Hi Matthias, sorry dass es ein wenig gedauert hat, hier die logs: Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 12.11.21
Scan-Zeit: 10:04
Protokolldatei: 7cd2a362-4397-11ec-bc9d-20689d4158af.json
-Softwaredaten-
Version: 4.4.10.144
Komponentenversion: 1.0.1499
Version des Aktualisierungspakets: 1.0.47136
Lizenz: Abgelaufen
-Systemdaten-
Betriebssystem: Windows 10 (Build 19043.1348)
CPU: x64
Dateisystem: NTFS
Benutzer: AUDIOMACHINE\benji
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Scan gestartet von: Manuell
Ergebnis: Abgeschlossen
Gescannte Objekte: 386912
Erkannte Bedrohungen: 0
In die Quarantäne verschobene Bedrohungen: 0
Abgelaufene Zeit: 6 Min., 6 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswert: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Datei: 0
(keine bösartigen Elemente erkannt)
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
WMI: 0
(keine bösartigen Elemente erkannt)
(end) Code:
# -------------------------------
# Malwarebytes AdwCleaner 8.3.0.0
# -------------------------------
# Build: 06-29-2021
# Database: 2021-10-26.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 11-12-2021
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 4
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
No malicious folders cleaned.
***** [ Files ] *****
No malicious files cleaned.
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\DOMStorage\dotomi.com
Deleted HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\Children\001\Internet Explorer\EdpDomStorage\dotomi.com
Deleted HKCU\Software\Conduit
Deleted HKLM\Software\DivX\Install\Setup\WizardLayout\UniblueDriverScanner
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries cleaned.
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [2366 octets] - [12/11/2021 10:11:48]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ########## Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 09-11-2021
durchgeführt von benji (Administrator) auf AUDIOMACHINE (12-11-2021 10:14:30)
Gestartet von D:\*****\Downloads
Geladene Profile: benji
Plattform: Microsoft Windows 10 Home Version 21H1 19043.1348 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Edge
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Intel(R) Software Development Products -> Intel(R) Corporation) C:\Program Files (x86)\Common Files\Intel\RSDCM_SR300\bin\win32\RealSenseDCMSR300.exe
(Logitech Inc -> Logitech) C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> ) C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.44\identity_helper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <6>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\110\LocalDB\Binn\sqlservr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe
(PACE Anti-Piracy, Inc. -> PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Veeam Software Group GmbH -> Veeam Software Group GmbH) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM\...\Run: [Nitro System Tray] => C:\Program Files\Nitro\Pro\13\nitro_pro_systray.exe [334088 2020-03-13] (Nitro Software, Inc. -> Nitro Software, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942744 2018-12-17] (Logitech -> Logitech, Inc.)
HKLM\...\Run: [Veeam.EndPoint.Tray.exe] => C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Tray.exe [853968 2021-02-16] (Veeam Software Group GmbH -> Veeam Software Group GmbH)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1263952 2013-02-13] (DivX, LLC -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G9] => C:\Program Files (x86)\CyberLink\Power2Go9\CLMLSvc_P2G9.exe [110344 2013-12-31] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive9] => C:\Program Files (x86)\CyberLink\Power2Go9\VirtualDrive9.exe [983816 2015-02-05] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [PowerDVD13Agent] => C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe [525352 2018-03-02] (CyberLink Corp. -> CyberLink Corp.)
HKLM-x32\...\Run: [Creative Audio Task] => C:\Program Files (x86)\Creative\Shared Files\Creative Audio Task\CTAudTsk.exe [123848 2016-03-03] (Creative Technology Ltd -> Creative Technology Ltd)
HKLM-x32\...\Run: [Creative HID Task] => C:\Program Files (x86)\Creative\Shared Files\Creative HID Task\CTHIDTsk.exe [104392 2016-02-10] (Creative Technology Ltd -> Creative Technology Ltd)
HKLM-x32\...\Run: [UATrayIcon] => C:\Program Files (x86)\Universal Audio\Powered Plugins\UATrayIcon.exe [3805696 2021-05-14] (Universal Audio, Inc.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [UAPerfMon] => C:\Program Files (x86)\Universal Audio\Powered Plugins\UADPerfMon.exe [6280192 2021-05-14] (Universal Audio, Inc.) [Datei ist nicht signiert]
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2340216 2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\Run: [loopMIDI] => C:\Program Files (x86)\Tobias Erichsen\loopMIDI\loopMIDI.exe [848384 2012-08-15] (Tobias Erichsen) [Datei ist nicht signiert]
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\Run: [MicrosoftEdgeAutoLaunch_B9B057F13E8261F387166E937D6ED4AC] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\MountPoints2: {149a0a8a-d7d3-11e9-a9ab-806e6f6e6963} - "J:\setup.exe"
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\MountPoints2: {2d087356-6db6-11ea-aab4-902b34d55361} - "J:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\MountPoints2: {8568c1c5-ad8b-11eb-ad45-20689d4158af} - "G:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Ribbons.scr [153600 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\Nitro PDF Port 13 Monitor: C:\WINDOWS\system32\NxPrinterMonitor13.dll [242440 2020-03-13] (Nitro Software, Inc. -> Nitro Software, Inc.)
HKLM\...\Print\Monitors\us008 Langmon: C:\WINDOWS\system32\us008lm.dll [31256 2016-02-15] (Microsoft Windows Hardware Compatibility Publisher -> )
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FASUSBAudio Control Panel Autostart.lnk [2019-06-25]
ShortcutTarget: FASUSBAudio Control Panel Autostart.lnk -> C:\Program Files\Fractal Audio Systems\USB Audio Driver\FASUSBAudioCplApp.exe () [Datei ist nicht signiert]
Startup: C:\Users\benji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2021-05-03]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy: Beschränkung ? <==== ACHTUNG
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {2382A3D3-E5B5-40ED-9221-F0BC6F03E300} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2434424 2020-09-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {255CA14E-BCF9-4947-B708-11D256B7613F} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Keine Datei)
Task: {38F2A021-EA4D-4CC2-AD4D-DEE61AB51E39} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {534B8696-3AA2-4A0C-83B8-CC49191DBFAF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {55191523-34D0-4306-9694-8DBE8E846DAE} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [3978624 2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {56BB76F5-7FF6-4554-94CF-830E0624012E} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1910136 2020-09-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {64FF6312-6276-43E1-9AE4-8FD59320BDA2} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {73AB8BAF-B67F-419D-BBFF-CD3A4038A857} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22655904 2021-10-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {850218E9-3DAF-482D-9CA9-875932025ED0} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1910136 2020-09-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {9985E02E-3EEB-4958-B927-2DCA650AE6D6} - System32\Tasks\DeviceDetector7 => C:\Program Files (x86)\CyberLink\MediaEspresso7\DeviceDetector\DeviceDetector7.exe [865824 2015-09-10] (CyberLink Corp. -> CyberLink)
Task: {9ABCA37F-8CE2-4423-AC8E-F3839F10F0C1} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [40432 2020-12-16] (Garmin International, Inc. -> )
Task: {9B9B8F10-CD4F-44CB-B6C0-32DCB21F38FD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A90E957B-DA43-4A38-91F7-BCDCE0D323E3} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2311528 2020-09-28] (Microsoft Corporation -> Microsoft)
Task: {ACB3A525-A95C-4694-8125-3AF3FF1845C0} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1600408 2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {BA41330F-8F18-4C88-9BC3-C59FA0A57929} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2434424 2020-09-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {C12C7DA8-CD9E-48B0-BFE3-A46175F6754F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C78C6CDE-3DD3-4DF5-A0DB-A793CCBD92ED} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [1146048 2018-10-05] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co. Ltd.)
Task: {D76B7BF7-0B04-4B9C-89C1-8B69744EB10E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {D7732B3F-2CF4-459A-8534-2EEF6DA210F7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138600 2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {DC963DE5-44B8-4332-82C7-A49062F04B8F} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [32624 2020-09-28] (Microsoft Corporation -> Microsoft)
Task: {F4FAD552-A74B-45D7-B4E4-A16598756742} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138600 2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {F56E9419-20B9-4F50-B869-B5E96612D6CD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22655904 2021-10-25] (Microsoft Corporation -> Microsoft Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{4a2814a0-5b29-48ea-98d3-0ef43718891a}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{d0a3353a-dfb1-461d-ae4c-e74cfdf55e93}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{d4cb2d88-9699-4c58-8e9f-7c92fef8e034}: [DhcpNameServer] 192.168.178.1
Edge:
=======
DownloadDir: D:\*****\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-2387332320-4032506910-2073639800-1001 -> about:tabs
Edge Notifications: HKU\S-1-5-21-2387332320-4032506910-2073639800-1001 -> hxxps://www.youtube.com
Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden]
Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden]
Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden]
Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden]
Edge Extension: (Amazon Assistant) -> xxx_AmazoncomAmazonAssistant_343d40qqvtj1t => C:\Program Files\WindowsApps\Amazon.com.AmazonAssistant_10.1910.9.0_neutral__343d40qqvtj1t [2019-12-17]
Edge DefaultProfile: Default
Edge Profile: C:\Users\benji\AppData\Local\Microsoft\Edge\User Data\Default [2021-11-12]
Edge DownloadDir: Default -> D:\*****\Downloads
Edge Notifications: Default -> hxxps://forums.steinberg.net
Edge HomePage: Default -> edge://newtab/
Edge Extension: (Just Black) - C:\Users\benji\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2021-08-24]
FireFox:
========
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, Inc. -> DivX, LLC.)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, Inc. -> DivX, LLC.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3833088 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3603200 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 CdRomArbiterService; C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.0.0_x64.exe [8704 2020-02-13] (GuinpinSoft inc) [Datei ist nicht signiert]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12034464 2021-10-12] (Microsoft Corporation -> Microsoft Corporation)
S4 CyberLink PowerDVD 13 Media Server Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSMonitorServicePDVD13.exe [85784 2018-03-02] (CyberLink Corp. -> CyberLink)
S4 CyberLink PowerDVD 13 Media Server Service; C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe [335640 2018-03-02] (CyberLink Corp. -> CyberLink)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncHelper.exe [3253120 2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
S3 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-08-19] (Huawei Technologies Co., Ltd. -> ) [Datei ist nicht signiert]
R2 LogiFacecamService; C:\Program Files\Logitech\LogiCapture\bin\Service\LogiFacecamService.exe [497568 2021-04-08] (Logitech Inc -> Logitech)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7848632 2021-11-12] (Malwarebytes Inc -> Malwarebytes)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\21.205.1003.0005\OneDriveUpdaterService.exe [3721600 2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
R2 RealSenseDCMSR300; C:\Program Files (x86)\Common Files\Intel\RSDCM_SR300\bin\win32\RealSenseDCMSR300.exe [4171168 2021-06-16] (Intel(R) Software Development Products -> Intel(R) Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 VeeamEndpointBackupSvc; C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe [130000 2021-02-16] (Veeam Software Group GmbH -> Veeam Software Group GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe [2872024 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe [128376 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 NIHostIntegrationAgent; C:\Program Files\Common Files\Native Instruments\Hardware\NIHostIntegrationAgent.exe [X]
R2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u hxxps://activation.paceap.com/InitiateActivation
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 AllenAndHeathFW; C:\WINDOWS\System32\Drivers\AllenAndHeathFW.sys [222744 2012-10-02] (TC Applied Technologies -> Allen and Heath Ltd.)
