Knacker777 | 03.11.2020 14:10 | Code:
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2020-06-05 20:10 - 2020-06-05 20:10 - 000322289 _____ () C:\Users\lutte\AppData\Roaming\SoundSwitch-crashlog-5_6_2020.zip
2020-10-29 14:25 - 2020-10-29 14:44 - 000000128 _____ () C:\Users\lutte\AppData\Local\PUTTY.RND
2020-06-01 22:19 - 2020-10-15 17:25 - 000007602 _____ () C:\Users\lutte\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-11-2020
durchgeführt von lutte (03-11-2020 13:39:02)
Gestartet von C:\Users\lutte\Downloads
Windows 10 Home Version 1909 18363.1139 (X64) (2020-01-07 14:54:24)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-3020387415-1942676758-1496133904-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3020387415-1942676758-1496133904-503 - Limited - Disabled)
Gast (S-1-5-21-3020387415-1942676758-1496133904-501 - Limited - Disabled)
lutte (S-1-5-21-3020387415-1942676758-1496133904-1001 - Administrator - Enabled) => C:\Users\lutte
WDAGUtilityAccount (S-1-5-21-3020387415-1942676758-1496133904-504 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Anaconda3 2020.02 (Python 3.7.6 64-bit) (HKLM\...\Anaconda3 2020.02 (Python 3.7.6 64-bit)) (Version: 2020.02 - Anaconda, Inc.)
Android Studio (HKLM\...\Android Studio) (Version: 4.0 - Google LLC)
Anki (HKLM-x32\...\Anki) (Version: 2.1.35 - )
Application Verifier x64 External Package (HKLM\...\{10CA1677-8F02-3131-F25C-780BAB52E468}) (Version: 10.1.18362.1 - Microsoft) Hidden
Aslain's WoT Modpack Version 1.10.1.1.04 (HKLM-x32\...\Aslains_WoT_Modpack_Installer_is1) (Version: 1.10.1.1.04 - Aslain)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield 4™ (HKLM-x32\...\{ABADE36E-EC37-413B-8179-B432AD3FACE7}) (Version: 1.8.2.48475 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)
BlueStacks App Player (HKLM\...\BlueStacks) (Version: 4.240.15.1005 - BlueStack Systems, Inc.)
ClickOnce Bootstrapper Package for Microsoft .NET Framework (HKLM-x32\...\{0243F145-076D-423A-8F77-218DC8840261}) (Version: 4.8.04119 - Microsoft Corporation) Hidden
CMake (HKLM\...\{622BE258-1199-41DC-9F8D-C6551A83A66A}) (Version: 3.16.3 - Kitware)
DiagnosticsHub_CollectionService (HKLM\...\{1F3C3AAC-9F7A-47DA-A082-0ACE770041BE}) (Version: 16.1.28901 - Microsoft Corporation) Hidden
Discord (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\Discord) (Version: 0.0.308 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{F25ACB37-FF26-467D-B5DA-15E81F4A1771}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB)
GameInput Redistributable (HKLM-x32\...\{7E52156F-18FE-B953-BEA9-6BE6A77AFDFF}) (Version: 10.1.19041.3906 - Microsoft Corporation)
Git version 2.24.1.2 (HKLM\...\Git_is1) (Version: 2.24.1.2 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.111 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
Haskell Platform 8.6.5 64-bit (HKLM\...\HaskellPlatform-8.6.5) (Version: - Haskell.org)
Haskell Stack (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\Haskell Stack) (Version: - )
icecap_collection_neutral (HKLM-x32\...\{EEF3770F-1EEF-4AA4-94E7-4B1DEBEED8B6}) (Version: 16.7.30310 - Microsoft Corporation) Hidden
icecap_collection_x64 (HKLM\...\{1E36C98F-0653-495C-B28E-433A6740ADB0}) (Version: 16.7.30310 - Microsoft Corporation) Hidden
icecap_collectionresources (HKLM-x32\...\{60C5BEEB-0865-45D8-AB7F-7F2E916EBEE4}) (Version: 16.7.30310 - Microsoft Corporation) Hidden
icecap_collectionresourcesx64 (HKLM-x32\...\{7525DBB9-50C3-4924-BA87-CD21910F3DA3}) (Version: 16.7.30309 - Microsoft Corporation) Hidden
Intel® Hardware Accelerated Execution Manager (HKLM\...\{7563302D-BD6B-4153-BA7D-3E3432E7C22D}) (Version: 7.5.6 - Intel Corporation)
IntelliJ IDEA Educational Edition 2020.2.2 (HKLM-x32\...\IntelliJ IDEA Educational Edition 2020.2.2) (Version: 202.7319.78 - JetBrains s.r.o.)
IntelliTraceProfilerProxy (HKLM-x32\...\{7D94CF67-6666-4111-B027-D7AB7F189F70}) (Version: 15.0.18198.01 - Microsoft Corporation) Hidden
Java 8 Update 241 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180241F0}) (Version: 8.0.2410.7 - Oracle Corporation)
Java(TM) SE Development Kit 13.0.1 (64-bit) (HKLM\...\{02E6B6AF-D69D-5191-9D34-7E11D4AC952C}) (Version: 13.0.1.0 - Oracle Corporation)
Kits Configuration Installer (HKLM-x32\...\{63AAA877-5536-9481-2385-28A082100D78}) (Version: 10.1.18362.1 - Microsoft) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LEGO® Star Wars™ - The Complete Saga (HKLM-x32\...\{624F31A4-35AC-465E-A7B0-AAFC7FBD608F}) (Version: 1.0.0.0 - Disney Interactive)
Logitech Gaming Software 8.82 (HKLM\...\Logitech Gaming Software) (Version: 8.82.151 - Logitech Inc.)
Malwarebytes version 4.2.2.95 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.2.2.95 - Malwarebytes)
Microsoft .NET Core SDK 3.1.403 (x64) from Visual Studio (HKLM\...\{3863962D-2DDA-4188-996A-070F54EE5F3C}) (Version: 3.1.403.015556 - Microsoft Corporation)
Microsoft 365 Apps for Enterprise - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 16.0.13328.20292 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 86.0.622.58 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - )
Microsoft OneDrive (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM\...\{8D7CE3B0-5379-46FE-9F4B-A65D9F4CC1F1}) (Version: 15.0.1200.24 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM-x32\...\{725CC962-98BD-42C7-87D8-51C680FB1779}) (Version: 15.0.1200.24 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\Teams) (Version: 1.2.00.34161 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{4fd02573-5f12-4ae4-8027-c63f8e1115af}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.27.29112 (HKLM-x32\...\{0f770e99-3916-4b0c-8f9b-83822826bcbf}) (Version: 14.27.29112.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.27.29112 (HKLM-x32\...\{be826f5f-eda5-45a2-a3fe-c2cb5c1b9842}) (Version: 14.27.29112.0 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 2.7.3068.929 - Microsoft Corporation)
Microsoft Web Deploy 4.0 (HKLM\...\{2EC26D34-FB67-4C58-AC20-235697551222}) (Version: 10.0.3802 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{810F1419-7760-402E-8772-B4054FAA2B72}) (Version: 1.0.0.0 - Mojang)
MSI Development Tools (HKLM-x32\...\{DB4DB790-64DD-1902-4BF2-833B3B6DBCA1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 6.32.19.0 - TEFINCOM S.A.)
NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN)
NordVPN network TUN (HKLM\...\{77DA107A-7AE4-497D-A84A-B143C3A21676}) (Version: 1.0.0 - NordVPN)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.9 - Notepad++ Team)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA FrameView SDK 1.1.4923.29214634 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29214634 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.20.5.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.5.70 - NVIDIA Corporation)
NVIDIA Grafiktreiber 457.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 457.09 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NVIDIA USBC Driver 1.45.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.45.831.832 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 25.0.8 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20292 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.13328.20278 - Microsoft Corporation) Hidden
Oracle VM VirtualBox 6.1.4 (HKLM\...\{B74ACDB7-4701-4255-9ECD-D9BBC317765F}) (Version: 6.1.4 - Oracle Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.87.45080 - Electronic Arts, Inc.)
