Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Generic User Avatar

possible maleware infection


  • Please log in to reply
1 reply to this topic

#1 shr84

shr84

  •  Avatar image
  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:04:58 AM

Posted Today, 07:26 AM

Hello.

I have a strange problem.it takes ages when connecting to a gaming server,also i have many discconects.this happens just recently, before all was fine for several years.

Also when i write something on the keyboard some times instead of "example text" it writes "e´am´p´le´ t´ex´t´"

I woud be very thankfull if someone coud look into the logs.

 

FRST.txt

 

Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 26.02.2024 01
durchgeführt von User (Administrator) auf DESKTOP-IGSQ7B8 (Gigabyte Technology Co., Ltd. Z170-Gaming K3) (05-03-2024 13:02:51)
Gestartet von C:\Users\User\Desktop\FRST64.exe
Geladene Profile: User
Plattform: Microsoft Windows 10 Home Version 22H2 19045.4123 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: FF
Start-Modus: Normal

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(C:\Program Files\RogueKiller\RogueKillerSvc.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKiller64.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <19>
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(services.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKillerSvc.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_830091b3ebd4b98a\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Tweaking LLC -> Tweaking.com) C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe
(Wiper Software, UAB -> WiperSoft) C:\Program Files\WiperSoft\WiperSoft.exe

==================== Registry (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Beschränkung <==== ACHTUNG
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\Run: [MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4060728 2024-02-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [482640 2024-01-28] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4388712 2024-02-29] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\MountPoints2: {e6fc862c-bd5c-11ee-aae6-1c1b0d0fb7d1} - "J:\setup.exe"

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {88443952-5789-4896-A656-4B4A3F3184AF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C2DF098C-218C-46AE-B722-E331B4F54541} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A92E1901-072A-4EFB-811E-E82B7CE2D7B5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BBE1820D-B3BC-4C36-8D0B-C0B2159E159F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MpCmdRun.exe [1646000 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7E8CA4A1-5288-4FC9-8E57-7D4458520363} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-20] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {A5810883-D16D-4E0F-A5D0-36C514D3828F} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-592660686-136461019-3334781386-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671136 2024-02-20] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {B9F0F551-7823-46AA-8AD2-B0E4B597353F} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34720 2024-02-20] (Mozilla Corporation -> Mozilla Foundation)
Task: {3FB1F9BB-CD53-4009-879D-B990CC57349F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1005096 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {CF7A3C11-245E-4AE7-BFEB-E277EE2729B6} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3345448 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {93D80589-8E45-4566-8FF3-9C5FFCE1D167} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3A3613C6-B9A9-4319-A847-86AE0C0BD8A4} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CC52CE6A-B775-4568-9E57-8BA3B01BC106} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5FB4319B-67CF-43F0-974C-30BBEC9752CB} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {652B9267-6CAA-481E-B312-A5F784692539} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7935E36F-0164-4F5B-A3A0-FC6E50744BC7} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3FD8FBB8-B181-4F1F-B978-34CA3DF06D24} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {05329762-1546-4F81-8948-543743A470A4} - System32\Tasks\RunAsStdUser Task => C:\Program Files (x86)\Moo0\VideoCutter 1.17\VideoCutter.exe [2547200 2019-07-25] (Moo0) [Datei ist nicht signiert]
Task: {07D8AD35-67A5-4C2A-BE2E-B5B7878034AC} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [220816 2019-09-30] (Tweaking LLC -> Tweaking.com)
Task: {7A64E1AC-3D4C-414F-A219-D6D079CB4B71} - System32\Tasks\WiperSoft Startup => c:\program files\WiperSoft\WiperSoft.exe [4811000 2024-03-05] (Wiper Software, UAB -> WiperSoft)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1de0a616-f68e-475a-891c-d3bb46e07d4e}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1de0a616-f68e-475a-891c-d3bb46e07d4e}: [DhcpDomain] box

Edge:
=======
Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2024-03-03]
Edge Extension: (Google Docs Offline) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-27]
Edge Extension: (Edge relevant text changes) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-27]

FireFox:
========
FF DefaultProfile: dgbrbjf1.default
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\dgbrbjf1.default [2024-03-05]
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\2d8hj9hx.default-release [2024-03-05]
FF Homepage: Mozilla\Firefox\Profiles\2d8hj9hx.default-release -> google.com
FF Extension: (AdBlock – der beste Ad-Blocker) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\2d8hj9hx.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2024-01-28]
FF Plugin: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)