R3 AllenAndHeathFWAudio; C:\WINDOWS\system32\drivers\AllenAndHeathFWAudio.sys [46360 2012-10-02] (TC Applied Technologies -> Allen and Heath Ltd.)
R3 AllenAndHeathFWMidi; C:\WINDOWS\system32\drivers\AllenAndHeathFWMidi.sys [35224 2012-10-02] (TC Applied Technologies -> Allen and Heath Ltd.)
S3 axefx2load; C:\WINDOWS\System32\Drivers\axefx2load.sys [55600 2013-07-12] (Fractal Audio Systems -> Cypress Semiconductor)
R3 bomebus; C:\WINDOWS\System32\drivers\bomebus.sys [56376 2018-05-16] (Bome Software GmbH & Co.KG -> Bome Software GmbH & Co. KG)
R2 CLFCL5.13; C:\WINDOWS\system32\DRIVERS\CLFCL5.13\000.fcl [46848 2018-02-26] (CyberLink Corp. -> CyberLink Corp.)
R3 CLVirtualBus01; C:\WINDOWS\System32\drivers\CLVirtualBus01.sys [103176 2014-11-05] (CyberLink Corp. -> CyberLink)
R1 CLVirtualDrive1.1; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive1_1.sys [91912 2013-11-13] (CyberLink Corp. -> CyberLink)
S3 DCMCamera; C:\WINDOWS\system32\DRIVERS\RealSenseDcmDynamicDriver.sys [81496 2020-06-29] (Intel(R) Software Development Products -> Intel(R) Corporation)
R3 EMUXMIDI; C:\WINDOWS\System32\drivers\EMUXMIDI.sys [257624 2009-12-04] (Creative Labs Inc -> E-MU Systems)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 fasusbaudio; C:\WINDOWS\System32\drivers\fasusbaudio_x64.sys [254464 2014-05-16] (Fractal Audio Systems -> )
S3 fasusbaudioks; C:\WINDOWS\System32\drivers\fasusbaudioks_x64.sys [46080 2014-05-16] (Fractal Audio Systems -> )
R1 HWiNFO; C:\Windows\system32\drivers\HWiNFO64A.SYS [66128 2019-07-16] (Martin Malik - REALiX -> REALiX(tm))
R3 iLokDrvr; C:\WINDOWS\System32\drivers\iLokDrvr.sys [33416 2021-10-22] (PACE Anti-Piracy, Inc. -> )
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210352 2021-11-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-11-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-11-12] (Malwarebytes Inc -> Malwarebytes)
S0 mvs91xx; C:\WINDOWS\System32\drivers\mvs91xx.sys [327464 2013-09-06] (Marvell Semiconductor -> Marvell Semiconductor, Inc.)
R0 PxHlpa64; C:\WINDOWS\System32\drivers\PxHlpa64.sys [56336 2013-09-03] (Corel Corporation -> Corel Corporation)
R3 RDID1115; C:\WINDOWS\system32\Drivers\RDWM1115.SYS [91648 2015-07-23] (Microsoft Windows Hardware Compatibility Publisher -> Roland Corporation)
R3 RealSenseDCMBus; C:\WINDOWS\System32\drivers\RealSenseDCMBus.sys [46168 2020-07-01] (Intel(R) Software Development Products -> Intel(R) Corporation)
S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Daniel Terhell -> Resplendence Software Projects Sp.)
R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [134000 2019-01-21] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd)
R3 synusb64; C:\WINDOWS\System32\drivers\synusb64.sys [30352 2011-12-14] (Steinberg Media Technologies GmbH -> Steinberg Media Technologies GmbH)
R3 teVirtualMIDI64; C:\WINDOWS\System32\drivers\teVirtualMIDI64.sys [30208 2012-08-15] (Tobias Erichsen -> Tobias Erichsen)
R3 UAD2Pcie; C:\WINDOWS\System32\drivers\UAD2Pcie.sys [101640 2021-05-18] (Universal Audio, Inc. -> Universal Audio, Inc.)
R3 UAD2System; C:\WINDOWS\System32\drivers\UAD2System.sys [153856 2021-05-18] (Universal Audio, Inc. -> Universal Audio, Inc.)
R3 UAD2WdmAudio; C:\WINDOWS\System32\drivers\UAD2WdmAudio.sys [37640 2021-05-18] (Universal Audio, Inc. -> )
R3 WacHidRouterPro; C:\WINDOWS\System32\drivers\wachidrouter.sys [127512 2020-09-18] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.)
R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [28680 2020-09-18] (WDKTestCert dant,132134237881206156 -> Wacom Technology, Corp.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2021-11-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435424 2021-11-03] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86240 2021-11-03] (Microsoft Windows -> Microsoft Corporation)
S3 semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2021-11-12 10:13 - 2021-11-12 10:13 - 000002090 _____ C:\Users\benji\Desktop\AdwCleaner[C00].txt
2021-11-12 10:10 - 2021-11-12 10:10 - 000001419 _____ C:\Users\benji\Desktop\MBAM.txt
2021-11-12 10:02 - 2021-11-12 10:12 - 000000000 ____D C:\AdwCleaner
2021-11-12 10:02 - 2021-11-12 10:02 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2021-11-12 10:02 - 2021-11-12 10:02 - 000210352 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2021-11-12 10:02 - 2021-11-12 10:02 - 000160176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2021-11-12 10:02 - 2021-11-12 10:02 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2021-11-12 10:02 - 2021-11-12 10:02 - 000001999 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-11-12 10:02 - 2021-11-12 10:02 - 000001987 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2021-11-12 10:02 - 2021-11-12 10:02 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-11-12 10:02 - 2021-11-12 10:02 - 000000000 ____D C:\Program Files\Malwarebytes
2021-11-10 11:11 - 2021-11-12 10:14 - 000000000 ____D C:\FRST
2021-11-10 10:00 - 2021-11-10 10:00 - 000021232 _____ (Thesycon GmbH) C:\WINDOWS\system32\Drivers\dpclat_driver.sys
2021-11-10 09:55 - 2021-11-10 09:55 - 000000821 _____ C:\Users\benji\Desktop\LatencyMon.lnk
2021-11-10 09:55 - 2021-11-10 09:55 - 000000809 _____ C:\Users\benji\Desktop\In Depth Latency Tests.lnk
2021-11-10 09:55 - 2021-11-10 09:55 - 000000000 ____D C:\Users\benji\AppData\Local\DBG
2021-11-10 09:55 - 2021-11-10 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LatencyMon
2021-11-10 09:55 - 2021-11-10 09:55 - 000000000 ____D C:\Program Files\LatencyMon
2021-11-10 09:55 - 2015-07-13 11:16 - 000026368 _____ (Resplendence Software Projects Sp.) C:\WINDOWS\system32\Drivers\rspLLL64.sys
2021-11-10 09:24 - 2021-11-10 09:24 - 001328408 _____ C:\WINDOWS\system32\FaceTrackerInternal.dll
2021-11-10 09:24 - 2021-11-10 09:24 - 001321984 _____ C:\WINDOWS\system32\FaceProcessor.dll
2021-11-10 09:24 - 2021-11-10 09:24 - 000503576 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2021-11-10 09:24 - 2021-11-10 09:24 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-11-10 09:24 - 2021-11-10 09:24 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-11-10 09:24 - 2021-11-10 09:24 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-11-10 09:24 - 2021-11-10 09:24 - 000011363 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-11-10 09:20 - 2021-11-10 09:20 - 000000000 ___HD C:\$WinREAgent
2021-11-08 09:11 - 2021-11-08 09:11 - 000001355 _____ C:\Users\benji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2021-11-08 09:11 - 2021-11-08 09:11 - 000000000 ____D C:\Users\benji\AppData\Local\PCHealthCheck
2021-11-04 17:39 - 2021-11-04 17:40 - 000000000 ____D C:\WINDOWS\Minidump
2021-11-04 17:39 - 2021-11-04 17:39 - 1812290699 _____ C:\WINDOWS\MEMORY.DMP
2021-11-04 17:39 - 2021-11-04 17:39 - 001834980 _____ C:\WINDOWS\Minidump\110421-6281-01.dmp
2021-11-04 17:16 - 2021-11-08 10:48 - 000000591 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2021-11-04 11:32 - 2021-11-04 11:32 - 000000941 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk
2021-11-02 12:16 - 2021-11-02 12:16 - 000001029 _____ C:\Users\Public\Desktop\Kontakt.lnk
2021-11-02 12:16 - 2021-11-02 12:16 - 000000000 __HDC C:\ProgramData\{D1F4AB0B-D2A0-4B7F-921B-3369B7D7567C}
2021-11-02 12:13 - 2021-11-02 12:13 - 000001093 _____ C:\Users\Public\Desktop\Native Access.lnk
2021-11-02 12:13 - 2021-11-02 12:13 - 000000000 __HDC C:\ProgramData\{2223478A-85F2-4C4F-9CE3-1404B8DD8A23}
2021-11-02 12:11 - 2021-11-02 12:11 - 000002126 _____ C:\Users\Public\Desktop\WaveLab Elements 11.lnk
2021-11-02 12:11 - 2021-11-02 12:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steinberg WaveLab Elements 11
2021-11-01 16:20 - 2021-11-01 16:20 - 000001203 _____ C:\Users\benji\Desktop\Logitech Capture.lnk
2021-11-01 15:49 - 2021-11-01 15:49 - 000000000 ____D C:\Users\benji\AppData\Roaming\Logishrd
2021-11-01 15:47 - 2021-11-01 15:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2021-11-01 15:47 - 2021-11-01 15:47 - 000000000 ____D C:\Program Files\Logitech
2021-11-01 15:46 - 2021-11-01 15:46 - 000000000 ____D C:\Users\benji\AppData\Local\Logitech
2021-10-27 14:49 - 2021-10-27 14:49 - 000002655 _____ C:\Users\Public\Desktop\Superior Drummer 3.lnk
2021-10-22 11:04 - 2021-10-22 11:04 - 000000879 _____ C:\Users\Public\Desktop\HandBrake.lnk
2021-10-22 11:04 - 2021-10-22 11:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HandBrake
2021-10-21 15:33 - 2021-10-21 15:33 - 000002049 _____ C:\Users\Public\Desktop\Cubase 11.lnk
2021-10-21 15:33 - 2021-10-21 15:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steinberg Cubase 11
2021-10-21 15:32 - 2021-10-21 15:32 - 000000000 ____D C:\Users\benji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steinberg HALion Sonic SE
2021-10-13 14:45 - 2021-10-13 14:45 - 000000000 ____D C:\Program Files\Common Files\Intel
2021-10-13 11:14 - 2021-10-13 11:14 - 000706536 _____ C:\WINDOWS\system32\TextShaping.dll
2021-10-13 11:14 - 2021-10-13 11:14 - 000611960 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2021-11-12 10:13 - 2021-03-02 14:49 - 000000000 ____D C:\ProgramData\Veeam
2021-11-12 10:09 - 2019-12-11 16:22 - 000007602 _____ C:\Users\benji\AppData\Local\Resmon.ResmonCfg
2021-11-12 10:06 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-11-12 10:02 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-11-12 10:01 - 2020-05-29 13:21 - 000004166 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{F467C09D-8EE1-4318-AB72-2DB4E63F7A1D}
2021-11-12 09:59 - 2020-05-29 13:58 - 000817510 _____ C:\WINDOWS\system32\perfh013.dat
2021-11-12 09:59 - 2020-05-29 13:58 - 000172330 _____ C:\WINDOWS\system32\perfc013.dat
2021-11-12 09:59 - 2020-05-29 13:16 - 002825628 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-11-12 09:59 - 2019-12-07 15:50 - 000785790 _____ C:\WINDOWS\system32\perfh007.dat
