Ale-xander | 02.09.2022 18:14 | Zitat:
Zitat von cosinus
(Beitrag 1767995)
Hi,
Logfiles bitte direkt und und CODE-Tags posten. | Ich hoffe jetzt ist es richtig FRST Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
durchgeführt von AR (Administrator) auf AR-DELL (Dell Inc. Inspiron 17-7779) (02-09-2022 18:43:12)
Gestartet von C:\Users\AR\Downloads
Geladene Profile: AR
Plattform: Microsoft Windows 10 Pro Version 21H1 19043.1889 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Brave
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler64.exe
(C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.UserSessionAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\DCF\Dell.DCF.UA.Bradbury.API.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\DataManagerSubAgent\Dell.TechHub.DataManager.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Inc -> ) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe
(C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
(C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe ->) (Rivet Networks LLC -> Rivet Networks LLC) C:\Program Files\Rivet Networks\SmartByte\RAPS.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe
(C:\Users\AR\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-ui.exe ->) (Synology Inc. -> Synology Inc.) C:\Users\AR\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-connect.exe
(C:\Users\AR\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-ui.exe ->) (Synology Inc. -> Synology Inc.) C:\Users\AR\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-daemon.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEM.exe
(explorer.exe ->) (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <44>
(explorer.exe ->) (DISPLAYLINK (UK) LIMITED -> DisplayLink Corp.) C:\Program Files\DisplayLink Core Software\DisplayLinkTrayApp.exe
(explorer.exe ->) (Henrik Wenz -> Henrik Wenz) C:\Users\AR\AppData\Local\Programs\all-in-one-messenger\All-in-One Messenger.exe <8>
(explorer.exe ->) (HP Inc. -> Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet Pro 8620\Bin\ScanToPCActivationApp.exe <2>
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mstsc.exe
(explorer.exe ->) (milosp) C:\Program Files\WindowsApps\44576milosp.OneCommander_3.10.3.0_neutral__p0rg76fmnrgsm\Rapidrive\OneCommander.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6d461a\WavesSvc64.exe
(explorer.exe ->) (Wistron Corporation -> Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(services.exe ->) (CHENGDU YIWO Tech Development Co., Ltd. -> ) C:\Program Files (x86)\EaseUS\ENS\ensserver.exe
(services.exe ->) (Cisco WebEx LLC -> Cisco WebEx LLC) C:\Windows\SysWOW64\atashost.exe
(services.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe
(services.exe ->) (Dell Inc -> Dell INC.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(services.exe ->) (Dell Inc -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Inc -> Dell) C:\Program Files\Dell\TechHub\Dell.TechHub.exe
(services.exe ->) (geek software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe <2>
(services.exe ->) (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\GUBootService.exe
(services.exe ->) (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\GUPMService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_4de65d949492707a\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_4de65d949492707a\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_ffd80069472091bc\RstMwService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_4793842ae20151f0\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (philandro Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <3>
(services.exe ->) (Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe
(services.exe ->) (Rivet Networks LLC -> Rivet Networks) C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe
(services.exe ->) (Rivet Networks LLC -> Rivet Networks, LLC.) C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe
(services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(services.exe ->) (Synology Inc. -> ) C:\Program Files (x86)\Synology\SynologyDrive\bin\vss-service-x64.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6d461a\WavesSysSvc64.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.542.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Synology Inc. -> Synology Inc.) C:\Users\AR\AppData\Local\SynologyDrive\SynologyDrive.app\bin\cloud-drive-ui.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3893296 2016-05-17] (Wistron Corporation -> Dell Inc.)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2109064 2019-11-27] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3951024 2019-10-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.)
HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo75de.inf_amd64_5ff36f834a6d461a\WavesSvc64.exe [1222536 2018-12-05] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [834336 2019-02-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [DisplayLinkTrayApp] => C:\Program Files\DisplayLink Core Software\DisplayLinkTrayApp.exe [6342856 2021-05-11] (DISPLAYLINK (UK) LIMITED -> DisplayLink Corp.)
HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [592608 2022-07-13] (geek software GmbH -> geek software GmbH)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Beschränkung <==== ACHTUNG
HKU\S-1-5-21-3220973240-3280425687-1539964896-1001\...\Run: [HP Officejet Pro 8620 (NET) #2] => C:\Program Files\HP\HP Officejet Pro 8620\Bin\ScanToPCActivationApp.exe [3486368 2021-11-30] (HP Inc. -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-3220973240-3280425687-1539964896-1001\...\Run: [HPECF0D0 (HP Officejet Pro 8620)] => C:\Program Files\HP\HP Officejet Pro 8620\Bin\ScanToPCActivationApp.exe [3486368 2021-11-30] (HP Inc. -> Hewlett-Packard Development Company, LP)
HKU\S-1-5-21-3220973240-3280425687-1539964896-500\...\RunOnce: [Application Restart #0] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe -os-restarted [666960 2022-08-27] (Mozilla Corporation -> Mozilla Corporation)
HKU\S-1-5-21-3220973240-3280425687-1539964896-500\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2629520 2022-09-01] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Print\Monitors\HP 7012 Status Monitor: C:\WINDOWS\system32\hpinksts7012LM.dll [328704 2014-03-03] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet Pro 8620): C:\WINDOWS\system32\HPDiscoPM7012.dll [763040 2021-11-30] (HP Inc. -> Hewlett-Packard Development Company, LP)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.102\Installer\chrmstp.exe [2022-08-22] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\105.1.43.88\Installer\chrmstp.exe [2022-09-01] (Brave Software, Inc. -> Brave Software, Inc.)
