Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows 11 Rentner fällt auf Scam rein

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 15.04.2026, 18:02   #1
bistlie
 
Windows 11 Rentner fällt auf Scam rein - Standard

Windows 11 Rentner fällt auf Scam rein



Guten Abend,

ein mir bekannter älterer Herr wurde angeboten mit KI sein Geld zu vermehren. Leider ist er drauf reingefallen und hat der "Firma" Geld überwiesen. Und als wäre das nicht schon schlimm genug, hat er der "Firma" Zugang über AnyDesk auf sein Laptop gewehrt. Laut seiner Aussage waren es nur 5min, weil er dann ein komisches Gefühl bekommen hat.

Nun ist die Angst bei ihm vorhanden, dass diese "Firma" Schadprogramme installiert hat. Der Laptop war seitdem nicht mehr mit dem Internet verbunden.

Ich habe jetzt FRST drüber laufen lassen und stelle hier die Logdateien rein das vielleicht der eine oder andere Mal drüber schauen könnte.

Danke an alle die Ihre Zeit zu Verfügung stellen und es sich anschauen.

Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 15-04-2026
durchgeführt von Micha (15-04-2026 18:21:41)
Gestartet von D:\
Microsoft Windows 11 Pro Version 25H2 26200.8037 (X64) (2025-02-23 00:20:28)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

Administrator (S-1-5-21-3800446035-506082590-1098873781-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-3800446035-506082590-1098873781-503 - Limited - Disabled)
Gast (S-1-5-21-3800446035-506082590-1098873781-501 - Limited - Disabled)
Micha (S-1-5-21-3800446035-506082590-1098873781-1001 - Administrators - Enabled) => C:\Users\Micha
WDAGUtilityAccount (S-1-5-21-3800446035-506082590-1098873781-504 - Limited - Disabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

ASUS Dial Control Panel Toolkit (HKLM\...\{A01CF1E6-8E7C-4986-8A1F-F1D28E3138B8}) (Version: 2.0.2.0 - ASUSTek COMPUTER INC.)
GlideX Service Installer (HKLM\...\{A06BDD76-D95C-4AC7-A0DA-73971F366D9B}) (Version: 3.5.2.0 - ASUSTeK COMPUTER INC.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 147.0.3912.60 - Microsoft Corporation)
Microsoft Edge WebView2-Laufzeit (HKLM-x32\...\Microsoft EdgeWebView) (Version: 147.0.3912.60 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2019 - de-de (HKLM\...\ProPlus2019Retail - de-de) (Version: 16.0.19127.20302 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3800446035-506082590-1098873781-1001\...\OneDriveSetup.exe) (Version: 26.055.0323.0004 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.28902 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821 (HKLM-x32\...\{6361b579-2795-4886-b2a8-53d5239b6452}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.22.27821 (HKLM\...\{6E2C7A8E-B17A-4637-9CE9-F0B1157CF378}) (Version: 14.22.27821 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.22.27821 (HKLM\...\{0093C20C-273D-4397-B623-515CB8616CB9}) (Version: 14.22.27821 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.22.27821 (HKLM-x32\...\{3BDE80F7-7EC9-448E-8160-4ADA0CDA8879}) (Version: 14.22.27821 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.22.27821 (HKLM-x32\...\{1E6FC929-567E-4D22-9206-C5B83F0A21B9}) (Version: 14.22.27821 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox) (Version: 149.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 127.0.2 - Mozilla)
NVIDIA Broadcast 1.4.0.29 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIABroadcast) (Version: 1.4.0.29 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Grafiktreiber 566.07 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 566.07 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20302 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
ProArt Creator Hub Service (HKLM\...\{77CD8075-733B-4F22-9A19-61041EACFADA}) (Version: 2.0.24.0 - ASUSTeK COMPUTER INC.)
VariCAD 2020-1.07 DE (HKLM\...\VariCAD_DE) (Version: 2020-1.07 - VariCAD s.r.o)
WinRAR 7.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)

Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-07-06] ()
AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2024-12-18] (INTEL CORP) [Startup Task]
ASUS GlideX -> C:\Program Files\WindowsApps\B9ECED6F.Glidex_4.0.13.0_x64__qmba6cd70vzyy [2026-03-11] (ASUSTeK COMPUTER INC.)
B9ECED6F.ScreenPadMaster -> C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.25.0_x64__qmba6cd70vzyy [2026-03-31] (ASUSTeK COMPUTER INC.)
Corel® MultiCam Trial -> C:\Program Files\WindowsApps\CorelCorp.MultiCameraCaptureandEditing_1.0.737.0_x64__h62frhqnvmts4 [2024-07-06] (Corel Corp)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.27.8090.0_x64__rz1tebttyb220 [2026-03-20] (Dolby Laboratories)
Dolby Digital Plus decoder for PC OEMs -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyDigitalPlusDecoderOEM_1.2.588.0_x64__rz1tebttyb220 [2026-02-05] (Dolby Laboratories)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20501.518.0_x64__rz1tebttyb220 [2025-07-26] (Dolby Laboratories)
Ink.Handwriting.de-DE.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.de-DE.1.0_0.1082.2350.0_x64__8wekyb3d8bbwe [2025-12-20] (Microsoft Corporation)
Ink.Handwriting.de-DE.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.de-DE.1.0_0.1082.2350.0_x86__8wekyb3d8bbwe [2025-12-20] (Microsoft Corporation)
Ink.Handwriting.Main.de-DE.1.0 -> C:\Program Files\WindowsApps\Microsoft.Ink.Handwriting.Main.de-DE.1.0_0.1082.2350.0_x64__8wekyb3d8bbwe [2025-12-26] (Microsoft Corporation)
Local Artificial Intelligence Manager -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\AI [2025-10-16] ()
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-07-09] (Microsoft Corp.)
Microsoft Journal -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJournal_1.0.127.0_x64__8wekyb3d8bbwe [2025-12-20] (Microsoft Corporation)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-13] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\ActionsServer [2025-10-16] ()
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.64.0_x64__qmba6cd70vzyy [2026-04-04] (ASUSTeK COMPUTER INC.) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-13] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16 [2025-10-16] ()
ProArt Creator Hub -> C:\Program Files\WindowsApps\B9ECED6F.ProArtCreatorCenter_2.3.2.0_x64__qmba6cd70vzyy [2026-04-12] (ASUSTeK COMPUTER INC.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.49.318.0_x64__dt26b99r8h8gj [2025-02-13] (Realtek Semiconductor Corp)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0 [2026-03-28] (Spotify AB) [Startup Task]
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-23] (Microsoft Corp.)
WinAppRuntime.Main.1.8 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.8_8000.806.2252.0_x64__8wekyb3d8bbwe [2026-04-14] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.806.2252.0_x64__8wekyb3d8bbwe [2026-04-14] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2024-07-06] (win.rar GmbH)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-3800446035-506082590-1098873781-1001_Classes\CLSID\{92a10339-c580-dfd8-94c3-030311ba18f4}\localserver32 -> C:\ProgramData\ASUS\AsusSurvey\AsusSurvey.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
CustomCLSID: HKU\S-1-5-21-3800446035-506082590-1098873781-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\Micha\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.28902\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_f6465e9eefbbdae5\nvshext.dll [2024-12-02] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Codecs (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 1
HKLM\...\Drivers32: [midi1] => C:\Windows\system32\wdmaud2.drv [143360 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Drivers32: [midi1] => C:\Windows\SysWOW64\wdmaud2.drv [91648 2026-03-11] (Microsoft Windows -> Microsoft Corporation)

==================== Verknüpfungen & WMI ========================

==================== Geladene Module (Nicht auf der Ausnahmeliste) =============

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ==================

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =================

==================== Internet Explorer (Nicht auf der Ausnahmeliste) =============

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\System32\blank.htm
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKU\S-1-5-21-3800446035-506082590-1098873781-1001\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-3800446035-506082590-1098873781-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896
HKU\S-1-5-21-3800446035-506082590-1098873781-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=ASTE
HKU\S-1-5-21-3800446035-506082590-1098873781-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.msn.com/?pc=ASTE
URLSearchHook: HKU\S-1-5-21-3800446035-506082590-1098873781-1001 - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\System32\ieframe.dll (Microsoft Windows -> Microsoft Corporation)
URLSearchHook: HKU\S-1-5-21-3800446035-506082590-1098873781-1001 - Microsoft Url Search Hook - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\Windows\SysWOW64\ieframe.dll (Microsoft Windows -> Microsoft Corporation)
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=PRASU1&src=IE11TR&pc=ASTE
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=PRASU1&src=IE11TR&pc=ASTE
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=PRASU1&src=IE11TR&pc=ASTE
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=PRASU1&src=IE11TR&pc=ASTE
BHO: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\147.0.3912.60\BHO\ie_to_edge_bho_64.dll [2026-04-10] (Microsoft Corporation -> Microsoft Corporation)
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: IEToEdge BHO -> {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} -> C:\Program Files (x86)\Microsoft\Edge\Application\147.0.3912.60\BHO\ie_to_edge_bho.dll [2026-04-10] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: about - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\System32\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: cdl - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\Windows\SysWOW64\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\System32\msvidctl.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: dvd - {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\Windows\SysWOW64\msvidctl.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Handler: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: file - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: ftp - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: http - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: https - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll [2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll [2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Handler: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: javascript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: local - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: mailto - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\System32\inetcomm.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: mhtml - {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\Windows\SysWOW64\inetcomm.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Handler: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\System32\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: mk - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\SysWOW64\urlmon.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\System32\itss.dll [2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: ms-its - {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\Windows\SysWOW64\itss.dll [2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: res - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\System32\msvidctl.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: tv - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\Windows\SysWOW64\msvidctl.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Handler: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\System32\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: vbscript - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\Windows\SysWOW64\mshtml.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Handler-x32: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL [2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Filter-x32: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL [2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe

==================== Hosts Inhalt: =========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

DNS Servers: Datenträger ist nicht mit dem Internet verbunden.
 ist aktiviert.

Network Binding:
=============
WLAN: Intel(R) Wi-Fi 6E AX211 160MHz -> Netwtw14.sys

vms_vsf: Erweiterungsfilter für virtuellen Hyper-V-Switch
ms_l1vhlwf: Geschachtelte Netzwerkvirtualisierung
vms_vsp: Extension-Protokoll für virtuellen Hyper-V-Switch

==================== Andere Bereiche ===========================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-3800446035-506082590-1098873781-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Micha\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{40923371-D383-4599-AD0C-0651BF7F687B}] => (Allow) C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteAgent.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​)
FirewallRules: [{B361B685-7349-40ED-ADB5-E29739649A51}] => (Allow) C:\Program Files\ASUS\GlideX\GlideXRemote\GlideXRemoteAgent.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​)
FirewallRules: [{68BC1D1A-F542-407F-AE21-6926A589D7C6}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24348.802.3311.5092_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EAD1AFDD-1DE8-4363-8B51-89310CC3FEA5}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24348.802.3311.5092_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1EA10F90-CD5F-46E0-9F81-B2F16FA63C42}] => (Allow) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSLinkRemote\AsusLinkRemoteAgent.exe => Keine Datei
FirewallRules: [{72C97A99-34E2-4418-A4AD-184444C7B38E}] => (Allow) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_bf969a2fcea35523\ASUSLinkRemote\AsusLinkRemoteAgent.exe => Keine Datei
FirewallRules: [{5BF357BD-E3D9-4557-A040-2EA43EF00A20}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FDB213D2-1699-46EF-A1A9-AD8FEA58FE91}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C5FFDA37-0C0A-4795-84B6-51E8DA8F418D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{F8D09C28-E662-4178-AF2A-76449FBBA8A0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{08E222CE-B76E-49D6-A05E-471887FCE0CA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{91DC422E-87C5-4D23-B048-E01801DCF30C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{B253FCF8-512E-4E6F-A35F-BB94C5A6C798}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{7DF0F927-2870-4A1C-8AB8-4B1A1BF23600}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{881AE6BA-B273-409A-8AA0-BD5C5FC2E49E}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{17104EEA-A760-4A1B-824F-EF59A232B303}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2ADC58E5-F256-4967-A2DF-3B6EE49C51C4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F1D07B83-2D2F-449D-9F79-A3F1DB4DCAF7}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F604C03C-CDF2-4D92-8FA0-DA99EBA54E7D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5DA08528-714D-4147-AEE8-2550C30621E3}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EDAB830A-03AD-4116-A4DF-363E409E0FE3}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E1E6F308-0F60-4CD7-93D9-836075A4EB01}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7BCAD610-0628-4063-8B84-5B0FB1E02C38}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4C6D8CAF-B3CC-49C8-8727-E92D894EC7D3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7D48B4D6-5D9E-48A7-BADD-564BD497DFED}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0903814F-0CEF-416A-85DA-2DA914002637}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{CBF13CD8-BAA7-4746-86C2-007981C1185A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{1CF380BD-B020-44AB-B9B0-94E385E0F3FF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{15A79C9E-D369-4F88-9075-132D03BB01BC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{CA755457-0537-4F0A-AE05-B333C7405490}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{53186DB0-B073-4F81-94B7-7CD9809FFFEA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A6DE2440-D331-4ABD-9DC7-F82D3A42F983}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B0A2A982-D7FE-4DD1-AD47-E6DF21FFF0B5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F350EC8B-7453-4602-BE99-13ABA050974B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.286.502.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7E48822C-448D-475D-8A7C-818B58CB5933}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.64.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{B8B627AC-5A1F-40C0-9882-0FA8C2D77DCF}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.64.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{91923022-90BE-4443-BDCD-F5619AF2672F}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.64.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{560EE1DA-200A-4621-AE01-BB8A252A6602}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.64.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{758DFC45-44FE-450D-924B-45D7513B6448}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe => Keine Datei
FirewallRules: [{5D02392F-4764-458F-9FA3-E7404E7EF6F2}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe => Keine Datei
FirewallRules: [{017A0E9D-0385-4C1F-85F8-B0433F9B36A4}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe => Keine Datei
FirewallRules: [{52E3421E-8AC1-4690-A5B3-33586FF92EEF}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe => Keine Datei
FirewallRules: [{29A3B034-B2A7-4C33-93FF-1E4E0345EEBA}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe => Keine Datei
FirewallRules: [{A80E7029-A136-4850-B0E6-5211F75146B8}] => (Allow) C:\Program Files (x86)\AnyDesk\AnyDesk.exe => Keine Datei
FirewallRules: [{7B551EB6-DA13-4D97-AF9E-235F3E57C71A}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSwitch\AsusSwitchNet.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F5FF8C94-C000-4882-9916-EA6D751F755A}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSwitch\AsusSwitchNetMDNS.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)