2021-11-12 09:59 - 2019-12-07 15:50 - 000167904 _____ C:\WINDOWS\system32\perfc007.dat
2021-11-12 09:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-11-12 09:54 - 2021-03-02 12:05 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-11-12 09:54 - 2020-12-25 12:50 - 000000000 ____D C:\Users\benji\AppData\Roaming\WTablet
2021-11-12 09:54 - 2020-05-29 13:21 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-11-12 09:54 - 2020-05-29 13:10 - 000008192 ___SH C:\DumpStack.log.tmp
2021-11-12 09:54 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-11-12 09:54 - 2019-06-23 22:14 - 000000000 __SHD C:\Users\benji\IntelGraphicsProfiles
2021-11-11 18:18 - 2019-12-07 10:03 - 002097152 _____ C:\WINDOWS\system32\config\BBI
2021-11-11 17:11 - 2019-09-04 11:12 - 000000000 ____D C:\ProgramData\boost_interprocess
2021-11-11 17:02 - 2020-05-29 13:10 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-11-11 14:10 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-11-11 14:10 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-11-10 17:45 - 2020-07-19 12:50 - 000000000 ____D C:\Users\benji\AppData\Local\CrashDumps
2021-11-10 10:12 - 2021-09-14 16:24 - 000000000 ____D C:\Users\benji\AppData\Roaming\Celemony Software GmbH
2021-11-10 10:12 - 2020-02-10 16:20 - 000000000 ____D C:\temp
2021-11-10 09:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-11-10 09:28 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-11-10 09:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-11-10 09:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-11-10 09:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-11-10 09:25 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-11-10 09:20 - 2019-06-25 10:25 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-11-10 09:19 - 2020-08-03 11:40 - 000000000 ____D C:\Program Files\dotnet
2021-11-10 09:19 - 2019-06-25 10:25 - 141529560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-11-10 09:19 - 2019-06-25 10:15 - 000000000 ____D C:\ProgramData\Package Cache
2021-11-08 09:13 - 2020-01-16 15:30 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-11-08 09:08 - 2021-06-22 14:00 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2021-11-06 10:32 - 2020-05-29 13:21 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2021-11-06 10:32 - 2019-10-08 15:11 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-11-04 18:21 - 2020-05-29 13:10 - 000000000 ____D C:\Users\benji
2021-11-04 14:33 - 2020-11-26 11:52 - 000000000 ____D C:\Program Files\Common Files\Adobe
2021-11-04 14:33 - 2019-06-25 10:51 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2021-11-04 14:33 - 2019-06-25 10:44 - 000000000 ____D C:\ProgramData\Adobe
2021-11-04 14:33 - 2019-06-23 22:07 - 000000000 ____D C:\Users\benji\AppData\Roaming\Adobe
2021-11-04 11:54 - 2019-06-23 22:07 - 000000000 ____D C:\Users\benji\AppData\Local\Packages
2021-11-04 11:32 - 2019-07-16 10:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2021-11-04 11:32 - 2019-07-16 10:48 - 000000000 ____D C:\Program Files\CPUID
2021-11-03 16:13 - 2019-06-25 10:25 - 000000000 ____D C:\Users\benji\AppData\Local\D3DSCache
2021-11-03 15:56 - 2020-02-14 09:03 - 000000000 ____D C:\Users\benji\AppData\Roaming\HandBrake
2021-11-03 14:30 - 2020-03-25 10:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2021-11-03 13:57 - 2019-06-23 22:01 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-11-02 12:17 - 2019-07-16 10:48 - 000000880 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2021-11-02 12:15 - 2021-05-28 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Native Instruments
2021-11-02 12:15 - 2021-03-04 11:29 - 000000000 ____D C:\Program Files\Native Instruments
2021-11-02 12:15 - 2019-06-25 10:54 - 000000000 ____D C:\Program Files\Common Files\VST3
2021-11-02 12:13 - 2021-03-04 11:29 - 000000000 ____D C:\Users\benji\AppData\Roaming\Native Instruments
2021-11-02 12:13 - 2021-03-04 11:29 - 000000000 ____D C:\Users\benji\AppData\Local\Native Instruments
2021-11-02 12:11 - 2020-02-10 16:19 - 000000000 ____D C:\ProgramData\6BCCA8C5-7E69-4622-BCCA-9FAC488059BD
2021-11-02 12:11 - 2019-06-25 20:00 - 000000000 ____D C:\Program Files\Steinberg
2021-11-02 12:10 - 2019-06-25 20:00 - 000001286 _____ C:\Users\Public\Desktop\eLicenser Control Center.lnk
2021-11-02 12:10 - 2019-06-25 19:54 - 000000049 _____ C:\WINDOWS\SysWOW64\SYNSOPOS.exe.cfg
2021-11-02 12:10 - 2019-06-25 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eLicenser
2021-11-02 12:10 - 2019-06-25 19:54 - 000000000 ____D C:\Program Files\eLicenser
2021-11-02 12:09 - 2019-06-25 19:54 - 000000000 ____D C:\Program Files (x86)\eLicenser
2021-11-02 12:00 - 2020-05-29 13:10 - 001647168 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-11-02 12:00 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-11-02 12:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-11-02 12:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-11-02 12:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-11-02 12:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-11-02 12:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-11-02 12:00 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-11-01 15:41 - 2019-06-25 10:34 - 000000000 ____D C:\Program Files\Microsoft Office
2021-10-27 14:49 - 2019-07-16 13:00 - 000000000 ____D C:\ProgramData\Toontrack
2021-10-27 14:49 - 2019-06-27 15:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Toontrack
2021-10-27 14:47 - 2020-07-19 12:37 - 000002655 _____ C:\Users\Public\Desktop\EZbass.lnk
2021-10-26 09:08 - 2019-06-25 18:50 - 000000000 ____D C:\Users\benji\AppData\Roaming\JamOrigin
2021-10-24 14:37 - 2019-06-25 19:21 - 000000000 ____D C:\ProgramData\Steinberg
2021-10-24 14:26 - 2019-06-25 10:03 - 000000000 ____D C:\ProgramData\Packages
2021-10-22 11:43 - 2019-09-08 11:13 - 000000000 ____D C:\Users\benji\AppData\Roaming\ScreenToGif
2021-10-22 11:05 - 2021-05-01 10:33 - 001499904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01007.dll
2021-10-22 11:05 - 2021-05-01 10:33 - 000033416 _____ C:\WINDOWS\system32\Drivers\iLokDrvr.sys
2021-10-22 11:05 - 2020-02-21 12:08 - 000000000 ____D C:\Program Files (x86)\iLok License Manager
2021-10-22 11:05 - 2019-06-25 10:55 - 000002092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iLok License Manager.lnk
2021-10-22 11:05 - 2019-06-25 10:55 - 000002080 _____ C:\Users\Public\Desktop\iLok License Manager.lnk
2021-10-22 11:05 - 2019-06-25 10:16 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-10-22 11:04 - 2020-02-14 09:03 - 000000000 ____D C:\Program Files\HandBrake
2021-10-22 10:45 - 2019-06-23 22:07 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-10-21 15:34 - 2021-02-19 16:56 - 000002145 _____ C:\Users\Public\Desktop\SpectraLayers 7.lnk
2021-10-21 15:34 - 2021-02-19 16:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steinberg SpectraLayers 7
2021-10-21 15:34 - 2019-06-25 18:44 - 000000000 ____D C:\Program Files\VSTPlugins
2021-10-21 15:33 - 2019-06-25 19:54 - 000000000 ____D C:\Users\benji\AppData\Roaming\Steinberg
2021-10-21 15:32 - 2020-11-14 15:55 - 000002272 _____ C:\Users\benji\Desktop\HALion Sonic SE.lnk
2021-10-16 14:38 - 2019-06-25 20:03 - 000000000 ____D C:\Users\benji\AppData\Roaming\Universal Audio
2021-10-13 14:23 - 2020-05-29 13:21 - 000003522 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2021-10-13 11:04 - 2020-06-11 13:57 - 000002142 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-10-13 11:03 - 2020-05-29 13:21 - 000003700 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-10-13 11:03 - 2020-05-29 13:21 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-10-13 11:01 - 2021-02-22 09:40 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2019-06-25 20:33 - 2019-06-25 20:33 - 000000604 ____H () C:\Program Files (x86)\_43_S
2020-03-25 12:13 - 2020-03-25 12:13 - 000038526 _____ () C:\Users\benji\AppData\Roaming\Durch Trennzeichen getrennte Werte.ADR
2020-03-25 12:17 - 2020-04-20 14:21 - 000009413 _____ () C:\Users\benji\AppData\Roaming\Durch Trennzeichen getrennte Werte.EML
2019-07-18 13:31 - 2019-07-18 13:31 - 000000000 _____ () C:\Users\benji\AppData\Local\oobelibMkey.log
2019-12-11 16:22 - 2021-11-12 10:09 - 000007602 _____ () C:\Users\benji\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 09-11-2021
durchgeführt von benji (12-11-2021 10:15:27)
Gestartet von D:\*****\Downloads
Microsoft Windows 10 Home Version 21H1 19043.1348 (X64) (2020-05-29 12:21:08)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
Administrator (S-1-5-21-2387332320-4032506910-2073639800-500 - Administrator - Disabled)
annou (S-1-5-21-2387332320-4032506910-2073639800-1002 - Limited - Disabled)
avisc (S-1-5-21-2387332320-4032506910-2073639800-1003 - Limited - Disabled)
benji (S-1-5-21-2387332320-4032506910-2073639800-1001 - Administrator - Enabled) => C:\Users\benji
DefaultAccount (S-1-5-21-2387332320-4032506910-2073639800-503 - Limited - Disabled)
Gast (S-1-5-21-2387332320-4032506910-2073639800-501 - Limited - Disabled)
noahs (S-1-5-21-2387332320-4032506910-2073639800-1004 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2387332320-4032506910-2073639800-504 - Limited - Disabled)
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
1394 OHCI Compliant Host Controller (Legacy) (HKLM-x32\...\{B12878BB-DA05-4F25-96E7-E0200428B220}) (Version: 0.0.1 - Microsoft Corporation)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 21.007.20099 - Adobe Systems Incorporated)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: - Adobe)
Advanced Renamer (HKLM\...\Advanced Renamer_is1) (Version: 3.87 - Hulubulu Software)
Allen and Heath Firewire 4.1.0.14624 (HKLM\...\Allen and Heath Firewire_is1) (Version: 4.1.0.14624 - Allen and Heath Ltd.)
