Parciwal | 22.01.2024 01:13 | Firefox stürzt ab und leitet links falsch weiter Seit längerer Zeit stürzt Firefox etwa 1 mal am Tag ab, ohne einen Crash-log zu hinterlassen. Häufig kommt kurz nach dem ersten Crash, ein Zweiter und dann ist wieder alles ok. Zudem leitet es Links manchmal zu einer google Suche des Links (Bsp.:https://www.smart-rechner.de/kalenderwochen/ratgeber/wochen_je_jahr.php zu der google suche:wie viele wochen hat ein jahr?) um. Dies passiert wenn ich Links von Ecosia (meiner Standard Suchmaschine) folge oder wenn ich sie direkt verfolge (von E-Mail, Discord etc.). Da von Firefox keine crash-log Dateien enstehen und Windows Defender nichts findet, kann ich, nach meinem Wissenstand, keine weiteren Log Dateien angeben. Übrigends, wie genau soll ich addition.txt angeben? Die Datei ist zu lang um sie in diesen Post zu tun, zu groß um sie anzuhängen, und in der Anleitung steht, dass sich nicht selbst antworten soll.
FRST.txt: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 16.01.2024
durchgeführt von Timo (Administrator) auf DESKTOP-GTFK7A1 (21-01-2024 13:16:24)
Gestartet von C:\Users\Timo\Downloads\FRST64.exe
Geladene Profile: Timo
Plattform: Microsoft Windows 10 Pro Version 22H2 19045.3930 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: FF
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Brother\BrUtilities\BrLogRx.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(C:\Program Files (x86)\ASUS\GPUTweakIII\GPU Tweak III.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\GPUTweakIII\Monitor.exe
(C:\Program Files (x86)\ASUS\GPUTweakIII\GPU Tweak III.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\GPUTweakIII\GTIII-OSD\GTIII-OSDCtrl.exe
(C:\Program Files (x86)\ASUS\GPUTweakIII\GPU Tweak III.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\GPUTweakIII\ProfilingEngineEXE.exe
(C:\Program Files (x86)\ASUS\GPUTweakIII\GTIII-OSD\GTIII-OSDCtrl.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\GPUTweakIII\GTIII-OSD\x64\GTIII-OSD64.exe
(C:\Program Files (x86)\ASUS\GPUTweakIII\GTIII-OSD\GTIII-OSDCtrl.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\GPUTweakIII\GTIII-OSD\x86\GTIII-OSD.exe
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe ->) (Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Rebellion) [Datei ist nicht signiert] F:\SteamLibrary\steamapps\common\Evil Genius 2\launcher\eg2.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <8>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\GameOverlayUI.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\RealVNC\VNC Server\vncserver.exe ->) (RealVNC Ltd -> RealVNC) C:\Program Files\RealVNC\VNC Server\vncagent.exe
(C:\Program Files\RealVNC\VNC Server\vncserver.exe ->) (RealVNC Ltd -> RealVNC) C:\Program Files\RealVNC\VNC Server\vncserverui.exe
(D80CB9E2-21E6-4D9B-8533-660C768F3C5B -> Lively) C:\Program Files\WindowsApps\12030rocksdanister.LivelyWallpaper_1.0.137.0_x86__97hta09mmv6hy\Build\Lively.exe
(Discord Inc. -> Discord Inc.) C:\Users\Timo\AppData\Local\Discord\app-1.0.9030\Discord.exe <6>
(explorer.exe ->) (DEEZER SA -> Deezer) C:\Users\Timo\AppData\Local\Programs\deezer-desktop\Deezer.exe <7>
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SnippingTool.exe
(F:\SteamLibrary\steamapps\common\Evil Genius 2\launcher\eg2.exe ->) (Rebellion) [Datei ist nicht signiert] F:\SteamLibrary\steamapps\common\Evil Genius 2\bin\evilgenius_dx12.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Timo\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe <4>
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <14>
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe
(services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(services.exe ->) (Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Datronicsoft Inc. -> ) C:\Windows\System32\spacedeskService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_22dff82e7da0099b\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0905d5f86c27c241\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (philandro Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe
(services.exe ->) (RealVNC Ltd -> RealVNC) C:\Program Files\RealVNC\VNC Server\vncserver.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(spacedeskService.exe ->) (Datronicsoft Inc. -> datronicsoft) C:\Windows\System32\spacedeskServiceTray.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2349.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\GPUTweakIII\GPU Tweak III.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2307.4.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_6.123.11012.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_6.123.11012.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Vincent Burel -> VB-AUDIO Software) C:\Program Files (x86)\VB\Voicemeeter\voicemeeter8.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [tvncontrol] => "C:\Program Files\TightVNC\tvnserver.exe" -controlservice -slave (Keine Datei)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16696840 2016-09-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [115712 2020-10-13] (Wondershare) [Datei ist nicht signiert]
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7039464 2022-05-18] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [Joysticktray] => 0 (Keine Datei)
HKLM-x32\...\Run: [C17A] => C:\WINDOWS\twain_32\Brimc17a\Common\TwDsUiLaunch.exe [103344 2019-12-25] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [145344 2019-07-26] (Brother Industries, Ltd. -> Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3591168 2022-10-09] (Brother Industries, Ltd.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [748624 2023-10-04] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [OpenOffice Updater] => C:\Users\Timo\AppData\Roaming\OpenOffice Updater\Updater.exe [365680 2019-11-03] (Arne Koenig -> ) <==== ACHTUNG
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37104080 2023-10-12] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [2637928 2023-08-23] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4386664 2023-12-08] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [ScreenShare] => C:\Program Files (x86)\ScreenShare\screenshare.exe [110080 2016-03-26] () [Datei ist nicht signiert]