==================== Dienste (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [2530440 2024-02-22] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6076936 2024-03-03] (BattlEye Innovations e.K. -> )
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4974416 2024-01-28] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2024-02-08] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [954704 2024-02-05] (EasyAntiCheat Oy -> Epic Games, Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_830091b3ebd4b98a\Display.NvContainer\NVDisplay.Container.exe [1274992 2024-02-17] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2024-01-28] (Even Balance, Inc. -> )
R2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [15246256 2024-02-19] (ADLICE -> )
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [5209072 2024-02-10] (Rockstar Games, Inc. -> Rockstar Games)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\NisSrv.exe [3191256 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24010.12-0\MsMpEng.exe [133576 2024-02-28] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 Browser; %SystemRoot%\System32\browser.dll [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin\brynhildr.sys [2336008 2024-02-23] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2024-01-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2024-01-28] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 MpKsl7b331c13; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{83F8298C-A711-46E8-9941-C2C5D6BEDEF8}\MpKslDrv.sys [272664 2024-03-04] (Microsoft Windows -> Microsoft Corporation)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [54208 2024-03-05] (ADLICE (Julien Ascoet) -> )
R0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21040 2024-02-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [608648 2024-02-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105752 2024-02-28] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2024-03-05 13:02 - 2024-03-05 13:03 - 000016159 _____ C:\Users\User\Desktop\FRST.txt
2024-03-05 13:02 - 2024-03-05 13:03 - 000000000 ____D C:\FRST
2024-03-05 13:01 - 2024-03-05 13:01 - 002386944 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2024-03-05 12:33 - 2024-03-05 12:33 - 000026952 _____ (Wiper Software) C:\Windows\system32\wiperrm.exe
2024-03-05 12:33 - 2024-03-05 12:33 - 000003400 _____ C:\Windows\system32\Tasks\WiperSoft Startup
2024-03-05 12:33 - 2024-03-05 12:33 - 000000821 _____ C:\Users\User\Desktop\WiperSoft.lnk
2024-03-05 12:33 - 2024-03-05 12:33 - 000000000 ____D C:\Users\User\AppData\Roaming\WiperSoft
2024-03-05 12:33 - 2024-03-05 12:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WiperSoft
2024-03-05 12:33 - 2024-03-05 12:33 - 000000000 ____D C:\Program Files\WiperSoft
2024-03-05 12:29 - 2024-03-05 12:29 - 005659583 _____ (Swearware) C:\Users\User\Desktop\ComboFix.exe
2024-03-05 12:13 - 2024-03-05 12:22 - 000000000 ____D C:\ProgramData\RogueKiller
2024-03-05 12:13 - 2024-03-05 12:13 - 000054208 _____ C:\Windows\system32\Drivers\truesight.sys
2024-03-05 12:13 - 2024-03-05 12:13 - 000000909 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2024-03-05 12:13 - 2024-03-05 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2024-03-05 12:13 - 2024-03-05 12:13 - 000000000 ____D C:\Program Files\RogueKiller
2024-03-04 21:17 - 2024-03-04 21:17 - 000019530 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-03-04 21:17 - 2024-03-04 21:17 - 000019530 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-03-04 21:12 - 2024-03-04 21:12 - 000000000 ___HD C:\$WinREAgent
2024-03-04 20:52 - 2024-03-04 21:20 - 082313216 _____ C:\Windows\system32\config\SOFTWARE
2024-03-04 20:48 - 2024-03-04 20:51 - 000000000 ____D C:\Windows\Microsoft Antimalware
2024-03-04 20:36 - 2024-03-04 20:36 - 000001623 _____ C:\Users\User\Desktop\sg_backup_2024-03-04-2036.spg
2024-03-04 20:34 - 2024-03-04 20:34 - 000000000 _____ C:\Windows\system32\netsh
2024-03-04 20:27 - 2024-03-04 20:27 - 000001623 _____ C:\Users\User\Desktop\sg_backup_2024-03-04-2027.spg
2024-03-04 20:23 - 2024-03-04 20:23 - 000684032 _____ (Speed Guide Inc.) C:\Users\User\Desktop\TCPOptimizer.exe
2024-03-03 23:54 - 2024-03-03 23:54 - 000000222 _____ C:\Users\User\Desktop\Day of Infamy.url
2024-03-03 23:52 - 2024-03-04 00:30 - 3430438403 _____ C:\Users\User\Downloads\Tons of Guns-146-1-24-1703597157.zip
2024-03-03 23:25 - 2024-03-03 23:25 - 000299967 _____ C:\Users\User\Downloads\SmartOverwatch-151-3-14-1709324301.zip
2024-03-03 23:24 - 2024-03-03 23:24 - 000124120 _____ C:\Users\User\Downloads\Vanilla Plus - Alternative Bleeding Effect-155-v1-0-12-1693732313.rar
2024-03-03 23:18 - 2024-03-03 23:18 - 000942105 _____ C:\Users\User\Downloads\key's Merc Relationships_v1.0.zip-218-1-0-1706374918.zip
2024-03-03 23:17 - 2024-03-03 23:19 - 160683439 _____ C:\Users\User\Downloads\keys_Mercs_v2.zip-219-2-0-1706375461.zip
2024-03-03 20:34 - 2024-03-03 20:34 - 029086977 _____ C:\Users\User\Downloads\SamSWAT.HeliCrash.TyrianReboot-2.2.0.7z
2024-03-03 20:31 - 2024-03-03 20:31 - 000003245 _____ C:\Users\User\Downloads\1nco-NoSenspenalty.zip
2024-03-03 20:28 - 2024-03-03 20:28 - 070185088 _____ C:\Users\User\Downloads\AK15.rar
2024-03-03 19:24 - 2024-03-03 19:24 - 000000000 ____D C:\Windows\pss
2024-03-03 17:38 - 2024-03-03 17:38 - 000001623 _____ C:\Users\User\Desktop\sg_backup_2024-03-03-1738.spg
2024-03-03 17:38 - 2024-03-03 17:38 - 000001623 _____ C:\Users\User\Desktop\FirstBackup.spg
2024-03-03 15:00 - 2024-03-03 15:00 - 000001623 _____ C:\sg_backup_2024-03-03-1500.spg
2024-03-03 14:38 - 2024-03-03 14:38 - 000001623 _____ C:\sg_backup_2024-03-03-1438.spg
2024-03-03 14:29 - 2024-03-03 14:29 - 000001628 _____ C:\sg_backup_2024-03-03-1429.spg
2024-03-03 14:29 - 2024-03-03 14:29 - 000001628 _____ C:\FirstBackup.spg
2024-03-03 12:45 - 2022-09-30 05:24 - 000174112 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\Drivers\ssudmdm.sys
2024-03-03 12:45 - 2022-09-30 05:24 - 000050720 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\Drivers\ss_conn_usb_driver2.sys
2024-03-03 10:36 - 2024-03-03 10:36 - 002947692 _____ C:\Users\User\Downloads\AR-54 1.0.1.zip
2024-03-03 10:32 - 2024-03-03 10:32 - 034411813 _____ C:\Users\User\Downloads\BBBW-1.0.0.zip
2024-03-02 03:39 - 2024-03-02 03:39 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MWO Portal.lnk
