Sniperwolf | 17.09.2023 19:30 | Jetzt ging der Download wieder das gemerkt wurde, seltsam...
Mir ist aber gerade aufgefallen, als ich den Rechner gestartet habe, dass sich der Mauszeiger horizontal nach oben gezuckt hat, auch als ich die Maus los ließ. Wohl nur ca. 5 Millimeter auf den Bildschirm und die Maus lag zu 1/4 auf den Mauspad.
Hier aber nun die Logs Dateien von FRST, wie von MalwareByte unter Erkennungsverlauf (bei allen steht blockierte Webseite).
MalwareByte Erkennungsverlauf (31.08.23, 15:33) Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Datum des Schutzereignisses: 31.08.23
Uhrzeit des Schutzereignisses: 15:33
Protokolldatei: ffefe996-4802-11ee-9237-2cf05db37c66.json
-Softwaredaten-
Version: 4.6.0.277
Komponentenversion: 1.0.2114
Version des Aktualisierungspakets: 1.0.74699
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.3324)
CPU: x64
Dateisystem: NTFS
Benutzer: System
-Einzelheiten zu blockierten Websites-
Bösartige Website: 1
, C:\Program Files\Google\Chrome\Application\chrome.exe, Blockiert, -1, -1, 0.0.0, ,
-Website-Daten-
Kategorie: Trojaner
Domäne: xml.rxrtb.com
IP-Adresse: 199.182.164.180
Port: 443
Typ: Ausgehend
Datei: C:\Program Files\Google\Chrome\Application\chrome.exe
(end) MalwareByte Erkennungsverlauf (31.08.23, 15:40) Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Datum des Schutzereignisses: 31.08.23
Uhrzeit des Schutzereignisses: 15:40
Protokolldatei: ed5f92a8-4803-11ee-ab92-2cf05db37c66.json
-Softwaredaten-
Version: 4.6.0.277
Komponentenversion: 1.0.2114
Version des Aktualisierungspakets: 1.0.74699
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.3324)
CPU: x64
Dateisystem: NTFS
Benutzer: System
-Einzelheiten zu blockierten Websites-
Bösartige Website: 1
, C:\Program Files\Google\Chrome\Application\chrome.exe, Blockiert, -1, -1, 0.0.0, ,
-Website-Daten-
Kategorie: Trojaner
Domäne: xml.rxrtb.com
IP-Adresse: 199.182.164.180
Port: 443
Typ: Ausgehend
Datei: C:\Program Files\Google\Chrome\Application\chrome.exe
(end) MalwareByte Erkennungsverlauf (31.08.23, 15:47) Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Datum des Schutzereignisses: 31.08.23
Uhrzeit des Schutzereignisses: 15:47
Protokolldatei: eb665fee-4804-11ee-b8d9-2cf05db37c66.json
-Softwaredaten-
Version: 4.6.0.277
Komponentenversion: 1.0.2114
Version des Aktualisierungspakets: 1.0.74699
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.3324)
CPU: x64
Dateisystem: NTFS
Benutzer: System
-Einzelheiten zu blockierten Websites-
Bösartige Website: 1
, C:\Program Files\Google\Chrome\Application\chrome.exe, Blockiert, -1, -1, 0.0.0, ,
-Website-Daten-
Kategorie: Trojaner
Domäne: xml.rxrtb.com
IP-Adresse: 199.182.164.180
Port: 443
Typ: Ausgehend
Datei: C:\Program Files\Google\Chrome\Application\chrome.exe
(end) MalwareByte Erkennungsverlauf (31.08.23, 16:02) Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Datum des Schutzereignisses: 31.08.23
Uhrzeit des Schutzereignisses: 16:02
Protokolldatei: 10991b38-4807-11ee-ace2-2cf05db37c66.json
-Softwaredaten-
Version: 4.6.0.277
Komponentenversion: 1.0.2114
Version des Aktualisierungspakets: 1.0.74699
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.3324)
CPU: x64
Dateisystem: NTFS
Benutzer: System
-Einzelheiten zu blockierten Websites-
Bösartige Website: 1
, C:\Program Files\Google\Chrome\Application\chrome.exe, Blockiert, -1, -1, 0.0.0, ,
-Website-Daten-
Kategorie: Trojaner
Domäne: xml.rxrtb.com
IP-Adresse: 199.182.164.180
Port: 443
Typ: Ausgehend
Datei: C:\Program Files\Google\Chrome\Application\chrome.exe
(end) MalwareByte Erkennungsverlauf (31.08.23, 16:20) Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Datum des Schutzereignisses: 31.08.23
Uhrzeit des Schutzereignisses: 16:20
Protokolldatei: 9484c13e-4809-11ee-821d-2cf05db37c66.json
-Softwaredaten-
Version: 4.6.0.277
Komponentenversion: 1.0.2114
Version des Aktualisierungspakets: 1.0.74699
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.3324)
CPU: x64
Dateisystem: NTFS
Benutzer: System
-Einzelheiten zu blockierten Websites-
Bösartige Website: 1
, C:\Program Files\Google\Chrome\Application\chrome.exe, Blockiert, -1, -1, 0.0.0, ,
-Website-Daten-
Kategorie: Trojaner
Domäne: xml.rxrtb.com
IP-Adresse: 199.182.164.180
Port: 443
Typ: Ausgehend
Datei: C:\Program Files\Google\Chrome\Application\chrome.exe
(end) MalwareByte Erkennungsverlauf (03.09.23, 12:28) Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Datum des Schutzereignisses: 03.09.23
Uhrzeit des Schutzereignisses: 12:28
Protokolldatei: a7077ed6-4a44-11ee-a60a-2cf05db37c66.json
-Softwaredaten-
Version: 4.6.0.277
Komponentenversion: 1.0.2114
Version des Aktualisierungspakets: 1.0.74805
Lizenz: Testversion
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.3324)
CPU: x64
Dateisystem: NTFS
Benutzer: System
-Einzelheiten zu blockierten Websites-
Bösartige Website: 1
, C:\Program Files\Google\Chrome\Application\chrome.exe, Blockiert, -1, -1, 0.0.0, ,
-Website-Daten-
Kategorie: Riskware
Domäne: gameplace.b-cdn.net
IP-Adresse: 169.150.247.37
Port: 443
Typ: Ausgehend
Datei: C:\Program Files\Google\Chrome\Application\chrome.exe
(end) Hier der aktuelle Scan-Verlauf von MalwareByte: Code:
Malwarebytes
www.malwarebytes.com
-Protokolldetails-
Scan-Datum: 17.09.23
Scan-Zeit: 19:50
Protokolldatei: b4fa1e6a-5582-11ee-b812-2cf05db37c66.json
-Softwaredaten-
Version: 4.6.1.280
Komponentenversion: 1.0.2117
