:\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C387A4DB-32A7-41BA-84E7-BBCC7AA86AA1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{98C43AF4-0083-4AE8-8F39-5C8A23336841}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{D3D754DE-81A2-4373-8A90-61872A5FF42B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{2A404D49-D1B7-4587-9F5B-1946466DD1CD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{EA943A9D-3EF8-45DD-917E-55BF0C14066B}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
FirewallRules: [TCP Query User{C7D2B15F-FEEA-40CA-ADA5-394CF1667841}D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe] => (Allow) D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [UDP Query User{49C3017B-3294-4C09-B5ED-16C86955EF2D}D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe] => (Allow) D:\steam\steamapps\common\ark\shootergame\binaries\win64\shootergameserver.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [TCP Query User{B5025341-B64D-4B1D-A35D-BD97C82AC1DA}D:\epic games\games\oddworldnewntasty\nnt.exe] => (Allow) D:\epic games\games\oddworldnewntasty\nnt.exe => Keine Datei
FirewallRules: [UDP Query User{EABC1648-8992-4721-A823-2B7FA612EC2B}D:\epic games\games\oddworldnewntasty\nnt.exe] => (Allow) D:\epic games\games\oddworldnewntasty\nnt.exe => Keine Datei
FirewallRules: [{F8893E8C-C8F7-467C-8910-7A1660D6446F}] => (Allow) D:\Steam\steamapps\common\Jurassic World Evolution\JWE.exe (Frontier Developments) [Datei ist nicht signiert]
FirewallRules: [{7B7B8E55-8D2D-4AB0-B79D-2DBB01BF2683}] => (Allow) D:\Steam\steamapps\common\Jurassic World Evolution\JWE.exe (Frontier Developments) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{412B16BF-35DB-49E5-8121-A652B2CA703E}D:\games\hearthstone\hearthstone.exe] => (Allow) D:\games\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{C932E805-D5F1-4B00-AF06-3ED9A4F9B34D}D:\games\hearthstone\hearthstone.exe] => (Allow) D:\games\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [{2AC93563-18AB-429E-B5DF-DD823F7A9DCB}] => (Allow) D:\Steam\steamapps\common\Might & Magic VI\MM6.exe (Ubisoft Entertainment SA -> New World Computing)
FirewallRules: [{95572D56-7F3E-40DF-8CBD-30D4E7384C6A}] => (Allow) D:\Steam\steamapps\common\Might & Magic VI\MM6.exe (Ubisoft Entertainment SA -> New World Computing)
FirewallRules: [TCP Query User{2F0EFAFD-ADB0-43EC-A84B-3C848DEE0C2F}C:\users\p-dah\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\p-dah\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{33616EF1-0764-4F58-BD34-C3FCC0CC1D55}C:\users\p-dah\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\p-dah\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{78E40935-886F-4156-BB86-F1198C212C89}C:\users\p-dah\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\p-dah\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{370FB8D0-EE89-40A2-9C4F-3501184EA1C8}C:\users\p-dah\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\p-dah\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{5EBBDBFB-8597-49D0-BA0E-C607548F70B5}C:\users\p-dah\appdata\local\packages\b9eced6f.armourycrate_qmba6cd70vzyy\localstate\gridupdatefile\asusgcdriverupdateclient.exe] => (Allow) C:\users\p-dah\appdata\local\packages\b9eced6f.armourycrate_qmba6cd70vzyy\localstate\gridupdatefile\asusgcdriverupdateclient.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