2024-03-02 03:39 - 2024-03-02 03:39 - 000002481 _____ C:\Users\Public\Desktop\MWO Portal.lnk
2024-03-01 23:10 - 2024-03-01 23:10 - 071120792 _____ (DevAge, Vestris Inc. & Contributors) C:\Users\User\Downloads\MWOPortalInstaller.exe
2024-03-01 04:11 - 2024-03-01 04:11 - 928634938 _____ C:\Users\User\Downloads\The.Secret.Atelier.rar
2024-02-29 16:10 - 2024-02-29 16:10 - 000000000 ____D C:\Users\User\Documents\Call of Duty
2024-02-29 16:10 - 2024-02-29 16:10 - 000000000 ____D C:\Users\User\AppData\Roaming\NVIDIA
2024-02-28 18:24 - 2024-02-28 18:24 - 000000000 ____D C:\Windows\system32\lxss
2024-02-28 18:24 - 2024-02-28 18:24 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2024-02-28 18:19 - 2024-02-17 12:38 - 002031464 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2024-02-28 18:19 - 2024-02-17 12:38 - 002031464 _____ C:\Windows\system32\vulkaninfo.exe
2024-02-28 18:19 - 2024-02-17 12:38 - 001578752 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2024-02-28 18:19 - 2024-02-17 12:38 - 001578752 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2024-02-28 18:19 - 2024-02-17 12:38 - 001487904 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2024-02-28 18:19 - 2024-02-17 12:38 - 001445224 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2024-02-28 18:19 - 2024-02-17 12:38 - 001445224 _____ C:\Windows\system32\vulkan-1.dll
2024-02-28 18:19 - 2024-02-17 12:38 - 001295208 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2024-02-28 18:19 - 2024-02-17 12:38 - 001295208 _____ C:\Windows\SysWOW64\vulkan-1.dll
2024-02-28 18:19 - 2024-02-17 12:38 - 001227296 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2024-02-28 18:19 - 2024-02-17 12:35 - 001046152 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2024-02-28 18:19 - 2024-02-17 12:35 - 000669816 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2024-02-28 18:19 - 2024-02-17 12:35 - 000505456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2024-02-28 18:19 - 2024-02-17 12:34 - 002173448 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2024-02-28 18:19 - 2024-02-17 12:34 - 001625096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2024-02-28 18:19 - 2024-02-17 12:34 - 001541640 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2024-02-28 18:19 - 2024-02-17 12:34 - 001199112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2024-02-28 18:19 - 2024-02-17 12:34 - 001024032 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2024-02-28 18:19 - 2024-02-17 12:34 - 000842272 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2024-02-28 18:19 - 2024-02-17 12:34 - 000786952 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2024-02-28 18:19 - 2024-02-17 12:33 - 016033824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2024-02-28 18:19 - 2024-02-17 12:33 - 012928032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2024-02-28 18:19 - 2024-02-17 12:33 - 006780528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2024-02-28 18:19 - 2024-02-17 12:33 - 005773448 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2024-02-28 18:19 - 2024-02-17 12:33 - 003721760 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2024-02-28 18:19 - 2024-02-17 12:33 - 000459272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2024-02-28 18:19 - 2024-02-17 12:32 - 005912712 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2024-02-28 18:19 - 2024-02-17 12:32 - 000853000 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2024-02-28 18:19 - 2024-02-17 12:31 - 006943344 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2024-02-28 18:19 - 2024-02-17 12:31 - 006030584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2024-02-28 18:19 - 2024-02-15 17:42 - 000119184 _____ C:\Windows\system32\nvinfo.pb
2024-02-28 18:16 - 2024-02-28 18:16 - 000000000 ____D C:\Users\User\Documents\Call of Duty Modern Warfare
2024-02-28 18:15 - 2024-02-29 16:10 - 000000000 ____D C:\Users\User\AppData\Local\Activision
2024-02-28 11:05 - 2024-02-28 11:05 - 000000000 ____D C:\Users\User\AppData\Local\ElevatedDiagnostics
2024-02-27 18:37 - 2024-02-27 18:37 - 000000804 _____ C:\Users\User\Desktop\Terminator Dark Fate Defiance.lnk
2024-02-27 18:37 - 2024-02-27 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Terminator Dark Fate Defiance
2024-02-26 20:46 - 2024-02-26 20:46 - 000000747 _____ C:\Musik - Verknüpfung.lnk
2024-02-26 17:13 - 2024-03-02 03:40 - 000001485 _____ C:\Users\User\Desktop\Launch Mount & Blade II - Bannerlord.lnk
2024-02-24 16:25 - 2024-02-24 16:26 - 000000000 ____D C:\Battlestate Games
2024-02-24 16:24 - 2024-02-24 16:25 - 105286256 _____ (Battlestate Games ) C:\Users\User\Downloads\BsgLauncher.14.0.1.2319.exe
2024-02-24 10:53 - 2024-02-24 10:53 - 000176858 _____ C:\Users\User\Downloads\DanW-SPTQuestingBots-1.zip
2024-02-24 10:53 - 2024-02-24 10:53 - 000043947 _____ C:\Users\User\Downloads\Skwizzy-LootingBots-1.2.1.zip
2024-02-24 10:52 - 2024-03-04 10:51 - 000000000 ____D C:\SinglePlayerTarkov
2024-02-23 21:42 - 2024-02-23 21:42 - 000000000 ____D C:\Users\User\AppData\Local\Apps\2.0
2024-02-23 20:11 - 2024-02-23 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty Modern Warfare
2024-02-23 17:40 - 2024-03-03 15:49 - 000001223 _____ C:\Users\User\Desktop\Cyberpunk2077 - Verknüpfung.lnk
2024-02-23 16:14 - 2024-02-23 16:14 - 000684032 _____ (Speed Guide Inc.) C:\Users\User\Downloads\YNMzgNBi.exe.part
2024-02-22 17:31 - 2024-02-22 17:31 - 000000000 ____D C:\Users\User\AppData\Local\fs-uae
2024-02-22 17:23 - 2024-02-24 11:19 - 000001010 _____ C:\Users\User\Desktop\G.A.M.M.A. Launcher.lnk
2024-02-22 17:23 - 2024-02-22 17:48 - 000000817 _____ C:\Users\User\Desktop\G.A.M.M.A..lnk
2024-02-22 15:52 - 2024-02-22 15:52 - 031235816 _____ C:\Users\User\Downloads\2788836698_Improved_First-Person-1.zip
2024-02-22 15:48 - 2024-02-22 15:48 - 024988636 _____ C:\Users\User\Downloads\2788836698_Improved_First-Person.zip
2024-02-22 11:39 - 2024-02-24 12:10 - 000000000 ____D C:\ProgramData\USVFS
2024-02-22 08:48 - 2024-02-22 08:48 - 318095399 _____ C:\Users\User\Downloads\Stalker_GAMMA-main.zip
2024-02-22 00:57 - 2024-02-29 16:39 - 000000000 ____D C:\ProgramData\Battle.net_components
2024-02-22 00:57 - 2024-02-22 00:57 - 000168848 _____ C:\Users\User\Downloads\SAIN.2.1.8.for.3.7.4.7z