Startup: C:\Users\AR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Drive Client.lnk [2022-09-02]
ShortcutTarget: Synology Drive Client.lnk -> C:\Program Files (x86)\Synology\SynologyDrive\bin\launcher.exe (Synology Inc. -> Synology Inc.)
Startup: C:\Users\AR\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Officejet Pro 8620.lnk [2022-09-02]
ShortcutAndArgument: Tintenwarnungen überwachen - HP Officejet Pro 8620.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Officejet Pro 8620\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN63KFW165;CONNECTION=USB;MONITOR=1;
BootExecute: autocheck autochk *
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {030CF179-90DF-4C6D-80FB-AC2CC098F6A8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-03-07] (Google Inc -> Google Inc.)
Task: {0318FD73-3EC5-4C3C-85DE-61078738A432} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {06278D0B-8E14-4706-BBBC-0D6C1120AFFE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6570472 2022-08-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {084101FA-9324-428B-8CEB-33A5861EC636} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0BED3D25-098B-40B1-BA4A-36909B358BA6} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-11-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {1251D14E-1773-41CC-BDA7-4A1CA40CD004} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-11-18] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {15ACD386-64CA-40AA-827B-2B92A1B671BB} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe do-task "E7CF176E110C211B"
Task: {284A8A5B-7DE5-4781-8021-5688E2E47996} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3220973240-3280425687-1539964896-500 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4154248 2022-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {2AEA4CBA-9C79-4A09-9741-F7B0D510CABF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2BD5930E-C7AA-48E2-B073-0F99A31FC79B} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {2EB36D93-9B29-45C4-A94F-DDE44D3659FD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116632 2022-08-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {2F1DBA31-F773-484A-9CAA-16BA2DBA367C} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {3747A056-34EA-453F-8244-530C74798AA0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3DFCEBDC-D553-4767-90C2-328B0E0EAB4D} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3220973240-3280425687-1539964896-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4154248 2022-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {3F800F2B-8BE0-4F40-840D-2E69E15417D6} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {44B74B5E-67C2-40A6-A52E-ECC2F7EEA889} - System32\Tasks\TrackerAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [4475136 2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
Task: {47038120-DBA8-4376-AFDA-DEBD27F6A60B} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {4C8AFA11-D3B8-471E-A1BA-C7DB4131ED3A} - \Microsoft\Windows\UNP\RunCampaignManager -> Keine Datei <==== ACHTUNG
Task: {676D9780-E075-4813-8A9E-936E22A115E3} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {73B66B52-B5E4-4F00-853E-3F01D1C646C4} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646344 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {7C6BE2BB-152A-4DCE-B843-726C99863744} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-3220973240-3280425687-1539964896-500 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
Task: {800DC2FE-65BA-4C57-A106-5049111CF4A3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A774CB27-34AF-473B-9DFA-F8BE42528C43} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {A7E162D3-4F21-4122-AA3D-8A2A1ECF5E87} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {AC6624F1-9C61-4FF4-B0E4-06C68CFA0F20} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {B0A15D36-9523-44A2-B284-E397D5432149} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4154248 2022-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {BBAA493E-6786-40E7-830F-3EBA1729ACFB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {BECFB25C-0985-45E7-AED9-7D85FDD71915} - System32\Tasks\HPCustParticipation HP Officejet Pro 8620 => C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPCustPartic.exe [5744800 2021-11-30] (HP Inc. -> Hewlett-Packard Development Company, LP)
Task: {C8986703-3803-450F-A373-5598AC1F7B0F} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {C9D77B54-A26B-41B6-86A3-02DE329B54D7} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-25] (Corel Corporation -> Corel Corporation)
Task: {C9D994DC-22CE-4497-9548-CD7219C5349B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342080 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {CE42D257-B237-4D22-AAE8-A2BE94A5A906} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-01] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {D3563C98-9F23-43EB-B45F-EC9D99842F5B} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\FrameworkAgents\SupportAssistInstaller.exe [663392 2022-08-22] (Dell Inc -> Dell Inc.)
Task: {D71F3985-3312-4D17-93DB-1BB5FAA70069} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {DA5355A5-6B71-4705-BDF9-96EEA61BAE29} - System32\Tasks\G2MUploadTask-S-1-5-21-3220973240-3280425687-1539964896-1001 => C:\Users\AR\AppData\Local\GoToMeeting\19950\g2mupload.exe [33456 2022-08-07] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {DE550027-F199-4E67-A40E-12A08F93D352} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-03-07] (Google Inc -> Google Inc.)
Task: {E549966C-1E01-4B88-B1A4-56C1186D72A3} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6570472 2022-08-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {E80A164C-1D73-43EC-A336-F6BBD6C16B56} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {F855D619-26F4-4C58-9204-71A0A28DC400} - System32\Tasks\G2MUpdateTask-S-1-5-21-3220973240-3280425687-1539964896-1001 => C:\Users\AR\AppData\Local\GoToMeeting\19950\g2mupdate.exe [33456 2022-08-07] (LogMeIn, Inc. -> LogMeIn, Inc.)
Task: {FE365810-C33E-4E71-AB22-4488DC141919} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116632 2022-08-31] (Microsoft Corporation -> Microsoft Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-3220973240-3280425687-1539964896-1001.job => C:\Users\AR\AppData\Local\GoToMeeting\19950\g2mupdate.exe
Task: C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-3220973240-3280425687-1539964896-1001.job => C:\Users\AR\AppData\Local\GoToMeeting\19950\g2mupload.exe
Task: C:\WINDOWS\Tasks\RunDLC.job => cmd c sc start Dell Help SupportWORKGROUP AR DELL
Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{1d0ac1ee-0caa-4089-8e82-f0dcd41815dc}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{1daca583-56f2-4e85-8fc4-3c101282df7e}: [DhcpNameServer] 192.168.2.1
Edge:
=======
Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden]
Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden]
Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden]
Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden]
Edge DefaultProfile: Default
Edge Profile: C:\Users\AR\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-28]
FireFox:
========
FF DefaultProfile: piwot1xb.default-1614160673643
FF ProfilePath: C:\Users\AR\AppData\Roaming\Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643 [2022-08-31]
FF Homepage: Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643 -> hxxps://web.de/
FF Session Restore: Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643 -> ist aktiviert.