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [Download Studio] => "C:\Program Files (x86)\Download Studio\dstudio-gui.exe" --minimized (Keine Datei)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [com.deezer.deezer-desktop] => C:\Users\Timo\AppData\Local\Programs\deezer-desktop\Deezer.exe [114088840 2023-11-07] (DEEZER SA -> Deezer)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [70918144 2023-12-13] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [ASRock A-Tuning] => [X]
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [MicrosoftEdgeAutoLaunch_F9609E566ED38AF7B13C6DDED026012E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4187176 2023-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\Run: [Microsoft Edge Update] => C:\Users\Timo\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\MicrosoftEdgeUpdateCore.exe [264264 2023-11-25] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\MountPoints2: {6dbf2b73-388f-11ee-9c1a-a8a15967ab57} - "G:\PMCsetup.exe"
HKU\S-1-5-21-103185979-406979973-1091277451-1003\...\MountPoints2: {ad3715f8-8ddd-11ec-9b81-806e6f6e6963} - "D:\autorun.exe" "start.htm"
HKU\S-1-5-21-103185979-406979973-1091277451-1004\...\Run: [MicrosoftEdgeAutoLaunch_F8971498275CD25740EE5470DE9F00D3] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4187176 2023-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-103185979-406979973-1091277451-1004\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\jpaet\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [48827256 2022-01-10] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-103185979-406979973-1091277451-1004\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\jpaet\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Keine Datei)
HKLM\...\Print\Monitors\CPCA Language Monitor3b: c:\windows\system32\CNAS0MOK.DLL [1006080 2021-07-05] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\MONVNC: c:\windows\system32\VNCpm.dll [37704 2021-10-14] (RealVNC Ltd -> RealVNC Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\86.0.4240.111\Installer\chrmstp.exe [2020-10-23] (Google LLC -> Google LLC)
Startup: C:\Users\Timo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Voicemeeter (VB-Audio).LNK [2022-01-08]
ShortcutTarget: Voicemeeter (VB-Audio).LNK -> C:\Program Files (x86)\VB\Voicemeeter\voicemeeter8.exe (Vincent Burel -> VB-AUDIO Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2022-06-27]
ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (philandro Software GmbH -> AnyDesk Software GmbH)
GroupPolicy: Beschränkung - Chrome <==== ACHTUNG
GroupPolicy-Firefox: Beschränkung <==== ACHTUNG
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {3EBC3B4C-EB9C-48D5-B9E0-27EC0D444259} - System32\Tasks\AVCTP-DienstDeviceBluetooth-Unterstützungsdienst => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> C:\Windows\Installer\{FFC2A7AE-7ECC-4848-8A2C-B0D24CD34FD5}\{8CEB1B95-10D3-4091-86F3-4F7E48461718} <==== ACHTUNG
Task: {784913F5-0891-4142-90DD-61CBC77CEEEC} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [754472 2021-04-05] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {543BD619-549A-4492-AB6C-3618F906B4C6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c (Keine Datei)
Task: {05558BE2-47A2-45C7-822A-61E32B757D5C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler (Keine Datei)
Task: {2B7A0875-C87B-4092-8B5A-812CD9819530} - System32\Tasks\GPU Tweak III => C:\Program Files (x86)\ASUS\GPUTweakIII\GPU Tweak III.exe [7479712 2023-07-03] (ASUSTeK COMPUTER INC. -> )
Task: {E7A05365-56B2-47A9-80BE-9C35B7DCE63B} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {B62B7715-ACFD-46AB-8B5A-5D879815075D} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-21-103185979-406979973-1091277451-1003 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [25560 2023-12-29] (Microsoft Corporation -> Microsoft)
Task: {AF5FFFBA-C482-4536-BE98-F51028B7BBB1} - System32\Tasks\Microsoft\VisualStudio\Updates\UpdateConfiguration_S-1-5-21-103185979-406979973-1091277451-1004 => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXConfigurationUpdater.exe [25560 2023-12-29] (Microsoft Corporation -> Microsoft)
Task: {1CA805B0-379A-41AA-9B69-1807DCD173FD} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\VSIXAutoUpdate.exe [51728 2023-12-29] (Microsoft Corporation -> )
Task: {9D17544F-D469-40C3-9421-38BFA4B9DA31} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CF861B0D-2FE4-4A0E-9595-4F8CA195A1C5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A50C2B26-8620-47E3-9BFF-2D01E0FFDD32} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E230C236-8806-4736-B667-AE6D7EEED868} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A06849C0-05A9-447A-ACA5-56A128BACA76} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-103185979-406979973-1091277451-1003Core{E291740D-CBB2-4E71-B4E1-F45DE6094460} => C:\Users\Timo\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205880 2023-11-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {AC098713-5EDB-431A-ADA2-55FCE2C56D9C} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-103185979-406979973-1091277451-1003UA{D4F6E8CD-04B6-4606-85E2-58335712CE3B} => C:\Users\Timo\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205880 2023-11-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {95426066-302B-4C7F-A5B9-59B640BAA185} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [35232 2024-01-19] (Mozilla Corporation -> Mozilla Foundation)
Task: {C9C972D7-2F62-4743-B733-B6BCFC67B432} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1005096 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {FC1BABD8-C22E-422E-8E03-084FFA8DE4C5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3345448 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A408823A-C01D-4286-8072-DC981DA1FDE5} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A1FE80C3-BF62-4895-AE4E-9ABB8C670D28} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7924B7F6-8C35-41B8-967B-C53530548809} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {82BACCE6-D420-4E0B-93DF-DE1742EA3C14} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9274664B-605F-4BF8-B6C3-FC589AFAE3F4} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {72E2D331-D0EB-45DB-ACD1-D1741BF65924} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {88F2D804-3EFD-4FDB-BB13-AF8EE7D6985B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {38731D92-335C-4F68-BFA2-2D5417CC8EBE} - System32\Tasks\Opera scheduled assistant Autoupdate 1616511550 => C:\Users\Timo\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Timo\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {DC2E02E2-1A47-4387-A6B5-F103F8EE5CC0} - System32\Tasks\Opera scheduled Autoupdate 1616511545 => c:\users\timo\appdata\local\programs\opera\launcher.exe --scheduledautoupdate $(Arg0) (Keine Datei)