2024-02-22 00:56 - 2024-02-22 00:56 - 000010576 _____ C:\Users\User\Downloads\DrakiaXYZ-BigBrain-0.3.2_3.7.3-1.zip
2024-02-21 23:55 - 2024-02-22 00:08 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job
2024-02-21 23:51 - 2024-02-21 23:51 - 000000000 ___DL C:\Documents and Settings
2024-02-21 23:36 - 2024-02-21 23:36 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\HTML Help
2024-02-21 23:29 - 2024-02-21 23:29 - 000000207 _____ C:\Windows\tweaking.com-regbackup-DESKTOP-IGSQ7B8-Windows-10-Home-(64-bit).dat
2024-02-21 23:29 - 2024-02-21 23:29 - 000000000 ____D C:\RegBackup
2024-02-21 23:28 - 2024-02-21 23:56 - 000002242 _____ C:\Users\User\Desktop\Tweaking.com - Windows Repair.lnk
2024-02-21 23:28 - 2024-02-21 23:28 - 000003780 _____ C:\Windows\system32\Tasks\Tweaking.com - Windows Repair Tray Icon
2024-02-21 23:28 - 2024-02-21 23:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2024-02-21 23:28 - 2024-02-21 23:28 - 000000000 ____D C:\Program Files (x86)\Tweaking.com
2024-02-21 23:27 - 2024-02-21 23:28 - 000388897 _____ C:\Windows\Tweaking.com - Windows Repair Setup Log.txt
2024-02-21 14:47 - 2024-02-21 14:47 - 035682742 _____ C:\Users\User\Downloads\2812777210_Improved-Impoved_First_Person.zip
2024-02-21 10:24 - 2024-02-21 10:24 - 032763244 _____ C:\Users\User\Downloads\2802888499_Dismemberment_Mod_V1.1.zip
2024-02-21 09:51 - 2024-02-21 09:51 - 000376931 _____ C:\Users\User\Downloads\Realistic Battle AI Module for v1.5.8 stable and 1.5.9 beta-791-1-7-5-1616617311.zip
2024-02-20 21:50 - 2024-02-20 21:50 - 000000000 ___HD C:\$Windows.~WS
2024-02-20 21:50 - 2024-02-20 21:50 - 000000000 ____D C:\$WINDOWS.~BT
2024-02-20 21:45 - 2024-02-21 16:29 - 000000000 ____D C:\Program Files\Mozilla Firefox
2024-02-20 15:45 - 2024-03-04 17:21 - 000001126 _____ C:\Users\User\Desktop\Call to Arms Gates of Hell Ostfront Liberation.lnk
2024-02-20 15:45 - 2024-02-20 15:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call to Arms Gates of Hell Ostfront Liberation
2024-02-20 14:09 - 2024-02-20 14:10 - 000001179 _____ C:\Users\User\Desktop\TWoS - OptionsFileEditorViewer.lnk
2024-02-20 14:09 - 2024-02-20 14:10 - 000000713 _____ C:\Users\User\Desktop\TWoS - Documentation.lnk
2024-02-20 14:09 - 2024-02-20 14:10 - 000000688 _____ C:\Users\User\Desktop\TWoS - JSGME.lnk
2024-02-20 14:09 - 2024-02-20 14:10 - 000000638 _____ C:\Users\User\Desktop\TWoS - KSDCommander.lnk
2024-02-20 13:55 - 2024-03-02 17:52 - 000000000 ____D C:\Users\User\Documents\SH5
2024-02-20 13:54 - 2024-02-20 13:54 - 000000663 _____ C:\Users\Public\Desktop\Silent Hunter 5.lnk
2024-02-20 13:36 - 2024-02-20 13:36 - 000000755 _____ C:\Users\User\Documents\Downloads - Verknüpfung.lnk
2024-02-20 10:11 - 2024-02-20 10:11 - 000007138 _____ C:\Users\User\Downloads\Increased Bandit Party Size ALL IN ONE-5396-1-0-3-1708288292.zip
2024-02-20 09:35 - 2024-02-20 09:36 - 000000006 _____ C:\Users\User\Desktop\Bannerlord Relations.txt
2024-02-20 03:35 - 2024-02-20 03:35 - 000017161 _____ C:\Users\User\Downloads\War And Ai Tweaks-4754-1-8-0-1672623967.zip
2024-02-20 03:31 - 2024-02-20 03:31 - 000074026 _____ C:\Users\User\Downloads\Improved Combat AI for Bannerlord e1.5.10-449-e2-3-4-1624388498.zip
2024-02-20 01:57 - 2024-02-20 01:57 - 033287670 _____ C:\Users\User\Downloads\Inworld Calradia-5273-1-0-6-1686949605.zip
2024-02-19 23:16 - 2024-02-19 23:16 - 001245882 _____ C:\Users\User\Downloads\Realistic Battle mod for 1.2.9 live-791-3-7-7-1707088972.zip
2024-02-19 23:15 - 2024-02-19 23:15 - 000001809 _____ C:\Users\User\Downloads\UnblockDLL1.4-397-1-4-1638478478.zip
2024-02-19 23:09 - 2024-02-19 23:09 - 033287740 _____ C:\Users\User\Downloads\Inworld Calradia-5273-1-0-7-1703207625.zip
2024-02-19 18:30 - 2024-02-19 18:30 - 000005098 _____ C:\Users\User\Downloads\Fin-AntiCheatVer1-2-0.rar
2024-02-10 21:01 - 2024-02-10 21:01 - 000000000 ____D C:\Users\User\AppData\Local\GOG.com
2024-02-10 21:01 - 2024-02-10 21:01 - 000000000 ____D C:\Users\User\AppData\Local\CD Projekt Red
2024-02-10 20:59 - 2024-02-10 20:59 - 000000000 ____D C:\Users\User\AppData\Local\REDEngine
2024-02-10 20:54 - 2024-02-21 10:51 - 000000000 ____D C:\KVRT2020_Data
2024-02-10 20:54 - 2024-02-10 20:54 - 109010800 _____ (AO Kaspersky Lab) C:\Users\User\Desktop\kvrt.exe
2024-02-08 16:03 - 2024-02-08 16:03 - 000000000 ____D C:\Users\User\AppData\LocalLow\RawFury
2024-02-08 10:28 - 2024-02-08 10:28 - 000000000 ____D C:\ProgramData\Gaijin
2024-02-08 10:22 - 2024-02-08 10:22 - 000000000 ____D C:\Users\User\AppData\Local\WarThunder
2024-02-08 10:22 - 2024-02-08 10:22 - 000000000 ____D C:\ProgramData\WarThunder
2024-02-06 02:32 - 2024-02-20 14:50 - 000000000 ____D C:\Windows\Minidump
2024-02-05 17:01 - 2024-02-05 17:01 - 000000000 ____D C:\Users\User\AppData\Local\Embark
2024-02-05 16:52 - 2024-02-05 16:52 - 000000000 ____D C:\Users\User\AppData\Local\AnybrainSDK
2024-02-05 16:49 - 2024-02-05 16:49 - 000000000 ____D C:\Users\User\AppData\Local\Discovery
2024-02-05 16:49 - 2024-02-05 16:49 - 000000000 ____D C:\ProgramData\Packer
2024-02-05 16:48 - 2024-02-05 16:49 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat_EOS
2024-02-04 21:50 - 2024-02-04 21:50 - 000000000 ____D C:\Users\User\AppData\Roaming\UnknownApplicationVendor
2024-02-04 21:39 - 2024-02-04 21:39 - 000000000 ____D C:\ProgramData\Oracle
2024-02-04 21:38 - 2024-02-04 21:38 - 000000000 ____D C:\Users\User\AppData\Roaming\Sun
2024-02-04 21:38 - 2024-02-04 21:38 - 000000000 ____D C:\Users\User\AppData\LocalLow\Sun
2024-02-04 21:38 - 2024-02-04 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2024-02-04 21:38 - 2024-02-04 21:38 - 000000000 ____D C:\Program Files\Java
2024-02-04 21:38 - 2023-12-19 13:01 - 000200320 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2024-02-04 10:51 - 2024-02-04 10:51 - 000006583 _____ C:\Users\User\Downloads\dvize.AILimitV1.6.2-1.zip
2024-02-04 09:24 - 2024-02-04 21:31 - 000000000 ____D C:\Users\User\AppData\Local\Ubisoft Game Launcher
2024-02-04 09:24 - 2024-02-04 09:24 - 000001333 _____ C:\Users\User\Desktop\Ubisoft Connect.lnk
2024-02-04 09:24 - 2024-02-04 09:24 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2024-02-04 09:24 - 2024-02-04 09:24 - 000000000 ____D C:\ProgramData\Ubisoft
2024-02-04 09:24 - 2024-02-04 09:24 - 000000000 ____D C:\Program Files (x86)\Ubisoft

