Zitat:
Zitat von
cosinus FRST-Logs wären auch ganz gut.
FRST Code:
Alles auswählen Aufklappen ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 16-10-2022
durchgeführt von Fabi (Administrator) auf MACHINE (23-10-2022 13:59:53)
Gestartet von C:\Users\Fabi\Downloads
Geladene Profile: Fabi
Plattform: Microsoft Windows 10 Home Version 22H2 19045.2130 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Brave
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.133\BraveCrashHandler64.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCopyAccelerator.exe
(explorer.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\Safe In Cloud\SafeInCloud.exe
(explorer.exe ->) (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <19>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <8>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\2.00.94\AsusFanControlService.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.00.46\atkexComSvc.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_1b5e80ff87b1f5c8\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe
(svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe
(svchost.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Fabi\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711288 2022-09-15] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32688080 2022-09-29] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4234088 2022-10-19] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [Gaijin.Net Updater] => C:\Users\Fabi\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2374376 2020-12-03] (Gaijin Network LTD -> Gaijin)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [GameCenter] => "C:\Users\Fabi\AppData\Local\GameCenter\GameCenter.exe" -autostart (Keine Datei)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1090168 2022-10-07] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [Discord] => C:\Users\Fabi\AppData\Local\Discord\Update.exe [1512616 2022-02-17] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [Microsoft Edge Update] => C:\Users\Fabi\AppData\Local\Microsoft\EdgeUpdate\1.3.169.31\MicrosoftEdgeUpdateCore.exe [256440 2022-10-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [SafeInCloud] => C:\Program Files (x86)\Safe In Cloud\SafeInCloud.exe [4605440 2022-08-23] () [Datei ist nicht signiert]
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\Run: [MicrosoftEdgeAutoLaunch_9DEB7EE62C2ABA9412ED35E023D6FFAC] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3852232 2022-10-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3004894984-1400097328-3597822082-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [2968368 2022-10-12] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\...\Windows x64\Print Processors\Canon MX490 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCK.DLL [30208 2014-09-10] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MX490 series: C:\WINDOWS\system32\CNCALCK.DLL [303104 2014-09-22] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MX490 series: C:\WINDOWS\system32\CNMLMCK.DLL [406528 2014-09-10] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\106.0.5249.119\Installer\chrmstp.exe [2022-10-14] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\106.1.44.112\Installer\chrmstp.exe [2022-10-13] (Brave Software, Inc. -> Brave Software, Inc.)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {0F85FF65-066C-47E6-A362-F71243711087} - System32\Tasks\GoogleUpdateTaskMachineCore{8F14E1A2-67BD-4C6E-AFD5-2528D3CA592B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-06] (Google LLC -> Google LLC)
Task: {176B052A-C50B-42A9-B82A-A69E79159247} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-24] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {2431A9B5-2409-42CD-AEE4-988AC3AABAED} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {31B58FF3-4C66-45CD-87C9-D2786DFB2A66} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
Task: {3450139A-3CC2-47B6-9D25-55AA1EC8D496} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
Task: {3457F276-25BA-41D8-9E17-5F663A0D2837} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3004894984-1400097328-3597822082-1001Core => C:\Users\Fabi\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205744 2022-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {35D532FF-7581-4BA7-AC61-B347BD513580} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
Task: {3A458431-8D0F-420D-B40F-80EE958D3766} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
Task: {516E35A5-E0CC-4B24-878A-57DE5742D18C} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3004894984-1400097328-3597822082-1001UA => C:\Users\Fabi\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205744 2022-08-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {549F7826-58E0-458A-8C47-DFBA61B38CC1} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
Task: {54F8A498-7DE2-4A5E-A0BC-F471DBC9E50F} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2115632 2020-09-14] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {611EA1C7-B057-424C-83DF-848CCAA57361} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-24] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {66628004-0F06-4B49-9534-54E86A251048} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [1469288 2020-09-29] (ASUSTeK Computer Inc. -> )
Task: {7CBF967C-3FFA-4628-A4AC-B27C40ADB729} - System32\Tasks\Opera scheduled Autoupdate 1662747306 => C:\Users\Fabi\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Keine Datei)