Version des Aktualisierungspakets: 1.0.75403
Lizenz: Abgelaufen
-Systemdaten-
Betriebssystem: Windows 10 (Build 19045.3324)
CPU: x64
Dateisystem: NTFS
Benutzer: MSI\**NAME**
-Scan-Übersicht-
Scan-Typ: Bedrohungs-Scan
Scan gestartet von: Manuell
Ergebnis: Abgeschlossen
Gescannte Objekte: 283307
Erkannte Bedrohungen: 0
In die Quarantäne verschobene Bedrohungen: 0
Abgelaufene Zeit: 2 Min., 26 Sek.
-Scan-Optionen-
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Erkennung
PUM: Erkennung
-Scan-Details-
Prozess: 0
(keine bösartigen Elemente erkannt)
Modul: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswert: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Daten-Stream: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Datei: 0
(keine bösartigen Elemente erkannt)
Physischer Sektor: 0
(keine bösartigen Elemente erkannt)
WMI: 0
(keine bösartigen Elemente erkannt)
(end) Dazu hat Avast Free Antivirus bei seinen Smartscan heute nichts gefunden.
Nun die Logs von FRST64:
FRST.txt Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 16-09-2023
durchgeführt von **NAME** (Administrator) auf MSI (Micro-Star International Co., Ltd. GF75 Thin 10SER) (17-09-2023 19:24:21)
Gestartet von C:\Users\**NAME**\Downloads\FRST64.exe
Geladene Profile: **NAME**
Plattform: Microsoft Windows 10 Home Version 22H2 19045.3324 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Chrome
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(A225F3B5-240D-4EE9-BCF4-697A07F5E93E -> Micro-Star INT'L CO., LTD.) C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.121.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(A-Volute SAS -> A-Volute) C:\Users\**NAME**\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI.CentralServer.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <6>
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Creative Cloud UI Helper.exe <2>
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Discord Inc. -> Discord Inc.) C:\Users\**NAME**\AppData\Local\Discord\app-1.0.9017\Discord.exe <6>
(DriverStore\FileRepository\cui_dch.inf_amd64_e67d3946e6cd0335\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e67d3946e6cd0335\igfxEM.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrotray.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <11>
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler64.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Intel(R) pGFX 2020 -> ) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_26b207b939eae50e\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e67d3946e6cd0335\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0651c2cb9dd31504\IntelCpHDCPSvc.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0651c2cb9dd31504\IntelCpHeciSvc.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_48973fc6c96c696a\RstMwService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2>
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe
(services.exe ->) (Micro-Star International CO., LTD. -> ) C:\Program Files (x86)\MSI\MSI NBFoundation Service\Sendevsvc.exe
(services.exe ->) (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\MSI NBFoundation Service\MSIAPService.exe
(services.exe ->) (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Windows\SysWOW64\MSIService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_158fd499ce887f3a\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a4555e9b35287491\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (21E1B422-257A-44A2-9C8F-379165856473 -> ) C:\Program Files\WindowsApps\A-Volute.Nahimic_1.9.20.0_x64__w2gh52qy24etm\Nahimic3.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicSvc64.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe
(svchost.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\MSI NBFoundation Service\OmApSvcBroker.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControlEngine.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a4555e9b35287491\RtkAudUService64.exe [1649504 2023-03-02] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321112 2019-12-10] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [256408 2023-08-31] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrotray.exe [7320024 2023-09-07] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1129440 2023-07-01] (Adobe Inc. -> Adobe Inc.)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2607648 2023-09-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [44161792 2023-09-02] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [Opera GX Stable] => C:\Users\**NAME**\AppData\Local\Programs\Opera GX\launcher.exe [2673056 2023-08-23] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\**NAME**\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [42614688 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [Discord] => C:\Users\**NAME**\AppData\Local\Discord\Update.exe [1512616 2022-02-17] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11469784 2023-09-07] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4374888 2023-09-11] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37097936 2023-09-08] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1090176 2023-09-01] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\RunOnce: [Application Restart #0] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\MountPoints2: {541f7c37-44ae-11ed-9892-90ccdfda4df9} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\MountPoints2: {ae832b61-3a4f-11ed-9892-90ccdfda4df9} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\...\MountPoints2: {e8eae46b-b64a-11ec-9874-90ccdfda4df9} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [203936 2022-08-02] (Adobe Inc. -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\116.0.5845.188\Installer\chrmstp.exe [2023-09-13] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {97E7F920-3E93-45CD-B6DD-28FDA85D0353} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-08-02] (Adobe Inc. -> Adobe Inc.)