ANT Drivers Installer x64 (HKLM\...\{C0ED0478-22DD-4756-B144-EB87A26956AC}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Avid License Control (HKLM-x32\...\{F187D064-F101-4E95-8D05-4027809AA0F8}) (Version: 3.0.1 - Avid Technology, Inc.)
Axe-Edit 3.14.6 (HKLM-x32\...\{0B2FECD3-B4EF-4071-9546-7529D90BAA99}_is1) (Version: - Fractal Audio)
BlasterX Senz3D (HKLM-x32\...\{111F12F4-87FF-4FAC-83CB-2499EBF3D6EF}) (Version: 1.02.09 - Creative Technology Limited)
Bome Virtual MIDI 2.1.0.44 (HKLM\...\BMIDI_Driver1.0.0.11_is1) (Version: - Bome Software GmbH & Co. KG)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
CPUID CPU-Z 1.98 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.98 - CPUID, Inc.)
CPUID HWMonitor 1.45 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.45 - CPUID, Inc.)
CrystalDiskMark 8.0.1 (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.1 - Crystal Dew World)
CyberLink MediaEspresso 7 (HKLM-x32\...\{F6C47233-40F6-4076-89A9-68B43C2AF5C5}) (Version: 7.0.6909_59349 - CyberLink Corp.)
CyberLink Power2Go 9 (HKLM-x32\...\InstallShield_{57D68FAE-CB5E-4fd6-AE3B-A0B43375AF18}) (Version: 9.0.2602.0 - CyberLink Corp.)
CyberLink PowerDVD 13 (HKLM-x32\...\InstallShield_{3CFDF154-7E60-4E98-A8DF-C693A4F8E6B6}) (Version: 13.0.8703.62 - CyberLink Corp.)
Dexed version 0.9.4 (HKLM\...\Dexed_is1) (Version: 0.9.4 - Digital Suburban)
DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC)
Easy Poster Printer (HKLM-x32\...\{085AFF3B-459B-4B8D-9366-F2DC4452D73B}) (Version: 6.8.0 - GD Software)
Elevated Installer (HKLM-x32\...\{630B9854-94D6-42AD-BA59-3CFE0C8A651A}) (Version: 7.2.2.0 - Garmin Ltd or its subsidiaries) Hidden
eLicenser Control (HKLM-x32\...\eLicenser Control) (Version: 6.12.8.1298 - Steinberg Media Technologies GmbH)
E-MU USB-MIDI Windows Drivers (HKLM-x32\...\E-MU USB MIDI Windows Drivers Hotfix) (Version: - )
EW Installation Center (HKLM\...\{EW Installation Center}}_is1) (Version: 1.4.3 - EastWest Sounds, Inc.)
EW PRODUCT INSTALLER 7.2.3 (HKLM-x32\...\EW PRODUCTS_is1) (Version: 7.2.3 - EastWest Sounds, Inc.)
EZbass (HKLM\...\{10E45B55-3F6B-4ADB-9B70-A3D42D17BDCC}) (Version: 1.0.0 - Toontrack)
EZbass Software Update (HKLM\...\{0DFAC2AE-2736-4ADC-A2C6-9D9CE3DEF3DD}) (Version: 1.1.1 - Toontrack)
EZdrummer 2 64-bit (HKLM\...\{B9217824-0EBE-49C7-98A0-A76CC46BBB7D}) (Version: 2.0.2 - Toontrack)
EZdrummer 2 64-bit Update (HKLM\...\{CFFABFEB-AD0D-4811-B09F-849B19B8FE78}) (Version: 2.2.2 - Toontrack)
EZkeys Software Player 64-bit (HKLM\...\{C8983F26-7DE5-455D-A578-7848A6B3F1C9}) (Version: 1.3.2 - Toontrack)
EZkeys Upright Piano 64 (HKLM\...\{5CC4AF6E-B273-497B-BF7E-9B6E35EBB0E0}) (Version: 1.0.1 - Toontrack)
Fast Duplicate File Finder Professional 4.9.0.1 (HKLM-x32\...\{AFECFED6-0A43-488F-8511-1DC6B52F31C3}_is1) (Version: 4.9.0.1 - MindGems, Inc.)
Finale NotePad 2012 (HKLM-x32\...\Finale NotePad 2012) (Version: 2012..r1.5 - MakeMusic)
Fractal Audio Systems USB Audio Driver v2.23.0 (HKLM-x32\...\Fractal Audio Systems USB Audio Driver v2.23.0) (Version: 2.23.0 - Fractal Audio Systems)
Fractal Audio Systems USB Driver Package 2014.06.06 (HKLM\...\{E992CC59-71FD-4199-B04E-6274F7439EA0}_is1) (Version: 2014.06.06 - Fractal Audio Systems)
Fractal-Bot 3.0.8 (HKLM-x32\...\{6DBF83F6-BE11-414D-82DC-58C414CACF35}_is1) (Version: - Fractal Audio)
Garmin Express (HKLM-x32\...\{49d6ae2b-f5db-460c-a653-4c7377ee40be}) (Version: 7.2.2.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{82990251-B13D-419D-A106-7896A8B1F051}) (Version: 7.2.2.0 - Garmin Ltd or its subsidiaries) Hidden
GStreamer 1.14.2 for Transcribe! (HKLM-x32\...\com.seventhstring.GStreamer_is1) (Version: 1.14.2 - )
GStreamer 1.18.4 for Transcribe! (64-bit) (HKLM\...\com.seventhstring.GStreamer_is1) (Version: 1.18.4 - )
Guitar Pro 7 - Soundbanks (HKLM-x32\...\com.arobas-music.guitarpro7-soundbanks_is1) (Version: 1.1.123 - Arobas Music)
Guitar Pro 7 (HKLM-x32\...\{BF4EDCFF-ED20-4AF6-A636-EBAC931336CD}_is1) (Version: 7.5.5.1844 - Arobas Music)
HandBrake 1.4.2 (HKLM-x32\...\HandBrake) (Version: 1.4.2 - )
HiSuite (HKLM-x32\...\Hi Suite) (Version: 9.1.0.309 - )
HWiNFO64 Version 6.08 (HKLM\...\HWiNFO64_is1) (Version: 6.08 - Martin Malik - REALiX)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.5161 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{c6cff78a-cccb-49d5-be68-ae0ec5f0d48a}) (Version: 10.1.1.8 - Intel(R) Corporation) Hidden
Intel® RealSense™ Depth Camera Manager Gold (x86): dptf_com (HKLM-x32\...\{7AF37B0F-CEBD-11EB-A63E-A0510BE9AF3A}) (Version: 2.3.101.9447 - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager SR300 Gold (x86): Intel® RealSense™ 3D camera SR300 IO module (HKLM-x32\...\{7AF59DEE-CEBD-11EB-AD80-A0510BE9AF3A}) (Version: 3.4.101.9447 - Intel Corporation) Hidden
Intel® RealSense™ Depth Camera Manager SR300 Gold (x86): Intel® RealSense™ Depth Camera Manager Service (HKLM-x32\...\{869318E1-CEBD-11EB-8C5A-A0510BE9AF3A}) (Version: 3.4.101.9447 - Intel Corporation) Hidden
Intel® RealSense™ Tiefenkamera-Manager SR300 (HKLM-x32\...\ARP_for_prd_dcm_runtime_sr300_3.4.101.9447) (Version: 3.4.101.9447 - Intel Corporation)
Ivory 2.5 (HKLM-x32\...\{49660abf-44ec-4553-bfe4-103969712210}) (Version: 2.5.2.20 - Synthogy, LLC)
Ivory Software Components (HKLM\...\{9103CDEB-5FF3-48CD-9646-5D29ED2CCF86}) (Version: 2.5.2.20 - Synthogy, LLC) Hidden
iZotope Ozone 7 Advanced (HKLM-x32\...\iZotope Ozone 7 Advanced 7.01) (Version: 7.01 - iZotope, Inc.)