Task: {83752748-E61A-4823-B20E-66206AEF7637} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [1509424 2020-03-31] (ASUSTeK Computer Inc. -> )
Task: {9B3CD016-1116-4B20-AFED-DF2943E20597} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
Task: {AA68F605-F64E-49D5-B37F-58B93F25C115} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B4D51635-6C8D-4FC8-AF8D-CA8A425162A0} - System32\Tasks\Microsoft\Windows\rempl\shell => C:\Program Files\rempl\sedlauncher.exe (Keine Datei)
Task: {C93FDB68-433F-4F6B-BEA6-2DD5DAFCC55D} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
Task: {CECD44B3-9A73-4F1A-807F-5C0CBB8DCEB5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D369D620-A013-4B04-BF19-406E21122203} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-02] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {D589883B-2372-4DE7-A6F8-6644F1FD8816} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DAA2F30F-2626-4F8C-BEAD-F9B5F2835976} - System32\Tasks\GoogleUpdateTaskMachineUA{0FFD706B-04F0-435E-AAC0-B1A639815569} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-06] (Google LLC -> Google LLC)
Task: {E1735AED-2DBE-49B2-91E8-BBED28CDCE4C} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [66504 2022-04-17] (Microsoft Corporation -> Microsoft)
Task: {F4AFEA06-20D4-4421-93CA-B61EC4A04C8B} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655336 2022-09-12] (Nvidia Corporation -> NVIDIA Corporation)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{4c79cc1f-0bef-4acc-a14b-b5c9c2114843}: [DhcpNameServer] 192.168.178.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Fabi\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-23]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.351.2 -> C:\Program Files\Java\jre1.8.0_351\bin\dtplugin\npDeployJava1.dll [2022-10-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.351.2 -> C:\Program Files\Java\jre1.8.0_351\bin\plugin2\npjp2.dll [2022-10-22] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [Keine Datei]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [Keine Datei]
Chrome:
=======
CHR Profile: C:\Users\Fabi\AppData\Local\Google\Chrome\User Data\Default [2022-10-23]
CHR Extension: (Grepper) - C:\Users\Fabi\AppData\Local\Google\Chrome\User Data\Default\Extensions\amaaokahonnfjjemodnpmeenfpnnbkco [2022-10-20]
CHR Extension: (Font Finder) - C:\Users\Fabi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhiichidigehdgphoambhjbekalahgha [2022-10-15]
CHR Extension: (Page Ruler) - C:\Users\Fabi\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcbmcnpepaddcedmjdcmhbekjhbfnlff [2022-10-15]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Fabi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-09-09]
CHR Extension: (Live color picker) - C:\Users\Fabi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocfboephblnapfbccjigejhblhkpgflj [2022-10-15]
Brave:
=======
BRA DefaultProfile: Default
BRA Profile: C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-10-23]
BRA Notifications: Default -> hxxps://de133.grepolis.com
BRA Extension: (Google Übersetzer) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-05-19]
BRA Extension: (Grepper) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\amaaokahonnfjjemodnpmeenfpnnbkco [2022-10-18]
BRA Extension: (Phantom) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bfnaelmomeimhlpmgjnjophhpkkoljpa [2022-10-18]
BRA Extension: (SafeInCloud Password Manager) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lchdigjbcmdgcfeijpfkpadacbijihjl [2022-10-11]
BRA Extension: (ChroPath) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ljngjbnaijcbncmcnjfhigebomdlkcjo [2022-09-06]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-10-22]
BRA Extension: (Brave NTP background images) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-12]
BRA Extension: (Brave Ads Resources) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\bbefpembgddgdihpkcidgdgiojjlchji [2022-03-28]
BRA Extension: (Wallet Data Files Updater) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-09-17]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-10-23]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2022-09-15]
BRA Extension: (Brave Ad Block Updater (EasyList Germany)) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\faknfgalcghekhfggcdikddilkpjbonh [2022-10-23]
BRA Extension: (Brave Ads Resources) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\jcncoheihebhhiemmbmpfhkceomfipbj [2022-10-18]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-03-24]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\obbokncgfcbepeipkhpdepjjoncelefj [2022-10-23]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Fabi\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-10-19]
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.00.46\atkexComSvc.exe [442416 2020-05-28] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.00.94\AsusFanControlService.exe [2073136 2020-09-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9712432 2022-07-15] (BattlEye Innovations e.K. -> )
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-24] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-24] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-10-06] (EasyAntiCheat Oy -> Epic Games, Inc)
S4 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2022-06-25] (Epic Games Inc. -> Epic Games, Inc.)