FirewallRules: [UDP Query User{025372D6-0A14-4E5B-B89D-84892B761B64}C:\users\p-dah\appdata\local\packages\b9eced6f.armourycrate_qmba6cd70vzyy\localstate\gridupdatefile\asusgcdriverupdateclient.exe] => (Allow) C:\users\p-dah\appdata\local\packages\b9eced6f.armourycrate_qmba6cd70vzyy\localstate\gridupdatefile\asusgcdriverupdateclient.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
FirewallRules: [{202A7EEB-9637-48F1-A789-CF870E08D267}] => (Allow) D:\Steam\steamapps\common\FarCry5\bin\ArcadeEditor64.exe => Keine Datei
FirewallRules: [{70040AE5-4795-4C36-9F88-215CDBAA9B2D}] => (Allow) D:\Steam\steamapps\common\FarCry5\bin\ArcadeEditor64.exe => Keine Datei
FirewallRules: [{F6B20096-BD87-41B7-826F-A23866F28EEC}] => (Allow) C:\Users\P-Dah\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{9FD06D20-4D2E-4048-ADB6-0A1DFC95E2BC}] => (Allow) C:\Users\P-Dah\AppData\Roaming\Zoom\bin\airhost.exe => Keine Datei
FirewallRules: [{C1C9B7BE-2C5F-4D67-B982-6DE5D8157BCD}] => (Allow) C:\Users\P-Dah\AppData\Roaming\Zoom\bin\airhost.exe => Keine Datei
FirewallRules: [TCP Query User{E49FF987-DAE9-4F38-8FBB-ED264562BA07}D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty.exe] => (Allow) D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{F3AA6B8D-58F9-4FC5-8E81-F5C9D02165A8}D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty.exe] => (Allow) D:\steam\steamapps\common\ben and ed - blood party\baebloodparty\binaries\win32\baebloodparty.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{EC8EABC2-AED0-4770-A4F6-F707E7492727}D:\steam\steamapps\common\biomutant\biomutant\binaries\win64\biomutant-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\biomutant\biomutant\binaries\win64\biomutant-win64-shipping.exe => Keine Datei
FirewallRules: [UDP Query User{FAFCB312-FA88-4860-AB49-67BF745176F7}D:\steam\steamapps\common\biomutant\biomutant\binaries\win64\biomutant-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\biomutant\biomutant\binaries\win64\biomutant-win64-shipping.exe => Keine Datei
FirewallRules: [{513421CA-6246-4900-B07A-9096FD1C4730}] => (Allow) D:\Steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [Datei ist nicht signiert]
FirewallRules: [{F618BEE5-5DF8-4188-B3E0-421DB645CCEA}] => (Allow) D:\Steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{43BB1477-9960-4B0D-8EE0-ABC79565AA9D}D:\games\bettervanilla a19.6 (19.6.1)\7daystodie.exe] => (Allow) D:\games\bettervanilla a19.6 (19.6.1)\7daystodie.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{99732195-DBB6-4308-BE11-212A0A03177B}D:\games\bettervanilla a19.6 (19.6.1)\7daystodie.exe] => (Allow) D:\games\bettervanilla a19.6 (19.6.1)\7daystodie.exe () [Datei ist nicht signiert]
FirewallRules: [{3CF256B1-5FDE-4CD0-9776-F51507836EE3}] => (Allow) D:\Steam\steamapps\common\FINAL FANTASY VIII Remastered\FFVIII_LAUNCHER.exe (SQUARE ENIX CO., LTD. -> )
FirewallRules: [{B8CB7F35-D4B4-40EA-87B9-FEAE73CD1982}] => (Allow) D:\Steam\steamapps\common\FINAL FANTASY VIII Remastered\FFVIII_LAUNCHER.exe (SQUARE ENIX CO., LTD. -> )
FirewallRules: [{9216AF88-C147-4573-9E7A-1398853EA2E3}] => (Allow) D:\Steam\steamapps\common\ProjectZomboid\ProjectZomboid64.exe () [Datei ist nicht signiert]
FirewallRules: [{0B2D1368-E877-4E42-A385-3ACBC72E6307}] => (Allow) D:\Steam\steamapps\common\ProjectZomboid\ProjectZomboid64.exe () [Datei ist nicht signiert]