JBridge (HKLM-x32\...\JBridge) (Version: - JBridge)
LatencyMon 6.50 (HKLM\...\LatencyMon_is1) (Version: - Resplendence Software Projects Sp.)
Logitech Capture (HKLM\...\Capture) (Version: 2.06.12 - Logitech)
loopMIDI (HKLM-x32\...\{AEAF7978-3204-451D-8593-BC53EBDDA31D}) (Version: 1.0.5.15 - Tobias Erichsen)
MakeMKV v1.15.0 (HKLM-x32\...\MakeMKV) (Version: v1.15.0 - GuinpinSoft inc)
Malwarebytes version 4.4.10.144 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.4.10.144 - Malwarebytes)
marvell 91xx driver (HKLM-x32\...\MagniDriver) (Version: 1.2.0.1039 - Marvell)
Melodyne 5 (HKLM-x32\...\{16DF894D-FC3F-4B87-908D-671E201CD7A8}) (Version: 5.01.01003 - Celemony Software GmbH)
Microsoft 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.14527.20234 - Microsoft Corporation)
Microsoft 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.14527.20234 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 95.0.1020.44 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 95.0.1020.44 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 21.205.1003.0005 - Microsoft Corporation)
Microsoft OneNote - de-de (HKLM\...\OneNoteFreeRetail - de-de) (Version: 16.0.14527.20234 - Microsoft Corporation)
Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{C18B132E-4032-4425-826A-24B1CA9DFF0C}) (Version: 11.4.7001.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{7ED2561C-FBC2-421E-A2B5-C7BEFD623145}) (Version: 11.4.7001.0 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{CECCBAE9-1880-411E-9D28-8E562F6DAAE2}) (Version: 11.4.7001.0 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\Teams) (Version: 1.4.00.4167 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29914 (HKLM-x32\...\{43d1ce82-6f55-4860-a938-20e5deb28b98}) (Version: 14.28.29914.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.26.28720 (HKLM-x32\...\{86380aef-fd23-4fc3-8723-a98ccad8f2c6}) (Version: 14.26.28720.3 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.21 (x64) (HKLM-x32\...\{4be70f3b-2d71-4c79-adc0-d1f1221e41b1}) (Version: 3.1.21.30622 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 5.0.12 (x64) (HKLM-x32\...\{ce8037d8-35f7-4142-ad18-23609ac5db17}) (Version: 5.0.12.30623 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 13.221.137.0 - Microsoft Corporation)
MIDI Guitar 2 version 2.2.1.0 (HKLM\...\MIDI Guitar 2_is1) (Version: 2.2.1.0 - )
MKVToolNix 43.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 43.0.0 - Moritz Bunkus)
Mp3tag v2.81 (HKLM-x32\...\Mp3tag) (Version: 2.81 - Florian Heidenreich)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
Native Instruments Kontakt (HKLM-x32\...\Native Instruments Kontakt) (Version: 6.6.1.139 - Native Instruments)
Native Instruments Native Access (HKLM-x32\...\Native Instruments Native Access) (Version: 1.13.5.139 - Native Instruments)
Neuratron PhotoScore && NotateMe Ultimate (HKLM-x32\...\Neuratron PhotoScore && NotateMe Ultimate) (Version: 9.0.0 - Neuratron Ltd)
Nitro Pro (HKLM\...\{C96C14B3-5E41-49E5-AAB5-22832C08CAED}) (Version: 13.15.1.282 - Nitro) Hidden
Nitro Pro (HKLM-x32\...\{b6447f4a-7f1e-4f4c-b770-5b1e3dafd6f3}) (Version: 13.15.1.282 - Nitro)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.9 - Notepad++ Team)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14527.20234 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14527.20234 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0407-1000-0000000FF1CE}) (Version: 16.0.14527.20234 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0413-1000-0000000FF1CE}) (Version: 16.0.14527.20234 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PACE License Support Win64 (HKLM\...\{5AC4321F-FCD1-4a37-BFCB-E1EB0047CDA4}) (Version: 5.4.1.3706 - PACE Anti-Piracy, Inc.) Hidden
PACE License Support Win64 (HKLM-x32\...\InstallShield_{5AC4321F-FCD1-4a37-BFCB-E1EB0047CDA4}) (Version: 5.4.1.3706 - PACE Anti-Piracy, Inc.)
PLAY 6.1.9 (HKLM-x32\...\EW PLAY_is1) (Version: 6.1.9 - EastWest Sounds, Inc.)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Rename Master (HKLM-x32\...\Rename Master_is1) (Version: - )
R-Link 2 Toolbox (HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\{R-Link 2 Toolbox}}_is1) (Version: 1.7.3 - Renault)
Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 1.06.60 (17.03.2015) - Samsung Electronics Co., Ltd.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.00.01.24 - HP Printing Korea Co., Ltd.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 5.3.0.1910 - Samsung Electronics)
Samsung NVM Express Driver (HKLM-x32\...\{d6df2f24-bd8d-49bc-b751-fac310b24a4b}) (Version: 3.1.0.1901 - Samsung Electronics)
Samsung NVM Express Driver 3.1.0.1901 (HKLM\...\{DF7667AF-FC11-48A4-9585-7378B5224C1A}) (Version: 3.1.0.1901 - Samsung Electronics Co., Ltd) Hidden
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
Sibelius 7 OpenType Fonts (HKLM-x32\...\{623C2BD8-1B28-4F98-B578-E9D139827269}) (Version: 7.1.3 - Avid)
Sibelius 7.5 (HKLM\...\{BBADBAB3-56A4-444B-834E-D8730B574C3E}) (Version: 7.5.1.209 - Avid Technology)
Skype Version 8.78 (HKLM-x32\...\Skype_is1) (Version: 8.78 - Skype Technologies S.A.)
SNS Upload for Easy Document Creator (HKLM-x32\...\{B6B5F07C-88D5-49D3-A1A7-A6D4BC37DCCC}) (Version: 1.0.0 - Samsung Electronics Co.,Ltd)
Steinberg Cubase 11 (HKLM\...\{49A80F46-11CC-44F9-9FEC-2566FE0AB7A5}) (Version: 11.0.41 - Steinberg Media Technologies GmbH)
Steinberg Dark Planet 64bit (HKLM\...\{52B15329-EA8D-4088-AE8F-BD831D187290}) (Version: 1.0.0 - Steinberg Media Technologies GmbH)
Steinberg Dorico 3.5 (HKLM\...\{E72A482D-E6C4-4B92-B248-3880AD721E8A}) (Version: 3.5.12 - Steinberg Media Technologies GmbH)
Steinberg Download Assistant (HKLM-x32\...\Steinberg Download Assistant) (Version: 1.20.2 - Steinberg Media Technologies GmbH)
Steinberg Generic Lower Latency ASIO Driver 64bit (HKLM\...\{16D5A798-10BE-4FF3-BB71-54C012CD0D7D}) (Version: 1.0.20 - Steinberg Media Technologies GmbH)
Steinberg Groove Agent SE 5 (HKLM\...\{A5AB0D21-21BD-4DB8-F097-02E8FC8C486A}) (Version: 5.0.50 - Steinberg Media Technologies GmbH)
Steinberg Groove Agent SE Acoustic Agent (HKLM-x32\...\{F34EA13C-F078-4003-AE21-43EAB2680EC5}) (Version: 1.0.3 - Steinberg Media Technologies GmbH)
Steinberg HALion Sonic SE 3 Component (HKLM\...\{B99C316B-C135-43B5-8E77-2BC5E241F964}) (Version: 3.4.40 - Steinberg Media Technologies GmbH)
Steinberg HALion Sonic SE Standalone (HKLM\...\{2D64E1A0-02C7-4AED-BCC6-3A5E5C91D6E2}) (Version: 3.4.40 - Steinberg Media Technologies GmbH)
Steinberg HALion Symphonic Orchestra 64bit (HKLM\...\{2980E719-19F3-4329-944A-782A7D723741}) (Version: 1.0.0 - Steinberg Media Technologies GmbH)
Steinberg HALion Symphonic Orchestra VST Sound Instrument Set (HKLM-x32\...\{1312306D-F0A5-4B64-BA34-AC6169A3A098}) (Version: 1.2.0 - Steinberg Media Technologies GmbH)
Steinberg Install Assistant (HKLM\...\{2E7DF371-6034-4FC7-AE30-100AC21A1003}) (Version: 1.0.4 - Steinberg Media Technologies GmbH)
Steinberg Instrument Set Dark Planet (HKLM-x32\...\{7E95B088-EF08-4093-85E1-B0689BDAB35C}) (Version: 1.1.0 - Steinberg Media Technologies GmbH)
Steinberg Library Manager (HKLM\...\{AA78592A-F13C-4C8E-B849-7A398001FA7F}) (Version: 3.1.0 - Steinberg Media Technologies GmbH)
Steinberg Padshop 2 (HKLM\...\{6FBAF5EF-816E-4D80-BFBE-8B237EEA4CD4}) (Version: 2.0.30 - Steinberg Media Technologies GmbH)
Steinberg Retrologue 64bit (HKLM\...\{4D65ECE6-131D-4B5F-8470-2750D3161619}) (Version: 2.2.50 - Steinberg Media Technologies GmbH)
Steinberg REVerence Content 01 (HKLM-x32\...\{532B917B-8235-4FA5-BE36-643A8BB053A5}) (Version: 2.0.1.000 - Steinberg Media Technologies GmbH)
Steinberg SpectraLayers 7 (HKLM\...\424abc1e-aca9-452c-9b47-4g6c6gh53b42_is1) (Version: 7.0.30.251 - Steinberg)
Steinberg Upload Manager (HKLM-x32\...\{88BBBD8F-4C19-4809-B84B-7A8F8238B48D}) (Version: 1.0.2 - Steinberg Media Technologies GmbH)
Steinberg VST Amp Rack Content 01 (HKLM-x32\...\{8CBA7E47-48DA-47DC-8E98-6984BA830295}) (Version: 1.0.1 - Steinberg Media Technologies GmbH)
Steinberg VST Transit 64bit (HKLM\...\{FF1A114C-0F88-11E5-A6C0-1697F925EC7B}) (Version: 1.0.13 - Steinberg Media Technologies GmbH)
Steinberg WaveLab Elements 10.0 (HKLM\...\{CEE5E0EE-A9EA-4A0B-BE6E-5DD242BF5685}) (Version: 10.0.70 - Steinberg Media Technologies GmbH)
Steinberg WaveLab Elements 11 (HKLM\...\{7470D690-0FA2-44E2-AE7E-E5BCFE716BD5}) (Version: 11.0.10 - Steinberg Media Technologies GmbH)
Superior Drummer 3 (HKLM\...\{C556430A-61B1-4B55-8287-B3D6D26F729B}) (Version: 3.2.6 - Toontrack)
Superior Drummer 64-bit (HKLM\...\{0E54CF79-AE40-409E-9253-9563418C730C}) (Version: 2.4.4 - Toontrack)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.15.5 - TeamViewer)
Toontrack Audio Sender (HKLM\...\{B1412021-F4CD-422C-BC8B-CDE9924C371B}) (Version: 1.1.0 - Toontrack)
Toontrack Product Manager (HKLM-x32\...\{5BAE101A-4AF5-4FBA-99E6-1CE2825F8993}) (Version: 1.0.0 - Toontrack)
Toontrack solo 64-bit (HKLM\...\{FA9D0D8C-FDD1-45C2-8291-079FBA72D2CB}) (Version: 1.3.3 - Toontrack)
Transcribe! 9.00.0 (HKLM\...\com.seventhstring.Transcribe_is1) (Version: 9.00 - Seventh String Software)
UAD drivers. This may take a while... (HKLM-x32\...\{55D16842-4E1E-4917-A017-48B09700A273}) (Version: 9.14.5.2390 - Universal Audio, Inc.) Hidden
UAD Powered Plug-Ins (HKLM\...\{8D858241-995D-4F89-BBEE-393A32AF3D6E}) (Version: 9.14.5.2390 - Universal Audio, Inc.) Hidden
UAD Powered Plug-Ins (HKLM\...\{AB48EBD1-F812-4FF4-BD0E-B60D9845520D}) (Version: 9.14.5.2390 - Universal Audio, Inc.) Hidden
UAD Powered Plug-Ins (HKLM-x32\...\{1C012F00-B5AB-41A7-91D2-E228B371032E}) (Version: 9.14.5.2390 - Universal Audio, Inc.) Hidden
UAD Powered Plug-Ins (HKLM-x32\...\{6B682D44-6560-4548-9AF7-CE26C8E541AC}) (Version: 9.14.5.2390 - Universal Audio, Inc.) Hidden
UAD Powered Plug-Ins (HKLM-x32\...\{77e84ed1-e5c1-4b65-9241-a0caa38f74df}) (Version: 9.14.5.2390 - Universal Audio, Inc.)
