![]()  |  
 
  |  |||||||
Plagegeister aller Art und deren Bekämpfung: Windows Defender schließt Laufwerk C in der Überprüfung ausWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |  
|    |  #1 | 
  ![]()  |    Windows Defender schließt Laufwerk C in der Überprüfung aus Hallo zusammen,          ich habe seit einiger Zeit das Problem, dass der Windows Defender mein Laufwerk C von der Überprüfung ausschließt, weil eine Ausnahme gesetzt ist. Nur leider habe ich diese Ausnahme nicht gesetzt und ich kann sie auch nicht entfernen. Malwarebytes bringt kein Ergebnis beim Tiefenscan. Hier sind die Logs aus der FRST.txt: Code: 
   ATTFilter  Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 29-10-2025
durchgeführt von ldeis (Administrator) auf LEONS-PC (ASUS System Product Name) (02-11-2025 10:51:01)
Gestartet von C:\Users\ldeis\Desktop\FRST64.exe
Geladene Profile: ldeis
Plattform: Microsoft Windows 11 Pro Version 25H2 26200.6901 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: FF
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(C:\Program Files (x86)\Epson Software\Epson Printer Connection Checker\EPPCCMON.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mep.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.283.1.4\OverwolfHelper.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.283.1.4\OverwolfHelper64.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\0.283.1.4\OverwolfBrowser.exe <4>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.275.510.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.275.510.0_x64__zpdnekdrzrea0\crashpad_handler.exe
(C:\Windows\SysWOW64\wallpaperservice32.exe ->) (Skutta Software GmbH -> ) C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe
(DriverStore\FileRepository\u0400644.inf_amd64_9691c8ee1bbfcbb7\B399690\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0400644.inf_amd64_9691c8ee1bbfcbb7\B399690\atieclxx.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <7>
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <9>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Open Source Developer, Robin Krom -> Greenshot) C:\Program Files\Greenshot\Greenshot.exe
(explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE
(explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\Epson Software\Epson Printer Connection Checker\EPPCCMON.EXE
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(explorer.exe ->) (Voyetra Turtle Beach, Inc. -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT SWARM\ROCCAT_Swarm_Monitor.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.194.1005.0003\OneDrive.Sync.Service.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <19>
(Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0400644.inf_amd64_9691c8ee1bbfcbb7\B399690\atiesrxx.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Geek Software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe <2>
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_9bb7be35ea261c7b\logi_lamparray_service.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.194.1005.0003\FileSyncHelper.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvrfi.inf_amd64_ba9b9d6c7431e4ce\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\epson\Epson Printer Driver Security Support Tool\EpSecuritySupport.exe
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\epson\MyEpson Portal\mepService.exe
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(services.exe ->) (Skutta Software GmbH -> ) C:\Windows\SysWOW64\wallpaperservice32.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2509.19002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
(svchost.exe ->) () [Datei ist nicht signiert] C:\Program Files\CleanZiloApp\CleanZilo.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2542.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.275.510.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3590.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.194.1005.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2510.1001.55.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SecHealthUI_1000.29429.1000.0_x64__8wekyb3d8bbwe\SecHealthUI.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealth\10.0.29429.1000-0\SecurityHealthHost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Voyetra Turtle Beach, Inc. -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT SWARM\ROCCAT_dev_service.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Open Source Developer, Robin Krom -> Greenshot)
HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [654040 2025-04-10] (Geek Software GmbH -> geek software GmbH)
HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [455968 2023-05-25] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM\...\Run: [KeePass 2 PreLoad] => C:\Program Files\KeePass Password Safe 2\KeePass.exe [3244896 2025-07-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2756368 2023-08-09] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [9213376 2025-10-21] (Dropbox, Inc -> Dropbox, Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG
HKU\S-1-5-19\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4735888 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4735888 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-651480894-1371958004-639929314-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4735888 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-651480894-1371958004-639929314-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [24378520 2025-10-19] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-651480894-1371958004-639929314-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4699288 2025-10-03] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-651480894-1371958004-639929314-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1911040 2025-10-27] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-651480894-1371958004-639929314-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36981208 2024-12-05] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-651480894-1371958004-639929314-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41579480 2025-09-29] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-651480894-1371958004-639929314-1001\...\Run: [EPSDNMON] => C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE [360776 2025-07-08] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM\...\Print\Monitors\EPSON ET-15000 Series 64MonitorBE: C:\WINDOWS\system32\E_YLMBW3E.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation)
HKLM\...\Print\Monitors\EPSON PC-FAX Driver2 64Monitor: C:\WINDOWS\system32\EFXLM16A.DLL [182784 2023-07-20] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\WINDOWS\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert]
Startup: C:\Users\ldeis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2024-06-03]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ROCCAT Swarm Monitor.lnk [2023-12-16]
ShortcutTarget: ROCCAT Swarm Monitor.lnk -> C:\Program Files (x86)\ROCCAT\ROCCAT SWARM\ROCCAT_Swarm_Monitor.exe (Voyetra Turtle Beach, Inc. -> ROCCAT)
HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {973A0DAE-21DC-4C95-8C9A-B3D61D0C99E5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {B582C509-DF60-4DCC-939C-EE7071AC2195} - System32\Tasks\AutoClickerUpdateTask => C:\Program Files\AutoClicker\AutoClickerUpdate.bat [89 2024-10-09] () [Datei ist nicht signiert] <==== ACHTUNG
Task: {91E010CA-3C8C-47F3-8B94-405303B6DC62} - System32\Tasks\ComponentUpdater => C:\Windows\System32\cmd.exe [344064 2025-10-02] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files (x86)\LocalUserHelper\node\/C start "" /min "C:\Program Files (x86)\LocalUserHelper\node\node.exe" "C:\Program Files (x86)\LocalUserHelper\helper.js" <==== ACHTUNG
Task: {BF81FB49-C2BB-4BF5-92A9-FC6191FCDDA8} - System32\Tasks\DropboxSystem\DropboxUpdater\DropboxUpdaterTaskSystem123.0.6299.129{611C95A8-8DE4-4D6F-BF7A-9534B0BE6C7D} => C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.129\updater.exe [5898104 2025-05-26] (Dropbox, Inc -> Dropbox, Inc.)
Task: {896816BB-4C9C-46D1-9E2B-A950F90A5EA0} - System32\Tasks\EPSON ET-15000 Series Update {D01FF912-9294-4114-B90C-874CC5DAF341} => C:\Windows\System32\spool\drivers\x64\3\E_YTSW3E.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {435BED64-D2DA-4D00-8048-028C521A7559} - System32\Tasks\Microsoft\Office\Copilot Optimization => C:\ProgramData\Microsoft\Windows\Tools\OfficeAI\aisvchost.exe  (Keine Datei) <==== ACHTUNG
Task: {DEE67C60-55E5-4AE0-8481-593D780685FB} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16961440 2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {2479ADF4-9B00-472E-A6F8-E7650A8116C6} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29173168 2025-10-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {DAF0E83D-7682-4D6A-85C2-93D6A24AAE21} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70464 2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {89F0BDFB-0F69-4F46-9244-B33366AD6A38} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29173168 2025-10-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {3C0DF52D-62F2-44C2-826F-2F0BD051AA83} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316680 2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {3A882F5B-A99C-4059-AD26-BD37B457B089} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [316680 2025-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {3236E60E-0862-4BB7-83D3-2B12AAD2E2BF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1365280 2025-10-25] (Microsoft Corporation -> Microsoft Corporation)