FirewallRules: [{A7862960-6F1D-4133-9C88-F68BD1ADE459}] => (Allow) D:\Steam\steamapps\common\ALTF4\ALTF4_F.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [{DB3659F4-6B21-4216-B842-B935691ECBCF}] => (Allow) D:\Steam\steamapps\common\ALTF4\ALTF4_F.exe (Epic Games, Inc.) [Datei ist nicht signiert]
FirewallRules: [{F1375919-B666-4FC5-A490-0B760A5D12CD}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5B26D55C-7C7E-4BA4-8824-06D649C88872}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C86581AE-CC81-4B09-8CE9-A7523005A2C6}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C780F81C-8776-4A19-9938-D0090B945B7A}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D1793D1E-7248-4C60-A48F-69D5AFC0C05A}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{ADFCE9F0-BC15-4FC1-B398-E396400534C4}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{43E7CEFB-5EEC-4165-9BD6-C9B6C3A323FB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{FDCF1104-EE87-431C-BBEF-6DD5035732DF}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12127.1.57051.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{CD874258-4631-4766-B13A-712B43CB7EAC}D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{03FBBE33-0453-4B65-8E73-ECF5117594E8}D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{77E89F00-9DC8-4C0C-B286-BFC75082ED71}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{1E586369-8FC2-4ADF-B2E7-D63F730F1498}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{CFB8AA63-4855-4A9C-886E-0FA71140E366}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{1E3EE434-A9AE-43BE-84BD-26800E9EFA46}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{8F5ECC00-F537-4FC1-A1B6-80DA1A139451}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
FirewallRules: [{1EDF994B-B272-40CB-9B01-1D68AB8B5D15}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{0E73AC11-9C5E-4138-9C9A-82F27D5BAC30}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [TCP Query User{59080A3E-D71E-4EAB-A470-F18369BD6EE0}D:\epic games\games\thelongdark\tld.exe] => (Allow) D:\epic games\games\thelongdark\tld.exe => Keine Datei
FirewallRules: [UDP Query User{C1C91962-A2C8-49C6-9C12-E935D2B67684}D:\epic games\games\thelongdark\tld.exe] => (Allow) D:\epic games\games\thelongdark\tld.exe => Keine Datei
FirewallRules: [{AD3E74A2-EA1D-4B4D-B9DD-7B51DE371297}] => (Allow) D:\Steam\steamapps\common\FINAL FANTASY VII REMAKE\ff7remake.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.)
FirewallRules: [{D26C96B2-B97E-4320-AAAB-02E15F76C9D7}] => (Allow) D:\Steam\steamapps\common\FINAL FANTASY VII REMAKE\ff7remake.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.)
FirewallRules: [TCP Query User{F0DF484E-3F4A-4A1B-825E-C701C5E49A5B}D:\steam\steamapps\common\final fantasy vii remake\end\binaries\win64\ff7remake_.exe] => (Allow) D:\steam\steamapps\common\final fantasy vii remake\end\binaries\win64\ff7remake_.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.)
FirewallRules: [UDP Query User{602945C8-FB3C-4DA1-A30E-A98138B0ACA6}D:\steam\steamapps\common\final fantasy vii remake\end\binaries\win64\ff7remake_.exe] => (Allow) D:\steam\steamapps\common\final fantasy vii remake\end\binaries\win64\ff7remake_.exe (SQUARE ENIX CO., LTD. -> SQUARE ENIX CO., LTD.)