Paradox Launcher v2 (HKLM\...\{986898D9-7C26-4E7F-814C-9B5472FA3209}) (Version: 2.0.0.0 - Paradox Interactive)
PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
PuTTY release 0.74 (64-bit) (HKLM\...\{127B996B-5308-4012-865B-9446451EA326}) (Version: 0.74.0.0 - Simon Tatham)
Python 3.7.8 (64-bit) (HKU\.DEFAULT\...\{886f7e19-ca0e-4f00-9cb5-14f6506fea86}) (Version: 3.7.8150.0 - Python Software Foundation)
Python 3.7.8 Core Interpreter (64-bit symbols) (HKLM\...\{D5C2F5B5-AE03-4897-B7EB-88EDEB52E55F}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Core Interpreter (64-bit) (HKLM\...\{8DE1D24F-C0EA-42D5-87D0-7F3071932A15}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Development Libraries (64-bit) (HKLM\...\{BB556C96-3906-453B-B068-E17C1F13C814}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Documentation (64-bit) (HKLM\...\{A90E9216-6C61-4A2B-A18E-85EF9DF6A2C0}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Executables (64-bit symbols) (HKLM\...\{FAF0840F-75F4-4331-819A-C5B88251F402}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Executables (64-bit) (HKLM\...\{0EEFE4AC-ED52-4F6F-A726-A9030991B75D}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 pip Bootstrap (64-bit) (HKLM\...\{AD820C10-4106-47D5-B6BD-4B3CEA93E429}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Standard Library (64-bit symbols) (HKLM\...\{F7B2245C-D3F3-4CCC-A558-702AB2069D57}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Standard Library (64-bit) (HKLM\...\{68A406B0-F664-4882-8035-4015C78DDC93}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Tcl/Tk Support (64-bit symbols) (HKLM\...\{833EA197-6356-48B6-9E90-AE2D2CCC5479}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Tcl/Tk Support (64-bit) (HKLM\...\{223ADA3A-F506-428A-9244-C3EA445AD42A}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Test Suite (64-bit symbols) (HKLM\...\{F0759285-644B-4AAF-BB09-CA4592C12B89}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Test Suite (64-bit) (HKLM\...\{FE029834-AD26-45F1-B622-8DE59A8B1048}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python 3.7.8 Utility Scripts (64-bit) (HKLM\...\{3BDFA237-E962-435F-A556-A2BE2EE1464C}) (Version: 3.7.8150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{406A47EE-C4AE-4944-BADE-1B543A443873}) (Version: 3.8.7072.0 - Python Software Foundation)
Raspberry Pi Imager (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\Raspberry Pi Imager) (Version: 1.4 - Raspberry Pi)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.29.283 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.7.0 - Rockstar Games)
SceneBuilder (HKLM\...\{4E29896F-34C7-4377-AF64-CA5D11AE0D07}) (Version: 11.0.0 - Gluon)
SDK ARM Additions (HKLM-x32\...\{73681F86-CD86-4208-572F-959B45430B04}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{67EE3804-9642-62BA-EBF1-B1561FB4ECBE}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
SoundSwitch 5.4.0.34051 (HKLM\...\SoundSwitch_is1) (Version: 5.4.0.34051 - Antoine Aflalo)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.2.0.34161 - Microsoft Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.3.2 - TeamSpeak Systems GmbH)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.1.3937 - TeamViewer)
TruckersMP Launcher 1.0.0.4 (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 1.0.0.4 - TruckersMP Team)
TypeScript SDK (HKLM-x32\...\{A6485A79-9A1B-4EEF-8BD2-658157F68355}) (Version: 3.9.6.0 - Microsoft Corporation) Hidden
Universal CRT Extension SDK (HKLM-x32\...\{13952D7A-B7B3-F4F8-5F29-5CD18E8168B7}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{74CBC330-ED16-31B9-E8BE-0C6A8E67DE32}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{847D4DAF-0182-265B-324F-406462E8A90D}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{9F7B0D96-881D-8850-C303-43F3A08E6902}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{6F54BF87-2EE6-FA6D-431D-33A665992D49}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 101.0 - Ubisoft)
vcpp_crt.redist.clickonce (HKLM-x32\...\{187432B8-F7D6-4F73-9D40-8B39312D2EDF}) (Version: 14.27.29112 - Microsoft Corporation) Hidden
Visual Studio Community 2019 (HKLM-x32\...\6b5c5c06) (Version: 16.7.30611.23 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
VS Immersive Activate Helper (HKLM-x32\...\{A71406B5-E487-4B01-8E59-D466841350F5}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden
VS JIT Debugger (HKLM\...\{C7E8A4F2-EF09-42A8-B892-69D5ED99D965}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden
VS Script Debugging Common (HKLM\...\{A4272808-82F5-410F-A5F9-1BF6F63F6B9A}) (Version: 16.0.102.0 - Microsoft Corporation) Hidden
vs_BlendMsi (HKLM-x32\...\{B5E3A3E1-1529-4D5A-9E95-34971FA07825}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncebootstrappermsi (HKLM-x32\...\{BAF91847-0A64-405E-98EC-A0BA6FB4BC4E}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncebootstrappermsires (HKLM-x32\...\{271F1F42-B547-4498-825F-590DBB1774F7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncesigntoolmsi (HKLM-x32\...\{30D97A69-3C0F-4552-9A72-60E591B210C7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_communitymsi (HKLM-x32\...\{CC46F5AE-F0CA-400C-A557-A95D742D4EE0}) (Version: 16.7.30310 - Microsoft Corporation) Hidden
vs_communitymsires (HKLM-x32\...\{95E79BBC-97FD-4FEB-91B5-CC0231324812}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_devenvmsi (HKLM-x32\...\{AD0C92A4-1514-4BC1-A723-A272A8343924}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_filehandler_amd64 (HKLM-x32\...\{804E218D-A59D-48B9-AD2A-13BF6F1C9DA0}) (Version: 16.7.30309 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{3A735826-F946-4348-8DE2-0B9FF750F77D}) (Version: 16.7.30309 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{EF1AD9BC-8273-4B78-ACB6-A35DF4CE4447}) (Version: 16.7.30309 - Microsoft Corporation) Hidden
vs_Graphics_Singletonx64 (HKLM\...\{5F1382AE-D96A-4E32-989C-0A3C8C35CC23}) (Version: 16.7.30309 - Microsoft Corporation) Hidden
vs_Graphics_Singletonx86 (HKLM-x32\...\{87B66F22-97AC-4420-841B-2305F921B39F}) (Version: 16.7.30310 - Microsoft Corporation) Hidden
vs_minshellinteropmsi (HKLM-x32\...\{27B16914-BC5D-4018-8074-071262A27F6D}) (Version: 16.2.28917 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{760FF3F5-A7F3-4079-92DD-9AEB0344D13E}) (Version: 16.7.30310 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{EC04CD66-C03A-470D-B0D2-4BBC87F6382D}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_SQLClickOnceBootstrappermsi (HKLM-x32\...\{937CD512-3142-4F3E-93CD-5F86203ED24B}) (Version: 16.7.30309 - Microsoft Corporation) Hidden
vs_tipsmsi (HKLM-x32\...\{E208E682-50EE-4F2F-9860-C91B906B8A03}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_vswebprotocolselectormsi (HKLM-x32\...\{178ED1EA-BAFA-489D-873D-F5FB72EA69B9}) (Version: 16.7.30309 - Microsoft Corporation) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\Wargaming.net Game Center) (Version: 20.6.1.2382 - Wargaming.net)
WinAppDeploy (HKLM-x32\...\{8E3AE0EF-D067-700C-BDB4-10D5552155DC}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Windows SDK AddOn (HKLM-x32\...\{E6F877A1-2F65-4BF0-87B6-A4071B7663D3}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.18362.1 (HKLM-x32\...\{126dedf0-cc0e-4b48-9ece-806b0e437195}) (Version: 10.1.18362.1 - Microsoft Corporation)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{E67F1F03-FB4A-3D61-8999-E6A4C4B26F34}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{7EF010FF-7800-28BA-FF49-2D219EC7BA82}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{6B03A6A4-643C-57CE-CA6F-4E19BF47497A}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{918A448F-59E8-FBF5-B087-D3F07160C7E0}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{66483041-F590-EC46-4AF0-EE39C62FB680}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{9C61E6D2-C43E-6746-B519-6185558C4A24}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{6B37CC5B-78DF-5050-2215-68479716A587}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{250D5341-0879-4016-399C-BBCD87B80E95}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
World of Tanks EU (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
World of Warcraft Classic (HKLM-x32\...\World of Warcraft Classic) (Version: - Blizzard Entertainment)
Zoom (HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\ZoomUMX) (Version: 5.1 - Zoom Video Communications, Inc.)