Task: {2A5E4FD8-7909-4EA6-AC7F-109B6C56B552} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4947352 2023-08-31] (Avast Software s.r.o. -> AVAST Software)
Task: {91E28730-FC37-453B-83EB-9115A87031CA} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-01] (Avast Software s.r.o. -> Avast Software)
Task: {84D13456-A456-4E1E-8260-7FC76CBA0A39} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {291B8182-266D-4A68-82B4-52299CD9540C} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "a3b89aa8-504c-4aa4-8ee1-cfff62296715" --version "6.16.10662" --silent
Task: {38CA05E8-0DCB-4ED3-98C6-27EA437E6720} - System32\Tasks\CCleanerSkipUAC - **NAME** => C:\Program Files\CCleaner\CCleaner.exe [35675552 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {F045DF41-473B-48B1-ABCD-C04367FD0DA1} - System32\Tasks\GoogleUpdateTaskMachineCore{0AAAE3E1-D7B5-4893-99B0-667F0C8B2F5F} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-08-31] (Google LLC -> Google LLC)
Task: {8603B0A6-0D54-4716-8E5C-786E75E45251} - System32\Tasks\GoogleUpdateTaskMachineUA{20BF63C8-B5CF-4C79-8A63-20876569A7B5} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-08-31] (Google LLC -> Google LLC)
Task: {09B79E09-36AF-46E9-AA9B-BEA876174C6F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913760 2023-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {6C9A629D-C1CD-46A5-ACFA-E939F5891464} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913760 2023-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {578C0158-9B2C-4FCA-9FD9-9FA59A4FE9C5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158664 2023-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {45435E0B-7227-4BEB-8017-75069B5163DF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158664 2023-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {5B1F6CA0-7305-4566-B3CE-0888E58E6475} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [167864 2023-08-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {4BF6659C-8459-44A4-A6CF-B84E34C8C9B6} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4377392 2023-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {31D10EF3-51DE-4DE3-A4BC-A2DEFD795977} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0B13360A-580A-4661-8D4D-475D8ADDC56A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E5F6302E-1BA6-4A09-8906-B8446B6EB6D0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {94D51D6F-F1C4-436E-8517-B2BCE5B7146E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AB7AC61D-1098-413D-B3C9-BDB03120AEF5} - System32\Tasks\MSI Task Host - Detect_Monitor => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [102712 2021-07-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {A6D0EA21-2238-4589-ABD8-8F6EBC12ADC4} - System32\Tasks\MSI Task Host - DisplayID => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [102712 2021-07-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {9B23D69E-FC05-4B85-B8DE-CACD1E9B0E1E} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDKeeper2.exe [1775440 2021-11-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {0A891CF4-BD3F-4108-9E25-1F744C0C88E8} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {B377E399-A732-4F12-B823-D7F3661AE5B7} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [833704 2021-10-08] (A-Volute SAS -> Nahimic)
Task: {1CC7FC16-1807-4C50-9717-21BB77E5D3AD} - System32\Tasks\NahimicSvc64Run => C:\Windows\system32\NahimicSvc64.exe [1094824 2021-10-08] (A-Volute SAS -> Nahimic)
Task: {F76A4610-2F46-4B99-9673-B7D9EAF7DD58} - System32\Tasks\NahimicTask32 => C:\WINDOWS\system32\..\SysWOW64\NahimicSvc32.exe [833704 ] (A-Volute SAS -> Nahimic)
Task: {08A9D5BC-103E-4317-8D5B-821E455A5AFF} - System32\Tasks\NahimicTask64 => C:\WINDOWS\system32\.\NahimicSvc64.exe [1094824 ] (A-Volute SAS -> Nahimic)
Task: {F209C9C2-5CF5-46B9-9CD2-26D3E023827B} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {7E09F8F8-AD52-487A-B73F-BFD023040B26} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation)
Task: {A3DE15EF-46A5-4272-A819-A3F8D360B01B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7F6B0997-79A2-4D4C-AC0E-65A93AAE2835} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9D4B15FC-A2C5-4A00-A835-1C6A44FFA6AB} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CAA4F208-3731-4DC5-9A68-C4AD97F5953D} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {168E9C5D-4470-4CBC-9144-5A4E6A53E0AA} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {242E62D1-57A6-47C9-88DF-C74BDEBF5E5A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1C265126-D7E6-40E8-9235-F8ABC6E1CE66} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DDCA2817-1FE7-470A-BE52-3989EC62F68B} - System32\Tasks\OmApSvcBroker => C:\Program Files (x86)\MSI\MSI NBFoundation Service\OmApSvcBroker.exe [807664 2023-05-19] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.)