==================== Wiederherstellungspunkte =========================

03-04-2026 09:41:38 Windows Update
07-04-2026 09:13:07 Windows Update
07-04-2026 09:13:07 Windows Update
07-04-2026 09:13:08 Windows Update
11-04-2026 09:36:49 Windows Update

==================== Fehlerhafte Geräte im Gerätemanager ============

==================== Fehlereinträge in der Ereignisanzeige: ========================

Applikationsfehler:
==================
Error: (04/11/2026 09:36:26 AM) (Source: Application Error) (EventID: 1000) (User: MM759)
Description: Fehlerhafter Anwendungsname: AsusLibra.exe, Version: 4.0.1.0, Zeitstempel: 0x68b15188
Fehlerhafter Modulname: ntdll.dll, Version: 10.0.26100.7920, Zeitstempel: 0x5ffc11eb
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000aa83
Fehlerhafte Prozess-ID: 0x6004
Fehlerhafte Anwendungsstartzeit: 0x1dcc5ae439a87c6
Fehlerhafter Anwendungspfad: C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.25.0_x64__qmba6cd70vzyy\AsusLibra.exe
Fehlerhafter Modulpfad: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichts-ID: 692c9bb6-144f-4d3e-be4e-fa88bc5b3fb8
Vollständiger Name des fehlerhaften Pakets: B9ECED6F.ScreenPadMaster_4.0.25.0_x64__qmba6cd70vzyy
Fehlerhafte paketbezogene Anwendungs-ID: B9ECED6F.ScreenPadMaster

Error: (04/06/2026 12:10:01 PM) (Source: Application Error) (EventID: 1000) (User: MM759)
Description: Fehlerhafter Anwendungsname: AsusLibra.exe, Version: 4.0.1.0, Zeitstempel: 0x68b15188
Fehlerhafter Modulname: ntdll.dll, Version: 10.0.26100.7920, Zeitstempel: 0x5ffc11eb
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000aa83
Fehlerhafte Prozess-ID: 0x14fc
Fehlerhafte Anwendungsstartzeit: 0x1dcbee4e66f1a3e
Fehlerhafter Anwendungspfad: C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy\AsusLibra.exe
Fehlerhafter Modulpfad: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichts-ID: 4d212b4c-7b82-41b6-a99d-ff9c58b0893f
Vollständiger Name des fehlerhaften Pakets: B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy
Fehlerhafte paketbezogene Anwendungs-ID: B9ECED6F.ScreenPadMaster

Error: (03/28/2026 08:53:34 PM) (Source: Application Error) (EventID: 1000) (User: MM759)
Description: Fehlerhafter Anwendungsname: AsusLibra.exe, Version: 4.0.1.0, Zeitstempel: 0x68b15188
Fehlerhafter Modulname: ntdll.dll, Version: 10.0.26100.7920, Zeitstempel: 0x5ffc11eb
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000aa83
Fehlerhafte Prozess-ID: 0x54c4
Fehlerhafte Anwendungsstartzeit: 0x1dcbe1c8d366921
Fehlerhafter Anwendungspfad: C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy\AsusLibra.exe
Fehlerhafter Modulpfad: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichts-ID: a7ecb1be-b995-494d-a3dc-73eeb5888a89
Vollständiger Name des fehlerhaften Pakets: B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy
Fehlerhafte paketbezogene Anwendungs-ID: B9ECED6F.ScreenPadMaster