Packages:
=========
2019 Hyundai Veloster N and Turbo Free Car Pack -> C:\Program Files\WindowsApps\Microsoft.HyundaiCarPack_1.0.0.2_neutral__8wekyb3d8bbwe [2020-10-17] (Microsoft Studios)
Alien: Isolation -> C:\Program Files\WindowsApps\7904SEGAEuropeLtd.AlienIsolation-Windows_1.0.34.0_x64__zs7esxpzd8d5c [2020-10-21] (SEGA Europe Ltd)
AnyConnect -> C:\Program Files\WindowsApps\CiscoSystems.AnyConnect_4.7.20031.0_x64__edjcgkw48dhxt [2020-01-07] (Cisco Systems)
Crusader Kings III -> C:\Program Files\WindowsApps\ParadoxInteractive.ProjectTitus_1.0.80.0_x64__zfnrdv2de78ny [2020-10-16] (Paradox Interactive)
Forza Hub -> C:\Program Files\WindowsApps\Microsoft.Lucille_1.0.4.0_x64__8wekyb3d8bbwe [2020-09-08] (Microsoft Studios)
Forza Motorsport 7 -> C:\Program Files\WindowsApps\Microsoft.ApolloBaseGame_1.174.4791.2_x64__8wekyb3d8bbwe [2020-10-16] (Microsoft Studios)
Forza Motorsport 7 July Spotlight Porsche Pack -> C:\Program Files\WindowsApps\Microsoft.JulySLCar_1.0.0.2_neutral__8wekyb3d8bbwe [2020-10-16] (Microsoft Studios)
Free April Spotlight Car -> C:\Program Files\WindowsApps\Microsoft.Apr19SLCar_1.0.1.2_neutral__8wekyb3d8bbwe [2020-10-16] (Microsoft Studios)
Free December Spotlight Car -> C:\Program Files\WindowsApps\Microsoft.Dec18SLCar_1.0.1.2_neutral__8wekyb3d8bbwe [2020-10-16] (Microsoft Studios)
Free February Spotlight Car -> C:\Program Files\WindowsApps\Microsoft.Feb19SLCar_1.0.1.2_neutral__8wekyb3d8bbwe [2020-10-17] (Microsoft Studios)
Free May Spotlight Cars -> C:\Program Files\WindowsApps\Microsoft.May19SLCar_1.0.0.2_neutral__8wekyb3d8bbwe [2020-10-17] (Microsoft Studios)
Hot Wheels Forza Motorsport 7 Car Pack -> C:\Program Files\WindowsApps\Microsoft.Nov18CarPack_1.0.1.2_neutral__8wekyb3d8bbwe [2020-10-16] (Microsoft Studios)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_121.1.192.0_x64__v10z8vjag6ke6 [2020-10-29] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-01-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-01-07] (Microsoft Corporation) [MS Ad]
Microsoft Flight Simulator -> C:\Program Files\WindowsApps\Microsoft.FlightSimulator_1.10.8.0_x64__8wekyb3d8bbwe [2020-11-01] (Microsoft Studios)
Microsoft Flight Simulator Digital Ownership -> C:\Program Files\WindowsApps\Microsoft.DigitalOwnership_1.0.1.0_x64__8wekyb3d8bbwe [2020-10-18] (Microsoft Studios)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-10-24] (Microsoft Studios) [MS Ad]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_20.10922.5455.0_x64__8wekyb3d8bbwe [2020-10-24] (Microsoft Corporation)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-17] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-24] (NVIDIA Corp.)
Telegram Desktop -> C:\Program Files\WindowsApps\TelegramMessengerLLP.TelegramDesktop_2.4.2.0_x64__t4vj0pshhgkwm [2020-10-04] (Telegram Messenger LLP)
WhatsApp Desktop -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2043.21.0_x64__cv1g1gvanyjgm [2020-11-02] (WhatsApp Inc.)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-3020387415-1942676758-1496133904-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\lutte\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3020387415-1942676758-1496133904-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-3020387415-1942676758-1496133904-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\lutte\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.19317.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2020-09-24] (Notepad++ -> )
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-11-03] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2015-07-30] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_983b03c2be43c272\nvshext.dll [2020-10-28] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Datei ist nicht signiert]
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-11-03] (Malwarebytes Corporation -> Malwarebytes)
==================== Codecs (Nicht auf der Ausnahmeliste) ====================
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\lutte\Desktop\Persönlich - Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory="Default"
==================== Geladene Module (Nicht auf der Ausnahmeliste) =============
2020-06-05 20:10 - 2019-07-19 02:14 - 000009216 _____ () [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\SerilogTraceListener.dll
2020-01-25 14:17 - 2020-06-10 17:55 - 000041472 _____ () [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\SoundSwitch.Common.dll
2020-01-11 16:39 - 2019-02-21 17:00 - 000078336 _____ (Igor Pavlov) [Datei ist nicht signiert] C:\Program Files\7-Zip\7-zip.dll
2020-01-07 17:24 - 2020-01-31 17:02 - 000513536 _____ (Mark Heath & Contributors) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\NAudio.dll
2020-01-07 17:24 - 2020-03-04 17:25 - 000103424 _____ (Microsoft) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\Microsoft.WindowsAPICodePack.dll
2020-01-07 17:24 - 2019-12-26 11:17 - 000030720 _____ (Muhammad Rehan Saeed (RehanSaeed.com)) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\Serilog.Exceptions.dll
2020-01-07 17:24 - 2019-10-13 20:02 - 000126464 _____ (Serilog Contributors) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\Serilog.dll
2020-01-07 17:24 - 2019-03-08 21:45 - 000006656 _____ (Serilog Contributors) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\Serilog.Enrichers.Environment.dll
2020-01-07 17:24 - 2019-05-02 22:41 - 000006144 _____ (Serilog Contributors) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\Serilog.Enrichers.Thread.dll
2020-01-07 17:24 - 2019-10-17 04:25 - 000028160 _____ (Serilog Contributors) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\Serilog.Sinks.File.dll
2020-01-25 14:17 - 2019-04-18 22:34 - 000012288 _____ (SoftFrame) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\RailSharp.dll
2020-01-07 17:24 - 2020-06-10 17:55 - 000023040 _____ (SoundSwitch) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\SoundSwitch.Audio.Manager.dll
2020-06-05 20:10 - 2020-06-10 17:55 - 001390592 _____ (SoundSwitch) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\SoundSwitch.dll
2020-06-05 20:10 - 2020-06-10 17:55 - 000006656 _____ (SoundSwitch.InterProcess.Communication) [Datei ist nicht signiert] [Datei wird verwendet] C:\Program Files\SoundSwitch\SoundSwitch.InterProcess.Communication.dll
2020-09-25 07:54 - 2020-03-16 14:05 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\LIBEAY32.dll
2020-09-25 07:54 - 2020-03-16 14:06 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\ssleay32.dll
2020-09-25 07:54 - 2020-01-11 19:53 - 001611264 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2020-10-29 18:25 - 2020-01-11 19:53 - 005487104 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Core.dll
2020-10-29 18:25 - 2020-01-11 19:53 - 005841920 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Gui.dll
2020-10-29 18:25 - 2020-01-11 19:53 - 001179136 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Network.dll
2020-10-29 18:25 - 2020-01-11 19:53 - 000146432 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2020-10-29 18:25 - 2020-01-11 19:53 - 005089792 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2020-10-29 18:25 - 2020-01-11 19:53 - 000184832 _____ (The Qt Company Ltd) [Datei ist nicht signiert] C:\Program Files (x86)\Origin\Qt5Xml.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================
==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2020-09-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-09-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\ssv.dll [2020-01-19] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_241\bin\jp2ssv.dll [2020-01-19] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE trusted site: HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\sharepoint.com -> hxxps://btude-files.sharepoint.com
==================== Hosts Inhalt: =========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Andere Bereiche ===========================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Haskell\bin;C:\Program Files\Haskell Platform\8.6.5\lib\extralibs\bin;C:\Program Files\Haskell Platform\8.6.5\bin;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\Git\cmd;C:\Program Files\apache-maven-3.6.3\bin;C:\Program Files\Haskell Platform\8.6.5\mingw\bin;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Users\lutte\.cargo\bin;C:\Program Files\dotnet\;C:\Program Files\PuTTY\
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\lutte\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
ist aktiviert.