Task: {16D0B967-6166-439E-89D6-CE546C17DA55} - System32\Tasks\OneDC_Updater => C:\Users\**NAME**\Documents\temp\OneDC_Updater\OneDC_Updater.exe [5311400 2021-04-16] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) <==== ACHTUNG
Task: {869F8D30-1E9A-4F66-869F-D6A0D87C77B1} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130320 2023-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {D3F41B48-2FEE-4097-80B4-9F76DB5D2F23} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3725398484-3391484801-2611741338-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130320 2023-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {482AC9FD-0519-42C7-AA84-B5DEC73E1CD8} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1649406753 => C:\Users\**NAME**\AppData\Local\Programs\Opera GX\launcher.exe [2673056 2023-08-23] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\**NAME**\AppData\Local\Programs\Opera GX\assistant" $(Arg0)
Task: {E792C25E-0597-45FE-831C-AF41E6ACAB5A} - System32\Tasks\Opera GX scheduled Autoupdate 1648615539 => C:\Users\**NAME**\AppData\Local\Programs\Opera GX\launcher.exe [2673056 2023-08-23] (Opera Norway AS -> Opera Software)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{55abe20b-cb0b-4a32-b164-b59e27d24820}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{dbb25ffb-85b8-4b44-9bbf-1a52d683ac6a}: [DhcpNameServer] 192.168.178.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\**NAME**\AppData\Local\Microsoft\Edge\User Data\Default [2023-09-16]
Edge Extension: (Edge relevant text changes) - C:\Users\**NAME**\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-16]
FireFox:
========
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-09-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2023-07-01] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2023-08-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2023-07-01] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Profile 2
CHR Profile: C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Default [2023-09-14]
CHR Extension: (Adblock360) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Default\Extensions\bcjchineajlfhdlaonabjhlllhmdlmdc [2022-11-09]
CHR Extension: (uBlock Origin) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-08-09]
CHR Extension: (NoScript) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Default\Extensions\doojmbjmlfjjnbmnoijecmcbfeoakpjm [2023-03-04]
CHR Extension: (Google Docs Offline) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-07-20]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-08-09]
CHR Extension: (Chrome Web Store Payments) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-02-28]
CHR Profile: C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-08-25]
CHR Profile: C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Profile 2 [2023-09-17]
CHR Extension: (uBlock Origin) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-09-13]
CHR Extension: (NoScript) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\doojmbjmlfjjnbmnoijecmcbfeoakpjm [2023-07-29]
CHR Extension: (Google Docs Offline) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-24]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-07-16]
CHR Profile: C:\Users\**NAME**\AppData\Local\Google\Chrome\User Data\System Profile [2023-09-14]
CHR HKU\S-1-5-21-3725398484-3391484801-2611741338-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-3725398484-3391484801-2611741338-1001) Opera GXStable - "C:\Users\**NAME**\AppData\Local\Programs\Opera GX\Launcher.exe"
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-08-02] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [944096 2023-07-01] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8904088 2023-08-31] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [587672 2023-08-31] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [588184 2023-08-31] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-02-28] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11817040 2023-09-14] (Microsoft Corporation -> Microsoft Corporation)
R3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11022952 2023-09-11] (Electronic Arts, Inc. -> Electronic Arts)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-02-10] (Epic Games Inc. -> Epic Games, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.180.0828.0001\FileSyncHelper.exe [3518480 2023-09-16] (Microsoft Corporation -> Microsoft Corporation)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10676992 2023-09-02] (Logitech Inc -> Logitech, Inc.)