Error: (03/27/2026 08:59:24 PM) (Source: Application Error) (EventID: 1000) (User: MM759)
Description: Fehlerhafter Anwendungsname: AsusLibra.exe, Version: 4.0.1.0, Zeitstempel: 0x68b15188
Fehlerhafter Modulname: ntdll.dll, Version: 10.0.26100.7920, Zeitstempel: 0x5ffc11eb
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000aa83
Fehlerhafte Prozess-ID: 0x458c
Fehlerhafte Anwendungsstartzeit: 0x1dcb9d849495d1d
Fehlerhafter Anwendungspfad: C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy\AsusLibra.exe
Fehlerhafter Modulpfad: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichts-ID: 6a6ceae3-cf59-46e7-a874-2b53fa581dc6
Vollständiger Name des fehlerhaften Pakets: B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy
Fehlerhafte paketbezogene Anwendungs-ID: B9ECED6F.ScreenPadMaster

Error: (03/26/2026 04:30:09 AM) (Source: Application Hang) (EventID: 1002) (User: NT-AUTORITÄT)
Description: Das Programm MicrosoftStartFeedProvider.exe Version 1.229.1.0 hat aufgehört mit Windows zu interagieren und wurde geschlossen. Weitere Informationen zum Problem finden Sie im Problemverlauf in der Systemsteuerung „Sicherheit und Wartung“.

Error: (03/24/2026 09:54:41 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Fehler beim Initialisieren der Profilerstellungs-API-Anfügeinfrastruktur. Dieser Prozess ermöglicht einem Profiler das Anfügen nicht. HRESULT: 0x80004005.  Prozess-ID (dezimal): 17736. Meldungs-ID: [0x2509].

Error: (03/22/2026 10:40:39 AM) (Source: Application Error) (EventID: 1000) (User: MM759)
Description: Fehlerhafter Anwendungsname: AsusLibra.exe, Version: 4.0.1.0, Zeitstempel: 0x68b15188
Fehlerhafter Modulname: ntdll.dll, Version: 10.0.26100.7920, Zeitstempel: 0x5ffc11eb
Ausnahmecode: 0xc0000008
Fehleroffset: 0x000000000000dd3f
Fehlerhafte Prozess-ID: 0x499c
Fehlerhafte Anwendungsstartzeit: 0x1dcb9689ec8b07a
Fehlerhafter Anwendungspfad: C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy\AsusLibra.exe
Fehlerhafter Modulpfad: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichts-ID: dab8d84e-cd5e-48f3-ba12-f789f6305317
Vollständiger Name des fehlerhaften Pakets: B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy
Fehlerhafte paketbezogene Anwendungs-ID: B9ECED6F.ScreenPadMaster

Error: (03/21/2026 09:21:20 PM) (Source: Application Error) (EventID: 1000) (User: MM759)
Description: Fehlerhafter Anwendungsname: AsusLibra.exe, Version: 4.0.1.0, Zeitstempel: 0x68b15188
Fehlerhafter Modulname: ntdll.dll, Version: 10.0.26100.7920, Zeitstempel: 0x5ffc11eb
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000000aa83
Fehlerhafte Prozess-ID: 0x4834
Fehlerhafte Anwendungsstartzeit: 0x1dcb68e9d4532e8
Fehlerhafter Anwendungspfad: C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy\AsusLibra.exe
Fehlerhafter Modulpfad: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichts-ID: 070e41b1-b1cc-448d-a895-067ee99dba3c
Vollständiger Name des fehlerhaften Pakets: B9ECED6F.ScreenPadMaster_4.0.22.0_x64__qmba6cd70vzyy
Fehlerhafte paketbezogene Anwendungs-ID: B9ECED6F.ScreenPadMaster


Systemfehler:
=============
Error: (04/15/2026 06:17:13 PM) (Source: volmgr) (EventID: 161) (User: )
Description: Fehler beim Erstellen der Sicherungsdatei aufgrund eines Fehlers während der Abbilderstellung. BugCheckProgress war: 0x00020005

Error: (04/15/2026 06:17:27 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎15.‎04.‎2026 um 17:41:25 unerwartet heruntergefahren.

Error: (04/15/2026 05:38:58 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Für den Miniport "Microsoft Wi-Fi Direct Virtual Adapter #2, {acf7af99-d267-46b6-a530-52877dda51a2}" ist das Ereignis "74" aufgetreten.

Error: (04/15/2026 09:32:50 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Für den Miniport "Microsoft Wi-Fi Direct Virtual Adapter #2, {acf7af99-d267-46b6-a530-52877dda51a2}" ist das Ereignis "74" aufgetreten.