Network Binding:
=============
Ethernet 2: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled)
Ethernet 2: NordVPN LightWeight Firewall -> NordLwf (enabled)
VirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled)
VirtualBox Host-Only Network: NordVPN LightWeight Firewall -> NordLwf (enabled)
Ethernet: NordVPN LightWeight Firewall -> NordLwf (enabled)
Ethernet: VirtualBox NDIS6 Bridged Networking Driver -> oracle_VBoxNetLwf (enabled)
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
HKLM\...\StartupApproved\Run: => "Launch LCore"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "NordVPN"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-3020387415-1942676758-1496133904-1001\...\StartupApproved\Run: => "Lync"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{65B7385E-D72A-4B73-9DF1-D356A7C53608}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{24BC73F6-2830-4D16-BDE1-5FEF8643B5BA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{82DE139A-E6C9-4889-AAFA-5DD8AD94FC58}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei
FirewallRules: [{0CA54267-99D5-4EC7-96E8-6A8CE30F66D0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => Keine Datei
FirewallRules: [TCP Query User{36144128-27C2-4945-93F6-E319FD900AD2}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{6C61AC77-4365-4E4F-BE79-7E46729729CF}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{0D6A277A-7FA7-425B-A385-97D818D292F9}F:\ddnet\ddnet.exe] => (Allow) F:\ddnet\ddnet.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{C4E371E9-114B-43B2-95DE-BB1AB4C82DED}F:\ddnet\ddnet.exe] => (Allow) F:\ddnet\ddnet.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{36E304D4-CA6C-4195-849D-AC884A9FD210}C:\program files\java\jdk-13.0.1\bin\javaw.exe] => (Allow) C:\program files\java\jdk-13.0.1\bin\javaw.exe
FirewallRules: [UDP Query User{ED369B17-6C49-45C2-8BB0-CDCBE59ADB9F}C:\program files\java\jdk-13.0.1\bin\javaw.exe] => (Allow) C:\program files\java\jdk-13.0.1\bin\javaw.exe
FirewallRules: [TCP Query User{F7BA9B55-E194-46D8-9F2A-125FB9F1B35B}F:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) F:\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [UDP Query User{F51FD660-BA61-4EC0-9156-51000F2701E3}F:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) F:\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [{0EFBB67D-0FFA-4D4A-B921-3647E75BBE59}] => (Allow) F:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [{6186C0A5-FB66-4248-AFAD-8FC8954A3866}] => (Allow) F:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [TCP Query User{F45CA7EA-860E-4E4A-8073-2F80ED81F5BD}C:\program files\java\jdk-13.0.1\bin\java.exe] => (Allow) C:\program files\java\jdk-13.0.1\bin\java.exe
FirewallRules: [UDP Query User{EC8FB0D8-05C4-47DE-8574-CBBD4113205D}C:\program files\java\jdk-13.0.1\bin\java.exe] => (Allow) C:\program files\java\jdk-13.0.1\bin\java.exe
FirewallRules: [{D5854467-111A-4F82-8B80-E6CD8D478241}] => (Allow) F:\SteamLibrary\steamapps\common\Subnautica\Subnautica.exe () [Datei ist nicht signiert]
FirewallRules: [{3684BC9C-85ED-4602-8836-78DC147BF8AC}] => (Allow) F:\SteamLibrary\steamapps\common\Subnautica\Subnautica.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{9605C384-CCA5-45D2-84B7-7A76195413E1}F:\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) F:\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{C02B505D-7C77-42BD-BF43-3C227A4A5D02}F:\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) F:\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{373E7F2B-2C80-484C-BB94-071F96AC99CF}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{A96DCB68-ABE2-44FD-B793-2F5DEECC0E9C}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{667D4D51-25BF-4F50-A77F-B67DD8688275}C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe] => (Allow) C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe (Eclipse.org Foundation, Inc. -> )
FirewallRules: [UDP Query User{D84A4103-6AB4-48DC-9830-B96F0C164612}C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe] => (Allow) C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe (Eclipse.org Foundation, Inc. -> )
FirewallRules: [{673AB5CE-C0D2-44D2-8BB1-C902D53EAD0C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C0F5487F-6F75-42C8-B9CF-A947F4805560}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C69CBA42-EC34-49D8-B6FE-219DA3E980AC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{5BF276A9-0883-4823-BD70-C264E3571F3E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D665F6BA-9ECF-4D3A-97BA-C8F01FB83834}] => (Allow) F:\SteamLibrary\steamapps\common\Elite Dangerous\EDLaunch.exe (Frontier Developments Plc -> Frontier Developments)
FirewallRules: [{F535D453-CB4A-42FD-9481-34AAD6556233}] => (Allow) F:\SteamLibrary\steamapps\common\Elite Dangerous\EDLaunch.exe (Frontier Developments Plc -> Frontier Developments)
FirewallRules: [{3BFC2FCA-E7AD-4DA0-9092-E667A078232E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3E1378B3-1D29-46D0-8B52-8797D45A6CAE}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B011B84B-627C-42CC-9243-50ACDBEC5B02}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{051E770A-9A3C-4787-B25B-DA1B1310F867}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2ACF6A76-E544-4B8F-90D3-0FB45A28160E}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{0CE44AB5-AAA2-4DAD-A3C3-547777A8AAE9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{BF64A012-5D8F-4169-BCB5-28229369D7A6}] => (Allow) F:\SteamLibrary\steamapps\common\Cities_Skylines\dowser.exe (Paradox Interactive Ab (Publ) -> )
FirewallRules: [{502E6A3C-E34A-48B9-A215-4388EBA6EA54}] => (Allow) F:\SteamLibrary\steamapps\common\Cities_Skylines\dowser.exe (Paradox Interactive Ab (Publ) -> )
FirewallRules: [{46EE7E38-E6F3-4AF3-A81D-0A78AC74865B}] => (Allow) F:\SteamLibrary\steamapps\common\Prison Architect\Launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{FD4D6F5E-4B45-44DF-A4CF-351DA885DE45}] => (Allow) F:\SteamLibrary\steamapps\common\Prison Architect\Launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{EC7435E1-204E-4E26-AADC-E9E2D3654D5E}] => (Allow) F:\SteamLibrary\steamapps\common\Prison Architect\Prison Architect.exe () [Datei ist nicht signiert]
FirewallRules: [{04833A14-D9F7-4481-A9BC-8B2469C7043C}] => (Allow) F:\SteamLibrary\steamapps\common\Prison Architect\Prison Architect.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{BE4DCDBA-A17F-4E33-ABE8-72CC3103DA3F}C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{4EEE93DE-88FE-45F1-962A-D1DDE099541F}C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{AF4CAB9D-DD2B-4C07-BB99-BF4F3AB1B0AF}] => (Allow) F:\SteamLibrary\steamapps\common\FTL Faster Than Light\FTLGame.exe () [Datei ist nicht signiert]