R2 LightKeeperService; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe [86776 2020-12-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9286168 2023-09-03] (Malwarebytes Inc. -> Malwarebytes)
R2 Micro Star SCM; C:\Windows\SysWOW64\MSIService.exe [168056 2019-05-07] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.)
R2 MSI Foundation Service; C:\Program Files (x86)\MSI\MSI NBFoundation Service\MSIAPService.exe [87976 2021-09-23] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.)
R2 MSI Sendevsvc; C:\Program Files (x86)\MSI\MSI NBFoundation Service\Sendevsvc.exe [307624 2021-04-16] (Micro-Star International CO., LTD. -> )
R2 MSI_Central_Service; C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe [147088 2020-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 MSI_Companion_Service; C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe [143160 2021-03-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe [36152 2021-08-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe [39760 2021-05-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1888424 2021-10-08] (A-Volute SAS -> Nahimic)
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2022-03-18] (Microsoft Windows -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.180.0828.0001\OneDriveUpdaterService.exe [3855376 2023-09-16] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmii.inf_amd64_158fd499ce887f3a\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmii.inf_amd64_158fd499ce887f3a\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [31528 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [238496 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [392880 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [297880 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [95960 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [25576 2022-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [39648 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [272576 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [559184 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [105248 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [80416 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [946160 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [705480 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [212680 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [319568 2023-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 BlueStacksDrv_msi2; C:\Program Files\BlueStacks_msi2\BstkDrv_msi2.sys [315768 2019-12-12] (Bluestack Systems, Inc -> Bluestack System Inc.)
R1 CTIIO; C:\Windows\system32\drivers\CtiIo64.sys [29224 2022-03-16] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
R1 EneTechIo; C:\Windows\system32\drivers\ene.sys [19968 2019-10-17] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 GENERICDRV; C:\WINDOWS\system32\amigendrv64.sys [35200 2023-05-19] (American Megatrends, Inc. -> Windows (R) Win 7 DDK provider)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-09-28] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-28] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-09-28] (Logitech Inc -> Logitech)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222272 2023-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-08-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [85616 2021-08-13] (A-Volute -> Windows (R) Win 7 DDK provider)
R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55872 2023-08-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [574872 2023-08-31] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2023-08-31] (Microsoft Windows -> Microsoft Corporation)
R3 WINIO; C:\Program Files (x86)\MSI\MSI NBFoundation Service\KernCoreLib64.sys [25656 2018-11-15] (Micro-Star International CO., LTD. -> )
S1 epp; \??\C:\EEK\bin64\epp.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2023-09-17 19:24 - 2023-09-17 19:24 - 000042583 _____ C:\Users\**NAME**\Downloads\FRST.txt
2023-09-17 19:24 - 2023-09-17 19:24 - 000000000 ____D C:\FRST
2023-09-17 19:20 - 2023-09-17 19:20 - 002382848 _____ (Farbar) C:\Users\**NAME**\Downloads\FRST64.exe
2023-09-17 09:55 - 2023-09-17 09:55 - 000000000 ____D C:\Users\**NAME**\AppData\Local\EAConnect_microsoft
2023-09-17 02:06 - 2023-09-17 02:06 - 000002145 _____ C:\Users\Public\Desktop\EA.lnk
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Origin
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Electronic Arts
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\Users\**NAME**\AppData\Local\EADesktop
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\Users\**NAME**\AppData\Local\cache
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\ProgramData\EA Desktop
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\Program Files\Electronic Arts
2023-09-17 02:06 - 2023-09-17 02:06 - 000000000 ____D C:\Program Files\EA Games
2023-09-17 02:03 - 2023-09-17 02:03 - 002488224 _____ (Electronic Arts) C:\Users\**NAME**\Downloads\EAappInstaller.exe
2023-09-17 01:57 - 2023-09-17 01:57 - 000000000 ___HD C:\$WinREAgent
2023-09-12 15:21 - 2023-09-12 15:21 - 000000000 ____D C:\Users\**NAME**\Documents\Soundaufnahmen