UAD Powered Plug-Ins (HKLM-x32\...\{EE9B955E-7BDE-4FE0-AFDB-16B2B1229701}) (Version: 9.14.5.2390 - Universal Audio, Inc.) Hidden
UM-ONE Driver (HKLM\...\RolandRDID0115) (Version: - Roland Corporation)
VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden
Veeam Agent for Microsoft Windows (HKLM\...\{092807B0-27B2-451E-84EE-8102153D41CA}) (Version: 5.0.0.4301 - Veeam Software Group GmbH)
Visual Similarity Duplicate Image Finder Professional 6.7.0.1 (HKLM-x32\...\{72D6BE71-2A6F-4D01-809E-A3174D1738A0}_is1) (Version: 6.7.0.1 - MindGems, Inc.)
Voxengo CurveEQ (HKLM\...\Voxengo CurveEQ_is1) (Version: 3.5 - Voxengo)
Voxengo Stereo Touch (HKLM\...\Voxengo Stereo Touch_is1) (Version: 2.8.1 - Voxengo)
Wacom Tablett (HKLM\...\Wacom Tablet Driver) (Version: 6.3.42-2 - Wacom Technology Corp.)
WinDirStat 1.1.2 (HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\WinDirStat) (Version: - )
Windows-PC-Integritätsprüfung (HKLM\...\{AD47C6B2-6C72-4F0E-B66F-7685C28ACDFD}) (Version: 3.3.2110.22002 - Microsoft Corporation)
Windows-Treiberpaket - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Windows-Treiberpaket - Fractal Audio Systems (axefx2load) USB (05/15/2011 1.0.0.9) (HKLM\...\6AEB8A42A154DE456DE5E467C01A582911CB5C6A) (Version: 05/15/2011 1.0.0.9 - Fractal Audio Systems)
Windows-Treiberpaket - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\ZoomUMX) (Version: 5.7.7 (1105) - Zoom Video Communications, Inc.)
Zoom Outlook Plugin (HKLM-x32\...\{90C8CDA8-25A0-47C3-9DB7-E0A3E33EFA17}) (Version: 5.6.3 - Zoom)
Packages:
=========
Affinity Designer -> C:\Program Files\WindowsApps\SerifEuropeLtd.AffinityDesigner_11004.1198.0.0_x64__844sdzfcmm7k0 [2021-11-02] (Serif Europe Ltd)
Affinity Photo -> C:\Program Files\WindowsApps\SerifEuropeLtd.AffinityPhoto_11004.1198.0.0_x64__844sdzfcmm7k0 [2021-11-02] (Serif Europe Ltd)
Affinity Publisher -> C:\Program Files\WindowsApps\SerifEuropeLtd.AffinityPublisher_11004.1198.0.0_x64__844sdzfcmm7k0 [2021-11-02] (Serif Europe Ltd)
Amazon Assistant -> C:\Program Files\WindowsApps\Amazon.com.AmazonAssistant_10.1910.9.0_neutral__343d40qqvtj1t [2019-12-17] (Amazon.com)
Drawboard PDF -> C:\Program Files\WindowsApps\DRAWBOARD.DRAWBOARDPDF_6.6.7.0_x64__gqbn7fs4pywxm [2021-11-11] (Drawboard)
DWD WarnWetter -> C:\Program Files\WindowsApps\DeutscherWetterdienst.DWDWarnWetter_1.9.2.0_x64__ea15zn9khdvwy [2019-06-25] (Deutscher Wetterdienst)
Fotos-Add-On -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-11-04] (Microsoft Corporation)
Fresh Paint -> C:\Program Files\WindowsApps\Microsoft.FreshPaint_3.1.10383.1000_x86__8wekyb3d8bbwe [2020-12-31] (Microsoft Corporation)
Google Maps -> C:\Program Files\WindowsApps\www.google.de-E0D29419_1.0.0.3_neutral__242r1gb6pg1pg [2021-09-28] (www.google.de)
HEVC-Videoerweiterungen -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_1.0.42702.0_x64__8wekyb3d8bbwe [2021-10-21] (Microsoft Corporation)
Media Engine-Add-On für Fotos -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-04] (Microsoft Corporation)
Metronom -> C:\Program Files\WindowsApps\12199Asparion.Metronom_3.0.4.0_x64__f89vgcf3qm37t [2020-11-19] (Asparion) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-06-25] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-06-25] (Microsoft Corporation) [MS Ad]
Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.56.43053.0_x64__8wekyb3d8bbwe [2021-11-03] (Microsoft Corporation) [Startup Task]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_51.0.137.0_x64__8wekyb3d8bbwe [2021-11-10] (Microsoft Corporation)
MPEG-2-Videoerweiterung -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.42152.0_x64__8wekyb3d8bbwe [2021-08-20] (Microsoft Corporation)
myTube Beta -> C:\Program Files\WindowsApps\59750RykenApps.myTubeBeta_4.0.16.0_x64__zd92nzxdcatqw [2021-11-02] (Ryken Studio)
Raw Image Extension -> C:\Program Files\WindowsApps\Microsoft.RawImageExtension_1.0.41311.0_x64__8wekyb3d8bbwe [2021-08-04] (Microsoft Corporation)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2019-06-25] (Samsung Electronics Co. Ltd.)
ScreenToGif -> C:\Program Files\WindowsApps\33823Nicke.ScreenToGif_2.34.0.0_neutral__99xjgbc30gqtw [2021-09-28] (Nicke)
Steinberg Forums -> C:\Program Files\WindowsApps\forums.steinberg.net-C59F1975_1.0.0.2_neutral__nppzdakyq6tn8 [2021-09-28] (forums.steinberg.net)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-11-01] (Twitter Inc.)
WhatsApp Desktop -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2142.12.0_x64__cv1g1gvanyjgm [2021-11-06] (WhatsApp Inc.)