Task: {D868EFD0-51DF-48AA-8DC7-C5CD7C64F6E4} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641928 2024-01-07] (Overwolf Ltd -> Overwolf LTD)
Task: {6A555D04-8867-4840-B62E-3E50B32BFB1B} - System32\Tasks\Power Suite => C:\Program Files (x86)\simplitec\simpliclean\PowerSuite.exe [2289952 2015-02-03] (simplitec GmbH -> simplitec GmbH)
Task: {6862B484-11ED-4778-9933-F5211A3E3BF1} - System32\Tasks\Power Suite (Tray) => C:\Program Files (x86)\simplitec\simpliclean\ServiceProvider.exe [1604384 2015-02-03] (simplitec GmbH -> simplitec GmbH)
Task: {C5DD1D39-E796-4A00-999A-64DEA99A0C7C} - System32\Tasks\Update-Orchestrator-Dienst Hardware NDKPing => C:\Program Files (x86)\nodejs\node.exe [15017624 2017-05-02] (Node.js Foundation -> Node.js) -> "C:\ProgramData\Package Cache\{B8B55679-FABC-48D2-AD18-50A98E84C82E}\{A39A1548-3A8A-448D-8507-A23E862EF2F8}" <==== ACHTUNG
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\Power Suite (Tray).job => C:\Program Files (x86)\simplitec\simpliclean\ServiceProvider.exe
Task: C:\WINDOWS\Tasks\Power Suite.job => C:\Program Files (x86)\simplitec\simpliclean\PowerSuite.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{01b9e47c-9725-46ef-a275-a8d70d7afb9b}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{455aa050-c55d-47c5-ab36-9149cc0ac792}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{455aa050-c55d-47c5-ab36-9149cc0ac792}: [DhcpDomain] fritz.box
Tcpip\..\Interfaces\{b2e00b38-b3e2-44e4-9e2c-ed172e44e2b4}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{b2e00b38-b3e2-44e4-9e2c-ed172e44e2b4}: [DhcpDomain] fritz.box
Tcpip\..\Interfaces\{b527523f-503e-4d5b-af1d-0cc3c59249b3}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{b527523f-503e-4d5b-af1d-0cc3c59249b3}: [DhcpDomain] fritz.box
Edge:
=======
Edge Profile: C:\Users\Timo\AppData\Local\Microsoft\Edge\User Data\Default [2024-01-13]
Edge Extension: (Google Docs Offline) - C:\Users\Timo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-11-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Timo\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-10-23]
FireFox:
========
FF DefaultProfile: n3esv5jp.default
FF ProfilePath: C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\n3esv5jp.default [2023-05-26]
FF ProfilePath: C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772 [2024-01-21]
FF user.js: detected! => C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\user.js [2024-01-21]
FF Notifications: Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772 -> hxxps://aternos.org
FF Extension: (AdBlocker Ultimate) - C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\Extensions\adblockultimate@adblockultimate.net.xpi [2023-11-29]
FF Extension: (Übersetzen Sie Websites in Ihrem Browser, ohne die Cloud zu verwenden.) - C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\Extensions\firefox-translations-addon@mozilla.org.xpi [2023-09-19]
FF Extension: (Youtube AgeRestriction Unblocker) - C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\Extensions\jid1-82bQxmQ0klINKg@jetpack.xpi [2023-06-06]
FF Extension: (uBlock Origin) - C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\Extensions\uBlock0@raymondhill.net.xpi [2024-01-08]
FF Extension: (Return YouTube Dislike) - C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\Extensions\{762f9885-5a13-4abd-9c77-433dcd38b8fd}.xpi [2023-12-14]
FF Extension: (Ecosia – Die Suchmaschine, die Bäume pflanzt) - C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\Extensions\{d04b0b40-3dab-4f0b-97a6-04ec3eddbfb0}.xpi [2023-06-06]
FF Extension: (Kurgzsekseta) - C:\Users\Timo\AppData\Roaming\Mozilla\Firefox\Profiles\otq0to9z.default-release-1686081831772\Extensions\{e8f3b919-d290-4270-b66f-29f3fdbb1986}.xpi [2023-06-06]
FF Plugin: @java.com/DTPlugin,version=11.391.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.391.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR Profile: C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default [2023-07-01]
CHR Extension: (Slides) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-10-23]
CHR Extension: (Docs) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-10-23]
CHR Extension: (Google Drive) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-23]
CHR Extension: (YouTube) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-10-23]
CHR Extension: ( ) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdjgjcbncgpibjagcijhmdimldioopnm [2023-07-01]
CHR Extension: (Sheets) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-10-23]
CHR Extension: (Google Docs Offline) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-22]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-07-01]
CHR Extension: (Photopea) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\jdklklfpinionkgpmghaghehojplfjio [2023-07-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-13]
CHR Extension: (Gmail) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Chrome Media Router) - C:\Users\Timo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-23]
Opera:
=======
OPR Profile: C:\Users\Timo\AppData\Roaming\Opera Software\Opera Stable [2022-08-29]
OPR Extension: (Rich Hints Agent) - C:\Users\Timo\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-08-29]
OPR Extension: (Opera Crypto Wallet) - C:\Users\Timo\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-08-29]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Timo\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-08-29]
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3853384 2022-08-12] (philandro Software GmbH -> AnyDesk Software GmbH)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-09-23] (BattlEye Innovations e.K. -> )
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [Datei ist nicht signiert]
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [43784 2023-09-25] (Intel Corporation -> Intel)
R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [240392 2023-09-25] (Intel Corporation -> Intel)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [10941544 2023-08-23] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-08-18] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [943528 2023-10-15] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-07-11] (Epic Games Inc. -> Epic Games, Inc.)