FF Notifications: Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643 -> hxxps://mail.protonmail.com; hxxps://web.whatsapp.com
FF Extension: (Cisco Webex Extension) - C:\Users\AR\AppData\Roaming\Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643\Extensions\ciscowebexstart1@cisco.com.xpi [2022-07-22]
FF Extension: (Kee - Password Manager) - C:\Users\AR\AppData\Roaming\Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643\Extensions\keefox@chris.tomlinson.xpi [2021-05-06]
FF Extension: (Adblock Plus - kostenloser Adblocker) - C:\Users\AR\AppData\Roaming\Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-08-30]
FF Extension: (1Password – Passwort-Manager) - C:\Users\AR\AppData\Roaming\Mozilla\Firefox\Profiles\piwot1xb.default-1614160673643\Extensions\{d634138d-c276-4fc8-924b-40a0ea21d284}.xpi [2022-07-08]
FF ProfilePath: C:\Users\AR\AppData\Roaming\kompozer.net\KompoZer\Profiles\3761y37m.default [2018-02-24]
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-08-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-08-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-3220973240-3280425687-1539964896-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin ProgramFiles/Appdata: C:\Users\AR\AppData\Roaming\mozilla\plugins\npatgpc.dll [2018-10-02]
Chrome:
=======
CHR Profile: C:\Users\AR\AppData\Local\Google\Chrome\User Data\Default [2022-09-01]
CHR Extension: (Google Docs Offline) - C:\Users\AR\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-09-01]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\AR\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-24]
Brave:
=======
BRA DefaultProfile: Default
BRA Profile: C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-09-02]
BRA StartupUrls: Default -> "hxxps://web.de/magazine/panorama/ehemaliges-heimkind-versuchskaninchen-pharmaindustrie-37207212","hxxps://www.ebay-kleinanzeigen.de/p-anzeige-aufgeben-bestaetigung.html?adId=1500132752&uuid=210ac365-1221-49ae-8a84-59929efdd28a&edited=true","hxxps://bulksell.ebay.de/ws/eBayISAPI.dll?SingleList&sellingMode=ReviseItem&&lineID=195295013856&guest=1","hxxps://mesg.ebay.de/mesgweb/ViewMessages/0/All","hxxps://www.dein-heizungsbauer.de/ratgeber/bauen-sanieren/waermepumpe-arten/","hxxps://solar.huawei.com/de/Products/FusionSolar","hxxps://krannich-solar.com/de-de/unternehmen/kontakt","hxxps://pvaustria.at/technische-grundlagen/","hxxps://www.tecalor.de/de/home.html","hxxps://www.pvxchange.com/Wechselrichter/HUAWEI/SUN2000-12KTL-M2-996000051","hxxps://www.pvxchange.com/mediafiles/pvxchange/attachments/Datasheet_SUN2000-12_20KTL-M2.pdf","hxxps://www.pvxchange.com/Wechselrichter/AC-Nennleistung-5-kW-bis-10-kW::HUAWEI#hfilter","hxxps://www.google.com/search?q=SPR-MAX3-400&ei=0IP7YpTCHbeF9u8PsPex-Ac&ved=0ahUKEwiU6s-Apcv5AhW3gv0HHbB7DH8Q4dUDCA4&oq=SPR-MAX3-400&gs_lcp=Cgdnd3Mtd2l6EAwyBQgAEIAEMgUIABCABDIFCAAQgAQyBQgAEIAEMgQIABAeMgQIABAeMgQIABAeMgYIABAeEAVKBAhBGABKBAhGGABQAFgAYOJoaABwAXgAgAGDAYgBgwGSAQMwLjGYAQCgAQKgAQHAAQE&sclient=gws-wiz","hxxps://www.photovoltaik4all.de/komplettanlagen/?p=6","hxxps://www.memodo.de/sunpower-maxeon-3-400-watt","hxxps://www.hte-shop.de/admin/cache.php","hxxps://www.forexbestshop.com/product/ultimate-trend-following-indicator/","hxxp://themeloader.com/","hxxps://www.google.com/search?q=%C3%BCbersetzer&oq=%C3%BCbersetzer&aqs=chrome.0.69i59.3365j0j1&sourceid=chrome&ie=UTF-8","hxxps://fxmt4indicators.com/product/ultimate-trend-following-indicator/","hxxps://www.pvxchange.com/Mein-Konto","hxxps://www.pvxchange.com/Wechselrichter/HUAWEI/SUN2000-8KTL-M1-High-Current-Version-996000257","hxxps://www.pvxchange.com/mediafiles/pvxchange/attachments/Datasheet_SUN2000-12_20KTL-M2.pdf","hxxps://www.maxsel.de/","hxxps://www.photovoltaik4all.de/phoenix-contact-pv-gak-sol-sc-1st-0-dc-2mppt-1000se","hxxps://www.photovoltaik-shop.com/mwdownloads/download/link/id/160/","hxxps://www.shinetech-power.de/solar-module/jinko/","hxxps://www.photovoltaik4all.de/speicher/?p=1","hxxps://www.amazon.de/dp/B00KM3URHG/ref=cm_sw_r_api_i_YKPE5YN27RTHSFNKPZB4_0?