Task: {43469A5C-B785-482A-8F2A-58A56CFCA3D8} - System32\Tasks\Microsoft\Windows\Bluetooth\BluetoothDeviceStatus => C:\Program Files\nodejs\node.exe [69852816 2024-11-11] (OpenJS Foundation -> Node.js) -> "C:\Windows\System32\27bcf43d-1783-48af-bf41-3ffdcf7fee9f-73191377\a77b0aae-8bbd-4ec5-bed7-3f442c312e92" <==== ACHTUNG
Task: {62DABF32-4467-48C1-84DF-14360FE30B33} - System32\Tasks\Microsoft\Windows\Experimental\Experimental Host => C:\ProgramData\Microsoft\Windows\Tools\{d4d28289-9326-4fd7-b9da-7e64704f289c}\sdkhost.exe  (Keine Datei) <==== ACHTUNG
Task: {327BBDCD-631F-4055-9C68-810E90025EF1} - System32\Tasks\Microsoft\Windows\InternalNetwork\LAN Network Status => C:\Program Files\CleanZiloApp\CleanZilo.exe [129949 2025-06-19] () [Datei ist nicht signiert]
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (Keine Datei)
Task: {F9FA07AA-5828-41EF-86CF-DCA7E4964FC3} - System32\Tasks\Microsoft\Windows\Maps\MapsShowTask => C:\Program Files\nodejs\node.exe [69852816 2024-11-11] (OpenJS Foundation -> Node.js) -> "C:\Windows\System32\741de7b5-14db-4c02-a5a2-8867f357be95-93500353\dab2fe82-f3c9-4036-9e89-b43e4681a52d" <==== ACHTUNG
Task: {E8407A45-F7B7-4CD6-B133-5AB1C1F9BAB0} - System32\Tasks\Microsoft\Windows\Registry\RegIdleStatus => C:\Program Files\nodejs\node.exe [69852816 2024-11-11] (OpenJS Foundation -> Node.js) -> "C:\Windows\System32\9dce1fde-742f-4fcb-9d4d-bc6ead20699c-38572000\9a588a5d-a043-40d8-9de5-0d9161fc766f" <==== ACHTUNG
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (Keine Datei)
Task: {3B36A07D-8550-4306-B10D-26B277B6D7F0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2BBEB834-D664-47E2-BD03-608FE22BD716} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E3410C39-CC90-4848-865E-6C0DDB34C77F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0C3D7501-36C0-424A-A00B-9F577436F554} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C3CB0C53-D328-4514-BCA1-0066CAE16C59} - System32\Tasks\Microsoft\Windows\WlanSvc\DNSSync => C:\Program Files\nodejs\node.exe [69852816 2024-11-11] (OpenJS Foundation -> Node.js) -> "C:\ProgramData\Microsoft\Wlansvc\Profiles\Interfaces\{77a49e22-9293-42db-82cf-f194581c021a}\04bcf918-face-4242-8750-357bbc5ec88b" <==== ACHTUNG
Task: {DC5CBE80-A555-46AD-99DD-B5C13E4B0EC7} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [693888 2025-11-02] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (Der Dateneintrag hat 6 weitere Zeichen).
Task: {C3E88686-954D-4082-AB1C-85071E9100AC} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-651480894-1371958004-639929314-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [693888 2025-11-02] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (Der Dateneintrag hat 6 weitere Zeichen).
Task: {D5ADF7D3-D26D-4FE8-AADE-4F8607AD0BA6} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-02] (Mozilla Corporation -> Mozilla Foundation)
Task: {9F2F1F98-BC12-4BDD-8EC4-245C79B0A2C3} - System32\Tasks\MQKhonRThka => C:\Windows\System32\cmd.exe [344064 2025-10-02] (Microsoft Windows -> Microsoft Corporation) -> C:\Users\ldeis\AppData\Roaming\NTC5onRThka\/C start "" /min "C:\Users\ldeis\AppData\Roaming\NTC5onRThka\node\node.exe" "C:\Users\ldeis\AppData\Roaming\NTC5onRThka\NTy5onRThka.js" "drive.localuserhelper.com" "49ae2c14-d76c-4bab-b640-dea211e548c8" "HkKhonRThka" "HRKhonRThka" "Hn6honRThka" <==== ACHTUNG
Task: {88F98958-6D8E-4062-B666-AC6EC838690E} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3275808 2025-04-07] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C4E2EE5A-DDE5-4BAE-B526-D2AF768EDD1B} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4393320 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {F271551C-8865-4BF6-85F7-14584594AB55} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-651480894-1371958004-639929314-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4393320 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {0E09377A-B142-48B0-AF8F-EEFC285B8617} - System32\Tasks\OneDrive Startup Task-S-1-5-21-651480894-1371958004-639929314-1001 => C:\Program Files\Microsoft OneDrive\25.194.1005.0003\OneDriveLauncher.exe [725864 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {850DE766-C86D-491D-B86C-9E03C6B3BA49} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-10-27] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule
Task: {4AABFE6C-4C54-4A21-A9E2-20A097B40C8E} - System32\Tasks\ROCCAT DEVICE SERVICE => C:\Program Files (x86)\ROCCAT\ROCCAT SWARM\ROCCAT_dev_service.exe [453168 2025-05-13] (Voyetra Turtle Beach, Inc. -> ROCCAT)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\EPSON ET-15000 Series Update {D01FF912-9294-4114-B90C-874CC5DAF341}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSW3E.EXE:/EXE:{D01FF912-9294-4114-B90C-874CC5DAF341} /F:UpdateWORKGROUP\LEONS-PC$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.8.1
Tcpip\..\Interfaces\{b565791d-4a83-47f9-af5f-bb21ac513a29}: [DhcpNameServer] 192.168.8.1
Tcpip\..\Interfaces\{b565791d-4a83-47f9-af5f-bb21ac513a29}: [DhcpDomain] lan
Edge: 
=======
Edge Profile: C:\Users\ldeis\AppData\Local\Microsoft\Edge\User Data\Default [2025-11-02]
Edge Extension: (Google Docs Offline) - C:\Users\ldeis\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-02]
Edge Extension: (Edge relevant text changes) - C:\Users\ldeis\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-25]
FireFox:
========
FF DefaultProfile: mw6i8y3r.default
FF ProfilePath: C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\mw6i8y3r.default [2023-12-16]
FF ProfilePath: C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release [2025-11-02]
FF Extension: (Keepa - Amazon Price Tracker) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\amptra@keepa.com.xpi [2025-07-13]
FF Extension: (BetterTTV) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\firefox@betterttv.net.xpi [2025-10-23]
FF Extension: (Honey) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\jid1-93CWPmRbVPjRQA@jetpack.xpi [2023-12-16]
FF Extension: (Privacy Badger) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2025-09-10]
FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2025-09-27]
FF Extension: (Grammatik- und Rechtschreibprüfung - LanguageTool) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\languagetool-webextension@languagetool.org.xpi [2025-07-25]
FF Extension: (uBlock Origin) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-10-24]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2025-10-23]
FF Extension: (LiteFox) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\{39e34a35-15de-4e40-9353-d4ec1c91b9d2}.xpi [2023-12-16]
FF Extension: (foxtrot1) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\Extensions\{deab936e-81f7-45b0-95d7-66667dbac0ee}.xpi [2023-12-16]
FF Extension: (Data Leak Blocker) - C:\Users\ldeis\AppData\Roaming\Mozilla\Firefox\Profiles\7104wpbu.default-release\features\{10852293-5f38-4156-a480-2c2b4db25ec0}\data-leak-blocker@mozilla.com.xpi [2025-10-07]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-10-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-09-29] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-10-25] (Microsoft Corporation -> Microsoft Corporation)
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [845256 2025-11-02] (ASUSTeK Computer Inc. -> )
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [18663720 2025-05-18] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13366704 2025-10-30] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [5898104 2025-05-26] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [5898104 2025-05-26] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [58984 2025-04-29] (Dropbox, Inc -> Dropbox, Inc.)
S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\235.4.5905\DropboxElevationService.exe [1659344 2025-10-21] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterInternalService123.0.6299.129; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.129\updater.exe [5898104 2025-05-26] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterService123.0.6299.129; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.129\updater.exe [5898104 2025-05-26] (Dropbox, Inc -> Dropbox, Inc.)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [18734688 2024-10-24] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [964336 2025-09-10] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-08-02] (Epic Games Inc. -> Epic Games, Inc.)
R2 EpSecuritySupport; C:\Program Files (x86)\Epson\Epson Printer Driver Security Support Tool\EpSecuritySupport.exe [280904 2025-06-19] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [222768 2024-09-25] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.194.1005.0003\FileSyncHelper.exe [3604880 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [18847896 2025-10-19] (Logitech Inc -> Logitech, Inc.)