S4 EQU8_19; C:\ProgramData\EQU8\Totally Accurate Battlegrounds\bin\anticheat.x64.equ8.exe [8344720 2022-05-07] (Int3 Software AB -> Int3 Software AB)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [224320 2022-08-28] (HP Inc. -> HP Inc.)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21304 2017-09-28] (Microsoft Corporation -> Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579272 2022-10-14] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497808 2022-10-14] (Electronic Arts, Inc. -> Electronic Arts)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [187904 2017-09-28] (Microsoft Corporation) [Datei ist nicht signiert]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe [3170576 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe [133584 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\106.1.44.112\elevation_service.exe" [X]
S2 MEmuSVC; "D:\Program Files\Microvirt\MEmu\MemuService.exe" [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_1b5e80ff87b1f5c8\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_1b5e80ff87b1f5c8\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [34112 2019-07-02] (ASUSTeK Computer Inc. -> )
R1 Asusgio2; C:\WINDOWS\system32\drivers\AsIO2.sys [35136 2020-05-25] (ASUSTeK Computer Inc. -> )
R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [34064 2020-09-14] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-10-14] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [455968 2022-10-14] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-10-14] (Microsoft Windows -> Microsoft Corporation)
S2 MEmuDrv; \??\D:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [X]
S3 MpKsl2206fd0c; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CF518344-C8D3-4F23-A6C2-6440AD75A513}\MpKslDrv.sys [X]
S3 rsDwf; \SystemRoot\system32\DRIVERS\rsDwf.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2022-10-23 13:59 - 2022-10-23 14:00 - 000025293 _____ C:\Users\Fabi\Downloads\FRST.txt
2022-10-23 13:56 - 2022-10-23 14:00 - 000000000 ____D C:\FRST
2022-10-23 13:55 - 2022-10-23 13:55 - 002373632 _____ (Farbar) C:\Users\Fabi\Downloads\FRST64.exe
2022-10-22 21:49 - 2022-10-22 21:49 - 000098569 _____ C:\Users\Fabi\Desktop\DxDiag.txt
2022-10-22 21:39 - 2022-10-22 21:39 - 000000000 ____D C:\Users\Fabi\AppData\LocalLow\Oracle
2022-10-22 12:47 - 2022-10-22 12:47 - 000119410 _____ C:\Users\Fabi\Downloads\Iban.jpeg
2022-10-21 18:22 - 2022-10-21 18:36 - 000000128 _____ C:\Users\Fabi\AppData\Local\PUTTY.RND
2022-10-21 18:22 - 2022-10-21 18:22 - 003344896 _____ C:\Users\Fabi\Downloads\putty-64bit-0.77-installer (1).msi
2022-10-21 18:22 - 2022-10-21 18:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)
2022-10-21 18:22 - 2022-10-21 18:22 - 000000000 ____D C:\Program Files\PuTTY
2022-10-21 18:13 - 2022-10-21 18:13 - 000052423 _____ C:\Users\Fabi\Downloads\RG_100111783697.pdf
2022-10-21 18:13 - 2022-10-21 18:13 - 000052274 _____ C:\Users\Fabi\Downloads\RG_100110220280.pdf
2022-10-19 19:54 - 2022-10-19 19:54 - 000000000 ___HD C:\$WinREAgent
2022-10-19 19:43 - 2022-10-19 19:43 - 000752108 _____ C:\WINDOWS\Minidump\101922-9531-01.dmp
2022-10-17 19:19 - 2022-10-17 19:19 - 000000208 _____ C:\Users\Fabi\Documents\fahrenlernen.txt
2022-10-16 16:14 - 2022-10-16 16:15 - 000000000 ____D C:\Users\Fabi\Desktop\Fontawesome