Error: (04/15/2026 07:31:38 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Für den Miniport "Microsoft Wi-Fi Direct Virtual Adapter #2, {acf7af99-d267-46b6-a530-52877dda51a2}" ist das Ereignis "74" aufgetreten.

Error: (04/14/2026 11:34:18 PM) (Source: DCOM) (EventID: 10010) (User: MM759)
Description: Der Server "{F9717507-6651-4EDB-BFF7-AE615179BCCF}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden.

Error: (04/14/2026 11:34:18 PM) (Source: DCOM) (EventID: 10005) (User: MM759)
Description: Fehler "1053" in DCOM, als der Dienst "DevicesFlowUserSvc_dc871" mit den Argumenten "Nicht verfügbar" gestartet wurde, um den folgenden Server zu verwenden:
DevicesFlow.DeviceDiscoveryAndPairingBroker

Error: (04/14/2026 11:34:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "DevicesFlow_dc871" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.


Windows Defender:
================
Date: 2026-04-13 12:27:26
Description: 
Microsoft Defender Antivirus šĉαⁿ ħãŝ вèėň ѕŧθφρεđ ъёƒόřĕ ĉǿмρłęťíοй.%ή %тŜçдⁿ ЇĐ:%ъ{47C61F30-AF52-40A4-901B-8EC7E9E7EB18}%ⁿ %ţЅćαη Τурē:%вAntimalware%η %ťŞċαή Рǻřămεţęяś:%вSchnellüberprüfung%π  %τŮѕéř:%ъNT-AUTORITÄT\SYSTEM%ⁿ %τŞтòφ Яęάşőⁿ:%ьŞсĥěðúℓêδ šćàņ ẅáś ŝκїррєð ъёćáμşē τħё ŀąѕţ ѕůсςзşѕƒµĺ šςǻň ẅàŝ щϊτħϊŋ тĥе łâśť 7 ðãŷś 

Date: 2026-04-05 09:03:20
Description: 
Microsoft Defender Antivirus šĉαⁿ ħãŝ вèėň ѕŧθφρεđ ъёƒόřĕ ĉǿмρłęťíοй.%ή %тŜçдⁿ ЇĐ:%ъ{C35D784A-E4C8-4CCB-B53B-E31479B5D2C7}%ⁿ %ţЅćαη Τурē:%вAntimalware%η %ťŞċαή Рǻřămεţęяś:%вSchnellüberprüfung%π  %τŮѕéř:%ъNT-AUTORITÄT\SYSTEM%ⁿ %τŞтòφ Яęάşőⁿ:%ьЃΡÇ čбʼnиěċŧíоñ ŗύйđòώη 

Date: 2026-04-05 08:13:05
Description: 
Microsoft Defender Antivirus šĉαⁿ ħãŝ вèėň ѕŧθφρεđ ъёƒόřĕ ĉǿмρłęťíοй.%ή %тŜçдⁿ ЇĐ:%ъ{B8314B69-B227-40E4-A1BA-622BF848AF5A}%ⁿ %ţЅćαη Τурē:%вAntimalware%η %ťŞċαή Рǻřămεţęяś:%вSchnellüberprüfung%π  %τŮѕéř:%ъNT-AUTORITÄT\SYSTEM%ⁿ %τŞтòφ Яęάşőⁿ:%ьЃΡÇ čбʼnиěċŧíоñ ŗύйđòώη 

Date: 2026-04-04 08:13:14
Description: 
Microsoft Defender Antivirus šĉαⁿ ħãŝ вèėň ѕŧθφρεđ ъёƒόřĕ ĉǿмρłęťíοй.%ή %тŜçдⁿ ЇĐ:%ъ{20DD7419-4EB2-4438-A870-8CA82FB48017}%ⁿ %ţЅćαη Τурē:%вAntimalware%η %ťŞċαή Рǻřămεţęяś:%вSchnellüberprüfung%π  %τŮѕéř:%ъNT-AUTORITÄT\SYSTEM%ⁿ %τŞтòφ Яęάşőⁿ:%ьŞсĥěðúℓêδ šćàņ ẅáś ŝκїррєð ъёćáμşē τħё ŀąѕţ ѕůсςзşѕƒµĺ šςǻň ẅàŝ щϊτħϊŋ тĥе łâśť 7 ðãŷś 