2023-09-11 13:51 - 2023-09-11 13:52 - 000000000 ___HD C:\adobeTemp
2023-09-03 09:22 - 2023-09-03 10:57 - 000000000 ____D C:\Users\**NAME**\AppData\Roaming\G HUB
2023-09-03 09:21 - 2023-09-03 09:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2023-09-03 09:21 - 2023-09-03 09:21 - 000000000 ____D C:\Program Files\LGHUB
2023-08-31 20:33 - 2023-08-31 20:33 - 000313240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2023-08-31 17:27 - 2023-08-31 17:27 - 000000000 ____D C:\AdwCleaner
2023-08-31 17:26 - 2023-08-31 17:27 - 008791352 _____ (Malwarebytes) C:\Users\**NAME**\Downloads\adwcleaner.exe
2023-08-31 16:20 - 2023-09-17 19:05 - 000003644 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{20BF63C8-B5CF-4C79-8A63-20876569A7B5}
2023-08-31 16:20 - 2023-09-17 19:05 - 000003420 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{0AAAE3E1-D7B5-4893-99B0-667F0C8B2F5F}
2023-08-31 16:20 - 2023-09-13 14:53 - 000002246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-08-31 16:20 - 2023-09-13 14:53 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-08-31 16:19 - 2023-08-31 16:19 - 001372712 _____ (Google LLC) C:\Users\**NAME**\Downloads\ChromeSetup.exe
2023-08-26 20:57 - 2023-08-16 12:15 - 000849088 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2023-08-26 20:57 - 2023-08-16 12:15 - 000849088 _____ C:\WINDOWS\system32\vulkaninfo.exe
2023-08-26 20:57 - 2023-08-16 12:15 - 000713912 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2023-08-26 20:57 - 2023-08-16 12:15 - 000713912 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2023-08-26 20:57 - 2023-08-16 12:15 - 000653504 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2023-08-26 20:57 - 2023-08-16 12:15 - 000653504 _____ C:\WINDOWS\system32\vulkan-1.dll
2023-08-26 20:57 - 2023-08-16 12:15 - 000637112 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2023-08-26 20:57 - 2023-08-16 12:15 - 000637112 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2023-08-26 20:57 - 2023-08-16 12:14 - 001487376 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2023-08-26 20:57 - 2023-08-16 12:14 - 001227296 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2023-08-26 20:57 - 2023-08-16 12:11 - 000669320 _____ C:\WINDOWS\system32\nvofapi64.dll
2023-08-26 20:57 - 2023-08-16 12:10 - 001537544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2023-08-26 20:57 - 2023-08-16 12:10 - 001195016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2023-08-26 20:57 - 2023-08-16 12:10 - 000938608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2023-08-26 20:57 - 2023-08-16 12:10 - 000504456 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2023-08-26 20:57 - 2023-08-16 12:09 - 002168456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2023-08-26 20:57 - 2023-08-16 12:09 - 001622152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2023-08-26 20:57 - 2023-08-16 12:09 - 000992368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2023-08-26 20:57 - 2023-08-16 12:09 - 000777760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2023-08-26 20:57 - 2023-08-16 12:09 - 000768648 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2023-08-26 20:57 - 2023-08-16 12:08 - 014520968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2023-08-26 20:57 - 2023-08-16 12:08 - 012066320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2023-08-26 20:57 - 2023-08-16 12:08 - 003483168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2023-08-26 20:57 - 2023-08-16 12:08 - 000459912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2023-08-26 20:57 - 2023-08-16 12:07 - 006190088 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2023-08-26 20:57 - 2023-08-16 12:07 - 005845640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2023-08-26 20:57 - 2023-08-16 12:07 - 005550728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2023-08-26 20:57 - 2023-08-16 12:07 - 000853104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2023-08-26 20:57 - 2023-08-15 06:23 - 000108122 _____ C:\WINDOWS\system32\nvinfo.pb
2023-08-26 20:52 - 2022-07-14 01:32 - 000060112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2023-08-26 11:17 - 2023-08-26 11:17 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Fallout4
2023-08-26 09:03 - 2023-08-26 09:03 - 000000222 _____ C:\Users\**NAME**\Desktop\Fallout 4.url
2023-08-25 09:28 - 2023-08-25 09:33 - 000022810 _____ C:\Users\**NAME**\Desktop\Fixlog.txt
2023-08-24 20:46 - 2023-08-24 20:46 - 000000043 _____ C:\Users\**NAME**\Desktop\Kritisch.txt
2023-08-24 14:51 - 2023-08-24 14:55 - 000070480 _____ C:\Users\**NAME**\Desktop\Addition.txt
2023-08-24 14:50 - 2023-08-24 14:55 - 000063952 _____ C:\Users\**NAME**\Desktop\FRST.txt
2023-08-24 14:40 - 2023-08-24 14:40 - 000001964 _____ C:\Users\**NAME**\Desktop\ergebnis.txt
2023-08-24 14:19 - 2023-08-24 14:19 - 000001958 _____ C:\Users\**NAME**\Desktop\test.txt
2023-08-24 14:14 - 2023-09-17 19:10 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Malwarebytes
2023-08-24 14:14 - 2023-08-24 14:14 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2023-08-24 14:14 - 2023-08-24 14:14 - 000002028 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2023-08-24 14:13 - 2023-08-24 14:13 - 000000000 ____D C:\ProgramData\Malwarebytes