S2 Fuj02e3DriverUtilityService; C:\WINDOWS\System32\DriverStore\FileRepository\fuj02e3.inf_amd64_1c41b5ae1124caab\fuj02e3-utility.exe [146536 2018-05-16] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU CLIENT COMPUTING LIMITED)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3848680 2022-05-18] (LogMeIn, Inc. -> LogMeIn Inc.)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [Datei ist nicht signiert]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641928 2024-01-07] (Overwolf Ltd -> Overwolf LTD)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 spacedeskService; C:\WINDOWS\System32\spacedeskService.exe [4833344 2023-08-18] (Datronicsoft Inc. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 USBAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe [12288 2023-07-25] () [Datei ist nicht signiert]
R2 vncserver; C:\Program Files\RealVNC\VNC Server\vncserver.exe [6839048 2021-10-14] (RealVNC Ltd -> RealVNC)
S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [41416 2023-12-29] (Microsoft Corporation -> Microsoft)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [142304 2022-06-01] (Microsoft Corporation -> Microsoft Corporation)
R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [28136 2021-03-23] (LAVASOFT SOFTWARE CANADA INC -> ) <==== ACHTUNG
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WorkflowAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe [19456 2023-07-25] () [Datei ist nicht signiert]
S2 CsrBtOBEX-Dienst; "C:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe" [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0905d5f86c27c241\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0905d5f86c27c241\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [11922944 2015-01-13] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [359936 2015-01-13] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [150840 2022-01-11] (Alcorlink Corp. -> )
S3 AsrDrv106; C:\WINDOWS\SysWOW64\Drivers\AsrDrv106.sys [49984 2023-08-25] (ASROCK INC. -> ASRock Incorporation)
R1 BadlionAnticheat; C:\WINDOWS\system32\drivers\BadlionAnticheat.sys [2493968 2021-07-05] (Microsoft Windows Hardware Compatibility Publisher -> <Turtle Entertainment>)
R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-10-04] (Bluestack Systems, Inc -> Bluestack System Inc.)
S3 Btcsrusb; C:\WINDOWS\System32\Drivers\brlinkusb.sys [187936 2021-07-05] (Microsoft Windows Hardware Compatibility Publisher -> BARROT Corporation.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [282624 2023-05-12] (Microsoft Corporation) [Datei ist nicht signiert]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [147968 2022-06-03] (Microsoft Corporation) [Datei ist nicht signiert]
S3 BTWDPAN; C:\WINDOWS\System32\drivers\btwdpan.sys [84008 2022-09-16] (Broadcom Corporation -> Broadcom Corporation.)
R3 cpuz154; C:\WINDOWS\temp\cpuz154\cpuz154_x64.sys [40976 2024-01-13] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
S3 e2esoft_ivcamaudio_simple; C:\WINDOWS\system32\drivers\iVCamAud.sys [255464 2020-11-04] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft)
R0 FlashBoot; C:\WINDOWS\System32\drivers\FlashBoot.sys [17616 2021-07-05] (Challenger Backup Solutions, LLC -> Challenger Backup Solutions, LLC)
S3 fuj02e3; C:\WINDOWS\System32\DriverStore\FileRepository\fuj02e3.inf_amd64_1c41b5ae1124caab\fuj02e3.sys [42592 2018-05-16] (FUJITSU CLIENT COMPUTING LIMITED -> FUJITSU CLIENT COMPUTING LIMITED)
S3 Hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2022-05-18] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [54752 2023-01-30] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 iVCam; C:\WINDOWS\system32\DRIVERS\iVCam.sys [1090536 2020-11-02] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft)
R3 MpKsl95249613; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5102347E-51A3-417D-989E-05524548F6F9}\MpKslDrv.sys [263560 2024-01-21] (Microsoft Windows -> Microsoft Corporation)
R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2023-06-09] (Nvidia Corporation -> NVIDIA Corporation)
R3 spacedeskDriverAndroidControl; C:\WINDOWS\System32\drivers\spacedeskDriverAndroidControl.sys [49112 2023-08-10] (Datronicsoft Inc. -> )
R3 spacedeskDriverBus; C:\WINDOWS\System32\drivers\spacedeskDriverBus.sys [107960 2023-08-10] (Datronicsoft Inc. -> datronicsoft Inc.)