_encoding=UTF8&psc=1","hxxps://www.photovoltaik-shop.com/wechselrichter-huawei-sun2000-12ktl-m2.html","hxxps://www.google.com/search?q=NOCT+module+leistung&oq=NOCT+module+leistung&aqs=chrome..69i57.9663j0j1&sourceid=chrome&ie=UTF-8","hxxps://solaranlagen-forum.com/forum/board/2-photovoltaikanlagen-planung/?pageNo=3","hxxps://my.1password.com/signin?landing-page=%2Fvaults%2Faeg7aqj5ba2eq4bq7w6y6xdpgy%2F001%2F4mh6jszqnwrelnwfjc6ir2mqui","hxxps://www.maxsel.de/produkt-kategorie/wechselrichter/hybrid-wechselrichter/hybrid-wechselrichter-von-huawei/","hxxps://www.photovoltaikforum.com/thread/162394-unterschied-huawei-sun2000-15ktl-m0-bzw-sun2000-15ktl-m2/","hxxps://www.rechnerphotovoltaik.de/photovoltaik/kosten-finanzierung/kosten-preise","hxxps://www.pvxchange.com/Energiespeicher","hxxps://www.pvxchange.com/mediafiles/pvxchange/attachments/Datasheet_SUN2000-12_20KTL-M2.pdf","hxxps://www.pvxchange.com/mediafiles/pvxchange/attachments/Datasheet_SUN2000-12_20KTL-M2.pdf","hxxps://www.google.com/search?q=SUN2000-12KTL-M2&oq=SUN2000-12KTL-M2&aqs=chrome..69i57j69i60l3.1555j0j1&sourceid=chrome&ie=UTF-8","hxxps://www.voltus.de/?cl=details&anid=3b700e2210d7deed529db81fc5ab546a&iaid=20220821100846547401060df99a0b","hxxps://www.ske-solar.com/produkt/huawei-sun2000-12ktl-m2-wechselrichter/","hxxps://www.voltus.de/?cl=details&anid=1548031267957e2262455efd58a725ab&iaid=2022082112334243323735bbc9be2d","hxxps://forum.jtl-software.de/threads/artikelmerkmale-sortieren-nicht-konsequent.136983/","hxxps://guide.jtl-software.de/jtl-wawi/jtl-ameise/attribute-merkmale-und-eigene-felder-importieren/","hxxps://forum.jtl-software.de/attachments/bildschirmfoto-2020-09-17-um-12-21-50-png.46593/","hxxps://www.shinetech-power.de/","hxxps://www.memodo.de/jinkosolar-jkm375n-6tl3-v","hxxps://www.google.com/search?q=%C3%BCbersetzer&oq=%C3%BCbersetzer&aqs=chrome.0.69i59.5520j0j1&sourceid=chrome&ie=UTF-8","hxxps://www.sparda-bw.de/","hxxps://www.jtl-software.de/extension-store/wnm-eu-energielabels-jtl-shop-5","hxxp://hte-shop.de/"
BRA DefaultSearchKeyword: Default -> :g
BRA Session Restore: Default -> ist aktiviert.
BRA Extension: (Google Übersetzer) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-10]
BRA Extension: (lock) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aeblfdkhhhdcdjpifhhbdiojplfjncoa [2022-07-07]
BRA Extension: (Mate Translate – Übersetzer, Wörterbuch) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ihmgiclibbndffejedjimfjmfoabpcke [2022-08-30]
BRA Profile: C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\System Profile [2022-08-25]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-09-01]
BRA Extension: (Brave NTP background images) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-11]
BRA Extension: (Brave Ads Resources) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\bbefpembgddgdihpkcidgdgiojjlchji [2021-12-09]
BRA Extension: (Wallet Data Files Updater) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-08-17]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-09-02]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2022-09-01]
BRA Extension: (Brave Ad Block Updater (EasyList Germany)) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\faknfgalcghekhfggcdikddilkpjbonh [2022-09-02]
BRA Extension: (Brave Ads Resources) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\jcncoheihebhhiemmbmpfhkceomfipbj [2021-12-09]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-03-11]
BRA Extension: (Brave NTP sponsored images) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\obbokncgfcbepeipkhpdepjjoncelefj [2022-09-02]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\AR\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-08-31]
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3853384 2022-08-12] (philandro Software GmbH -> AnyDesk Software GmbH)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-11-18] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-11-18] (Brave Software, Inc. -> BraveSoftware Inc.)
R3 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12102608 2022-08-02] (Microsoft Corporation -> Microsoft Corporation)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [458960 2022-08-16] (Dell Inc -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [161488 2022-08-16] (Dell Inc -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [484560 2022-08-16] (Dell Inc -> Dell Technologies Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2017-09-19] (Dell Inc -> Dell Inc.)