FirewallRules: [{4470889D-1129-4C1D-A29D-3C10DB4037B1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3E7A7351-8AED-400B-8719-46F751120768}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{ED526DD9-D44C-4087-BCD8-08832A6E2E63}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E5B6A519-B0AE-4501-9AB0-A8FE6E1DB267}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.94.3428.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A1D2C218-A04E-4D97-BF35-FD5C38819606}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.63\msedgewebview2.exe => Keine Datei
FirewallRules: [{FD365AE2-CEDA-4D12-BDF6-33084DBC11E8}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{9A1F1CB1-BF34-43D3-A93B-9C37963187D0}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{DC5AA356-D764-4639-BCC2-F21E1F056064}] => (Allow) D:\Steam\steamapps\common\Hogwarts Legacy\HogwartsLegacy.exe (Warner Bros. Interactive) [Datei ist nicht signiert]
FirewallRules: [{80C175C6-1107-4B2A-9E7B-FAC3EF75A2F3}] => (Allow) D:\Steam\steamapps\common\Hogwarts Legacy\HogwartsLegacy.exe (Warner Bros. Interactive) [Datei ist nicht signiert]
FirewallRules: [{5607B5DA-088C-47C1-ABDE-ACFEEBB19435}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.69\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8939FE4A-B80F-4D74-B1FB-14110BF84920}] => (Allow) D:\Games\Overwolf\0.219.0.3\OverwolfBrowser.exe => Keine Datei
FirewallRules: [{B1B8C743-5B49-434E-B5F6-FF7F3F7B8571}] => (Allow) D:\Games\Overwolf\0.219.0.3\OverwolfBrowser.exe => Keine Datei
FirewallRules: [{C4F51611-F62B-43DE-AC82-B57BD7BFE77E}] => (Block) D:\Games\Overwolf\0.219.0.3\OverwolfBrowser.exe => Keine Datei
FirewallRules: [{15F7A917-091D-4829-BB27-458D5E750649}] => (Block) D:\Games\Overwolf\0.219.0.3\OverwolfBrowser.exe => Keine Datei
FirewallRules: [{CF6981D7-0D2D-40D2-9127-6B17E0772533}] => (Allow) D:\Games\Overwolf\0.220.0.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{6309D65F-59E3-47DE-A9A3-0A6980713E73}] => (Allow) D:\Games\Overwolf\0.220.0.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{45834C12-4709-4461-BA9C-17745024E327}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{203581DE-E750-40AF-8253-81697209ACB8}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23047.400.1873.7204_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4DAA201F-99FB-4E5F-877F-3BDCB88FE431}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23047.400.1873.7204_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Wiederherstellungspunkte =========================
06-03-2023 11:20:37 Geplanter Prüfpunkt
13-03-2023 15:53:35 Geplanter Prüfpunkt
16-03-2023 15:59:30 Windows Modules Installer
==================== Fehlerhafte Geräte im Gerätemanager ============
==================== Fehlereinträge in der Ereignisanzeige: ========================
Applikationsfehler:
==================
Error: (03/16/2023 10:01:29 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (03/16/2023 10:01:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Error: (03/16/2023 08:17:26 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (03/16/2023 08:17:26 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Error: (03/16/2023 04:36:19 PM) (Source: Application Error) (EventID: 1000) (User: DESKTOP-MGHKFUR)
Description: Name der fehlerhaften Anwendung: RuntimeBroker.exe, Version: 10.0.22621.608, Zeitstempel: 0xb17eb11a
Name des fehlerhaften Moduls: RPCRT4.dll, Version: 10.0.22621.1413, Zeitstempel: 0xce63886a
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000000411c0
ID des fehlerhaften Prozesses: 0x0x3fbc
Startzeit der fehlerhaften Anwendung: 0x0x1d9581c518736bc
Pfad der fehlerhaften Anwendung: C:\Windows\System32\RuntimeBroker.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\System32\RPCRT4.dll
Berichtskennung: 0374d70d-73a7-4776-811b-15a9b43084d2
Vollständiger Name des fehlerhaften Pakets: Microsoft.LockApp_10.0.22621.1_neutral__cw5n1h2txyewy
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: runtimebroker07f4358a809ac99a64a67c1
Error: (03/16/2023 04:15:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname DESKTOP-MGHKFUR.local already in use; will try DESKTOP-MGHKFUR-2.local instead
Error: (03/16/2023 04:15:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 2; will deregister 4 DESKTOP-MGHKFUR.local. Addr 192.168.178.31
Error: (03/16/2023 04:15:16 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.178.31:5353 16 DESKTOP-MGHKFUR.local. AAAA 2003:00FB:870E:E100:FCD1:815F:3713:E9AA
Systemfehler:
=============
Error: (03/17/2023 01:56:41 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-MGHKFUR)
Description: Der Server "{8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (03/17/2023 01:55:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.