S3 spacedeskKtmInputMouse; C:\WINDOWS\System32\drivers\spacedeskKtmInputMouse.sys [42448 2023-08-10] (Datronicsoft Inc. -> )
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
R3 VBAudio100VMVAIO3MME; C:\WINDOWS\System32\drivers\vbaudio_vmvaio364_win10.sys [71712 2021-08-15] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 VBAudioVACMME; C:\WINDOWS\System32\drivers\vbaudio_cable64_win7.sys [41192 2021-08-15] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 VBAudioVMAUXVAIOMME; C:\WINDOWS\System32\drivers\vbaudio_vmauxvaio64_win10.sys [71920 2021-08-15] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 VBAudioVMVAIOMME; C:\WINDOWS\System32\drivers\vbaudio_vmvaio64_win10.sys [71712 2021-08-15] (Vincent Burel -> Windows (R) Win 7 DDK provider)
R3 vhusb3hc; C:\WINDOWS\System32\drivers\vhusb3hc.sys [72072 2023-07-16] (VirtualHere Pty. Ltd. -> VirtualHere Pty. Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2023-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 x323e501; C:\Windows\SysWOW64\drivers\x323e501.sys [44816 2014-12-16] (Shenzhen Dragon Rise Micro Technology Co., Ltd. -> Your Corporation) [Datei ist nicht signiert]
S3 x643e501; C:\WINDOWS\System32\drivers\x643e501.sys [68624 2014-12-16] (Shenzhen Dragon Rise Micro Technology Co., Ltd. -> Your Corporation) [Datei ist nicht signiert]
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]
S3 GPU-Z-v2; \??\C:\Users\Timo\AppData\Local\Temp\GPU-Z-v2.sys [X] <==== ACHTUNG
S3 GPUZ-v2; \??\C:\Users\Timo\AppData\Local\Temp\GPUZ-v2.sys [X] <==== ACHTUNG
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2024-01-21 13:16 - 2024-01-21 13:17 - 000041909 _____ C:\Users\Timo\Downloads\FRST.txt
2024-01-21 13:16 - 2024-01-21 13:17 - 000000000 ____D C:\FRST
2024-01-21 13:15 - 2024-01-21 13:15 - 002389504 _____ (Farbar) C:\Users\Timo\Downloads\FRST64.exe
2024-01-21 13:14 - 2024-01-21 13:14 - 000001792 __RSH C:\ProgramData\ntuser.pol
2024-01-20 13:09 - 2024-01-21 13:17 - 000000000 ____D C:\Users\Timo\AppData\Local\Evil Genius 2
2024-01-20 12:19 - 2024-01-20 12:19 - 000000222 _____ C:\Users\Timo\Desktop\Evil Genius 2.url
2024-01-19 21:45 - 2024-01-19 21:45 - 000000729 _____ C:\Users\Timo\Documents\erweiterung.txt
2024-01-16 17:20 - 2024-01-16 17:20 - 001016999 _____ C:\Users\Timo\Downloads\newstatsw.zip
2024-01-16 17:20 - 2024-01-16 17:20 - 000611774 _____ C:\Users\Timo\Downloads\marico.zip
2024-01-16 17:20 - 2024-01-16 17:20 - 000299498 _____ C:\Users\Timo\Downloads\dbsetxlw.zip
2024-01-15 23:33 - 2024-01-15 23:35 - 000000000 ____D C:\Users\Timo\Desktop\Stellaris mods
2024-01-14 11:59 - 2024-01-14 11:59 - 000000000 ____D C:\Users\Timo\AppData\Local\Railgrade
2024-01-13 16:08 - 2024-01-13 22:26 - 000000000 ____D C:\Users\Timo\AppData\Roaming\Factorio
2024-01-13 15:17 - 2024-01-13 15:17 - 000000223 _____ C:\Users\Timo\Desktop\RAILGRADE.url
2024-01-13 15:14 - 2024-01-13 15:14 - 000000222 _____ C:\Users\Timo\Desktop\Factorio Demo.url
2024-01-12 16:42 - 2024-01-12 16:43 - 000000000 ___HD C:\$WinREAgent
2024-01-10 17:47 - 2024-01-10 17:47 - 015819112 _____ (Audacity Team ) C:\Users\Timo\Downloads\audacity-win-3.4.2-64bit.exe
2024-01-04 14:11 - 2024-01-04 14:11 - 000094853 _____ C:\Users\Timo\Documents\Milk botteling machine.zip
2024-01-02 21:55 - 2024-01-02 22:40 - 000000000 ____D C:\Users\Timo\Documents\dll Test
2023-12-29 21:30 - 2023-12-29 21:30 - 000179475 _____ C:\Users\Timo\Downloads\coffees-rjw-ideology-addons-master.zip
2023-12-29 21:25 - 2023-12-29 21:25 - 000005905 _____ C:\Users\Timo\Downloads\CoffeeAndTeaPatch.xml
2023-12-29 21:18 - 2023-12-29 21:18 - 000000000 ____D C:\Users\Timo\.nuget
2023-12-29 21:16 - 2023-12-29 21:16 - 000000000 ____D C:\Users\Timo\Downloads\DotNetVersions
2023-12-29 21:15 - 2023-12-29 21:15 - 000008273 _____ C:\Users\Timo\Downloads\DotNetVersions.zip
2023-12-29 19:53 - 2023-12-29 19:53 - 000443809 _____ C:\Users\Timo\Downloads\rjw-mc-genes-master(2).zip
2023-12-29 19:21 - 2023-12-29 19:21 - 000291423 _____ C:\Users\Timo\Downloads\ExampleDllMod-master.zip
2023-12-29 19:21 - 2023-12-29 19:21 - 000000000 ____D C:\Users\Timo\Downloads\ExampleDllMod-master
2023-12-29 19:17 - 2023-12-29 19:37 - 000000000 ____D C:\Users\Timo\Documents\Copy-Paste DLL
2023-12-29 18:46 - 2023-12-29 19:08 - 000001714 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2022.lnk
2023-12-29 18:43 - 2023-12-29 18:43 - 000000000 ____D C:\ProgramData\Windows App Certification Kit
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\3082
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\2052
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1055
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1049
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1046
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1045
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1042
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1041
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1040