S4 Dell Foundation Services; C:\Program Files\Dell\Dell Foundation Services\DFSSvc.exe [97616 2017-01-11] (Dell Inc -> Dell)
R2 Dell Help & Support; C:\Program Files\Dell\Dell Help & Support\MDLCSvc.exe [41008 2018-01-16] (Dell Inc -> Dell Inc.)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [22224 2022-08-11] (Dell Inc -> Dell INC.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [45784 2022-08-17] (Dell Inc -> )
R2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [156064 2022-08-15] (Dell Inc -> Dell)
R2 EaseUS UPDATE SERVICE; C:\Program Files (x86)\EaseUS\ENS\ensserver.exe [27784 2021-11-15] (CHENGDU YIWO Tech Development Co., Ltd. -> )
S3 ElfoService; C:\Program Files (x86)\ElsterFormular Update Service\bin\elfoService.exe [1113864 2020-03-18] (Bayerisches Landesamt fuer Steuern -> )
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.166.0807.0002\FileSyncHelper.exe [3380624 2022-09-01] (Microsoft Corporation -> Microsoft Corporation)
R2 GUBootService; C:\Program Files (x86)\Glary Utilities 5\GUBootService.exe [875392 2021-12-12] (Glarysoft LTD -> Glarysoft Ltd)
R2 GUPMService; C:\Program Files (x86)\Glary Utilities 5\GUPMService.exe [65408 2021-12-12] (Glarysoft LTD -> Glarysoft Ltd)
S4 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-03-02] (Intel Corporation) [Datei ist nicht signiert]
S4 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-02] (Intel Corporation) [Datei ist nicht signiert]
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.166.0807.0002\OneDriveUpdaterService.exe [3800976 2022-09-01] (Microsoft Corporation -> Microsoft Corporation)
R2 PDF24; C:\Program Files\PDF24\pdf24.exe [592608 2022-07-13] (geek software GmbH -> geek software GmbH)
S4 Product Registration; C:\Program Files\Dell\Dell Product Registration\PRSvc.exe [47144 2017-04-06] (Dell Inc -> Dell)
R2 RAPSService; C:\Program Files\Rivet Networks\SmartByte\RAPSService.exe [64848 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
S3 RNDBWM; C:\Program Files\Rivet Networks\SmartByte\RNDBWMService.exe [64856 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6255896 2022-08-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SmartByte Analytics Service; C:\Program Files\Rivet Networks\SmartByte\SmartByteAnalyticsService.exe [1630576 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 SmartByte Network Service x64; C:\Program Files\Rivet Networks\SmartByte\SmartByteNetworkService.exe [2385256 2020-08-14] (Rivet Networks LLC -> Rivet Networks)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-01-16] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [160096 2022-08-22] (Dell Inc -> Dell Inc.)
R2 Synology Drive VSS Service x64; C:\Program Files (x86)\Synology\SynologyDrive\bin\vss-service-x64.exe [372208 2022-04-26] (Synology Inc. -> )
S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [14621592 2022-07-13] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_4793842ae20151f0\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_4793842ae20151f0\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
S3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [43400 2021-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Dell Technologies)
R3 DellInstrumentation; C:\WINDOWS\System32\drivers\DellInstrumentation.sys [37808 2022-05-20] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 dlcdcncm; C:\WINDOWS\System32\drivers\dlcdcncm62_x64.sys [81744 2021-05-28] (DISPLAYLINK (UK) LIMITED -> DisplayLink Corp.)
S3 dlusbaudio; C:\WINDOWS\system32\DRIVERS\dlusbaudio_x64.sys [238352 2017-09-18] (DISPLAYLINK -> DisplayLink Corp.)
R2 DpmLiteDrv; c:\Program Files\Dell\QuickSet\DpmLiteDrv64.sys [15080 2014-10-15] (Wistron Corporation -> Wistron Corp.)
R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [30720 2021-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd)
R3 MpKsl24634efd; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{84C5DA60-4792-4526-9486-B8D2E6FC3DF4}\MpKslDrv.sys [141576 2022-09-02] (Microsoft Windows -> Microsoft Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
R3 SmbCoSvc; C:\WINDOWS\system32\DRIVERS\SmbCo10X64.sys [164424 2020-08-14] (Rivet Networks LLC -> Rivet Networks, LLC.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
Fehler beim Lesen der Datei: "C:\Users\AR\Desktop\eyJraWQiOiJsbmstc3J2LXYxIiwiYWxnIjoiUlMyNTYifQ.eyJpc3MiOiJsbmstc3J2IiwiYXVkIjoibG5rLXJlcyIsImV4cCI6MTY1NDE2MjA2MiwianRpIjoiMzBjMzZlZDQtMWM0NS00ODQxLTgxMzYtMjEyMjYwOWE2NzA1LUlVLWlOdnF4bWZyMmZZOENKQmxFcWciLCJpYXQiOjE2NTQxNjExNjIsInR5cCI6ImtyZWRfaW52b2lj.pdf"
2022-09-02 18:42 - 2022-09-02 18:42 - 002371072 _____ (Farbar) C:\Users\AR\Downloads\FRST64 (3).exe
2022-09-02 11:49 - 2022-09-02 11:49 - 000068202 _____ C:\Users\AR\Downloads\Verkaufsschild--Lieferbar---Jinko-PV-Module-375W-Tiger-All-Black-JKM-M6RL3B (1).pdf
2022-09-02 11:47 - 2022-09-02 11:47 - 000068202 _____ C:\Users\AR\Downloads\Verkaufsschild--Lieferbar---Jinko-PV-Module-375W-Tiger-All-Black-JKM-M6RL3B.pdf
2022-09-01 22:42 - 2022-09-01 22:43 - 000111420 _____ C:\Users\AR\Downloads\Auftragsbestätigung 2022210055.PDF
2022-09-01 22:39 - 2022-09-01 22:39 - 000077870 _____ C:\Users\AR\Downloads\Angebot (1).pdf
2022-09-01 21:25 - 2022-09-01 21:33 - 000074657 _____ C:\Users\AR\Downloads\Addition.txt
2022-09-01 21:15 - 2022-09-02 18:44 - 000046032 _____ C:\Users\AR\Downloads\FRST.txt