==================== Ein Monat (geänderte) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2024-03-05 12:48 - 2024-01-27 12:09 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-03-05 12:13 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2024-03-05 11:28 - 2024-01-26 15:03 - 000000000 ____D C:\ProgramData\NVIDIA
2024-03-05 06:13 - 2024-01-26 14:42 - 000003756 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-03-05 06:13 - 2024-01-26 14:42 - 000003632 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-03-04 21:30 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2024-03-04 21:25 - 2024-01-26 14:54 - 001713042 _____ C:\Windows\system32\PerfStringBackup.INI
2024-03-04 21:25 - 2019-12-07 15:50 - 000725706 _____ C:\Windows\system32\perfh007.dat
2024-03-04 21:25 - 2019-12-07 15:50 - 000145030 _____ C:\Windows\system32\perfc007.dat
2024-03-04 21:22 - 2024-01-26 14:45 - 000000000 ____D C:\Users\User\AppData\Local\Packages
2024-03-04 21:22 - 2024-01-26 14:45 - 000000000 ____D C:\ProgramData\Packages
2024-03-04 21:21 - 2024-01-26 14:42 - 000259592 _____ C:\Windows\system32\FNTCACHE.DAT
2024-03-04 21:21 - 2024-01-26 14:42 - 000008192 ___SH C:\DumpStack.log.tmp
2024-03-04 21:21 - 2024-01-26 14:42 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-03-04 21:21 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-03-04 21:21 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-03-04 21:20 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-03-04 21:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2024-03-04 21:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences
2024-03-04 21:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2024-03-04 21:20 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI
2024-03-04 21:19 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2024-03-04 21:17 - 2024-01-26 14:46 - 003015680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-03-04 17:21 - 2024-01-28 13:45 - 000000000 ____D C:\Program Files (x86)\Steam
2024-03-04 06:01 - 2024-01-28 20:24 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2024-03-03 23:55 - 2024-01-27 12:01 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache
2024-03-03 23:54 - 2024-01-28 16:36 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2024-03-03 23:23 - 2024-01-28 01:01 - 000000000 ____D C:\Users\User\Downloads\ReadyOrNot
2024-03-03 22:53 - 2024-01-27 11:59 - 000000000 ____D C:\Users\User\AppData\Local\Battle.net
2024-03-03 21:14 - 2024-01-28 12:15 - 000001231 _____ C:\Users\User\Desktop\Diablo IV Launcher - Verknüpfung.lnk
2024-03-03 19:06 - 2024-01-28 09:09 - 000000000 ____D C:\Users\User\Documents\Tarkov Maps
2024-03-03 14:14 - 2024-01-26 14:42 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-03-03 12:44 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports
2024-03-02 21:58 - 2024-01-26 15:30 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\MMC
2024-03-02 13:18 - 2024-01-28 10:24 - 000000000 ____D C:\Games
2024-03-01 05:47 - 2024-01-27 11:47 - 000000000 ____D C:\Program Files (x86)\Razer
2024-02-29 16:24 - 2024-01-27 11:59 - 000000000 ____D C:\Users\User\AppData\Roaming\Battle.net
2024-02-29 14:42 - 2024-01-26 14:42 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-02-28 18:24 - 2024-01-26 15:03 - 000000000 ____D C:\Users\User\AppData\Local\NVIDIA
2024-02-28 18:24 - 2024-01-26 15:03 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2024-02-28 18:21 - 2024-01-26 15:03 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2024-02-28 11:07 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF
2024-02-28 10:23 - 2024-01-26 14:42 - 000000000 ____D C:\Windows\system32\Drivers\wd
2024-02-28 09:13 - 2024-01-28 14:27 - 000000000 ____D C:\Users\User\Documents\My Games
2024-02-26 18:09 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2024-02-24 21:35 - 2024-01-27 13:27 - 000000000 ____D C:\Intel
2024-02-24 16:25 - 2024-01-27 12:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlestate Games
2024-02-23 13:29 - 2024-01-27 11:58 - 000000000 ____D C:\Program Files (x86)\Battle.net
2024-02-22 00:12 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\PrintDialog
2024-02-21 23:57 - 2022-09-08 04:15 - 000000000 ____D C:\Windows\SystemTemp
2024-02-21 16:29 - 2024-01-27 12:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-02-21 15:21 - 2024-01-26 14:53 - 000000000 ____D C:\Windows\system32\MRT
2024-02-21 15:18 - 2024-01-26 14:53 - 191155960 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-02-20 22:25 - 2024-01-26 14:42 - 000000000 ____D C:\Windows\Panther
2024-02-20 22:10 - 2024-01-27 12:09 - 000001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-02-20 22:10 - 2024-01-27 12:09 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2024-02-20 10:12 - 2024-01-28 20:42 - 000000000 ____D C:\Users\User\AppData\Roaming\EasyAntiCheat
2024-02-19 15:11 - 2019-12-07 10:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2024-02-08 22:32 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing
2024-02-08 10:22 - 2024-01-27 12:20 - 000000000 ____D C:\Users\User\AppData\Local\NVIDIA Corporation
2024-02-05 18:13 - 2024-01-26 14:51 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-592660686-136461019-3334781386-1001
2024-02-05 18:13 - 2024-01-26 14:50 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-592660686-136461019-3334781386-1001
2024-02-05 18:13 - 2024-01-26 14:44 - 000002402 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-02-05 16:49 - 2024-01-28 11:13 - 000000000 ____D C:\Users\User\AppData\Local\UnrealEngine
2024-02-05 14:36 - 2024-02-03 13:54 - 000000889 _____ C:\Users\User\Desktop\ULTIMATE ADMIRAL DREADNOUGHTS V1.4.1.1.lnk
2024-02-04 21:20 - 2024-02-03 15:02 - 000000000 ____D C:\Windows\SysWOW64\directx