FirewallRules: [{6649A139-5230-4EA3-BB30-D2914F72D71B}] => (Allow) F:\SteamLibrary\steamapps\common\FTL Faster Than Light\FTLGame.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{7D892329-CD95-4994-BDB1-A4F2CCD0331D}C:\program files (x86)\microsoft visual studio\2019\community\common7\ide\extensions\microsoft\liveshare\agent\vsls-agent.exe] => (Allow) C:\program files (x86)\microsoft visual studio\2019\community\common7\ide\extensions\microsoft\liveshare\agent\vsls-agent.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{CF15ECDF-0CBC-4694-95D3-B68345435952}C:\program files (x86)\microsoft visual studio\2019\community\common7\ide\extensions\microsoft\liveshare\agent\vsls-agent.exe] => (Allow) C:\program files (x86)\microsoft visual studio\2019\community\common7\ide\extensions\microsoft\liveshare\agent\vsls-agent.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{92633F39-2F6F-4F7F-B2D7-BCFA7D311DF1}F:\kingdomcome\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) F:\kingdomcome\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe => Keine Datei
FirewallRules: [UDP Query User{F507B13D-228E-48DB-ADB6-7056A21014AC}F:\kingdomcome\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) F:\kingdomcome\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe => Keine Datei
FirewallRules: [TCP Query User{A064E89A-B4D6-4980-9250-B0A980354F97}C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe (Warhorse Studios sro) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{2A35D67B-2945-44C5-8AFA-F8C1F4919814}C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe (Warhorse Studios sro) [Datei ist nicht signiert]
FirewallRules: [{641FB2C6-E927-4F26-9A96-CBD3CBEC4197}] => (Allow) F:\SteamLibrary\steamapps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{54A2BDE5-323B-401E-9EDE-263394D92045}] => (Allow) F:\SteamLibrary\steamapps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [TCP Query User{B8C11731-C725-4592-A566-EF56E9907785}F:\call of duty modern warfare\modernwarfare.exe] => (Allow) F:\call of duty modern warfare\modernwarfare.exe => Keine Datei
FirewallRules: [UDP Query User{479D8C6F-64A3-4FE7-85C2-CEE3C86CAEDD}F:\call of duty modern warfare\modernwarfare.exe] => (Allow) F:\call of duty modern warfare\modernwarfare.exe => Keine Datei
FirewallRules: [{3E761CFE-89E0-421C-98DC-6BC6F654EB2F}] => (Allow) F:\SteamLibrary\steamapps\common\HeroSiege\bin\Hero_Siege.exe (Panic Art Studios) [Datei ist nicht signiert]
FirewallRules: [{1081BE72-7E7C-464C-816C-C790C6EEAD27}] => (Allow) F:\SteamLibrary\steamapps\common\HeroSiege\bin\Hero_Siege.exe (Panic Art Studios) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{54B0DBA6-C9E4-4293-94E1-A76ABB1E340E}F:\thestanleyparable\stanley.exe] => (Allow) F:\thestanleyparable\stanley.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{D0279583-1B8E-439E-82DA-B4E474CAA05C}F:\thestanleyparable\stanley.exe] => (Allow) F:\thestanleyparable\stanley.exe () [Datei ist nicht signiert]
FirewallRules: [{9190AF60-1FED-42A0-898E-15A46546AB43}] => (Allow) F:\SteamLibrary\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [Datei ist nicht signiert]
FirewallRules: [{71FCDC06-8A17-4F2B-9272-ABFD236467BF}] => (Allow) F:\SteamLibrary\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{4B5EFE77-18B9-43B2-AF5A-EF7F16964179}F:\ddnet\ddnet.exe] => (Allow) F:\ddnet\ddnet.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{72670DC2-9953-4B76-B854-418ED1B7FA59}F:\ddnet\ddnet.exe] => (Allow) F:\ddnet\ddnet.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{011C75A2-0FEF-4EAD-8EAB-189D4B8A84EF}F:\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) F:\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{FCD437BF-8E4E-4BF6-B0AE-9D9C00CF2A7A}F:\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) F:\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{E52EB493-0C10-4A08-9542-02801735F013}] => (Allow) C:\Users\lutte\AppData\Local\Temp\7zS4741\HPDiagnosticCoreUI.exe => Keine Datei
FirewallRules: [{93DBDA57-C3F7-47F7-A15A-0BF12FC46374}] => (Allow) C:\Users\lutte\AppData\Local\Temp\7zS4741\HPDiagnosticCoreUI.exe => Keine Datei
FirewallRules: [{FAC6185B-489B-475E-99A3-480BACB0BF31}] => (Allow) F:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{75CF492B-63A7-4721-945A-D8A2E54068B0}] => (Allow) F:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{3443E969-696E-4C08-8C0C-69DDB7F7C53A}F:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) F:\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [UDP Query User{E5928FAF-60A5-4237-B342-9C157ACC2D2E}F:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) F:\minecraft\runtime\jre-x64\bin\javaw.exe
FirewallRules: [TCP Query User{AFFDF219-AF3F-46C2-9B1E-CFA300D5B2DA}C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe] => (Allow) C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe (Eclipse.org Foundation, Inc. -> )
FirewallRules: [UDP Query User{F2F4495E-A241-4FB4-B95D-9EF848B4C26A}C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe] => (Allow) C:\users\lutte\eclipse\java-2019-12\eclipse\eclipse.exe (Eclipse.org Foundation, Inc. -> )
FirewallRules: [{0EE58180-479B-4273-A798-A22C00FE7162}] => (Allow) F:\SteamLibrary\steamapps\common\Wargame Red Dragon\WarGame3.exe (Eugen Systems -> Eugen Systems)
FirewallRules: [{656E51DE-C774-408D-AD5F-CF22AE2B0441}] => (Allow) F:\SteamLibrary\steamapps\common\Wargame Red Dragon\WarGame3.exe (Eugen Systems -> Eugen Systems)
FirewallRules: [TCP Query User{01B5FA50-32E9-46F7-A39A-19F5C4B7BFAB}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{AF504FCB-551E-42DB-990F-9BFC5E7EE291}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{EF23710F-24E2-4702-A814-1A944BC95ECE}F:\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) F:\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{CB8F6DAC-4F26-4F9A-B564-E95D19A133A5}F:\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) F:\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{EDA82368-BB36-484E-B0BE-56C3374ADB41}F:\steamlibrary\steamapps\common\doom\doomx64.exe] => (Allow) F:\steamlibrary\steamapps\common\doom\doomx64.exe (id Software) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{7424BDB0-C156-454E-914F-67B80FD05427}F:\steamlibrary\steamapps\common\doom\doomx64.exe] => (Allow) F:\steamlibrary\steamapps\common\doom\doomx64.exe (id Software) [Datei ist nicht signiert]
FirewallRules: [{F39221D5-2C3E-443A-97FA-AA1515B708A5}] => (Allow) F:\SteamLibrary\steamapps\common\Teeworlds\tw\teeworlds.exe () [Datei ist nicht signiert]