2023-08-24 14:13 - 2023-08-24 14:13 - 000000000 ____D C:\Program Files\Malwarebytes
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2023-09-17 19:25 - 2022-03-18 18:22 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-09-17 19:25 - 2022-02-28 12:52 - 000000000 ____D C:\Program Files (x86)\Google
2023-09-17 19:10 - 2022-11-03 16:58 - 000000000 ____D C:\Program Files (x86)\Steam
2023-09-17 19:10 - 2022-07-04 11:14 - 000000000 ___RD C:\Users\**NAME**\Creative Cloud Files
2023-09-17 19:10 - 2022-05-13 12:40 - 000000000 ____D C:\Users\**NAME**\AppData\Roaming\discord
2023-09-17 19:10 - 2022-05-13 12:40 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Discord
2023-09-17 19:10 - 2022-04-22 13:59 - 000000000 ____D C:\Program Files\CCleaner
2023-09-17 19:10 - 2022-03-14 07:13 - 000000000 ____D C:\Users\**NAME**\AppData\Local\LGHUB
2023-09-17 19:10 - 2021-09-01 19:09 - 000000000 ___RD C:\Users\**NAME**\OneDrive
2023-09-17 19:09 - 2021-09-01 19:07 - 000000000 __SHD C:\Users\**NAME**\IntelGraphicsProfiles
2023-09-17 19:09 - 2020-02-24 22:05 - 000000000 ____D C:\ProgramData\NVIDIA
2023-09-17 19:05 - 2022-09-21 09:52 - 000003048 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2023-09-17 19:05 - 2022-09-21 09:52 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-09-17 19:05 - 2022-08-25 09:44 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-09-17 19:05 - 2022-05-18 13:43 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2023-09-17 19:05 - 2022-04-22 13:59 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-09-17 19:05 - 2022-04-22 13:59 - 000002254 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - **NAME**
2023-09-17 19:05 - 2022-04-08 10:32 - 000003738 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled assistant Autoupdate 1649406753
2023-09-17 19:05 - 2022-03-30 06:45 - 000003500 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1648615539
2023-09-17 19:05 - 2022-03-18 18:30 - 000003684 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-09-17 19:05 - 2022-03-18 18:30 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-09-17 19:05 - 2022-03-18 18:30 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3725398484-3391484801-2611741338-1001
2023-09-17 19:05 - 2022-03-18 18:30 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000002826 _____ C:\WINDOWS\system32\Tasks\OneDC_Updater
2023-09-17 19:05 - 2022-03-18 18:30 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-09-17 19:05 - 2022-03-18 18:30 - 000002374 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - Detect_Monitor
2023-09-17 19:05 - 2022-03-18 18:30 - 000002358 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - DisplayID
2023-09-17 19:05 - 2022-03-18 18:30 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc64Run
2023-09-17 19:05 - 2022-03-18 18:30 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc32Run
2023-09-17 19:05 - 2022-03-18 18:30 - 000002302 _____ C:\WINDOWS\system32\Tasks\NahimicTask32
2023-09-17 19:05 - 2022-03-18 18:30 - 000002282 _____ C:\WINDOWS\system32\Tasks\NahimicTask64
2023-09-17 19:05 - 2022-03-18 18:30 - 000002280 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - LEDKeeper2_Host
2023-09-17 19:05 - 2022-03-18 18:30 - 000002184 _____ C:\WINDOWS\system32\Tasks\OmApSvcBroker
2023-09-17 19:05 - 2022-03-18 18:30 - 000002148 _____ C:\WINDOWS\system32\Tasks\MSISW_Host
2023-09-17 19:05 - 2022-03-18 18:30 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2023-09-17 19:05 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-09-17 18:59 - 2023-03-26 15:49 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Battle.net
2023-09-17 18:57 - 2020-02-24 23:34 - 000000000 ____D C:\ProgramData\Common
2023-09-17 09:43 - 2022-03-18 18:30 - 001635618 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-09-17 09:43 - 2019-12-07 16:50 - 000708286 _____ C:\WINDOWS\system32\perfh007.dat
2023-09-17 09:43 - 2019-12-07 16:50 - 000142990 _____ C:\WINDOWS\system32\perfc007.dat
2023-09-17 09:43 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2023-09-17 09:40 - 2022-02-28 12:29 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-09-17 09:40 - 2022-02-28 12:29 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-09-17 09:40 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-09-17 09:40 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-09-17 09:38 - 2022-03-16 14:12 - 000000000 ____D C:\Users\**NAME**\AppData\Local\CrashDumps
2023-09-17 02:15 - 2022-03-18 18:30 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-09-17 02:15 - 2022-03-18 18:25 - 000008192 ___SH C:\DumpStack.log.tmp
2023-09-17 02:15 - 2022-02-28 12:43 - 000000000 ____D C:\ProgramData\Avast Software
2023-09-17 02:14 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-09-17 02:06 - 2022-02-28 12:31 - 000000000 ____D C:\Users\**NAME**\AppData\Local\D3DSCache
2023-09-17 02:06 - 2020-02-24 22:02 - 000000000 ____D C:\ProgramData\Package Cache
2023-09-17 01:53 - 2022-05-19 09:31 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2023-09-17 01:53 - 2022-03-18 18:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-09-17 01:53 - 2022-03-16 18:14 - 000000000 ____D C:\ProgramData\OmApSvcBroker