==================== SigCheck ============================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

==================== Ende von FRST.txt ========================


Edited by shr84, Today, 07:29 AM.


BC AdBot (Login to Remove)

 


#2 shr84

shr84
  • Topic Starter

  •  Avatar image
  • Members
  • 4 posts
  • OFFLINE
  •  
  • Local time:04:58 AM

Posted Today, 07:28 AM

Addition.txt

 

Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 26.02.2024 01
durchgeführt von User (05-03-2024 13:04:38)
Gestartet von C:\Users\User\Desktop
Microsoft Windows 10 Home Version 22H2 19045.4123 (X64) (2024-01-26 13:44:17)
Start-Modus: Normal
==========================================================


==================== Konten: =============================


(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

Administrator (S-1-5-21-592660686-136461019-3334781386-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-592660686-136461019-3334781386-503 - Limited - Disabled)
Gast (S-1-5-21-592660686-136461019-3334781386-501 - Limited - Disabled)
User (S-1-5-21-592660686-136461019-3334781386-1001 - Administrator - Enabled) => C:\Users\User
WDAGUtilityAccount (S-1-5-21-592660686-136461019-3334781386-504 - Limited - Disabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlestate Games Launcher 14.0.1.2319 (HKLM-x32\...\{B0FDA062-7581-4D67-B085-C4E7C358037F}_is1) (Version: 14.0.1.2319 - Battlestate Games)
Call to Arms Gates of Hell Ostfront Liberation (HKLM-x32\...\Call to Arms Gates of Hell Ostfront Liberation_is1) (Version:  - )
Crusader Kings III Legacy of Persia (HKLM-x32\...\Crusader Kings III Legacy of Persia_is1) (Version:  - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 12.0.0.2126 - Disc Soft Ltd)
Escape from Tarkov (HKLM-x32\...\EscapeFromTarkov) (Version: 0.0.0.0.0 - Battlestate Games)
Java 8 Update 401 (64-bit) (HKLM\...\{71024AE4-039E-4CA4-87B4-2F64180401F0}) (Version: 8.0.4010.10 - Oracle Corporation)
Kingdom Eighties (HKLM-x32\...\Kingdom Eighties_is1) (Version:  - )
MechWarrior Online (HKLM-x32\...\{B5D77052-35FE-4B26-88BA-34CE1127E9AE}) (Version: 2.0.0.0 - Piranha Games, Inc.)
MechWarrior: Living Legends (HKLM-x32\...\{D00139A4-7542-41C4-A0B6-17463E334725}_is1) (Version: 1.0.1 - )
Microsoft .NET Host - 6.0.4 (x64) (HKLM\...\{E8F68286-7C62-4E7D-A28F-277FFEBC2B9D}) (Version: 48.19.39076 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.4 (x64) (HKLM\...\{51701D62-C986-4508-B423-5EFE6FF708B7}) (Version: 48.19.39076 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.4 (x64) (HKLM\...\{BA6DD641-C766-473C-B70A-451F96F4D88B}) (Version: 48.19.39076 - Microsoft Corporation) Hidden
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 122.0.2365.66 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 122.0.2365.66 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\OneDriveSetup.exe) (Version: 24.020.0128.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{3c3aafc8-d898-43ec-998f-965ffdae065a}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.38.33130 (HKLM-x32\...\{1de5e707-82da-4db6-b810-5d140cc4cbb3}) (Version: 14.38.33130.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.38.33130 (HKLM\...\{C31777DB-51C1-4B19-9F80-38EF5C1D7C89}) (Version: 14.38.33130 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.38.33130 (HKLM\...\{1CA7421F-A225-4A9C-B320-A36981A2B789}) (Version: 14.38.33130 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.4 (x64) (HKLM\...\{A0EC4CD9-836A-4D8B-BBD7-D5BC3902465C}) (Version: 48.19.39090 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.4 (x64) (HKLM-x32\...\{73e5de3a-8f61-4a4a-ac84-0d7d5c9b9b5f}) (Version: 6.0.4.31115 - Microsoft Corporation)
Moo0 Videoschneider 1.17 (HKLM-x32\...\Moo0 VideoCutter) (Version:  - )
Mozilla Firefox (x64 de) (HKLM\...\Mozilla Firefox 123.0 (x64 de)) (Version: 123.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 122.0 - Mozilla)
MWO Portal (HKLM-x32\...\{FDF0295D-77F7-4534-B7BF-C021A0B3C970}) (Version: 1.0.86.4 - Piranha Games, Inc.)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.120 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.120 - NVIDIA Corporation)
NVIDIA Grafiktreiber 551.61 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 551.61 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.)
Ready or Not (HKLM-x32\...\Ready or Not_is1) (Version:  - )
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.84.1856 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.2.7.0 - Rockstar Games)
RogueKiller Version 15.15.2.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 15.15.2.0 - Adlice Software)
Silent Hunter 5 Version 1.2.0 (HKLM-x32\...\Silent Hunter 5_is1) (Version: 1.2.0 - UBISoft)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 4.14.0 - Tweaking.com)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 147.0.10965 - Ubisoft)
UE4 Prerequisites (x64) (HKLM\...\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation)
WinRAR 6.24 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 6.24.0 - win.rar GmbH)
WiperSoft 1.1.1161.64 (HKLM\...\{AB1C8C91-4D8E-4C28-80E7-FD135FB90515}}_is1) (Version: 1.1.1161.64 - WiperSoft)