2022-10-15 19:45 - 2022-10-07 05:01 - 000041984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2022-10-15 19:44 - 2022-10-15 19:44 - 002519547 _____ C:\Users\Fabi\Downloads\mysql-connector-java-8.0.29.jar
2022-10-15 19:44 - 2022-10-15 19:44 - 000589405 _____ C:\Users\Fabi\Downloads\mariadb-java-client-3.0.8.jar
2022-10-15 19:43 - 2022-10-15 19:43 - 002242549 _____ C:\Users\Fabi\Downloads\verkürzer.zip
2022-10-15 19:26 - 2022-10-15 19:26 - 000000000 ____D C:\Users\Fabi\.husStruktogrammer
2022-10-15 19:26 - 2022-10-11 07:00 - 001967904 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-10-15 19:26 - 2022-10-11 07:00 - 001967904 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-10-15 19:26 - 2022-10-11 07:00 - 001524488 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-10-15 19:26 - 2022-10-11 07:00 - 001524488 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-10-15 19:26 - 2022-10-11 07:00 - 001471992 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2022-10-15 19:26 - 2022-10-11 07:00 - 001432320 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-10-15 19:26 - 2022-10-11 07:00 - 001432320 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-10-15 19:26 - 2022-10-11 07:00 - 001214000 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2022-10-15 19:26 - 2022-10-11 07:00 - 001145608 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-10-15 19:26 - 2022-10-11 07:00 - 001145608 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-10-15 19:26 - 2022-10-11 06:56 - 000870928 _____ C:\WINDOWS\system32\nvofapi64.dll
2022-10-15 19:26 - 2022-10-11 06:56 - 000823312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2022-10-15 19:26 - 2022-10-11 06:56 - 000693760 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2022-10-15 19:26 - 2022-10-11 06:55 - 002246664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2022-10-15 19:26 - 2022-10-11 06:55 - 001653248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2022-10-15 19:26 - 2022-10-11 06:55 - 001523216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2022-10-15 19:26 - 2022-10-11 06:55 - 001261064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2022-10-15 19:26 - 2022-10-11 06:55 - 001185272 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2022-10-15 19:26 - 2022-10-11 06:55 - 000987672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2022-10-15 19:26 - 2022-10-11 06:55 - 000709640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2022-10-15 19:26 - 2022-10-11 06:54 - 015218688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2022-10-15 19:26 - 2022-10-11 06:54 - 012540912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2022-10-15 19:26 - 2022-10-11 06:54 - 005429248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2022-10-15 19:26 - 2022-10-11 06:54 - 003101176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2022-10-15 19:26 - 2022-10-11 06:54 - 000457232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2022-10-15 19:26 - 2022-10-11 06:53 - 005906416 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2022-10-15 19:26 - 2022-10-11 06:53 - 005753360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2022-10-15 19:26 - 2022-10-11 06:52 - 000853552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2022-10-15 19:26 - 2022-10-07 05:01 - 000095170 _____ C:\WINDOWS\system32\nvinfo.pb