Error: (03/17/2023 01:55:17 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht.
Error: (03/16/2023 10:01:29 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst AsusUpdateCheck konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Error: (03/16/2023 08:26:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-MGHKFUR)
Description: Der Server "{8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.
Error: (03/16/2023 08:17:26 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst AsusUpdateCheck konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Error: (03/16/2023 05:31:46 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "NVIDIA LocalSystem Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 6000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (03/16/2023 05:31:46 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "NVIDIA LocalSystem Container" wurde mit folgendem Fehler beendet:
Für einen allgemeinen Befehl wurde ein Ergebnis zurückgegeben, das auf einen Fehler hinweist.
Windows Defender:
================
Date: 2023-03-16 16:42:40
Description:
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {2F7F604C-40C4-4858-B16D-9AC909BCCE33}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2023-03-13 15:55:14
Description:
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {F5F4C1FB-0148-4A61-9E4C-1659FFE37D66}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2023-02-21 18:23:43
Description:
Die Microsoft Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {971E6416-F3DF-4E69-86D7-2BBE1D8FE8ED}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
CodeIntegrity:
===============
Date: 2023-03-17 13:54:55
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.69\msedgewebview2.exe) attempted to load \Device\HarddiskVolume4\ProgramData\A-Volute\A-Volute.SonicStudio3\Modules\ScheduledModules\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2023-03-17 13:54:55
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.69\msedgewebview2.exe) attempted to load \Device\HarddiskVolume4\ProgramData\A-Volute\A-Volute.28054DF1F58B4\Modules\ScheduledModules\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2023-03-17 13:54:55
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.69\msedgewebview2.exe) attempted to load \Device\HarddiskVolume4\ProgramData\A-Volute\A-Volute.28054DF1F58B4\Modules\ScheduledModules\x64\NahimicOSD.dll that did not meet the Microsoft signing level requirements.
Date: 2023-03-17 13:54:23
Description:
Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume4\Windows\System32\drivers\ene.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}).
Date: 2023-03-17 13:54:23
Description:
The driver \Device\HarddiskVolume4\Windows\System32\drivers\ene.sys is blocked from loading as the driver has been revoked by Microsoft.
==================== Speicherinformationen ===========================
BIOS: American Megatrends Inc. 1302 09/02/2019
Hauptplatine: ASUSTeK COMPUTER INC. ROG STRIX Z390-E GAMING
Prozessor: Intel(R) Core(TM) i9-9900K CPU @ 3.60GHz
Prozentuale Nutzung des RAM: 28%
Installierter physikalischer RAM: 32610.52 MB
Verfügbarer physikalischer RAM: 23219.39 MB
Summe virtueller Speicher: 48482.52 MB
Verfügbarer virtueller Speicher: 36226.92 MB
==================== Laufwerke ================================
Drive c: (Windows) (Fixed) (Total:464.74 GB) (Free:226.58 GB) (Model: Samsung SSD 970 EVO Plus 500GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive d: (D1-P1) (Fixed) (Total:931.51 GB) (Free:34.52 GB) (Model: Samsung SSD 970 EVO 1TB) NTFS
\\?\Volume{279b9398-8e7c-4bae-88e7-eefd629544d0}\ () (Fixed) (Total:0.8 GB) (Free:0.08 GB) NTFS
\\?\Volume{87a4cfdf-79bd-463d-bceb-fbca10c00043}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partitionstabelle ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 7FDE874C)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
==========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: 3308BFC7)
Partition: GPT.
==================== Ende von Addition.txt ======================= |