Date: 2026-04-01 07:55:21
Description: 
Microsoft Defender Antivirus šĉαⁿ ħãŝ вèėň ѕŧθφρεđ ъёƒόřĕ ĉǿмρłęťíοй.%ή %тŜçдⁿ ЇĐ:%ъ{BE4A40CB-7213-4293-9E56-9211E9F2CEDE}%ⁿ %ţЅćαη Τурē:%вAntimalware%η %ťŞċαή Рǻřămεţęяś:%вSchnellüberprüfung%π  %τŮѕéř:%ъNT-AUTORITÄT\SYSTEM%ⁿ %τŞтòφ Яęάşőⁿ:%ьŞсĥěðúℓêδ šćàņ ẅáś ŝκїррєð ъёćáμşē τħё ŀąѕţ ѕůсςзşѕƒµĺ šςǻň ẅàŝ щϊτħϊŋ тĥе łâśť 7 ðãŷś 

CodeIntegrity:
===============
Date: 2025-05-26 21:38:54
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\136.0.3240.92\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\nvspcap64.dll that did not meet the Microsoft signing level requirements. 


==================== Speicherinformationen =========================== 

BIOS: American Megatrends International, LLC. UX8402VU.300 04/27/2023
Hauptplatine: ASUSTeK COMPUTER INC. UX8402VU
Prozessor: 13th Gen Intel(R) Core(TM) i9-13900H
Prozentuale Nutzung des RAM: 27%
Installierter physikalischer RAM: 32373.42 MB
Verfügbarer physikalischer RAM: 23578.83 MB
Summe virtueller Speicher: 34421.42 MB
Verfügbarer virtueller Speicher: 25780.96 MB

==================== Laufwerke ================================

Drive c: (OS) (Fixed) (Total:952.33 GB) (Free:682.75 GB) (Model: NVMe SAMSUNG MZVL21T0HCLR-00B00) NTFS
Drive d: (STICK) (Removable) (Total:3.74 GB) (Free:3.74 GB) FAT32

\\?\Volume{209023ee-4471-4553-a977-f0cf291b350e}\ () (Fixed) (Total:1.02 GB) (Free:0.17 GB) NTFS
\\?\Volume{1d18a63e-d668-4100-a00b-2c10a90505c0}\ (MYASUS) (Fixed) (Total:0.25 GB) (Free:0.17 GB) FAT32
\\?\Volume{6d81434d-d4ac-43f4-b807-4a98c45941a9}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.18 GB) FAT32

==================== MBR & Partitionstabelle ====================

==========================================================
Disk: 0 (Size: 953.9 GB) (Disk ID: F8040787)

Partition: GPT.

==========================================================
Disk: 1 (Size: 3.8 GB) (Disk ID: 9AEF82A1)
Partition 1: (Active) - (Size=3.7 GB) - (Type=FAT32)

==================== Ende von Addition.txt =======================
         

Alt 15.04.2026, 18:12   #2
bistlie
 
Windows 11 Rentner fällt auf Scam rein - Standard

Windows 11 Rentner fällt auf Scam rein



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-04-2026
durchgeführt von Micha (Administrator) auf MM759 (ASUSTeK COMPUTER INC. Zenbook UX8402VU_UX8402VU) (15-04-2026 18:18:54)
Gestartet von D:\\FRST64.exe
Geladene Profile: Micha
Plattform: Microsoft Windows 11 Pro Version 25H2 26200.8037 (X64) Sprache: Englisch (Vereinigtes Königreich) -> Deutsch (Deutschland)
Standard-Browser: FF
Start-Modus: Normal