Packages:
=========

Dev Home -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.1100.416.0_x64__8wekyb3d8bbwe [2024-03-04] (Microsoft Corporation)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2024-02-28] (NVIDIA Corp.)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.19.1262.0_x64__8wekyb3d8bbwe [2024-02-22] (Microsoft Studios) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0 [2024-03-03] (Spotify AB) [Startup Task]
Websuche von Microsoft Bing -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.91.0_x64__8wekyb3d8bbwe [2024-02-22] (Microsoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2024-01-28] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2024-01-28] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_830091b3ebd4b98a\nvshext.dll [2024-02-17] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> Keine Datei
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> Keine Datei
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2023-10-03] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Nicht auf der Ausnahmeliste) ====================

==================== Verknüpfungen & WMI ========================

==================== Geladene Module (Nicht auf der Ausnahmeliste) =============


==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall MechWarrior: Living Legends.lnk [1960]
AlternateDataStreams: C:\Users\User\Downloads\BsgLauncher.14.0.1.2319.exe:MBAM.Zone.Identifier [201]

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================

==================== Internet Explorer (Nicht auf der Ausnahmeliste) ==========

BHO: Java™ Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre-1.8\bin\ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java™ Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-1.8\bin\jp2ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation)

==================== Hosts Inhalt: =========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2019-12-07 10:14 - 2024-02-22 00:04 - 000000855 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Andere Bereiche ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\dotnet\
HKU\S-1-5-21-592660686-136461019-3334781386-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
 ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C"
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-592660686-136461019-3334781386-1001\...\StartupApproved\Run: => "Steam"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{B488A952-98F5-4137-B236-EC8676BF16F9}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FDB4024A-638E-4B55-8A6D-D249AED1B8DF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{38EC7E34-CC75-408A-A036-69FD3A5FA575}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F7FDE290-E5C7-4CDF-922D-BBDB95A6C1A9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{8E00E117-0007-4494-A647-217ABB365946}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{21388506-B4F6-4537-878E-A8DD5D8A99C0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6852F713-5895-477F-A216-452317D5953E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{84BFE920-81C1-40D7-AE41-54C16F69FBB3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{78241B6B-5A7B-46C1-9C79-CEF032692B20}E:\games\airship kingdoms adrift\airship.exe] => (Block) E:\games\airship kingdoms adrift\airship.exe () [Datei ist nicht signiert]
FirewallRules: [UDP Query User{54D78F51-702B-4F1C-B595-F40C606F21EF}E:\games\airship kingdoms adrift\airship.exe] => (Block) E:\games\airship kingdoms adrift\airship.exe () [Datei ist nicht signiert]
FirewallRules: [TCP Query User{26CC7EDC-FAFF-4344-947E-201332122BAE}H:\diablo iv\diablo iv.exe] => (Allow) H:\diablo iv\diablo iv.exe => Keine Datei
FirewallRules: [UDP Query User{A450BC5D-BF2F-47D4-AB8D-BF210191ED81}H:\diablo iv\diablo iv.exe] => (Allow) H:\diablo iv\diablo iv.exe => Keine Datei
FirewallRules: [{DADDFBE6-5A0F-4E07-AC63-C4E36DD1A4DC}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
FirewallRules: [{EFC4704D-114A-4466-B806-A88FC02DB3C2}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
FirewallRules: [{FCBF0DEF-CAF5-49B2-951A-2DCC28EFE565}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{819357C0-75D6-4AEA-B00C-5157D309A72C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{339C51C6-82E8-4D12-8CFF-EF151ED153B5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{6ED57347-C251-4786-A94C-9F9ABE813070}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{9F62924C-9572-461E-8428-396ADE73ADD7}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{02765178-6B1B-4BB6-9F51-285482FD19BF}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{6954D939-09E9-416B-9A3D-E7CFC97B8F56}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{1B4ACECD-D0D7-4A61-AF52-16F5F652767E}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{E4303A7B-F74D-427E-A514-27D988E8657C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Post Scriptum\Launch_PostScriptum.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{97756431-D83B-4E82-BC4E-02FC2078C49C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Post Scriptum\Launch_PostScriptum.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{6C2A3936-5DE5-4564-8E6B-1B1205F31A1D}] => (Allow) E:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{1A8E7572-D571-4B6C-8856-1658B6329510}] => (Allow) E:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{A8D8BA55-8648-403B-9B46-A4F9C00D0B13}] => (Allow) C:\Games\MW Living Legends\Bin64\Crysis.exe => Keine Datei
FirewallRules: [{F549EBE9-3054-4CF5-822E-D62F6DF0E9E6}] => (Allow) C:\Games\MW Living Legends\Bin64\Crysis.exe => Keine Datei
FirewallRules: [TCP Query User{AF10C0BB-98C4-443A-A99E-BFE3D653097D}H:\steamlibrary\steamapps\common\war thunder\launcher.exe] => (Allow) H:\steamlibrary\steamapps\common\war thunder\launcher.exe (GAIJIN NETWORK LTD -> Gaijin)
FirewallRules: [UDP Query User{F6F879AD-3C6D-4ADC-B975-948C10895022}H:\steamlibrary\steamapps\common\war thunder\launcher.exe] => (Allow) H:\steamlibrary\steamapps\common\war thunder\launcher.exe (GAIJIN NETWORK LTD -> Gaijin)
FirewallRules: [TCP Query User{0D6CF277-1856-41A5-B556-61BFBF6BC8C8}H:\steamlibrary\steamapps\common\war thunder\win64\aces.exe] => (Allow) H:\steamlibrary\steamapps\common\war thunder\win64\aces.exe (GAIJIN NETWORK LTD -> Gaijin Entertainment)
FirewallRules: [UDP Query User{D84EDF7D-061D-433F-8C59-96A9CBD502EA}H:\steamlibrary\steamapps\common\war thunder\win64\aces.exe] => (Allow) H:\steamlibrary\steamapps\common\war thunder\win64\aces.exe (GAIJIN NETWORK LTD -> Gaijin Entertainment)
FirewallRules: [{7795B2EA-759E-4EC7-A720-4C37BBBE8D96}] => (Allow) H:\Diablo IV\Diablo IV.exe => Keine Datei
FirewallRules: [TCP Query User{47AEEE4B-F6AD-439B-AB62-E5CE1D0F91ED}E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{67AA514B-C688-4C17-8933-02F19574049B}E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) E:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{D1C743F3-2286-4C1D-B616-105CAF5ABB20}H:\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) H:\cyberpunk 2077\bin\x64\cyberpunk2077.exe (CD PROJEKT SPÓŁKA AKCYJNA -> CD PROJEKT S.A.)
FirewallRules: [UDP Query User{97DB990C-24A3-4CCE-9D2C-556ED8F1F30D}H:\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) H:\cyberpunk 2077\bin\x64\cyberpunk2077.exe (CD PROJEKT SPÓŁKA AKCYJNA -> CD PROJEKT S.A.)
FirewallRules: [TCP Query User{342FD9F0-D281-4F4E-A46C-A19BD75FFB70}D:\games\call to arms gates of hell ostfront liberation\binaries\x64\call_to_arms.exe] => (Allow) D:\games\call to arms gates of hell ostfront liberation\binaries\x64\call_to_arms.exe (Digitalmindsoft) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{6938D9FE-33DA-4327-8E92-EC76200EECC2}D:\games\call to arms gates of hell ostfront liberation\binaries\x64\call_to_arms.exe] => (Allow) D:\games\call to arms gates of hell ostfront liberation\binaries\x64\call_to_arms.exe (Digitalmindsoft) [Datei ist nicht signiert]
FirewallRules: [{480C6602-A8F0-4CD4-AA2D-AB8069EA5E9D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei
FirewallRules: [{9E6EFAB9-EFA3-4B1E-B67D-E4ECCBA59176}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei
FirewallRules: [{01DF0815-250E-4BEF-A399-C43432F6D46B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei
FirewallRules: [{C9B70DF6-3CB5-42AC-9DE3-6A0E1C192420}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe => Keine Datei
FirewallRules: [TCP Query User{0F17730A-AE67-4173-8791-0D5B7577EE5C}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{346E09F5-85B7-4C15-888B-A763B5AB4FD3}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3DF7C821-99CA-4028-BD72-A8918154DEEE}] => (Allow) %SystemDrive%\TCPOptimizer.exe => Keine Datei
FirewallRules: [TCP Query User{BB5C196D-71EA-4595-B67C-26739049E9B4}E:\steamlibrary\steamapps\common\war of rights\bin\win_x64\warofrights.exe] => (Allow) E:\steamlibrary\steamapps\common\war of rights\bin\win_x64\warofrights.exe (Campfire Games) [Datei ist nicht signiert]
FirewallRules: [UDP Query User{245D63EF-93A0-4B31-8BB7-BBEDDFDA95A0}E:\steamlibrary\steamapps\common\war of rights\bin\win_x64\warofrights.exe] => (Allow) E:\steamlibrary\steamapps\common\war of rights\bin\win_x64\warofrights.exe (Campfire Games) [Datei ist nicht signiert]
FirewallRules: [{787B9F51-6A60-40EC-BCDA-4CC7A29E52E0}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{718DA740-B046-4ACB-8793-8965936E9EE7}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (BATTLESTATE GAMES LIMITED -> Battlestate Games)
FirewallRules: [{B8E744A4-99F0-439F-912D-86B34A5B5350}] => (Allow) H:\Diablo IV\Diablo IV.exe => Keine Datei
FirewallRules: [{C552B0E7-A4BE-4FCC-BF8C-FEF4833FC504}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.113.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2669F1BF-4EC9-44A1-818D-FD7DFC037451}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.113.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{86103FB5-6421-4E1A-9C7C-25D0E292F090}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.113.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B17A036A-5956-4B53-B125-A7430E60F7E6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.113.3210.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [TCP Query User{B488DA73-4C98-4377-9385-79D484559F44}H:\call of duty modern warfare\modernwarfare.exe] => (Allow) H:\call of duty modern warfare\modernwarfare.exe => Keine Datei
FirewallRules: [UDP Query User{8FD640F3-2733-4E2A-A120-9255A062F001}H:\call of duty modern warfare\modernwarfare.exe] => (Allow) H:\call of duty modern warfare\modernwarfare.exe => Keine Datei
FirewallRules: [TCP Query User{2F1A87E3-8822-4E47-8E15-9C844213CC9E}D:\games\call of duty\_retail_\cod.exe] => (Allow) D:\games\call of duty\_retail_\cod.exe => Keine Datei
FirewallRules: [UDP Query User{13F3BE82-80FB-4C49-8A09-6C7BDDDF7F3F}D:\games\call of duty\_retail_\cod.exe] => (Allow) D:\games\call of duty\_retail_\cod.exe => Keine Datei
FirewallRules: [TCP Query User{1285212F-4AA6-4C9F-9F5C-99311E60CDF7}C:\games\diablo iv\diablo iv.exe] => (Allow) C:\games\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{11BED1C8-1DD0-4329-A065-CDF643A43E9E}C:\games\diablo iv\diablo iv.exe] => (Allow) C:\games\diablo iv\diablo iv.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{2B5BA773-ABB3-4E96-B7C7-80C696C46358}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4412A7DF-7474-4734-938D-D16B0C717BE1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F850B10D-41DD-411B-BAD3-4A7569725E29}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3D184C2C-DFBE-4F73-B882-BD670C723FC9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0DB8EBC8-9D4E-47B0-B27C-E992D021F985}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8CC996EC-5533-484F-9B58-8DC82E8BC922}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{10D4BE00-1CDA-40CC-B8AB-3DE427D6D67C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{569D18BF-6B65-40A9-9936-0DF2008FE394}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{005BDEEA-0D50-4286-AC8F-DEF7DD9306E6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E45190E2-CD5D-4071-9CE5-7AC320D5F1AC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4B62783C-FBE5-4A45-946F-9D6573E31672}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\122.0.2365.66\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1D322C93-0FE6-4F9F-958C-8C588BEEFCB3}] => (Allow) D:\SteamLibrary\steamapps\common\dayofinfamy\dayofinfamy_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{409E4E86-BF89-4978-9070-498B53BD9D2F}] => (Allow) D:\SteamLibrary\steamapps\common\dayofinfamy\dayofinfamy_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)

==================== Wiederherstellungspunkte =========================

02-03-2024 03:34:44 Removed MechWarrior Online
04-03-2024 21:12:16 Windows Modules Installer

==================== Fehlerhafte Geräte im Gerätemanager ============


==================== Fehlereinträge in der Ereignisanzeige: ========================

Applikationsfehler:
==================
Error: (03/04/2024 07:48:19 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Das Programm call_to_arms.exe Version 1.0.3.4 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1a5c

Startzeit: 01da6e500e1c607e

Beendigungszeit: 4294967295

Anwendungspfad: D:\Games\Call to Arms Gates of Hell Ostfront Liberation\binaries\x64\call_to_arms.exe

Bericht-ID: 56755a5b-554e-43ca-b126-0f28ec1ed9b9

Vollständiger Name des fehlerhaften Pakets:

Relative Anwendungs-ID des fehlerhaften Pakets:

Absturztyp: Top level window is idle

Error: (03/04/2024 06:00:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: bad_module_info, Version: 0.0.0.0, Zeitstempel: 0x00000000
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0x00000000
Fehleroffset: 0x0000000000000000
ID des fehlerhaften Prozesses: 0x12a8
Startzeit der fehlerhaften Anwendung: 0x01da6dee5079625c
Pfad der fehlerhaften Anwendung: bad_module_info
Pfad des fehlerhaften Moduls: unknown
Berichtskennung: 6cf33fa3-072b-4ae9-bc61-4a919f6d8582
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (03/04/2024 05:27:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: bad_module_info, Version: 0.0.0.0, Zeitstempel: 0x00000000
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0x00000000
Fehleroffset: 0x0000000000000000
ID des fehlerhaften Prozesses: 0x2508
Startzeit der fehlerhaften Anwendung: 0x01da6de8f5a3e519
Pfad der fehlerhaften Anwendung: bad_module_info
Pfad des fehlerhaften Moduls: unknown
Berichtskennung: e0803f80-befa-43f9-946c-774741a4a4b8
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (03/03/2024 02:29:53 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} und dem Namen "CEventSystem" kann nicht gestartet werden. [0x8007045b, Der Computer wird heruntergefahren.]