2023-09-16 14:51 - 2022-05-18 13:43 - 000002155 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-09-16 09:52 - 2022-03-18 18:30 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2023-09-15 19:04 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-09-15 14:21 - 2023-01-12 13:46 - 000002068 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-09-15 14:21 - 2022-10-14 08:01 - 000002091 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller.lnk
2023-09-15 14:21 - 2022-10-14 08:01 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-09-15 13:18 - 2022-10-26 08:42 - 000095848 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2023-09-15 13:18 - 2022-10-26 08:42 - 000075368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2023-09-15 13:18 - 2022-05-13 11:04 - 000000000 ____D C:\XboxGames
2023-09-15 13:18 - 2022-03-14 09:16 - 000181864 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2023-09-15 13:18 - 2022-02-28 12:26 - 000145000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2023-09-15 13:18 - 2021-10-09 12:45 - 002688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2023-09-15 13:18 - 2021-10-09 12:45 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2023-09-15 13:18 - 2021-10-09 12:45 - 000210536 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2023-09-14 16:54 - 2021-10-09 12:53 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-09-14 16:51 - 2021-10-09 12:53 - 177941912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-09-14 13:11 - 2023-08-09 15:33 - 000000000 ____D C:\WINDOWS\Minidump
2023-09-14 13:11 - 2022-11-23 14:07 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-09-14 13:09 - 2019-11-13 23:01 - 000000000 ____D C:\Program Files\Microsoft Office
2023-09-14 13:08 - 2019-11-13 22:30 - 000000000 __RHD C:\Users\Public\AccountPictures
2023-09-12 18:10 - 2023-06-15 19:27 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Vivox
2023-09-12 17:14 - 2022-12-26 17:41 - 000000000 ____D C:\Users\**NAME**\AppData\Roaming\.minecraft
2023-09-11 13:51 - 2022-03-14 07:07 - 000000000 ____D C:\Program Files\Common Files\Adobe
2023-09-06 17:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2023-09-06 13:47 - 2022-05-13 12:40 - 000002238 _____ C:\Users\**NAME**\Desktop\Discord.lnk
2023-09-03 09:22 - 2022-03-14 07:13 - 000000000 ____D C:\Users\**NAME**\AppData\Roaming\LGHUB
2023-09-02 08:24 - 2023-03-26 15:48 - 000000000 ____D C:\Program Files (x86)\Battle.net
2023-08-31 20:33 - 2022-02-28 12:44 - 000946160 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000705480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000559184 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000392880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000319568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000297880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000272576 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000238496 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000105248 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000095960 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000080416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000039648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2023-08-31 20:33 - 2022-02-28 12:44 - 000031528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2023-08-31 20:33 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-08-31 19:30 - 2021-10-09 12:53 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-08-31 14:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2023-08-31 13:14 - 2019-11-13 22:28 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-08-26 21:06 - 2022-03-17 06:30 - 000000000 ____D C:\Users\**NAME**\AppData\Local\NVIDIA
2023-08-26 21:04 - 2020-02-24 22:05 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2023-08-26 20:52 - 2020-02-24 22:05 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2023-08-26 20:52 - 2020-02-24 22:04 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2023-08-26 20:45 - 2022-03-30 06:45 - 000001445 _____ C:\Users\**NAME**\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Browser Opera GX.lnk
2023-08-26 20:07 - 2022-04-22 11:05 - 000000000 ____D C:\Users\**NAME**\AppData\LocalLow\Mozilla
2023-08-26 17:01 - 2023-03-26 15:49 - 000000000 ____D C:\Users\**NAME**\AppData\Roaming\Battle.net
2023-08-26 11:16 - 2022-12-23 17:45 - 000000000 ____D C:\Users\**NAME**\Documents\My Games
2023-08-26 09:03 - 2022-11-03 17:06 - 000000000 ____D C:\Users\**NAME**\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2023-08-24 14:01 - 2022-11-03 16:59 - 000000000 ____D C:\Users\**NAME**\AppData\Local\Steam
2023-08-19 19:18 - 2022-03-18 18:26 - 000000000 ____D C:\Users\**NAME**
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2023-01-23 18:01 - 2023-01-24 17:49 - 000000128 _____ () C:\Users\**NAME**\AppData\Roaming\PUTTY.RND
2022-10-18 15:53 - 2023-01-09 11:05 - 000001456 _____ () C:\Users\**NAME**\AppData\Local\Adobe Für Web speichern 13.0 Prefs
2022-04-21 12:09 - 2023-04-18 12:46 - 000000128 _____ () C:\Users\**NAME**\AppData\Local\PUTTY.RND
2022-12-01 19:07 - 2022-12-01 19:07 - 000007606 _____ () C:\Users\**NAME**\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== |