Zattoo Live TV -> C:\Program Files\WindowsApps\ZattooEuropaAG.ZattooLiveTV_5.2121.3723.0_x64__cwpjhwd4pd0ma [2021-05-28] (Zattoo Europa AG)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-2387332320-4032506910-2073639800-1001_Classes\CLSID\{0047ADBE-9F73-CAFE-3A65-ACE857BB2021}\localserver32 -> "C:\Program Files\Adobe\Elements 2021 Organizer\Elements Auto Creations 2021.exe" -toastactivated => Keine Datei
CustomCLSID: HKU\S-1-5-21-2387332320-4032506910-2073639800-1001_Classes\CLSID\{0047ADBE-9F73-CAFE-3A65-ACE857BB2022}\localserver32 -> "C:\Program Files\Adobe\Elements 2022 Organizer\Elements Auto Creations 2022.exe" -toastactivated => Keine Datei
CustomCLSID: HKU\S-1-5-21-2387332320-4032506910-2073639800-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive - Personal] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-2387332320-4032506910-2073639800-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\benji\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20289.5\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2387332320-4032506910-2073639800-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2020-09-24] (Notepad++ -> )
ContextMenuHandlers1-x32: [ARenGUID_ContextMenuEntry] -> {E30FF514-33BF-4C2F-A3BD-83C26DC7325C} => C:\Program Files\Advanced Renamer\arencm.dll [2014-04-04] (Kim Jensen) [Datei ist nicht signiert]
ContextMenuHandlers1: [ARenGUID_ContextMenuEntry64] -> {85EF5100-D10C-11E1-82EF-B60A140DCD93} => C:\Program Files\Advanced Renamer\arencm64.dll [2014-11-29] (Kim Jensen) [Datei ist nicht signiert]
ContextMenuHandlers1: [CLVDShellExt9] -> {4E20B104-5D9F-4E01-A01E-100F08E345C9} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt9_20190625_15_15_28.dll [2015-02-05] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2017-02-17] (Florian Heidenreich) [Datei ist nicht signiert]
ContextMenuHandlers1: [Nitro.Pro.ShellExtension.Shim] -> {211B6F25-950C-49CD-AB86-A448EF85686A} => C:\Program Files\Common Files\Nitro\Nitro.Pro.ShellExtension.Shim.dll [2020-03-13] (Nitro Software, Inc. -> Nitro Software, Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [CLVDShellExt9] -> {4E20B104-5D9F-4E01-A01E-100F08E345C9} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt9_20190625_15_15_28.dll [2015-02-05] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers2: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2017-02-17] (Florian Heidenreich) [Datei ist nicht signiert]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-11-12] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4-x32: [ARenGUID_ContextMenuEntry] -> {E30FF514-33BF-4C2F-A3BD-83C26DC7325C} => C:\Program Files\Advanced Renamer\arencm.dll [2014-04-04] (Kim Jensen) [Datei ist nicht signiert]
ContextMenuHandlers4: [ARenGUID_ContextMenuEntry64] -> {85EF5100-D10C-11E1-82EF-B60A140DCD93} => C:\Program Files\Advanced Renamer\arencm64.dll [2014-11-29] (Kim Jensen) [Datei ist nicht signiert]
ContextMenuHandlers4: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2017-02-17] (Florian Heidenreich) [Datei ist nicht signiert]
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\21.205.1003.0005\FileSyncShell64.dll [2021-11-06] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2020-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-11-12] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Drivers32: [vidc.DIVX] => C:\Windows\SysWOW64\DivX.dll [720384 2010-02-19] (DivX, Inc.) [Datei ist nicht signiert]
HKLM\...\Drivers32: [vidc.yv12] => C:\Windows\SysWOW64\DivX.dll [720384 2010-02-19] (DivX, Inc.) [Datei ist nicht signiert]
==================== Verknüpfungen & WMI ========================
==================== Geladene Module (Nicht auf der Ausnahmeliste) =============
2021-02-03 10:53 - 2014-11-29 22:55 - 000656896 _____ (Kim Jensen) [Datei ist nicht signiert] C:\Program Files\Advanced Renamer\arencm64.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
AlternateDataStreams: C:\ProgramData:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\ProgramData:AC2347AA8E7BFAAC [217]
AlternateDataStreams: C:\ProgramData:B3288E071D841949 [217]
AlternateDataStreams: C:\Windows:nlsPreferences [386]
AlternateDataStreams: C:\Users\All Users:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\Users\All Users:AC2347AA8E7BFAAC [217]
AlternateDataStreams: C:\Users\All Users:B3288E071D841949 [217]
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:482EE99B1E21CE8C [217]
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:AC2347AA8E7BFAAC [217]
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:B3288E071D841949 [217]
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================
==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs
BHO: NitroPDF.IE.Sharepoint -> {3BFAE61D-4A6D-4467-9E5E-FE5293D10F9F} -> C:\Program Files\Nitro\Pro\13\npnitroie.dll [2020-03-13] (Nitro Software, Inc. -> Nitro Software, Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: NitroPDF.IE.Sharepoint -> {3BFAE61D-4A6D-4467-9E5E-FE5293D10F9F} -> C:\Program Files (x86)\Nitro\Pro\13\npnitroie.dll [2020-03-13] (Nitro Software, Inc. -> Nitro Software, Inc.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts Inhalt: =========================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2020-10-04 10:07 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2021-11-04 17:16 - 2021-11-08 10:48 - 000000591 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
92.168.137.66 BenjiDell.mshome.net # 2021 11 5 12 13 18 24 909
192.168.137.180 HUAWEI_Mate_20_Pro-fade01.mshome.net # 2021 11 5 12 10 25 18 497
97
==================== Andere Bereiche ===========================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\benji\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\internet explorer wallpaper.bmp
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
HKLM\...\StartupApproved\StartupFolder: => "NTKDaemon.lnk"
HKLM\...\StartupApproved\StartupFolder: => "NIHardwareAccessibilityHelper.exe.lnk"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "Logitech Download Assistant"
HKLM\...\StartupApproved\Run: => "Nitro System Tray"
HKLM\...\StartupApproved\Run: => "Veeam.EndPoint.Tray.exe"
HKLM\...\StartupApproved\Run: => "AdobePSE20AutoAnalyzer"
HKLM\...\StartupApproved\Run32: => "CLMLServer_For_P2G9"
HKLM\...\StartupApproved\Run32: => "CLVirtualDrive9"
HKLM\...\StartupApproved\Run32: => "DivXUpdate"
HKLM\...\StartupApproved\Run32: => "PowerDVD13Agent"
HKLM\...\StartupApproved\Run32: => "Creative HID Task"
HKLM\...\StartupApproved\Run32: => "Creative Audio Task"
HKLM\...\StartupApproved\Run32: => "Intel Driver & Support Assistant"
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\StartupApproved\StartupFolder: => "An OneNote senden.lnk"
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\StartupApproved\Run: => "Power2GoExpress9"
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\StartupApproved\Run: => "GarminExpress"
HKU\S-1-5-21-2387332320-4032506910-2073639800-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_B9B057F13E8261F387166E937D6ED4AC"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{BD32B640-A695-41DE-BB0A-350C2CEEF5B1}] => (Allow) C:\Users\benji\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{95C3153E-18D3-4DA0-8C1C-69E8BC2929F1}] => (Allow) C:\Users\benji\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{E7F8E14A-134B-4C27-B777-CF809E81701B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Movie\PowerDVD Cinema\PowerDVDCinema13.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{792A5922-D3DE-447C-85FD-1B4931FCF9C9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{9F9CBAB8-2D28-493A-9354-4DF4059DCE50}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13ML.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{87529624-EF96-4290-A210-1E190251E159}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13Agent.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{9BE24340-9BE6-4374-9A0E-F9ED1A90CAD5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMS\CLMSServerPDVD13.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{02F7A03C-7094-43ED-84E7-ECFDCBD3DFC3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\Kernel\DMR\PowerDVD13DMREngine.exe => Keine Datei
FirewallRules: [{67055D37-9CD7-4B2E-88F1-B0EDD8005ED9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD13\PowerDVD13.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [UDP Query User{EAE42C37-92DB-4F1C-AA81-F1C8D408A87F}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe (HP Inc. -> )
FirewallRules: [TCP Query User{FD2611A4-1C99-4429-A7A4-0A4BB37AF6E9}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe (HP Inc. -> )
FirewallRules: [UDP Query User{06DBC7CA-A662-4E06-93ED-B39AE7D90770}C:\program files\common files\common desktop agent\cdasrv.exe] => (Allow) C:\program files\common files\common desktop agent\cdasrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{2A87F6B4-A594-41A6-ABE5-88533347EBD6}C:\program files\common files\common desktop agent\cdasrv.exe] => (Allow) C:\program files\common files\common desktop agent\cdasrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9A09785B-A451-4A60-81BE-F0BBFF14B547}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{0F86F150-A8B8-4494-8738-464A271BE319}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{175F5FB8-8EE3-4AD5-98B8-3DDCA3602D39}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{C019386B-ACBF-4488-BDC1-6408FD9CE0DE}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{60BD100D-AE0B-4769-9869-51ADC3438798}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> )
FirewallRules: [{5BE78D4B-1556-4711-9180-8A2624389400}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{3CF56E2D-C174-468B-8041-5066FD70ECEC}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{A7A9BE79-59A0-46D8-9285-FE4AE4145960}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{5F4039F7-3F7A-445F-8F6D-EB4DD940A201}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [UDP Query User{740BB8D9-2044-48C6-A0E4-B3377ED8FA5E}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{0AFBE750-A090-4C41-A16F-C93D9EB38AD3}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{1C531DB9-31CD-41E0-B1F7-020164811DF4}] => (Allow) LPort=51113
FirewallRules: [{FA44C986-A96A-4DC0-B5EE-9892686BCBB3}] => (Allow) LPort=51112
FirewallRules: [{50E824EE-7C7B-4AD1-901C-A3B7E9B5968C}] => (Allow) LPort=51111
FirewallRules: [{C4BD3006-4928-4079-8344-F9C99A2766A3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{E5201CA1-DDA9-4467-8654-92DF7DD81336}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CD0DEE11-2E64-4C82-9A9D-3C3FBF44887A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9591C866-A484-4EFF-880C-F218E754C835}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FE9B08DC-88C3-4CBF-B1CC-1D76760B5BB7}C:\program files\steinberg\dorico3.5\dorico web helper.exe] => (Allow) C:\program files\steinberg\dorico3.5\dorico web helper.exe (Steinberg Media Technologies GmbH -> )
FirewallRules: [UDP Query User{C80D494F-FE93-4DA0-A767-DB89287156FD}C:\program files\steinberg\dorico3.5\dorico web helper.exe] => (Allow) C:\program files\steinberg\dorico3.5\dorico web helper.exe (Steinberg Media Technologies GmbH -> )