Error: (03/03/2024 12:47:59 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Das Programm explorer.exe Version 10.0.19041.4046 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 2c90

Startzeit: 01da6d6097132834

Beendigungszeit: 0

Anwendungspfad: C:\Windows\explorer.exe

Bericht-ID: 361e6596-0bc5-47cf-9e96-cf668d9341bf

Vollständiger Name des fehlerhaften Pakets:

Relative Anwendungs-ID des fehlerhaften Pakets:

Absturztyp: Unknown

Error: (03/03/2024 12:47:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Das Programm explorer.exe Version 10.0.19041.4046 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 26f4

Startzeit: 01da6c1cc745987b

Beendigungszeit: 0

Anwendungspfad: C:\Windows\explorer.exe

Bericht-ID: 280344ff-bd40-49fd-a367-f655f1b4a296

Vollständiger Name des fehlerhaften Pakets:

Relative Anwendungs-ID des fehlerhaften Pakets:

Absturztyp: Cross-thread

Error: (03/02/2024 11:16:14 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Das Programm call_to_arms.exe Version 1.0.3.4 hat die Interaktion mit Windows beendet und wurde geschlossen. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 2854

Startzeit: 01da6c88d9efe6ef

Beendigungszeit: 4294967295

Anwendungspfad: D:\Games\Call to Arms Gates of Hell Ostfront Liberation\binaries\x64\call_to_arms.exe

Bericht-ID: 7f226b3a-8714-4a9e-826a-a19c338f4c6e

Vollständiger Name des fehlerhaften Pakets:

Relative Anwendungs-ID des fehlerhaften Pakets:

Absturztyp: Top level window is idle

Error: (03/02/2024 04:52:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: AnomalyDX11AVX.exe, Version: 1.0.5.5, Zeitstempel: 0x6587fe00
Name des fehlerhaften Moduls: AnomalyDX11AVX.exe, Version: 1.0.5.5, Zeitstempel: 0x6587fe00
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000141082
ID des fehlerhaften Prozesses: 0xb24
Startzeit der fehlerhaften Anwendung: 0x01da6c54effd104a
Pfad der fehlerhaften Anwendung: D:\Spiele\Anomaly\bin\AnomalyDX11AVX.exe
Pfad des fehlerhaften Moduls: D:\Spiele\Anomaly\bin\AnomalyDX11AVX.exe
Berichtskennung: 55085b47-4bb6-4495-bc74-5972a58d6781
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:


Systemfehler:
=============
Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Browser" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Browser erreicht.

Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Browser" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Browser erreicht.

Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Browser" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Browser erreicht.

Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Browser" wurde aufgrund folgenden Fehlers nicht gestartet:
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (03/05/2024 01:01:08 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Browser erreicht.


Windows Defender:
================Event[0]:

Date: 2024-02-23 16:20:25
Description:
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Security Intelligence aufgetreten. Es wird versucht, zu einer vorherigen Version zurückzukehren.
Security Intelligence versucht: Aktuell
Fehlercode: 0x80501102
Fehlerbeschreibung: Unerwartetes Problem. Installieren Sie bei Bedarf verfügbare Updates, und starten Sie das Programm dann erneut. Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support".
Security Intelligence-Version: 1.405.447.0;1.405.447.0
Modulversion: 1.1.24010.10

Date: 2024-02-23 16:07:38
Description:
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Security Intelligence aufgetreten. Es wird versucht, zu einer vorherigen Version zurückzukehren.
Security Intelligence versucht: Aktuell
Fehlercode: 0x80501102
Fehlerbeschreibung: Unerwartetes Problem. Installieren Sie bei Bedarf verfügbare Updates, und starten Sie das Programm dann erneut. Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support".
Security Intelligence-Version: 1.405.447.0;1.405.447.0
Modulversion: 1.1.24010.10

Date: 2024-02-22 00:05:44
Description:
Bei Microsoft Defender Antivirus ist ein Fehler beim Aktualisieren der Sicherheitsinformationen aufgetreten.
Neue Version der Sicherheitsinformationen:
%Vorherige Version der Sicherheitsinformationen: 1.405.391.0
Update Source: Microsoft Update-Server
Sicherheitstyp: AntiVirus
Updatetyp: Voll
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion:
%Vorherige Modulversion: 1.1.24010.10
Fehlercode: 0x8007043c
Fehlerbeschreibung: Der Dienst kann nicht im abgesicherten Modus gestartet werden.

Date: 2024-02-21 23:55:41
Description:
Fehler des Microsoft Defender Antivirus-Echtzeitschutz-Features.
Feature: Bei Zugriff
Fehlercode: 0x8007043c
Fehlerbeschreibung: Der Dienst kann nicht im abgesicherten Modus gestartet werden.
Ursache: Die Antischadsoft-Sicherheitsfunktion wurde aus unbekanntem Grund beendet. Möglicherweise kann das Problem durch einen Neustart des Diensts behoben werden.

CodeIntegrity:
===============
Date: 2024-02-23 13:43:05
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Mozilla Firefox\firefox.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.


==================== Speicherinformationen ===========================

BIOS: American Megatrends Inc. F22 03/06/2017
Hauptplatine: Gigabyte Technology Co., Ltd. Z170-Gaming K3-CF
Prozessor: Intel® Core™ i5-6600K CPU @ 3.50GHz
Prozentuale Nutzung des RAM: 30%
Installierter physikalischer RAM: 16339.65 MB
Verfügbarer physikalischer RAM: 11348.6 MB
Summe virtueller Speicher: 19283.65 MB
Verfügbarer virtueller Speicher: 11840.15 MB

==================== Laufwerke ================================

Drive c: (Windows 10) (Fixed) (Total:446.48 GB) (Free:106.97 GB) (Model: T-FORCE 480GB) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:96.23 GB) (Model: WDC WD10EZEX-60WN4A0) NTFS
Drive e: () (Fixed) (Total:464.69 GB) (Free:92.6 GB) (Model: SAMSUNG HD502HJ) NTFS
Drive f: () (Fixed) (Total:111.79 GB) (Free:36.05 GB) (Model: SanDisk SDSSDA120G) NTFS
Drive h: () (Fixed) (Total:931.48 GB) (Free:391.13 GB) (Model: WD Elements 10B8 USB Device) NTFS

\\?\Volume{da433b68-63df-4435-b777-6be4e18ad8f1}\ () (Fixed) (Total:0.53 GB) (Free:0.08 GB) NTFS
\\?\Volume{66d82ade-3453-4737-a450-5183b21a8841}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partitionstabelle ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 447.1 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 59D2B8C9)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: A0A60B2D)
Partition 1: (Not Active) - (Size=464.7 GB) - (Type=07 NTFS)

==========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: E954A2B6)
Partition 1: (Not Active) - (Size=111.8 GB) - (Type=07 NTFS)

==========================================================
Disk: 4 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 586D11D2)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt =======================


Edited by shr84, Today, 07:29 AM.





4 user(s) are reading this topic

0 members, 4 guests, 0 anonymous users