2022-09-01 21:14 - 2022-09-01 21:14 - 002371072 _____ (Farbar) C:\Users\AR\Downloads\FRST64 (2).exe
2022-09-01 21:13 - 2022-09-01 21:13 - 002371072 _____ (Farbar) C:\Users\AR\Downloads\FRST64 (1).exe
2022-09-01 21:12 - 2022-09-01 21:13 - 002371072 _____ (Farbar) C:\Users\AR\Downloads\FRST64.exe
2022-09-01 21:04 - 2022-09-01 21:04 - 003373192 _____ (Crystal Rich Ltd ) C:\Users\AR\Downloads\lockhuntersetup_3-4-3 (1).exe
2022-09-01 20:56 - 2022-09-01 20:57 - 000000000 ____D C:\ProgramData\LockHunter
2022-09-01 20:48 - 2022-09-01 20:48 - 000000934 ____C C:\Users\AR\Desktop\LockHunter.lnk
2022-09-01 20:47 - 2022-09-01 20:47 - 000000000 ____D C:\Users\AR\AppData\Roaming\LockHunter
2022-09-01 20:47 - 2022-09-01 20:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LockHunter
2022-09-01 20:47 - 2022-09-01 20:47 - 000000000 ____D C:\Program Files\LockHunter
2022-09-01 20:46 - 2022-09-01 20:46 - 003373192 _____ (Crystal Rich Ltd ) C:\Users\AR\Downloads\lockhuntersetup_3-4-3.exe
2022-09-01 20:39 - 2022-09-01 20:39 - 001078591 _____ C:\Users\AR\Downloads\Unlocker1.9.2 (1).exe
2022-09-01 20:20 - 2022-09-01 20:20 - 001078591 _____ C:\Users\AR\Downloads\Unlocker1.9.2.exe
2022-09-01 19:38 - 2022-09-01 19:39 - 000000000 ___DC C:\Users\AR\Desktop\Neuer Ordner
2022-09-01 18:31 - 2022-09-01 18:31 - 000000000 ____D C:\Users\AR\OneCommander
2022-09-01 17:45 - 2022-09-01 20:57 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-01 13:22 - 2022-09-01 13:22 - 000466750 _____ C:\Users\AR\Downloads\montageanleitung_its_96.pdf
2022-09-01 13:15 - 2022-09-01 13:15 - 001136626 _____ C:\Users\AR\Downloads\montageanleitung_ts93b.pdf
2022-09-01 09:55 - 2022-09-01 09:55 - 000245546 _____ C:\Users\AR\Downloads\Re Luftdruckwächter 2019_11_18.pdf
2022-09-01 07:54 - 2022-09-01 07:54 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-09-01 07:54 - 2022-09-01 07:54 - 000002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-09-01 07:53 - 2022-09-02 10:26 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-08-31 14:57 - 2022-08-31 14:57 - 000077870 _____ C:\Users\AR\Downloads\Angebot.pdf
2022-08-31 14:56 - 2022-08-31 14:56 - 001418966 _____ C:\Users\AR\Downloads\Mono_S4_395-410W_HC_MBB_108-Zellen_web_de.pdf
2022-08-31 14:55 - 2022-08-31 14:55 - 000589426 _____ C:\Users\AR\Downloads\Luna2000.pdf
2022-08-31 11:28 - 2022-06-26 21:26 - 006366208 ____C C:\Users\AR\Documents\backup.bak
2022-08-31 11:05 - 2022-08-31 11:59 - 000000000 ___DC C:\Users\AR\Documents\Outlook-Dateien
2022-08-31 00:16 - 2022-08-31 00:16 - 000002626 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000002622 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000002601 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000002579 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000002576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000002543 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000002540 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000002512 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2022-08-31 00:16 - 2022-08-31 00:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2022-08-31 00:12 - 2022-08-31 00:16 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-08-31 00:12 - 2022-08-31 00:12 - 000000000 ____D C:\Program Files\Microsoft Office 15
2022-08-31 00:03 - 2022-09-01 07:54 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3220973240-3280425687-1539964896-1001
2022-08-31 00:03 - 2022-09-01 07:54 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3220973240-3280425687-1539964896-500
2022-08-31 00:03 - 2022-08-31 00:03 - 000000000 ___RD C:\Users\defaultuser100001\OneDrive
2022-08-31 00:03 - 2022-08-31 00:03 - 000000000 ___RD C:\Users\defaultuser100000\OneDrive
2022-08-31 00:03 - 2022-08-31 00:03 - 000000000 ___RD C:\Users\Default\OneDrive
2022-08-30 17:48 - 2022-09-01 07:43 - 000469008 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-08-30 00:04 - 2022-08-30 00:04 - 000195848 _____ C:\Users\AR\Downloads\Jahrlicher Uberblick uber Kosten und Gebuhren CFD 2022.pdf
2022-08-30 00:02 - 2022-08-30 00:02 - 000039090 _____ C:\Users\AR\Downloads\Jahrlicher Uberblick uber Kosten und Gebuhren Beschreibung 2022.pdf
2022-08-29 17:38 - 2022-08-29 17:38 - 000017509 ____C C:\Users\AR\Desktop\Retoure_Vlasveld_24376417.pdf
2022-08-28 13:53 - 2022-08-28 13:53 - 000000000 ____D C:\WINDOWS\Panther
2022-08-28 13:53 - 2019-07-05 11:50 - 009899960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2022-08-28 13:53 - 2019-07-05 11:50 - 000443480 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2022-08-28 13:47 - 2022-08-28 13:47 - 000005674 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (9).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005674 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (6).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005673 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (5).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005668 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (2).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005659 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (3).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005657 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (1).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005654 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (7).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005649 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (8).pdf