2022-10-15 19:25 - 2022-10-22 21:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-10-15 19:25 - 2022-10-22 21:40 - 000195232 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2022-10-15 19:25 - 2022-10-15 19:25 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Sun
2022-10-15 19:24 - 2022-10-22 21:41 - 000000000 ____D C:\Program Files\Java
2022-10-15 19:24 - 2022-10-15 19:24 - 087518384 _____ (Oracle Corporation) C:\Users\Fabi\Downloads\jre-8u341-windows-x64.exe
2022-10-15 19:24 - 2022-10-15 19:24 - 000000000 ____D C:\Users\Fabi\AppData\LocalLow\Sun
2022-10-15 19:24 - 2022-10-15 19:24 - 000000000 ____D C:\ProgramData\Oracle
2022-10-15 19:23 - 2022-10-15 19:23 - 000746114 _____ C:\Users\Fabi\Desktop\husStgr_v1.0.jar
2022-10-15 19:16 - 2022-10-15 19:16 - 001744096 _____ C:\Users\Fabi\Downloads\edraw-max_setup_full5399.exe
2022-10-15 18:20 - 2022-10-15 18:20 - 000000000 ____D C:\Users\Fabi\AppData\Local\npm-cache
2022-10-15 18:19 - 2022-10-15 18:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
2022-10-15 18:19 - 2022-10-15 18:20 - 000000000 ____D C:\Program Files\nodejs
2022-10-15 18:19 - 2022-10-15 18:19 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\npm
2022-10-15 18:10 - 2012-09-07 00:00 - 000309720 ____N C:\Users\Fabi\Downloads\Raleway-VariableFont_wght.ttf
2022-10-15 18:10 - 2012-09-07 00:00 - 000303956 ____N C:\Users\Fabi\Downloads\Raleway-Italic-VariableFont_wght.ttf
2022-10-15 18:10 - 2012-09-07 00:00 - 000004497 ____N C:\Users\Fabi\Downloads\OFL.txt
2022-10-15 12:24 - 2012-02-08 03:54 - 000001298 _____ C:\Users\Fabi\Downloads\License.txt
2022-10-15 12:22 - 2022-10-16 16:36 - 000000000 ___RD C:\Users\Fabi\Desktop\Annalena
2022-10-14 19:38 - 2022-10-14 19:40 - 000000000 ____D C:\Users\Fabi\AppData\Local\ItTakesTwo
2022-10-14 19:38 - 2022-10-14 19:38 - 000000000 ____D C:\ProgramData\Electronic Arts
2022-10-14 19:38 - 2022-10-14 19:38 - 000000000 ____D C:\Program Files (x86)\Origin Games
2022-10-14 19:37 - 2022-10-14 19:37 - 000001066 _____ C:\Users\Public\Desktop\Origin.lnk
2022-10-14 19:37 - 2022-10-14 19:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2022-10-14 19:37 - 2022-10-14 19:37 - 000000000 ____D C:\Program Files (x86)\Origin
2022-10-14 19:33 - 2022-10-14 19:33 - 000914876 _____ C:\WINDOWS\Minidump\101422-25625-01.dmp
2022-10-13 20:29 - 2022-10-15 19:42 - 000000000 ____D C:\Users\Fabi\Documents\Schule
2022-10-12 19:00 - 2022-10-12 19:00 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-10-12 19:00 - 2022-10-12 19:00 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2022-10-12 19:00 - 2022-10-12 19:00 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-10-12 18:59 - 2022-10-12 18:59 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-10-12 18:59 - 2022-10-12 18:59 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-10-12 18:59 - 2022-10-12 18:59 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-10-12 18:59 - 2022-10-12 18:59 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2022-10-10 21:00 - 2022-10-10 21:00 - 000000000 ____D C:\Users\Fabi\AppData\LocalLow\Total Mayhem Games
2022-10-09 16:41 - 2022-10-09 16:42 - 000000000 ____D C:\Users\Fabi\AppData\Local\Maine
2022-10-09 15:05 - 2022-10-09 15:59 - 000000000 ____D C:\Users\Fabi\Documents\Blender2023
2022-10-09 14:37 - 2022-10-09 14:38 - 000000000 ____D C:\Users\Fabi\Documents\oldBlender
2022-10-07 20:41 - 2022-10-07 20:41 - 000000000 ____D C:\Users\Fabi\Documents\Overwatch