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1036
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1029
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\SysWOW64\1028
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\3082
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\2052
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1055
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1049
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1046
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1045
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1042
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1041
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1040
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1036
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1029
2023-12-29 18:32 - 2023-12-29 18:37 - 000000000 ____D C:\WINDOWS\system32\1028
2023-12-29 18:31 - 2023-12-29 18:32 - 000000000 ____D C:\Program Files (x86)\dotnet
2023-12-29 18:31 - 2023-12-29 18:31 - 000000000 ____D C:\Program Files (x86)\Microsoft Web Tools
2023-12-29 18:28 - 2023-12-29 18:28 - 000001713 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2022.lnk
2023-12-29 18:05 - 2023-12-29 18:05 - 000000000 ____D C:\Users\Timo\AppData\Roaming\rwxml-language-server
2023-12-29 17:12 - 2023-12-29 17:12 - 000443809 _____ C:\Users\Timo\Downloads\rjw-mc-genes-master(1).zip
2023-12-29 16:52 - 2023-12-29 16:52 - 000591390 _____ C:\Users\Timo\Downloads\rjw-mc-biotech_011c.zip
2023-12-29 15:33 - 2023-12-29 15:33 - 000590988 _____ C:\Users\Timo\Downloads\rjw-mc-biotech_011d.zip
2023-12-29 15:30 - 2023-12-29 15:30 - 000606709 _____ C:\Users\Timo\Downloads\rjw-mc-biotech_012(1).zip
2023-12-29 14:05 - 2023-12-29 14:05 - 000602575 _____ C:\Users\Timo\Downloads\rjw-mc-master.zip
2023-12-29 13:58 - 2023-12-29 13:58 - 000606709 _____ C:\Users\Timo\Downloads\rjw-mc-biotech_012.zip
2023-12-29 13:56 - 2023-12-29 13:56 - 000307081 _____ C:\Users\Timo\Downloads\lewd-biotech-master.zip
2023-12-29 13:56 - 2023-12-29 13:56 - 000208253 _____ C:\Users\Timo\Downloads\RJW_More_-main.zip
2023-12-29 13:55 - 2023-12-29 13:55 - 002342429 _____ C:\Users\Timo\Downloads\RJW-Genes-main.zip
2023-12-29 13:51 - 2023-12-29 13:51 - 012409926 _____ C:\Users\Timo\Downloads\rjw-milking-machine-main.zip
2023-12-29 13:46 - 2023-12-29 13:46 - 000443809 _____ C:\Users\Timo\Downloads\rjw-mc-genes-master.zip
2023-12-28 21:47 - 2023-12-28 21:47 - 000543477 _____ C:\Users\Timo\Downloads\Semen Processor 0.2.zip
2023-12-28 21:47 - 2023-12-28 21:47 - 000053572 _____ C:\Users\Timo\Downloads\rjw-bucket.zip
2023-12-27 21:13 - 2023-12-27 21:13 - 000022252 _____ C:\Users\Timo\Downloads\wireless+code+software.zip
2023-12-27 19:35 - 2023-12-27 19:35 - 000002092 _____ C:\Users\Public\Desktop\ZELOTES T-90 MOUSE.lnk
2023-12-27 19:35 - 2023-12-27 19:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\ZELOTES T-90
2023-12-27 19:35 - 2023-12-27 19:35 - 000000000 ____D C:\Program Files (x86)\ZELOTES T-90
2023-12-27 19:32 - 2023-12-27 19:33 - 019425592 _____ C:\Users\Timo\Downloads\ZELOTES+T-90+Gaming+Mouse+Driver+2022.11.zip
2023-12-27 19:31 - 2024-01-02 12:21 - 000000000 ____D C:\Users\Timo\AppData\Local\JM02
2023-12-27 19:30 - 2023-12-27 19:30 - 001304007 _____ C:\Users\Timo\Downloads\ZELOTES+F-33+Mouse+Setup+v1.0+20231008.zip
2023-12-27 19:30 - 2023-12-27 19:30 - 000000000 ____D C:\Users\Timo\Downloads\ZELOTES+F-33+Mouse+Setup+v1.0+20231008
2023-12-27 19:17 - 2023-12-27 19:17 - 000001404 _____ C:\Users\Timo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MacroRecorder.lnk
2023-12-27 19:10 - 2023-12-27 19:18 - 000000000 ____D C:\Users\Timo\AppData\Roaming\Macro Recorder
2023-12-27 19:10 - 2023-12-27 19:10 - 045870992 _____ (Bartels Media GmbH ) C:\Users\Timo\Downloads\MacroRecorderSetup.exe
2023-12-27 19:10 - 2023-12-27 19:10 - 000000000 ____D C:\Users\Timo\Documents\Macro Recorder
2023-12-27 19:09 - 2023-12-27 19:09 - 000864317 _____ C:\Users\Timo\Desktop\AutoClicker30.exe
2023-12-27 13:21 - 2023-12-27 13:21 - 004083356 _____ C:\Users\Timo\Downloads\ILSpy_binaries_8.2.0.7535-x64.zip
2023-12-27 13:21 - 2023-12-27 13:21 - 000000000 ____D C:\Users\Timo\Downloads\ILSpy_binaries_8.2.0.7535-x64
2023-12-27 13:21 - 2023-12-27 13:21 - 000000000 ____D C:\Users\Timo\AppData\Roaming\ICSharpCode
2023-12-26 01:35 - 2023-12-26 01:35 - 000374704 _____ C:\Users\Timo\Downloads\rjw-sexperience-ideology-master.zip
2023-12-26 01:34 - 2023-12-26 01:34 - 000120394 _____ C:\Users\Timo\Downloads\RTMO_2023-01-06.zip
2023-12-25 12:30 - 2023-12-25 12:30 - 000321450 _____ C:\Users\Timo\Downloads\RJW-Sexperience-master.zip
2023-12-24 09:37 - 2023-12-24 09:37 - 001286841 _____ C:\Users\Timo\Downloads\735106432.zip
2023-12-24 08:53 - 2023-12-24 08:53 - 014818152 _____ C:\Users\Timo\Downloads\rjw-master.zip
2023-12-22 21:55 - 2024-01-03 17:37 - 000000222 _____ C:\Users\Timo\Desktop\RimWorld.url
2023-12-22 21:55 - 2023-12-22 21:55 - 000000000 ____D C:\Users\Timo\AppData\LocalLow\Ludeon Studios