2022-08-28 13:47 - 2022-08-28 13:47 - 000005648 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer (4).pdf
2022-08-28 13:46 - 2022-08-28 13:46 - 000005663 _____ C:\Users\AR\Downloads\6x_Sudoku_Level_Schwer.pdf
2022-08-27 14:47 - 2022-08-27 14:47 - 000056106 _____ C:\Users\AR\Downloads\IG_Steuererklaerung_2019.pdf
2022-08-27 14:46 - 2022-08-27 14:46 - 000055431 _____ C:\Users\AR\Downloads\IG_Steuererklaerung_2020.pdf
2022-08-27 14:45 - 2022-08-27 14:45 - 000054198 _____ C:\Users\AR\Downloads\IG_Steuererklaerung_2021.pdf
2022-08-26 13:50 - 2022-08-26 13:50 - 000000080 _____ C:\Users\AR\Downloads\export_csv.csv
2022-08-26 13:35 - 2022-08-26 13:36 - 000000000 ___DC C:\Users\AR\Desktop\Lieferanten PV
2022-08-26 13:27 - 2022-08-26 13:27 - 000003946 _____ C:\WINDOWS\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2022-08-23 09:18 - 2022-08-23 09:18 - 002855157 _____ C:\Users\AR\Downloads\Datenblatt Jinko 375, full black.pdf
2022-08-19 15:56 - 2022-08-19 15:56 - 000003536 _____ C:\Users\AR\AppData\Local\recently-used.xbel
2022-08-13 20:27 - 2022-08-13 20:27 - 000000000 ____D C:\WINDOWS\{B08702CA-6882-42A8-8C5E-5D4BC82C0E88}
2022-08-12 17:50 - 2022-08-12 17:50 - 000000162 ___HC C:\Users\AR\Desktop\~$cherungskopie von leer.wbk
2022-08-11 09:40 - 2022-08-11 09:40 - 000151329 ____C C:\Users\AR\Desktop\klarna Rechnung (002).jpeg
2022-08-10 09:01 - 2022-08-10 09:01 - 000000000 ___HD C:\$WinREAgent
2022-08-10 00:41 - 2022-08-10 00:41 - 001329416 _____ C:\WINDOWS\system32\FaceTrackerInternal.dll
2022-08-10 00:41 - 2022-08-10 00:41 - 001314304 _____ C:\WINDOWS\system32\FaceProcessor.dll
2022-08-10 00:41 - 2022-08-10 00:41 - 000506136 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2022-08-10 00:40 - 2022-08-10 00:40 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2022-08-10 00:40 - 2022-08-10 00:40 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2022-08-10 00:40 - 2022-08-10 00:40 - 000011803 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-08-10 00:39 - 2022-08-10 00:39 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-08-10 00:38 - 2022-08-10 00:38 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-08-10 00:38 - 2022-08-10 00:38 - 000162304 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-08-10 00:38 - 2022-08-10 00:38 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2022-08-10 00:38 - 2022-08-10 00:38 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2022-08-08 14:55 - 2022-08-08 14:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24
2022-08-08 14:54 - 2022-08-08 14:55 - 000000000 ____D C:\Program Files\PDF24
2022-08-07 14:53 - 2022-08-10 08:54 - 000000632 _____ C:\WINDOWS\Tasks\G2MUploadTask-S-1-5-21-3220973240-3280425687-1539964896-1001.job
2022-08-07 14:53 - 2022-08-10 08:54 - 000000536 _____ C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-3220973240-3280425687-1539964896-1001.job
2022-08-05 13:05 - 2022-08-07 14:53 - 000003780 _____ C:\WINDOWS\system32\Tasks\G2MUploadTask-S-1-5-21-3220973240-3280425687-1539964896-1001
2022-08-05 13:05 - 2022-08-07 14:53 - 000003684 _____ C:\WINDOWS\system32\Tasks\G2MUpdateTask-S-1-5-21-3220973240-3280425687-1539964896-1001
2022-08-05 13:05 - 2022-08-07 14:53 - 000000000 ____D C:\Users\AR\AppData\Local\GoToMeeting
2022-08-05 13:05 - 2022-08-05 13:05 - 000000000 ____D C:\Users\AR\AppData\Local\GoTo Opener
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2022-09-02 18:45 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-02 18:44 - 2018-05-25 16:56 - 000000000 ____D C:\FRST
2022-09-02 17:50 - 2021-12-10 16:41 - 000000000 ____D C:\Users\AR\AppData\Roaming\All-in-One Messenger
2022-09-02 17:45 - 2017-03-07 12:23 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-02 17:42 - 2020-10-07 12:08 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-02 16:36 - 2017-03-12 19:45 - 000000000 ___DC C:\Users\AR\AppData\LocalLow\Mozilla
2022-09-02 16:14 - 2020-06-14 22:14 - 000000000 ____D C:\Users\AR\AppData\Local\SynologyDrive
2022-09-02 14:08 - 2017-03-07 10:43 - 000000000 ___DC C:\Users\AR\AppData\Local\CrashDumps
2022-09-02 12:25 - 2017-10-05 22:19 - 000000000 ____D C:\ProgramData\NVIDIA
2022-09-02 08:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-09-02 08:14 - 2016-10-25 17:39 - 000000000 __SHD C:\Users\AR\IntelGraphicsProfiles
2022-09-01 23:47 - 2017-03-07 09:49 - 000002346 ___HC C:\Users\AR\Documents\Default.rdp
2022-09-01 21:05 - 2020-10-07 12:28 - 001632230 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-09-01 21:05 - 2019-12-07 16:51 - 000708722 _____ C:\WINDOWS\system32\perfh007.dat
2022-09-01 21:05 - 2019-12-07 16:51 - 000142964 _____ C:\WINDOWS\system32\perfc007.dat
2022-09-01 21:05 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-09-01 20:57 - 2020-10-07 12:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-01 20:57 - 2020-10-07 12:15 - 000000000 ____D C:\Users\AR
2022-09-01 20:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-09-01 20:57 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2022-09-01 20:57 - 2016-10-08 12:46 - 000000000 ___DC C:\Intel
2022-09-01 20:56 - 2017-02-12 21:50 - 000000000 ___DC C:\Users\AR\AppData\Roaming\KeePass