R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_9bb7be35ea261c7b\logi_lamparray_service.exe [11525160 2025-09-18] (Logitech Inc -> Logitech, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11146712 2025-11-02] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2025-01-18] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe [2026144 2025-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [13809968 2025-09-06] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvrfi.inf_amd64_ba9b9d6c7431e4ce\Display.NvContainer\NVDisplay.Container.exe [1275560 2025-04-14] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.194.1005.0003\OneDriveUpdaterService.exe [3888488 2025-10-31] (Microsoft Corporation -> Microsoft Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-10-27] (Overwolf Ltd -> Overwolf LTD)
R2 PDF24; C:\Program Files\PDF24\pdf24.exe [654040 2025-04-10] (Geek Software GmbH -> geek software GmbH)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1463848 2025-10-08] (Rockstar Games, Inc. -> Rockstar Games)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Wallpaper Engine Service; C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe [3647928 2025-03-06] (Skutta Software GmbH -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\NisSrv.exe [4418608 2025-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe [282440 2025-10-23] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [56504 2024-02-27] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amduw23g; C:\WINDOWS\System32\DriverStore\FileRepository\u0400644.inf_amd64_9691c8ee1bbfcbb7\B399690\amdkmdag.sys [100084632 2024-02-27] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [573440 2024-12-13] (Microsoft Corporation) [Datei ist nicht signiert]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2024-12-13] (Microsoft Corporation) [Datei ist nicht signiert]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2024-12-13] (Microsoft Corporation) [Datei ist nicht signiert]
S3 GuiHidUsbDevLowerTFH; C:\WINDOWS\System32\Drivers\GuiHidUsbDevLowerTFH.sys [207016 2023-11-06] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2020. All rights reserved.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-09-18] (Microsoft Windows -> Microsoft Corporation)
R3 logi_generic_hid_filter; C:\WINDOWS\system32\drivers\logi_generic_hid_filter.sys [62400 2025-09-18] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2024-09-24] (Logitech Inc -> Logitech)
R3 logi_joy_hid_filter; C:\WINDOWS\system32\drivers\logi_joy_hid_filter.sys [63936 2025-09-18] (Logitech Inc -> Logitech)
R3 logi_joy_hid_lo; C:\WINDOWS\system32\drivers\logi_joy_hid_lo.sys [51648 2025-09-18] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2023-12-16] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2024-09-24] (Logitech Inc -> Logitech)
R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_9bb7be35ea261c7b\logi_lamparray.sys [89640 2025-09-18] (Logitech Inc -> Logitech, Inc.)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [234088 2025-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-21] (Microsoft Windows Early Launch Anti-Malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245336 2025-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64sta.inf_amd64_eddbebb052f7ae1b\rt25cx21x64.sys [905216 2025-08-27] (Realtek Semiconductor Corp. -> Realtek)
S3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_feec7a9662e785f0\rtcx21x64.sys [539648 2024-03-28] (Microsoft Windows -> Realtek)
R3 VirtualHID; C:\WINDOWS\System32\drivers\VirtualHID.sys [26768 2022-08-15] (Voyetra Turtle Beach, Inc. -> TurtleBeach)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20888 2025-10-23] (Microsoft Windows Early Launch Anti-Malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [629128 2025-10-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2025-10-23] (Microsoft Windows -> Microsoft Corporation)
S3 RT-USB; \SystemRoot\system32\drivers\RT-USB64.SYS [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2025-11-02 10:51 - 2025-11-02 10:52 - 000037874 _____ C:\Users\ldeis\Desktop\FRST.txt
2025-11-02 10:49 - 2025-11-02 10:51 - 000000000 ____D C:\FRST
2025-11-02 10:44 - 2025-11-02 10:44 - 002443264 _____ (Farbar) C:\Users\ldeis\Desktop\FRST64.exe
2025-11-02 10:43 - 2025-11-02 10:43 - 000000000 ____D C:\Users\ldeis\AppData\LocalLow\IGDump
2025-11-02 10:35 - 2025-11-02 10:35 - 000745650 _____ C:\WINDOWS\system32\perfh007.dat
2025-11-02 10:35 - 2025-11-02 10:35 - 000158752 _____ C:\WINDOWS\system32\perfc007.dat