FirewallRules: [{C09080D7-7D05-4BAB-A3C7-48E27A379372}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{579153F5-8151-4FF6-B37F-9D50FA8CAFEE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C44505E1-BAFF-4F38-9B96-9C102C1B502C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{60A43989-32A1-45D0-88E5-E2C1E210DD3C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{685A958B-EA0C-4C04-B704-B1B4F8E86794}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Recovery.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{AC135A27-0F0D-44E8-90D7-BDF56F7561BB}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{96E5B0FA-20C5-4676-AB98-194CDBBA1141}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{4E383B96-C930-46F9-A8D6-6895DFB4F621}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\x64\VeeamAgent.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{3C68D018-8144-4FD4-B7BA-379D57D101F0}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\x64\VeeamAgent.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{E5233C01-07B3-4CD8-BACC-77FCAAFC7C59}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\x86\VeeamAgent.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{BCBDE807-92BF-4262-BF0B-7F5BD3C1D8F2}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\x86\VeeamAgent.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{D1176AAA-62ED-4026-A8D8-90573BF06642}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\VeeamDeploymentSvc.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [{C6056F8E-0553-411F-8E89-6CD4B30C2C3F}] => (Allow) C:\Program Files\Veeam\Endpoint Backup\VeeamDeploymentSvc.exe (Veeam Software Group GmbH -> Veeam Software Group GmbH)
FirewallRules: [TCP Query User{37D332D1-3019-4D75-B897-95EDFAF0D64F}C:\program files (x86)\microsoft\skype for desktop\skype.exe] => (Allow) C:\program files (x86)\microsoft\skype for desktop\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{E238A515-D2B4-4E6F-A652-33256AED6F9D}C:\program files (x86)\microsoft\skype for desktop\skype.exe] => (Allow) C:\program files (x86)\microsoft\skype for desktop\skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{8D6703C8-AEE3-4723-922D-E47BE1462B0A}C:\users\benji\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\benji\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{54E67D41-7703-485E-990D-258C4958D4B5}C:\users\benji\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\benji\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FBC919EE-D4BB-4463-8D10-A8C7AB98C9AB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CDC26EBC-6074-40A2-BF95-E48F3D258B4F}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C5C5ED4A-8996-438E-85FC-D7741A5202A4}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0369BA90-89DC-4FFF-816B-E7F81A65FB53}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\95.0.1020.44\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Wiederherstellungspunkte =========================
02-11-2021 09:09:49 Windows Modules Installer
03-11-2021 16:00:22 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
03-11-2021 16:00:31 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
08-11-2021 09:10:15 Installed Windows PC Health Check
10-11-2021 09:20:57 Windows Modules Installer
==================== Fehlerhafte Geräte im Gerätemanager ============
Name: Microsoft Wi-Fi Direct Virtual Adapter #4
Description: Virtueller Microsoft Wi-Fi Direct-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: vwifimp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Qualcomm Atheros AR5BWB222 Wireless Network Adapter
Description: Qualcomm Atheros AR5BWB222-Drahtlosnetzwerkadapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Fehlereinträge in der Ereignisanzeige: ========================
Applikationsfehler:
==================
Error: (11/12/2021 10:04:05 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbamtray.exe, Version: 4.0.0.1162, Zeitstempel: 0x61783b28
Name des fehlerhaften Moduls: Qt5Core.dll, Version: 5.14.1.0, Zeitstempel: 0x603971ce
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000219dc5
ID des fehlerhaften Prozesses: 0x1e70
Startzeit der fehlerhaften Anwendung: 0x01d7d7a41060de27
Pfad der fehlerhaften Anwendung: C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
Pfad des fehlerhaften Moduls: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
Berichtskennung: 865ba759-e66f-4cc8-ab75-c1f2f652d9dc
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (11/12/2021 10:03:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 4.0.0.1162, Zeitstempel: 0x61783b44
Name des fehlerhaften Moduls: Qt5Qml.dll, Version: 5.14.1.0, Zeitstempel: 0x60398085
Ausnahmecode: 0xc000041d
Fehleroffset: 0x00000000001aa2b7
ID des fehlerhaften Prozesses: 0xb10
Startzeit der fehlerhaften Anwendung: 0x01d7d7a4140cd7a0
Pfad der fehlerhaften Anwendung: C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
Pfad des fehlerhaften Moduls: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Qml.dll
Berichtskennung: 26edee10-b022-40d3-b66e-88690c2a3bf4
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (11/12/2021 10:03:11 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 4.0.0.1162, Zeitstempel: 0x61783b44
Name des fehlerhaften Moduls: Qt5Qml.dll, Version: 5.14.1.0, Zeitstempel: 0x60398085
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000000001aa2b7
ID des fehlerhaften Prozesses: 0xb10
Startzeit der fehlerhaften Anwendung: 0x01d7d7a4140cd7a0
Pfad der fehlerhaften Anwendung: C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
Pfad des fehlerhaften Moduls: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Qml.dll
Berichtskennung: b1e738cd-21b3-40d6-879d-b408b5f75256
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (11/11/2021 02:03:28 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0
Error: (11/10/2021 05:45:03 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: VSTAudioEngine3.exe, Version: 3.1.11.23, Zeitstempel: 0x5fca3cdf
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.19041.1288, Zeitstempel: 0xa280d1d6
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000ff199
ID des fehlerhaften Prozesses: 0x1700
Startzeit der fehlerhaften Anwendung: 0x01d7d651e664ff2d
Pfad der fehlerhaften Anwendung: C:\Program Files\Steinberg\Dorico3.5\VSTAudioEngine\VSTAudioEngine3.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichtskennung: ee39212b-35cf-4b70-a859-b503b74a5ce8
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (11/10/2021 04:45:35 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "CoCreateInstance" ist ein unerwarteter Fehler aufgetreten. hr = 0x8007045b, Der Computer wird heruntergefahren.
.
Error: (11/10/2021 04:45:35 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.
]
Error: (11/10/2021 04:45:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Das Programm SystemSettings.exe Version 10.0.19041.1320 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: bdc
Startzeit: 01d7d649f6fc6f0f
Beendigungszeit: 4294967295
Anwendungspfad: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Bericht-ID: 30781cf8-77f7-4f51-8097-dff03ff3936e
Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
Relative Anwendungs-ID des fehlerhaften Pakets: microsoft.windows.immersivecontrolpanel
Absturztyp: Quiesce
Systemfehler:
=============
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Veeam Agent for Microsoft Windows" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Logi Facecam Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 2000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Microsoft Office-Klick-und-Los-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Wacom Professional Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts.
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "PACE License Services" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 2000 Millisekunden durchgeführt: Neustart des Diensts.
Error: (11/12/2021 10:12:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Intel(R) RealSense(TM) Depth Camera Manager Service SR300" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts.
Windows Defender:
================
Date: 2021-11-12 10:05:50
Description:
Der überwachte Ordnerzugriff hat C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe daran gehindert, Änderungen am Speicher durchzuführen.
Erkennungszeit: 2021-11-12T09:05:50.723Z
Benutzer: NT-AUTORITÄT\SYSTEM
Pfad: \Device\HarddiskVolume4
Name des Prozesses: C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
Sicherheitsversion: 1.353.868.0
Modulversion: 1.1.18700.4
Produktversion: 4.18.2110.6
Date: 2021-11-12 09:56:45
Description:
Der überwachte Ordnerzugriff hat C:\Windows\System32\svchost.exe daran gehindert, Änderungen am Speicher durchzuführen.
Erkennungszeit: 2021-11-12T08:56:45.916Z
Benutzer: NT-AUTORITÄT\SYSTEM
Pfad: \Device\CdRom0
Name des Prozesses: C:\Windows\System32\svchost.exe
Sicherheitsversion: 1.353.810.0
Modulversion: 1.1.18700.4
Produktversion: 4.18.2110.6
Date: 2021-11-10 17:06:04
Description:
C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe wurde durch den überwachten Ordnerzugriff daran gehindert, %userprofile%\Documents\AdobeGCData\ zu ändern.
Erkennungszeit: 2021-11-10T16:06:04.530Z
Benutzer: AUDIOMACHINE\benji
Pfad: %userprofile%\Documents\AdobeGCData\
Prozessname: C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
Sicherheitsversion: 1.353.743.0
Modulversion: 1.1.18700.4
Produktversion: 4.18.2110.6
Date: 2021-11-10 17:06:04
Description:
C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe wurde durch den überwachten Ordnerzugriff daran gehindert, %userprofile%\Documents\AdobeGCData\ zu ändern.
Erkennungszeit: 2021-11-10T16:06:04.530Z
Benutzer: AUDIOMACHINE\benji
Pfad: %userprofile%\Documents\AdobeGCData\
Prozessname: C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
Sicherheitsversion: 1.353.743.0
Modulversion: 1.1.18700.4
Produktversion: 4.18.2110.6
Date: 2021-11-10 17:06:04
Description:
C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe wurde durch den überwachten Ordnerzugriff daran gehindert, %userprofile%\Documents\AdobeGCData\ zu ändern.
Erkennungszeit: 2021-11-10T16:06:04.530Z
Benutzer: AUDIOMACHINE\benji
Pfad: %userprofile%\Documents\AdobeGCData\
Prozessname: C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
Sicherheitsversion: 1.353.743.0
Modulversion: 1.1.18700.4
Produktversion: 4.18.2110.6
CodeIntegrity:
===============
Date: 2021-04-23 11:40:29
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\CastSrv.exe) attempted to load \Device\HarddiskVolume4\Users\benji\AppData\Local\Temp\TeamViewer\tv_x64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-07-20 19:12:20
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
==================== Speicherinformationen ===========================
BIOS: American Megatrends Inc. F16i 11/10/2016
Hauptplatine: Gigabyte Technology Co., Ltd. Z77X-UD5H
Prozessor: Intel(R) Core(TM) i7-3770K CPU @ 3.50GHz
Prozentuale Nutzung des RAM: 14%
Installierter physikalischer RAM: 32657.15 MB
Verfügbarer physikalischer RAM: 27889.53 MB
Summe virtueller Speicher: 37521.15 MB
Verfügbarer virtueller Speicher: 33055.23 MB
==================== Laufwerke ================================
Drive c: (System) (Fixed) (Total:232.25 GB) (Free:120.46 GB) NTFS
Drive d: (Documents) (Fixed) (Total:931.51 GB) (Free:367.21 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)]
Drive e: (Audio) (Fixed) (Total:1863.01 GB) (Free:1058.27 GB) NTFS
Drive s: (Samples) (Fixed) (Total:1863 GB) (Free:1225.32 GB) NTFS
\\?\Volume{db23d280-95f9-47ba-9cc2-dcc27975201f}\ (Wiederherstellung) (Fixed) (Total:0.52 GB) (Free:0.07 GB) NTFS
\\?\Volume{38a2cf03-d0fd-40a4-9227-b7aae9db10e0}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partitionstabelle ====================
==========================================================
Disk: 0 (Size: 1863 GB) (Disk ID: 668E10B2)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 668E10BE)
Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Size: 232.9 GB) (Disk ID: 49ADF780)
Partition: GPT.
==================== Ende von Addition.txt ======================= |