FirewallRules: [{E7B1A499-B7F6-4644-998D-B27DB7608434}] => (Allow) F:\SteamLibrary\steamapps\common\Teeworlds\tw\teeworlds.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{AD427619-CB9C-46A3-A043-750AC8804B08}C:\program files (x86)\hp\diagnostics\telemetrywatch\psdrtelemetrywatch.exe] => (Block) C:\program files (x86)\hp\diagnostics\telemetrywatch\psdrtelemetrywatch.exe (HP Inc. -> )
FirewallRules: [UDP Query User{F3F0B392-6F25-4DBD-9D5D-FD3D65E7221A}C:\program files (x86)\hp\diagnostics\telemetrywatch\psdrtelemetrywatch.exe] => (Block) C:\program files (x86)\hp\diagnostics\telemetrywatch\psdrtelemetrywatch.exe (HP Inc. -> )
FirewallRules: [{BEDD0340-07CC-44FA-A6B7-5C9F3FDE9398}] => (Allow) F:\LEGO Star Wars The Complete Saga\LEGO Star Wars The Complete Saga\LEGOStarWarsSaga.exe (Electronic Arts, Inc. -> Traveller's Tales (UK) Ltd)
FirewallRules: [{4C38F043-90CC-4289-8B9F-C8C4BE2F0ABF}] => (Allow) F:\LEGO Star Wars The Complete Saga\LEGO Star Wars The Complete Saga\LEGOStarWarsSaga.exe (Electronic Arts, Inc. -> Traveller's Tales (UK) Ltd)
FirewallRules: [{05D75B3D-27A4-41DC-BCCE-266F32542A63}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AoE2DE\AoE2DE_s.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FB679D71-7CC0-4B9E-B5DA-C5F70700C62A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AoE2DE\AoE2DE_s.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5CEA4406-E2E0-4532-8972-651F163EC5BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AoE2DE\BattleServer\BattleServer.exe () [Datei ist nicht signiert]
FirewallRules: [{B734AB59-9A23-41A6-8615-EC047CAC4BCC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AoE2DE\BattleServer\BattleServer.exe () [Datei ist nicht signiert]
FirewallRules: [{18DA9034-74E4-474F-8350-E2590FE7EE5D}] => (Allow) F:\SteamLibrary\steamapps\common\Terraria\Terraria.exe (Re-Logic) [Datei ist nicht signiert]
FirewallRules: [{F87A6302-9A21-468D-8535-09A45AC7E7B1}] => (Allow) F:\SteamLibrary\steamapps\common\Terraria\Terraria.exe (Re-Logic) [Datei ist nicht signiert]
FirewallRules: [TCP Query User{72F2DEA3-B28E-471E-880D-4A1C0182E2BF}F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{3FA43884-B62B-4142-B231-C6134BA5CD83}F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) F:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{C4F11BCC-3E86-4127-A78C-D6F4EF33D981}F:\gtav\gta5.exe] => (Allow) F:\gtav\gta5.exe => Keine Datei
FirewallRules: [UDP Query User{C2905821-06CF-425A-9347-474489463129}F:\gtav\gta5.exe] => (Allow) F:\gtav\gta5.exe => Keine Datei
FirewallRules: [TCP Query User{9608B93F-21BF-406F-9C8D-26294DC9AEA1}C:\program files\java\jdk-13.0.1\bin\javaw.exe] => (Allow) C:\program files\java\jdk-13.0.1\bin\javaw.exe
FirewallRules: [UDP Query User{2CE24586-B49B-406B-908D-57E165F84AE0}C:\program files\java\jdk-13.0.1\bin\javaw.exe] => (Allow) C:\program files\java\jdk-13.0.1\bin\javaw.exe
FirewallRules: [TCP Query User{9843C071-3578-4A4B-8595-8B223338A33C}C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{F9F0C11D-A420-40C9-B4C4-39595B7D331B}C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\dlls\wgc_renderer.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{CDA1006D-6F81-4DA7-894A-D0AA64F949D9}] => (Allow) C:\Users\lutte\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{331D8523-5DB6-425B-A87B-4338775B04B6}] => (Allow) C:\Users\lutte\AppData\Roaming\Zoom\bin\airhost.exe => Keine Datei
FirewallRules: [{F095C86D-005B-4B2D-8A86-72B1ECB311BF}] => (Allow) F:\SteamLibrary\steamapps\common\Retro City Rampage\retrocityrampage.exe () [Datei ist nicht signiert]
FirewallRules: [{433AD08D-D93F-46D4-8A87-2BD42BFE6BCF}] => (Allow) F:\SteamLibrary\steamapps\common\Retro City Rampage\retrocityrampage.exe () [Datei ist nicht signiert]
FirewallRules: [{99561D5F-3408-4169-B588-83545EF6D841}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F0C5B599-8B47-4F3E-A858-0668ADF95807}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{E011D526-76FE-4BB6-B1CE-E7303573F877}] => (Allow) F:\SteamLibrary\steamapps\common\Europa Universalis IV\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{5D848F12-3AD0-471C-B39F-43867B8A76FF}] => (Allow) F:\SteamLibrary\steamapps\common\Europa Universalis IV\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [TCP Query User{8CFE49E0-44FF-4368-B9E2-D6E172BF80F4}C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe (Warhorse Studios sro) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{CF687C08-7DB7-42D5-A1E7-57CF92850552}C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdomcomedeliverance\bin\win64mastermasterepicpgo\kingdomcome.exe (Warhorse Studios sro) [Datei ist nicht signiert]
FirewallRules: [{8E6431FB-6539-47EC-A484-3C26E2E0C81D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{AFA5E42A-CF9A-4326-96BF-8EFE6787626D}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{4057660D-7C69-4892-84E5-3E046A02DC2C}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{D039906F-7BCF-42A5-BDA4-40A197DA558F}] => (Allow) F:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe () [Datei ist nicht signiert]
FirewallRules: [{9CF1906A-2552-441E-BCC0-C483310B4189}] => (Allow) F:\SteamLibrary\steamapps\common\Clicker Heroes\Clicker Heroes.exe () [Datei ist nicht signiert]
FirewallRules: [{D266D6E9-F40C-4881-993B-6C2047E5A11E}] => (Allow) F:\SteamLibrary\steamapps\common\DDraceNetwork\ddnet\DDNet.exe () [Datei ist nicht signiert]
FirewallRules: [{C420A0D4-2198-483A-8DAC-E8E363B57718}] => (Allow) F:\SteamLibrary\steamapps\common\DDraceNetwork\ddnet\DDNet.exe () [Datei ist nicht signiert]
FirewallRules: [{43727AB4-57AB-4540-921F-0BC960D5402C}] => (Allow) F:\SteamLibrary\steamapps\common\PapersPlease\PapersPlease.exe () [Datei ist nicht signiert]
FirewallRules: [{37B34445-3B91-4D90-98A0-3A29D27135F2}] => (Allow) F:\SteamLibrary\steamapps\common\PapersPlease\PapersPlease.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{CEDEE3E4-4CCE-4F57-9114-9E8E05F5BC33}F:\steamlibrary\steamapps\common\ddracenetwork\ddnet\ddnet-server.exe] => (Allow) F:\steamlibrary\steamapps\common\ddracenetwork\ddnet\ddnet-server.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{1A605176-B646-4F2D-9FD1-D5737071E01B}F:\steamlibrary\steamapps\common\ddracenetwork\ddnet\ddnet-server.exe] => (Allow) F:\steamlibrary\steamapps\common\ddracenetwork\ddnet\ddnet-server.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{B2D2C620-A53F-410C-B661-242D30A1E06A}C:\program files\jetbrains\intellij idea educational edition 2020.2.2\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea educational edition 2020.2.2\bin\idea64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [UDP Query User{A85274BE-588B-4B4D-9E6C-4889C274B280}C:\program files\jetbrains\intellij idea educational edition 2020.2.2\bin\idea64.exe] => (Allow) C:\program files\jetbrains\intellij idea educational edition 2020.2.2\bin\idea64.exe (JetBrains s.r.o. -> JetBrains s.r.o.)