2025-11-02 10:34 - 2025-11-02 10:35 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-11-02 10:28 - 2025-11-02 10:28 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-10-31 14:53 - 2025-10-31 14:53 - 000000000 ____D C:\Program Files\Windows Kits
2025-10-31 14:53 - 2025-10-31 14:53 - 000000000 ____D C:\Program Files\Microsoft GameInput
2025-10-25 18:21 - 2025-10-25 18:21 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-10-24 15:33 - 2025-10-24 15:33 - 000000000 ____D C:\Program Files (x86)\Realtek
2025-10-23 17:11 - 2025-10-23 17:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2025-10-19 09:40 - 2025-10-19 09:40 - 000000856 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2025-10-19 09:40 - 2025-10-19 09:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2025-10-19 09:40 - 2025-10-19 09:40 - 000000000 ____D C:\Program Files\LGHUB
2025-10-08 12:47 - 2025-10-08 12:47 - 000000000 ____D C:\ProgramData\Whesvc
2025-10-08 12:28 - 2025-10-08 12:28 - 000000000 ____D C:\Program Files (x86)\VulkanRT
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2025-11-02 10:49 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-11-02 10:47 - 2023-12-16 16:13 - 000000000 ____D C:\Users\ldeis\AppData\Local\Malwarebytes
2025-11-02 10:44 - 2023-12-16 16:53 - 000000000 ____D C:\Program Files (x86)\Steam
2025-11-02 10:43 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-11-02 10:43 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-11-02 10:36 - 2023-12-16 16:04 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-11-02 10:35 - 2024-12-14 12:12 - 001729512 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-11-02 10:35 - 2024-12-13 12:29 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-11-02 10:35 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-11-02 10:35 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-11-02 10:35 - 2023-12-16 21:38 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-11-02 10:35 - 2023-12-16 16:04 - 000001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-11-02 10:35 - 2023-12-16 16:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-11-02 10:34 - 2023-12-16 16:49 - 000000000 ____D C:\Program Files\Microsoft Office
2025-11-02 10:31 - 2023-12-16 16:13 - 000245336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2025-11-02 10:31 - 2023-12-16 14:49 - 000000000 ____D C:\Users\ldeis\AppData\Local\D3DSCache
2025-11-02 10:29 - 2024-03-28 18:40 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\Dropbox
2025-11-02 10:29 - 2024-03-28 18:40 - 000000000 ____D C:\Users\ldeis\AppData\Local\Dropbox
2025-11-02 10:29 - 2024-01-07 21:05 - 000000000 ____D C:\Users\ldeis\AppData\Local\Overwolf
2025-11-02 10:29 - 2024-01-07 21:05 - 000000000 ____D C:\Program Files (x86)\Overwolf
2025-11-02 10:29 - 2023-12-16 14:47 - 000000000 ___RD C:\Users\ldeis\OneDrive
2025-11-02 10:28 - 2024-12-13 12:29 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-11-02 10:28 - 2024-12-13 12:27 - 000018980 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-11-02 10:28 - 2024-12-13 12:27 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-11-02 10:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-11-02 10:28 - 2023-12-17 16:56 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-11-02 10:28 - 2023-12-16 21:38 - 000901328 _____ () C:\WINDOWS\system32\wpbbin.exe
2025-11-02 10:28 - 2023-12-16 21:38 - 000845256 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2025-11-02 10:28 - 2023-12-16 21:38 - 000012288 ___SH C:\DumpStack.log.tmp
2025-11-02 10:28 - 2023-12-16 14:45 - 000000000 ____D C:\ProgramData\NVIDIA
2025-10-31 14:53 - 2025-09-21 08:59 - 000436592 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_b.dll
2025-10-31 14:53 - 2023-12-16 17:07 - 004581752 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-10-31 14:53 - 2023-12-16 17:07 - 000878968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-10-31 14:53 - 2023-12-16 17:07 - 000285048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-10-31 14:53 - 2023-12-16 17:07 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-10-31 14:53 - 2023-12-16 17:07 - 000166264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-10-31 14:53 - 2023-12-16 17:07 - 000153976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-10-31 14:53 - 2023-12-16 17:07 - 000076152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-10-31 14:34 - 2025-09-16 17:29 - 000000000 ____D C:\Users\ldeis\AppData\Local\BeamNG
2025-10-31 14:33 - 2025-02-07 20:29 - 000003540 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-651480894-1371958004-639929314-1001
2025-10-31 14:33 - 2024-12-13 12:29 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-651480894-1371958004-639929314-1001