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2024-01-21 13:17 - 2021-01-21 14:09 - 000000000 ____D C:\Program Files (x86)\Steam
2024-01-21 13:14 - 2020-10-20 15:54 - 000000000 ____D C:\Program Files\Mozilla Firefox
2024-01-21 12:59 - 2020-12-28 12:44 - 000000000 ____D C:\Users\Timo\AppData\Local\Discord
2024-01-21 12:25 - 2020-08-22 13:29 - 000000000 ____D C:\ProgramData\NVIDIA
2024-01-21 11:41 - 2021-03-12 20:00 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-01-21 11:41 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-01-20 20:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-01-20 16:59 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-01-20 13:09 - 2023-01-30 13:50 - 000000000 ____D C:\Users\Timo\AppData\Local\D3DSCache
2024-01-20 12:19 - 2020-09-27 19:34 - 000000000 ____D C:\Users\Timo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2024-01-20 11:28 - 2020-09-27 18:27 - 000000000 ____D C:\Users\Timo\AppData\Roaming\vlc
2024-01-20 11:12 - 2022-07-19 15:26 - 000000000 ____D C:\Users\Timo\AppData\Roaming\Notepad++
2024-01-20 11:06 - 2023-02-25 20:46 - 000000000 ____D C:\Users\Timo\AppData\Roaming\deezer-desktop
2024-01-19 21:39 - 2023-06-06 21:03 - 000000965 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-01-19 21:35 - 2020-10-24 17:08 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2024-01-19 21:35 - 2020-09-27 18:46 - 000001278 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2024-01-19 21:35 - 2020-09-27 18:08 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-01-19 20:38 - 2023-09-15 12:57 - 000263672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_3.dll
2024-01-19 20:38 - 2022-10-22 21:16 - 000095736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2024-01-19 20:38 - 2022-10-22 21:16 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2024-01-19 20:38 - 2021-11-20 18:15 - 000194040 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2024-01-19 20:38 - 2021-11-04 17:30 - 002754152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2024-01-19 20:38 - 2021-11-04 17:30 - 000644600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2024-01-19 20:38 - 2021-11-04 17:30 - 000214632 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2024-01-19 20:38 - 2021-11-04 17:30 - 000145000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2024-01-19 20:38 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2024-01-18 21:50 - 2021-01-09 23:14 - 000000000 ____D C:\Program Files (x86)\Overwolf
2024-01-18 18:33 - 2020-10-15 10:39 - 000000000 ____D C:\Users\Timo\AppData\Roaming\paradox-launcher-v2
2024-01-18 17:59 - 2020-09-27 18:38 - 000000000 ____D C:\Users\Timo\AppData\Roaming\discord
2024-01-16 18:11 - 2023-12-14 16:11 - 000000000 ____D C:\Users\Timo\Documents\OpenTTD
2024-01-16 16:05 - 2023-02-03 21:18 - 000000000 ____D C:\Users\Timo\AppData\Roaming\Code
2024-01-15 23:08 - 2021-04-13 12:19 - 000000000 ____D C:\Users\Timo\AppData\Local\CrashDumps
2024-01-14 14:52 - 2020-10-30 17:52 - 000000000 ____D C:\Users\Timo\Documents\My Games
2024-01-13 14:26 - 2021-03-12 20:11 - 000005810 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-01-13 14:26 - 2019-12-07 15:51 - 002751778 _____ C:\WINDOWS\system32\perfh007.dat
2024-01-13 14:26 - 2019-12-07 15:51 - 000728440 _____ C:\WINDOWS\system32\perfc007.dat
2024-01-13 14:21 - 2023-08-25 11:36 - 000003156 _____ C:\WINDOWS\system32\Tasks\GPU Tweak III
2024-01-13 14:19 - 2021-12-20 20:08 - 000000000 ____D C:\ProgramData\RealVNC-Service
2024-01-13 14:19 - 2021-03-12 20:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-01-13 14:19 - 2021-03-12 20:00 - 000008192 ___SH C:\DumpStack.log.tmp
2024-01-13 14:19 - 2021-03-11 10:36 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2024-01-13 14:19 - 2020-08-22 12:57 - 000000000 ____D C:\Intel
2024-01-12 21:40 - 2021-03-12 20:00 - 000605744 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-01-12 21:40 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2024-01-12 21:38 - 2022-02-24 22:35 - 000000000 ____D C:\Users\Timo\AppData\Roaming\UnityHub
2024-01-12 21:38 - 2021-08-15 10:47 - 000070047 _____ C:\Users\Timo\AppData\Roaming\VoiceMeeterPotatoDefault.xml
2024-01-12 21:38 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2024-01-12 21:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2024-01-12 21:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2024-01-12 21:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2024-01-12 21:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2024-01-12 21:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-01-12 21:16 - 2020-09-27 18:38 - 000002222 _____ C:\Users\Timo\Desktop\Discord.lnk
2024-01-12 21:14 - 2020-10-25 13:04 - 000000000 ____D C:\Users\Timo\AppData\Roaming\audacity
2024-01-12 18:57 - 2023-04-12 11:02 - 000000000 ____D C:\Users\Timo\Tutorial
2024-01-12 18:57 - 2022-02-18 15:21 - 000000000 ____D C:\Users\Timo\AppData\LocalLow\Unity