2022-09-01 20:05 - 2018-05-29 08:16 - 000000000 ___DC C:\Users\AR\AppData\Local\D3DSCache
2022-09-01 19:45 - 2021-11-26 07:59 - 000000000 ____D C:\WINDOWS\Minidump
2022-09-01 19:45 - 2017-03-07 11:43 - 000000000 ___DC C:\Users\AR\AppData\Roaming\FileZilla
2022-09-01 19:42 - 2021-12-16 11:28 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5
2022-09-01 18:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-01 18:30 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-01 18:30 - 2018-06-14 18:33 - 000000000 ____D C:\ProgramData\Packages
2022-09-01 18:30 - 2018-05-27 11:48 - 000000000 ___DC C:\Users\AR\AppData\Local\PlaceholderTileLogoFolder
2022-09-01 18:30 - 2017-12-13 23:55 - 000000000 ___DC C:\Users\AR\AppData\Local\Packages
2022-09-01 17:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-09-01 17:43 - 2021-11-18 14:44 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2022-08-31 23:10 - 2020-10-14 19:50 - 000000000 ____D C:\Users\AR\AppData\Local\Deployment
2022-08-31 20:55 - 2021-12-16 13:06 - 000000000 ____D C:\Program Files (x86)\AnyDesk
2022-08-31 11:33 - 2022-06-26 21:26 - 006620160 ____C C:\Users\AR\Documents\backup.pst
2022-08-31 00:12 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-08-31 00:03 - 2022-06-26 16:22 - 000000000 ____D C:\Users\defaultuser100001
2022-08-31 00:03 - 2022-06-26 16:15 - 000000000 ____D C:\Users\defaultuser100000
2022-08-31 00:03 - 2016-10-25 17:40 - 000000000 ___RD C:\Users\AR\OneDrive
2022-08-30 23:29 - 2022-02-09 15:36 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-08-30 17:48 - 2017-03-29 11:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2022-08-30 17:48 - 2016-10-25 19:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-08-29 22:40 - 2020-10-07 12:37 - 000003632 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-08-29 22:40 - 2020-10-07 12:37 - 000003508 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-08-28 13:53 - 2016-10-08 12:45 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2022-08-28 13:53 - 2016-10-08 12:45 - 000000000 ____D C:\ProgramData\Package Cache
2022-08-28 13:53 - 2016-10-08 12:45 - 000000000 ____D C:\Program Files (x86)\Realtek
2022-08-28 10:46 - 2016-10-08 22:22 - 000000000 ____D C:\ProgramData\Dell
2022-08-27 19:50 - 2020-07-05 01:39 - 000002473 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-08-27 17:45 - 2021-10-06 07:16 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-08-27 17:45 - 2016-10-25 19:01 - 000001234 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-08-26 13:28 - 2016-10-08 12:45 - 000000000 ____D C:\Program Files\Dell
2022-08-26 13:21 - 2022-04-03 19:11 - 000000000 ____D C:\Program Files\dotnet
2022-08-23 07:44 - 2020-10-07 12:37 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-23 07:44 - 2020-10-07 12:37 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-22 23:39 - 2017-03-07 12:23 - 000002328 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-08-19 16:53 - 2018-05-27 11:59 - 000000000 ___DC C:\Users\AR\AppData\Local\babl-0.1
2022-08-19 13:37 - 2021-04-09 08:27 - 000000000 ____D C:\Users\AR\AppData\Roaming\Telegram Desktop
2022-08-15 13:35 - 2021-11-18 14:42 - 000003654 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA
2022-08-15 13:35 - 2021-11-18 14:42 - 000003530 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore
2022-08-13 20:29 - 2021-09-01 13:45 - 000000000 ____D C:\ProgramData\Temp
2022-08-13 20:29 - 2016-10-08 12:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2022-08-13 20:29 - 2016-10-08 12:45 - 000000000 ____D C:\Program Files (x86)\Dell
2022-08-12 19:20 - 2020-10-07 12:15 - 000000000 ____D C:\Users\Administrator
2022-08-12 18:59 - 2022-03-31 08:59 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-08-12 18:59 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-08-12 18:56 - 2019-12-07 11:14 - 000000000 ____D C:\PerfLogs
2022-08-12 18:51 - 2017-03-07 10:57 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2022-08-12 18:28 - 2017-03-07 10:57 - 000000000 ___DC C:\Users\AR\AppData\Roaming\TeamViewer
2022-08-11 00:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-08-11 00:42 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-08-11 00:42 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-08-11 00:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-08-10 09:20 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-08-10 00:38 - 2020-10-07 12:09 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-08-10 00:05 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2022-08-10 00:05 - 2016-11-06 15:14 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-08-09 23:51 - 2016-11-06 15:14 - 144534560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2022-06-26 20:43 - 2022-06-26 20:43 - 000052319 _____ () C:\Users\AR\AppData\Roaming\Durch Trennzeichen getrennte Werte.ADR
2022-06-26 21:03 - 2022-06-26 21:03 - 000017063 _____ () C:\Users\AR\AppData\Roaming\Durch Trennzeichen getrennte Werte.CAL
2018-06-06 18:10 - 2018-06-06 18:10 - 000003584 ____C () C:\Users\AR\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2022-08-19 15:56 - 2022-08-19 15:56 - 000003536 _____ () C:\Users\AR\AppData\Local\recently-used.xbel
2021-01-23 12:01 - 2021-01-23 12:57 - 000007601 _____ () C:\Users\AR\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== |