2022-10-07 20:40 - 2022-10-07 20:40 - 000000934 _____ C:\Users\Public\Desktop\Overwatch.lnk
2022-10-07 20:40 - 2022-10-07 20:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch
2022-10-07 20:26 - 2022-10-07 20:40 - 000000000 ____D C:\Program Files (x86)\Overwatch
2022-10-06 19:48 - 2022-10-06 19:48 - 000027056 _____ (EasyAntiCheat Oy) C:\WINDOWS\system32\eac_usermode_45870859227858.dll
2022-10-05 12:05 - 2022-10-05 12:05 - 000000046 _____ C:\Users\Fabi\Documents\ubisoft.txt
2022-10-03 14:41 - 2022-10-06 18:05 - 000003518 _____ C:\Users\Fabi\Documents\ACP.ini
2022-10-03 14:41 - 2022-10-03 14:43 - 000000000 ____D C:\Users\Fabi\Documents\Assassin's Creed Origins
2022-10-03 14:36 - 2022-10-03 14:36 - 000000000 ____D C:\ProgramData\Ubisoft
2022-10-03 14:35 - 2022-10-07 20:27 - 000000000 ____D C:\Users\Fabi\AppData\Local\Ubisoft Game Launcher
2022-10-03 14:35 - 2022-10-03 14:36 - 000001310 _____ C:\Users\Fabi\Desktop\Ubisoft Connect.lnk
2022-10-03 14:35 - 2022-10-03 14:36 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2022-10-03 14:35 - 2022-10-03 14:35 - 000000000 ____D C:\Program Files (x86)\Ubisoft
2022-09-29 19:17 - 2022-09-29 19:17 - 000068336 _____ C:\Users\Fabi\Downloads\Übung 1.pdf
2022-09-29 19:16 - 2022-09-29 19:17 - 000100157 _____ C:\Users\Fabi\Downloads\Arrays.pdf
2022-09-28 21:03 - 2022-10-12 20:27 - 000000000 ____D C:\Users\Fabi\eclipse-workspace
2022-09-28 21:03 - 2022-09-28 21:03 - 000000000 ____D C:\Users\Fabi\.cache
2022-09-28 21:02 - 2022-09-28 21:02 - 000001093 _____ C:\Users\Fabi\Desktop\Eclipse IDE for Java Developers - 2022-09.lnk
2022-09-28 21:02 - 2022-09-28 21:02 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eclipse
2022-09-28 21:00 - 2022-10-21 22:08 - 000000000 ____D C:\Users\Fabi\.p2
2022-09-28 21:00 - 2022-09-28 21:03 - 000000000 ____D C:\Users\Fabi\.eclipse
2022-09-28 21:00 - 2022-09-28 21:00 - 000000000 ____D C:\Users\Fabi\eclipse
2022-09-28 20:59 - 2022-09-28 20:59 - 119478024 _____ C:\Users\Fabi\Downloads\eclipse-inst-jre-win64.exe
2022-09-28 20:58 - 2022-09-28 20:58 - 000334848 _____ C:\Users\Fabi\Downloads\Variablen.pdf
2022-09-28 20:58 - 2022-09-28 20:58 - 000274506 _____ C:\Users\Fabi\Downloads\Kontrollstrukturen.pdf
2022-09-28 20:58 - 2022-09-28 20:58 - 000171829 _____ C:\Users\Fabi\Downloads\Typcasting.pdf
2022-09-24 16:04 - 2022-09-13 08:24 - 000077719 _____ C:\Users\Fabi\Documents\SafeInCloud_2022-09-24.db
2022-09-23 22:16 - 2022-09-29 22:01 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\EasyAntiCheat
2022-09-23 20:35 - 2022-09-23 20:35 - 000069632 _____ C:\Users\Fabi\Documents\Gunfire_error.evtx
2022-09-23 20:35 - 2022-09-23 20:35 - 000069632 _____ C:\Users\Fabi\Documents\error_gunfire.evtx
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2022-10-23 14:00 - 2022-05-21 20:58 - 001722788 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-10-23 14:00 - 2019-12-07 16:50 - 000743546 _____ C:\WINDOWS\system32\perfh007.dat
2022-10-23 14:00 - 2019-12-07 16:50 - 000149968 _____ C:\WINDOWS\system32\perfc007.dat
2022-10-23 14:00 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-10-23 13:57 - 2022-09-06 11:04 - 000000000 ____D C:\Program Files (x86)\Google
2022-10-23 13:56 - 2022-03-24 18:09 - 000000000 ____D C:\ProgramData\NVIDIA
2022-10-23 13:53 - 2022-09-08 23:10 - 000000000 ____D C:\ProgramData\ASUS