FirewallRules: [TCP Query User{2A93E45F-B575-4D54-BC24-9659E0B7D83A}C:\users\lutte\.jdks\openjdk-15\bin\java.exe] => (Allow) C:\users\lutte\.jdks\openjdk-15\bin\java.exe
FirewallRules: [UDP Query User{92A912AD-8775-46DC-96E1-5CB66B01938D}C:\users\lutte\.jdks\openjdk-15\bin\java.exe] => (Allow) C:\users\lutte\.jdks\openjdk-15\bin\java.exe
FirewallRules: [TCP Query User{ECEBCF0E-DD4B-47FC-A8BA-6DCA3FEFEB4E}F:2\flightsimulator.exe] => (Allow) F:2\flightsimulator.exe => Keine Datei
FirewallRules: [UDP Query User{19DE0E4A-99E8-4C0B-BBD4-67107E4F168D}F:2\flightsimulator.exe] => (Allow) F:2\flightsimulator.exe => Keine Datei
FirewallRules: [{405DC106-9E16-458D-B72D-74A3B16F39CA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7B4A80DB-3614-4AE8-9CC9-6CE2FDFFBCAC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0025E9E8-61FE-456A-8B27-5C882DE014DC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9908CF09-A800-4527-B91F-62B8DF3F8854}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B669CA29-BDA0-46C6-A7C4-7B3DE37CD693}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{F6BCB2A2-7AA5-4301-A841-11124128927C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{F681CD70-7E3D-4397-96DB-84A6F9F2903F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{D105ACC2-7B20-4ACF-AC27-4436F785747D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{326F0CC7-5FB7-4C94-BC0C-5EA8160D18C8}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB)
FirewallRules: [{191B4EB7-2F2B-48D1-BE9D-597C6666459B}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB)
FirewallRules: [{E378E5DF-AC77-4FEE-B263-AFE84BE7CF55}] => (Allow) F:\Battlefield 4\Battlefield 4\BFLauncher.exe (Electronic Arts -> EA Digital Illusions CE AB)
FirewallRules: [{9AD5E24A-673B-4904-BBD7-C32837AC7A88}] => (Allow) F:\Battlefield 4\Battlefield 4\BFLauncher.exe (Electronic Arts -> EA Digital Illusions CE AB)
FirewallRules: [{503CE7A9-6625-4DED-83E1-194F820E57DB}] => (Allow) F:\Battlefield 4\Battlefield 4\BFLauncher_x86.exe (Electronic Arts -> EA Digital Illusions CE AB)
FirewallRules: [{6470641E-FBD9-4E28-9FD1-F2DE87474F9D}] => (Allow) F:\Battlefield 4\Battlefield 4\BFLauncher_x86.exe (Electronic Arts -> EA Digital Illusions CE AB)
FirewallRules: [{E5E72649-24CF-479C-997F-ADDC992C1958}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
FirewallRules: [TCP Query User{1C953D5C-04DA-4C97-8058-E76CFE909482}F:0\flightsimulator.exe] => (Allow) F:0\flightsimulator.exe => Keine Datei
FirewallRules: [UDP Query User{DD381D0D-4FFC-4892-9F28-96FB54039115}F:0\flightsimulator.exe] => (Allow) F:0\flightsimulator.exe => Keine Datei
FirewallRules: [TCP Query User{04C88073-E4D4-44F6-985A-B89C4E528E29}F:\steamlibrary\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\steamlibrary\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe (Frontier Developments plc) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{42947C6D-A3FC-4553-976B-D7F965F18838}F:\steamlibrary\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe] => (Allow) F:\steamlibrary\steamapps\common\elite dangerous\products\elite-dangerous-64\elitedangerous64.exe (Frontier Developments plc) [Datei ist nicht signiert]
FirewallRules: [{B08A4B2E-47A9-48AC-9E1C-1064C96D5864}] => (Allow) F:\SteamLibrary\steamapps\common\Among Us\Among Us.exe () [Datei ist nicht signiert]
FirewallRules: [{F385E8C2-6A64-4CE4-9539-E68198AC1E7F}] => (Allow) F:\SteamLibrary\steamapps\common\Among Us\Among Us.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{DE7DC6F1-6CBF-40AF-8E18-B2D2CF775301}F:\battlefield 4\battlefield 4\bf4.exe] => (Allow) F:\battlefield 4\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB)
FirewallRules: [UDP Query User{0C7D548D-3B78-4921-BF7C-574C8128B937}F:\battlefield 4\battlefield 4\bf4.exe] => (Allow) F:\battlefield 4\battlefield 4\bf4.exe (Electronic Arts -> EA Digital Illusions CE AB)
FirewallRules: [{ED52BAA3-510B-499C-B801-4AFF8FD875FA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{62F8EC3C-5CD1-4AA7-9DE2-766E1EA69233}C:\program files\microsoft office\root\office16\lync.exe] => (Allow) C:\program files\microsoft office\root\office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{46039ADC-BF63-41B5-9956-567860D07789}C:\program files\microsoft office\root\office16\lync.exe] => (Allow) C:\program files\microsoft office\root\office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{5109399A-28E9-46C6-9147-18F47B61BB77}F:\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi_dx12.exe] => (Allow) F:\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi_dx12.exe (Firaxis Games) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{655D67F3-72A8-4226-9310-8B08E7FD8BCC}F:\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi_dx12.exe] => (Allow) F:\sidmeierscivilizationvi\base\binaries\win64eos\civilizationvi_dx12.exe (Firaxis Games) [Datei ist nicht signiert]
FirewallRules: [{0B458BB3-FCAE-4477-9074-4A357B0B72FA}] => (Allow) F:\SteamLibrary\steamapps\common\AoW3\AoW3Launcher.exe () [Datei ist nicht signiert]
FirewallRules: [{964C3126-39D1-4A8D-B690-3FC313955DFC}] => (Allow) F:\SteamLibrary\steamapps\common\AoW3\AoW3Launcher.exe () [Datei ist nicht signiert]
FirewallRules: [{41A87C3F-8BD3-498A-8270-A3975434B4FB}] => (Allow) F:\SteamLibrary\steamapps\common\AoW3\AoW3.exe () [Datei ist nicht signiert]
FirewallRules: [{E2ADF316-D406-40FF-974C-0F52925813F2}] => (Allow) F:\SteamLibrary\steamapps\common\AoW3\AoW3.exe () [Datei ist nicht signiert]
FirewallRules: [{2B191BA8-D2F7-4A00-9F2F-479618AD441B}] => (Allow) F:\SteamLibrary\steamapps\common\AoW3\AoW3_Debug.exe () [Datei ist nicht signiert]
FirewallRules: [{7ECA04F4-E7C3-4183-BF0F-4398DBF67A66}] => (Allow) F:\SteamLibrary\steamapps\common\AoW3\AoW3_Debug.exe () [Datei ist nicht signiert]
FirewallRules: [{3EFEE213-8E61-4DC1-84C4-756CB698019A}] => (Allow) F:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{43D77FAC-1DF1-4723-A5CA-2C49DC60662A}] => (Allow) F:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{F6DC8FA7-9EF7-4265-9F89-876942B3A2E9}] => (Allow) F:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{200E2CF3-DD9E-4260-8946-493FA3909EA6}] => (Allow) F:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{6ED68A37-8744-41F8-88C7-D7CF1BC0ABF7}] => (Allow) F:\SteamLibrary\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [Datei ist nicht signiert]
FirewallRules: [{DC2405C2-905A-458A-91A6-5083B00FC9CC}] => (Allow) F:\SteamLibrary\steamapps\common\Don't Starve Together\bin\dontstarve_steam.exe () [Datei ist nicht signiert]
FirewallRules: [{3D071952-3026-476F-877C-88B1370DDFCE}] => (Allow) F:\SteamLibrary\steamapps\common\HeroSiege\bin\Hero_Siege.exe (Panic Art Studios) [Datei ist nicht signiert]
FirewallRules: [{6A8F3D30-E5E2-4E13-83B9-9A3D72669633}] => (Allow) F:\SteamLibrary\steamapps\common\HeroSiege\bin\Hero_Siege.exe (Panic Art Studios) [Datei ist nicht signiert]
FirewallRules: [{9B0BE183-5A2D-40E2-9387-C4ACFFD49BC6}] => (Allow) F:\SteamLibrary\steamapps\common\Tomb Raider\TombRaider.exe (Square Enix) [Datei ist nicht signiert]
FirewallRules: [{E8EA2384-4E83-44E3-A0B9-EA42FE6AFF2A}] => (Allow) F:\SteamLibrary\steamapps\common\Tomb Raider\TombRaider.exe (Square Enix) [Datei ist nicht signiert]
FirewallRules: [{24226818-98E4-43D6-95E7-D08FF6076DC4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{04BB36A9-8DFD-4E9C-8B84-8AFC00C005B4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{FB306109-9B44-4B13-8D00-F670B1D96A61}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{62BC6828-366B-4AF8-BF26-E837CA9C62F1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
==================== Wiederherstellungspunkte =========================
18-10-2020 18:21:22 Geplanter Prüfpunkt
24-10-2020 08:48:17 Windows Update
29-10-2020 14:23:08 Installed PuTTY release 0.74 (64-bit)
==================== Fehlerhafte Geräte im Gerätemanager ============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Fehlereinträge in der Ereignisanzeige: ========================
Applikationsfehler:
==================
Error: (10/30/2020 03:45:55 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (10/30/2020 03:45:55 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Error: (10/28/2020 01:45:29 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "QueryFullProcessImageNameW" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070006, Das Handle ist ungültig.
.
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (10/28/2020 10:31:03 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "QueryFullProcessImageNameW" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070006, Das Handle ist ungültig.
.
Vorgang:
Asynchroner Vorgang wird ausgeführt
Kontext:
Aktueller Status: DoSnapshotSet
Error: (10/27/2020 11:38:42 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (10/27/2020 11:38:42 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Error: (10/27/2020 11:38:42 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (10/27/2020 11:38:42 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Systemfehler:
=============
Error: (11/03/2020 01:20:14 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Der Treiber hat einen internen Treiberfehler auf \Device\VBoxNetLwf gefunden.
Error: (11/03/2020 08:59:26 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Es ist ein Initialisierungsfehler aufgetreten, da der Treiber nicht erstellt werden konnte.