2025-10-31 14:33 - 2024-12-13 12:29 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-10-31 14:33 - 2023-12-16 16:51 - 000002132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-10-31 14:32 - 2023-12-16 16:48 - 000000000 ____D C:\Users\ldeis\AppData\Local\LGHUB
2025-10-29 08:31 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-10-29 08:30 - 2023-12-16 14:46 - 000000000 ____D C:\Users\ldeis\AppData\Local\Packages
2025-10-25 18:04 - 2024-12-13 12:29 - 000003754 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-10-25 18:04 - 2024-12-13 12:29 - 000003628 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-10-25 18:04 - 2023-12-16 18:37 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\Microsoft\Excel
2025-10-25 11:22 - 2023-12-16 16:32 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\KeePass
2025-10-24 19:31 - 2024-01-05 22:48 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\Microsoft\PowerPoint
2025-10-24 18:43 - 2023-12-16 16:52 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\Microsoft\Word
2025-10-24 15:35 - 2024-12-13 12:27 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2025-10-24 15:35 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-10-24 15:35 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-10-24 15:33 - 2023-12-16 16:53 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2025-10-24 14:40 - 2023-12-16 16:46 - 000000000 ____D C:\Users\ldeis\AppData\Local\Greenshot
2025-10-24 14:28 - 2024-12-13 12:20 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\Microsoft\Windows
2025-10-23 17:38 - 2024-12-13 12:27 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-10-23 17:27 - 2023-12-16 21:38 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-10-23 17:11 - 2024-03-28 18:40 - 000000000 ____D C:\Program Files (x86)\Dropbox
2025-10-20 11:32 - 2025-09-21 08:59 - 000981368 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInputRedist.dll
2025-10-20 11:32 - 2025-09-21 08:59 - 000022904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInputRedist.dll
2025-10-19 11:46 - 2024-12-13 12:27 - 000472912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-10-19 11:45 - 2024-12-13 12:15 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2025-10-19 11:45 - 2024-04-01 17:36 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-19 11:45 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-10-19 11:01 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2025-10-19 11:01 - 2023-12-16 16:33 - 000000000 ____D C:\Users\ldeis\AppData\Local\CrashDumps
2025-10-19 09:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-10-19 09:50 - 2023-12-16 14:41 - 000000000 ____D C:\ProgramData\Packages
2025-10-19 09:41 - 2023-12-16 16:48 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\G HUB
2025-10-19 09:40 - 2023-12-16 16:48 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\lghub
2025-10-17 16:53 - 2023-12-16 14:50 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-10-17 16:52 - 2023-12-16 14:50 - 214534944 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-10-08 23:35 - 2024-12-13 12:20 - 000000000 ____D C:\Users\ldeis
2025-10-08 22:55 - 2023-12-16 16:43 - 000000000 ____D C:\Users\ldeis\AppData\Roaming\discord
2025-10-08 22:47 - 2023-12-16 16:43 - 000000000 ____D C:\Users\ldeis\AppData\Local\Discord
2025-10-08 20:47 - 2023-12-16 16:43 - 000002243 _____ C:\Users\ldeis\Desktop\Discord.lnk
2025-10-08 12:29 - 2023-12-16 21:28 - 000000000 ____D C:\Users\ldeis\OneDrive\Dokumente\Rockstar Games
2025-10-08 12:29 - 2023-12-16 21:28 - 000000000 ____D C:\Users\ldeis\AppData\Local\Rockstar Games
2025-10-08 12:08 - 2023-12-16 16:17 - 000000963 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk
2025-10-08 12:08 - 2023-12-16 16:17 - 000000000 ____D C:\Program Files\KeePass Password Safe 2
2025-10-07 14:07 - 2025-06-11 13:33 - 000000000 ____D C:\Users\ldeis\AppData\Local\TramSimNext
2025-10-07 14:07 - 2023-12-16 20:44 - 000000000 ____D C:\Users\ldeis\AppData\Local\UnrealEngine
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2024-10-09 16:47 - 2024-10-09 16:47 - 000001332 _____ () C:\Users\ldeis\AppData\Roaming\AutoClick_Logs.txt
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ========================
          Könntet Ihr mal prüfen, was ich mir hier eventuell eingefangen habe? Vielen Dank bereits im Voraus.    |  
| Themen zu Windows Defender schließt Laufwerk C in der Überprüfung aus | 
| administrator, adobe, computer, defender, desktop, firefox, google, installation, internet, mozilla, nvidia, performance, problem, prozesse, prüfen, realtek, registry, security, server, services.exe, software, svchost.exe, system, updates, windows |