2022-10-23 13:53 - 2022-05-21 20:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-10-23 13:53 - 2022-05-21 20:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-10-23 13:53 - 2022-03-27 16:31 - 000008192 ___SH C:\DumpStack.log.tmp
2022-10-23 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-10-22 23:34 - 2022-03-24 23:31 - 000000000 ____D C:\Program Files (x86)\Steam
2022-10-22 22:05 - 2022-03-28 23:19 - 000000000 ____D C:\Users\Fabi\AppData\Local\D3DSCache
2022-10-22 21:39 - 2022-04-01 22:45 - 000000000 ____D C:\Users\Fabi\AppData\Local\CrashDumps
2022-10-22 17:57 - 2022-08-02 18:11 - 000001247 _____ C:\Users\Fabi\Desktop\Roblox Studio.lnk
2022-10-22 17:57 - 2022-03-28 12:58 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2022-10-22 17:38 - 2022-03-24 23:33 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2022-10-22 15:43 - 2022-03-29 19:40 - 000000000 ____D C:\Users\Fabi\AppData\Local\DBG
2022-10-22 13:39 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-10-22 13:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-10-22 12:43 - 2022-03-31 23:51 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-10-19 20:29 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-10-19 20:14 - 2022-09-06 11:05 - 000002239 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-10-19 20:14 - 2022-03-24 18:21 - 000002356 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2022-10-19 20:14 - 2022-03-24 18:21 - 000002315 _____ C:\Users\Public\Desktop\Brave.lnk
2022-10-19 19:58 - 2022-05-21 20:33 - 000000000 ____D C:\Users\Fabi
2022-10-19 19:58 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-10-19 19:43 - 2022-05-23 19:45 - 000000000 ____D C:\WINDOWS\Minidump
2022-10-17 08:48 - 2022-03-28 23:54 - 000000000 ____D C:\Users\Fabi\AppData\Local\PlaceholderTileLogoFolder
2022-10-16 21:58 - 2022-03-24 18:07 - 000000000 ____D C:\Users\Fabi\AppData\Local\Packages
2022-10-16 17:03 - 2022-06-17 16:57 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Code
2022-10-15 19:49 - 2022-03-31 18:55 - 000000000 ____D C:\Users\Fabi\AppData\Local\NVIDIA
2022-10-15 12:24 - 2022-03-31 23:53 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2022-10-15 12:20 - 2022-08-02 18:11 - 000004018 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3004894984-1400097328-3597822082-1001UA
2022-10-15 12:20 - 2022-08-02 18:11 - 000003952 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3004894984-1400097328-3597822082-1001Core
2022-10-15 11:37 - 2022-05-21 20:56 - 000003756 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-10-15 11:37 - 2022-05-21 20:56 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-10-14 23:00 - 2022-07-22 23:29 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Origin
2022-10-14 23:00 - 2022-07-22 23:29 - 000000000 ____D C:\ProgramData\Origin
2022-10-14 22:53 - 2022-07-22 23:29 - 000000000 ____D C:\Users\Fabi\AppData\Local\Origin
2022-10-14 19:23 - 2022-05-24 11:30 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\discord
2022-10-14 17:39 - 2022-06-03 23:01 - 000000000 ____D C:\Users\Fabi\AppData\Local\Discord
2022-10-14 17:38 - 2022-03-28 20:09 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-10-12 19:08 - 2022-05-21 20:49 - 000342160 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-10-12 19:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-10-12 19:03 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2022-10-12 19:03 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2022-10-12 19:00 - 2016-07-16 14:58 - 000415690 __RSH C:\bootmgr