Verwenden Sie die Zeichenfolge "%2", um die Schnittstelle zu identifizieren, die nicht initialisiert werden
konnte. Sie stellt die MAC-Adresse der Schnittstelle mit dem Initialisierungsfehler oder die
GUID (Globally Unique Interface Identifier) dar, wenn NetBT keine Zuordnung
von der GUID zur MAC-Adresse herstellen konnte. Wenn weder die MAC-Adresse noch die GUID verfügbar
waren, dann stellt die Zeichenfolge einen Clustergerätenamen dar.
Error: (11/03/2020 08:59:26 AM) (Source: NetBT) (EventID: 4311) (User: )
Description: Es ist ein Initialisierungsfehler aufgetreten, da der Treiber nicht erstellt werden konnte.
Verwenden Sie die Zeichenfolge "%2", um die Schnittstelle zu identifizieren, die nicht initialisiert werden
konnte. Sie stellt die MAC-Adresse der Schnittstelle mit dem Initialisierungsfehler oder die
GUID (Globally Unique Interface Identifier) dar, wenn NetBT keine Zuordnung
von der GUID zur MAC-Adresse herstellen konnte. Wenn weder die MAC-Adresse noch die GUID verfügbar
waren, dann stellt die Zeichenfolge einen Clustergerätenamen dar.
Error: (11/03/2020 08:59:00 AM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Der Treiber hat einen internen Treiberfehler auf \Device\VBoxNetLwf gefunden.
Error: (11/03/2020 08:59:06 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 03.11.2020 um 08:42:25 unerwartet heruntergefahren.
Error: (11/03/2020 08:42:19 AM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Der Treiber hat einen internen Treiberfehler auf \Device\VBoxNetLwf gefunden.
Error: (11/02/2020 06:33:04 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "NVIDIA LocalSystem Container" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 6000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (11/02/2020 06:33:04 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "NVIDIA LocalSystem Container" wurde mit folgendem Fehler beendet:
Für einen allgemeinen Befehl wurde ein Ergebnis zurückgegeben, das auf einen Fehler hinweist.
Windows Defender:
===================================
Date: 2020-11-03 11:30:07.515
Description:
Windows Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/Patcher&threatid=2147659947&enterprise=0
Name: HackTool:Win32/Patcher
ID: 2147659947
Schweregrad: Hoch
Kategorie: Tool
Pfad: containerfile:_D:\Google Drive\cc 2017.rar; file:_D:\Google Drive\cc 2017.rar->cc 2017.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Benutzer
Benutzer: DESKTOP-9CH2JT8\lutte
Prozessname: Unknown
Sicherheitsversion: AV: 1.327.194.0, AS: 1.327.194.0, NIS: 1.327.194.0
Modulversion: AM: 1.1.17600.5, NIS: 1.1.17600.5
Date: 2020-11-03 11:30:07.514
Description:
Windows Defender Antivirus hat Schadsoftware oder andere potenziell unerwünschte Software erkannt.
Weitere Informationen:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Tiggre!rfn&threatid=2147723625&enterprise=0
Name: Trojan:Win32/Tiggre!rfn
ID: 2147723625
Schweregrad: Schwerwiegend
Kategorie: Trojaner
Pfad: containerfile:_F:\Downloads\Stellar Phoenix Photo Recovery Platinum v8.0.0.0.rar; file:_F:\Downloads\Stellar Phoenix Photo Recovery Platinum v8.0.0.0.rar->Stellar Phoenix Photo Recovery Platinum v8.0.0.0\Loader.rar->Loader\Loader for Stellar Phoenix Photo Recovery v8.0.0.0.exe
Erkennungsursprung: Lokaler Computer
Erkennungstype: Konkret
Erkennungsquelle: Benutzer
Benutzer: DESKTOP-9CH2JT8\lutte
Prozessname: Unknown
Sicherheitsversion: AV: 1.327.194.0, AS: 1.327.194.0, NIS: 1.327.194.0
Modulversion: AM: 1.1.17600.5, NIS: 1.1.17600.5
Date: 2020-11-03 09:01:57.744
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {21333647-C40A-4280-BC40-5CEB99272E9C}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Vollständige Überprüfung
Benutzer: DESKTOP-9CH2JT8\lutte
Date: 2020-11-02 15:23:32.376
Description:
Die Windows Defender Antivirus-Überprüfung wurde vor ihrem Abschluss beendet.
Überprüfungs-ID: {295AED26-99D2-4A18-B068-84B748028710}
Überprüfungstyp: Antimalware
Überprüfungsparameter: Schnellüberprüfung
Benutzer: NT-AUTORITÄT\SYSTEM
Date: 2020-10-29 14:09:30.693
Description:
Windows Defender Antivirus hat verdächtiges Verhalten erkannt.
Name: Behavior:Win32/ModifiedBootRecord
ID: 2005949795
Schweregrad: Niedrig
Kategorie: Verdächtiges Verhalten
Gefundener Pfad: file:_C:\Program Files (x86)\Raspberry Pi Imager\rpi-imager.exe; process:_12492
Erkennungsursprung: Lokaler Computer
Erkennungstyp: Verdächtig
Erkennungsquelle: Echtzeitschutz
Status: Vorgang wird ausgeführt
Benutzer: DESKTOP-9CH2JT8\lutte
Prozessname: C:\Program Files (x86)\Raspberry Pi Imager\rpi-imager.exe
Sicherheitsinformationen-ID: 23858570787236
Sicherheitsversion: AV: 1.325.1617.0, AS: 1.325.1617.0
Modulversion: 1.1.17500.4
Fidelity-Label: Mittel
Zieldateiname:
Date: 2020-11-03 09:15:03.025
Description:
Bei Windows Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen:
%Vorherige Version der Sicherheitsinformationen: 1.327.194.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion:
%Vorherige Modulversion: 1.1.17600.5
Fehlercode: 0x80240438
Fehlerbeschreibung: Unerwartetes Problem bei der Überprüfung auf Updates. Informationen zum Installieren von Updates oder zur Problembehandlung finden Sie unter "Hilfe und Support".
CodeIntegrity:
===================================
Date: 2020-06-25 18:02:07.480
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-06-25 18:02:07.473
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-06-25 13:23:18.283
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-06-25 13:23:17.962
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-06-25 13:23:17.645
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-06-25 13:23:17.156
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-06-25 13:23:17.105
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-06-25 13:23:14.991
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
==================== Speicherinformationen ===========================
BIOS: American Megatrends Inc. P1.30 04/18/2012
Hauptplatine: ASRock Z77 Extreme4
Prozessor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz
Prozentuale Nutzung des RAM: 30%
Installierter physikalischer RAM: 16277.85 MB
Verfügbarer physikalischer RAM: 11341.31 MB
Summe virtueller Speicher: 21653.85 MB
Verfügbarer virtueller Speicher: 14871.02 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:931.51 GB) (Free:357.28 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive d: (Seagate Backup Plus Drive) (Fixed) (Total:931.51 GB) (Free:898.74 GB) NTFS
Drive f: (HDD) (Fixed) (Total:931.51 GB) (Free:62.83 GB) NTFS
\\?\Volume{c3430f91-60ad-57b9-6230-7eb0b10b5cd7}\ () (Fixed) (Total:33.84 GB) (Free:0 GB) NTFS
\\?\Volume{17b9d833-c057-dc2f-8afe-e0747553a43c}\ () (Fixed) (Total:0 GB) (Free:0 GB) NTFS
\\?\Volume{2efae676-6df0-0e43-4be4-609d460feaa5}\ () (Fixed) (Total:1.31 GB) (Free:0 GB) NTFS
\\?\Volume{1a465bf3-de51-c5dd-770b-989b2649e8b9}\ () (Fixed) (Total:4.94 GB) (Free:0 GB) NTFS
==================== MBR & Partitionstabelle ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 42EBAC33)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: BE9AA56B)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: FCFFCDDE)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
Attempted reading MBR returned 0 bytes.
Could not read MBR for disk 4.
Attempted reading MBR returned 0 bytes.
Could not read MBR for disk 5.
Attempted reading MBR returned 0 bytes.
Could not read MBR for disk 6.
Attempted reading MBR returned 0 bytes.
Could not read MBR for disk 7.
==================== Ende von Addition.txt ======================= |