2024-01-12 16:49 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-01-12 16:41 - 2020-08-22 13:49 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-01-12 16:38 - 2020-08-22 13:49 - 189718008 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2024-01-12 14:50 - 2020-08-22 13:40 - 000918944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2024-01-12 01:18 - 2023-11-30 17:15 - 000000000 ____D C:\Users\Timo\Documents\Seminarkurs Portfolio Pätsch
2024-01-10 17:47 - 2021-11-18 23:26 - 000000000 ____D C:\Program Files\Audacity
2024-01-10 17:47 - 2020-10-25 13:04 - 000000825 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2024-01-10 17:47 - 2020-10-25 13:04 - 000000813 _____ C:\Users\Public\Desktop\Audacity.lnk
2024-01-09 15:41 - 2020-08-22 13:52 - 000000000 ___SD C:\Users\Timo\AppData\Roaming\Microsoft\Credentials
2024-01-07 13:15 - 2020-09-27 18:27 - 000000876 _____ C:\Users\Public\Desktop\VLC media player.lnk
2024-01-04 13:58 - 2022-02-28 16:29 - 000000000 ____D C:\Users\Timo\AppData\Local\.IdentityService
2024-01-04 13:49 - 2021-05-11 17:41 - 000007571 _____ C:\Users\Timo\AppData\Local\kdenliverc
2024-01-04 13:49 - 2021-03-12 19:36 - 000000000 ____D C:\Users\Timo
2024-01-02 22:21 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-01-02 22:19 - 2020-10-10 18:47 - 000000000 ____D C:\ProgramData\Package Cache
2023-12-29 21:18 - 2023-11-19 14:43 - 000000000 ____D C:\Users\Timo\AppData\Local\NuGet
2023-12-29 20:48 - 2022-02-28 16:27 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2023-12-29 18:46 - 2022-02-28 16:37 - 000000000 ____D C:\Users\Timo\AppData\Roaming\NuGet
2023-12-29 18:43 - 2022-02-28 16:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2023-12-29 18:42 - 2022-02-28 16:46 - 000000000 ____D C:\Program Files\Application Verifier
2023-12-29 18:42 - 2022-02-28 16:46 - 000000000 ____D C:\Program Files (x86)\Application Verifier
2023-12-29 18:37 - 2022-02-28 16:42 - 000000000 ____D C:\WINDOWS\SysWOW64\1033
2023-12-29 18:37 - 2022-02-28 16:42 - 000000000 ____D C:\WINDOWS\SysWOW64\1031
2023-12-29 18:37 - 2022-02-28 16:42 - 000000000 ____D C:\WINDOWS\system32\1033
2023-12-29 18:37 - 2022-02-28 16:42 - 000000000 ____D C:\WINDOWS\system32\1031
2023-12-29 18:31 - 2022-02-28 16:42 - 000000000 ____D C:\Program Files\IIS Express
2023-12-29 18:31 - 2022-02-28 16:42 - 000000000 ____D C:\Program Files (x86)\IIS Express
2023-12-29 18:31 - 2022-02-28 16:40 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs
2023-12-29 18:29 - 2022-02-28 16:40 - 000000000 ____D C:\Program Files (x86)\Windows Kits
2023-12-29 18:29 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-12-29 18:18 - 2022-02-28 16:27 - 000001429 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Installer.lnk
2023-12-25 20:58 - 2020-12-03 16:48 - 000000000 ____D C:\ProgramData\Riot Games
2023-12-25 11:36 - 2023-01-31 00:12 - 000001403 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2023-12-25 11:36 - 2023-01-31 00:07 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-12-25 11:36 - 2023-01-31 00:07 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2023-12-25 11:36 - 2020-08-22 12:59 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2023-12-25 11:36 - 2020-08-22 12:59 - 000000000 ____D C:\Program Files\NVIDIA Corporation
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2021-09-29 09:19 - 2021-09-29 09:19 - 000000000 ____D () C:\ProgramData\DriverHub.exe
2020-10-11 15:07 - 2022-09-01 18:30 - 000000015 _____ () C:\Users\Timo\AppData\Roaming\obs-virtualcam.txt
2021-03-20 20:49 - 2019-03-25 12:41 - 000000034 _____ () C:\Users\Timo\AppData\Roaming\pdfdrawcodec.dll
2021-05-02 13:35 - 2021-05-02 13:35 - 000000128 _____ () C:\Users\Timo\AppData\Roaming\PUTTY.RND
2023-07-16 13:14 - 2023-07-18 20:01 - 000000245 _____ () C:\Users\Timo\AppData\Roaming\vhui.ini
2021-08-15 10:47 - 2024-01-12 21:38 - 000070047 _____ () C:\Users\Timo\AppData\Roaming\VoiceMeeterPotatoDefault.xml
2022-09-01 18:59 - 2022-10-23 15:53 - 000000128 _____ () C:\Users\Timo\AppData\Roaming\winscp.rnd
2021-05-15 19:31 - 2023-06-05 12:53 - 000000427 _____ () C:\Users\Timo\AppData\Local\kdeglobals
2021-05-11 17:41 - 2021-05-30 09:11 - 000008681 _____ () C:\Users\Timo\AppData\Local\kdenlive-layoutsrc
2021-05-11 17:41 - 2024-01-04 13:49 - 000007571 _____ () C:\Users\Timo\AppData\Local\kdenliverc
2021-03-29 11:52 - 2021-05-25 15:59 - 000000128 _____ () C:\Users\Timo\AppData\Local\PUTTY.RND
2023-09-19 23:01 - 2023-09-19 23:01 - 000004159 _____ () C:\Users\Timo\AppData\Local\recently-used.xbel
2023-04-21 19:16 - 2023-09-12 15:44 - 000007614 _____ () C:\Users\Timo\AppData\Local\resmon.resmoncfg
2021-05-11 17:42 - 2021-05-11 17:42 - 000006389 _____ () C:\Users\Timo\AppData\Local\user-places.xbel
2021-05-11 17:42 - 2021-05-11 17:42 - 000005708 _____ () C:\Users\Timo\AppData\Local\user-places.xbel.bak
2021-05-11 17:42 - 2021-05-11 17:42 - 000000000 _____ () C:\Users\Timo\AppData\Local\user-places.xbel.tbcache
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== |