2022-10-12 18:59 - 2022-05-21 20:52 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-10-12 18:49 - 2022-03-24 19:09 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-10-12 18:46 - 2022-03-24 19:09 - 147398024 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-10-11 21:16 - 2022-05-21 20:56 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3004894984-1400097328-3597822082-1001
2022-10-11 21:16 - 2022-05-21 20:56 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3004894984-1400097328-3597822082-1001
2022-10-11 21:16 - 2022-05-21 20:33 - 000002396 _____ C:\Users\Fabi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-10-11 06:51 - 2022-05-12 18:09 - 007587792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2022-10-11 06:51 - 2022-05-12 18:09 - 006457800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2022-10-07 22:14 - 2022-05-15 18:32 - 000000000 ____D C:\Users\Fabi\AppData\Local\Battle.net
2022-10-07 22:14 - 2022-05-15 18:31 - 000000000 ____D C:\Program Files (x86)\Battle.net
2022-10-07 20:41 - 2022-07-02 15:28 - 000000000 ____D C:\Users\Fabi\AppData\Roaming\Battle.net
2022-10-07 20:26 - 2022-05-15 18:31 - 000000000 ____D C:\Users\Fabi\AppData\Local\Blizzard Entertainment
2022-10-07 05:01 - 2022-05-12 18:18 - 000129000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2022-09-30 20:10 - 2022-05-11 22:15 - 000000000 ____D C:\Users\Fabi\AppData\Local\ElevatedDiagnostics
2022-09-29 19:31 - 2022-03-24 19:43 - 000000000 ____D C:\Users\Fabi\AppData\Local\EpicGamesLauncher
2022-09-29 18:25 - 2022-03-24 18:07 - 000000000 ____D C:\Users\Fabi\AppData\Local\ConnectedDevicesPlatform
2022-09-27 20:48 - 2022-05-21 20:56 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-05-21 20:56 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-09-27 20:48 - 2022-03-24 18:09 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-09-27 20:48 - 2022-03-24 18:09 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-09-27 20:48 - 2022-03-24 18:09 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-09-26 19:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-09-24 13:48 - 2022-09-15 20:59 - 000000000 ____D C:\Users\Fabi\Desktop\FabisRemover
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2022-05-16 21:06 - 2022-05-16 21:06 - 000000000 _____ () C:\Users\Fabi\AppData\Local\LumaEmu
2022-10-21 18:22 - 2022-10-21 18:36 - 000000128 _____ () C:\Users\Fabi\AppData\Local\PUTTY.RND
2022-08-02 18:51 - 2022-08-02 18:51 - 000002217 _____ () C:\Users\Fabi\AppData\Local\recently-used.xbel
2022-09-10 18:20 - 2022-09-10 18:20 - 000000017 _____ () C:\Users\Fabi\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ========================
Zitat:
Zitat von
M-K-D-B Ja, ist es.
FRST liest bei einem Suchlauf erst einmal nur systemrelevante Daten aus und speichert diese in einer Textdatei ab, so wie andere Tools auch. Da am System selbst nichts verändert wird, kann es den PC so auch nicht "schrotten". Wie du auf sowas Absurdes überhaupt kommst, erschließt sich mir sowieso nicht.
Es wird zwar in der Regel für die Analyse bei Malwarebefall eingesetzt, liefert aber auch ein paar technische Daten des Geräts mit, die helfen können.
Sorry bin anfänglich etwas skeptisch, aber wenn ihr das braucht mache ich das!
, und ja hab die 2 Logs bekommen, alles easy.
__________________