==================== Prozesse (Alle) =================
(38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.64.0_x64__qmba6cd70vzyy\ModuleDll\HWSettings\AsusOLEDShifter.exe
(38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.ScreenPadMaster_4.0.25.0_x64__qmba6cd70vzyy\AsusLibra.exe
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSOptimization\AsusOSD.exe
(C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\conhost.exe
(C:\Program Files\ASUS\ASUS Dial Control Panel Toolkit\AsusDialAgent.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ASUS Dial Control Panel Toolkit\AsusDCPAntenna.exe
(C:\Program Files\ASUS\ASUS Dial Control Panel Toolkit\AsusDialService.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ASUS Dial Control Panel Toolkit\AsusDialAgent.exe
(C:\Program Files\ASUS\AsusScreenXpert\AsusScreenXpertHostService.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\AsusScreenXpert\AsusScreenXpertUI.exe
(C:\Program Files\ASUS\AsusScreenXpert\AsusScreenXpertUI.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\AsusScreenXpert\AsusScreenXpertReunion.exe
(C:\Program Files\ASUS\AsusScreenXpert\AsusScreenXpertUI.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\AsusScreenXpert\AsusScreenXpertUserUI.exe
(C:\Program Files\ASUS\ProArt Creator Hub\ProArtCreatorHubService\AsusProArtService.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ProArt Creator Hub\ProArtCreatorHubService\AsusProArtHost.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\WindowsApps\MSTeams_26058.713.4529.5861_x64__8wekyb3d8bbwe\ms-teams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_26058.713.4529.5861_x64__8wekyb3d8bbwe\ms-teamsupdate.exe
(C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\147.0.3912.60\msedgewebview2.exe <20>
(DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSOptimization\AsusOptimizationStartupTask.exe
(DriverStore\FileRepository\asusscreenxpertbase.inf_amd64_9f04b015ed175292\AsusScreenXpertBase\AsusInitialService.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asusscreenxpertbase.inf_amd64_9f04b015ed175292\AsusScreenXpertBase\AsusFeatureService.exe
(DriverStore\FileRepository\asusscreenxpertbase.inf_amd64_9f04b015ed175292\AsusScreenXpertBase\AsusInitialService.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asusscreenxpertbase.inf_amd64_9f04b015ed175292\AsusScreenXpertBase\AsusLibraService.exe
(DriverStore\FileRepository\asusscreenxpertbase.inf_amd64_9f04b015ed175292\AsusScreenXpertBase\AsusInitialService.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asusscreenxpertbase.inf_amd64_9f04b015ed175292\AsusScreenXpertBase\AsusLinkToScreenXpert.exe
(DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_8e54c1bc7d581ad1\DAX3API.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~3.INF\DAX3API.exe
(DriverStore\FileRepository\ipf_cpu.inf_amd64_7218f3b363a821fe\ipf_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_7218f3b363a821fe\ipf_helper.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_26058.713.4529.5861_x64__8wekyb3d8bbwe\ms-teams.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Micha\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthSystray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\explorer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\winlogon.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\csrss.exe <2>
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\smss.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\wininit.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(SearchIndexer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe <3>
(SearchIndexer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ASUS Dial Control Panel Toolkit\AsusDialService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\AsusScreenXpert\AsusScreenXpertHostService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ProArt Creator Hub\ProArtCreatorHubService\AsusProArtService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ProArt Creator Hub\ProArtCreatorHubService\AsusProArtUpdateService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\AsusAppService\AsusAppService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSOptimization\AsusOptimization.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSoftwareManager\AsusSoftwareManager.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSwitch\AsusSwitch.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asusscreenxpertbase.inf_amd64_9f04b015ed175292\AsusScreenXpertBase\AsusInitialService.exe
(services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_8e54c1bc7d581ad1\DAX3API.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_d6f52e3fdecf287d\ipfsvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorvd.inf_amd64_346bd04e375689ec\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_7218f3b363a821fe\ipf_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_ab7d4ea1d12c01d4\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_7955510f793739e6\Intel_PIE_Service.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_6f0a892deb241071\AS\IAS\IntelAudioService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\servicing\TrustedInstaller.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\spoolsv.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\VSSVC.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WUDFCompanionHost.exe <3>
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WUDFHost.exe <5>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_4e93878658043b21\OneApp.IGCC.WinService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_9741ef1f4093481f\IntelCpHDCPSvc.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\NisSrv.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\SecurityHealthService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\svchost.exe <83>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvBroadcast.NvContainer\NvBroadcast.Container.exe <2>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvam.inf_amd64_f6465e9eefbbdae5\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_5349479f7c9fe8a6\RtkAudUService64.exe <3>
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\ShellHost.exe
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\CrossDeviceResume.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsStore_22602.1401.6.0_x64__8wekyb3d8bbwe\StoreDesktopExtension.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.248.3.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.14.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.26022.64.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_526.1202.40.0_x64__cw5n1h2txyewy\WidgetBoard.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.26022.46.0_x64__cw5n1h2txyewy\CrossDeviceService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\AggregatorHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\audiodg.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\backgroundTaskHost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\BackgroundTransferHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\BioIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\ctfmon.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dasHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe <8>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\sihost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\taskhostw.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WmiPrvSE.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\SearchHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.26100.8035_none_a54f1c79772e807e\TiWorker.exe
(wininit.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\fontdrvhost.exe <2>
(wininit.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LsaIso.exe
(wininit.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\lsass.exe
(wininit.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\services.exe
(winlogon.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dwm.exe

==================== Registry (Alle) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SecurityHealth] => C:\WINDOWS\system32\SecurityHealthSystray.exe [270336 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe [139264 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Winlogon: [Shell] C:\Windows\explorer.exe [3261608 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM-x32\...\Winlogon: [Shell] C:\Windows\SysWOW64\explorer.exe [2890872 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Policies\Explorer: [ForceActiveDesktopOn] 0
HKLM\...\Policies\Explorer: [NoActiveDesktop] 1
HKLM\...\Policies\Explorer: [NoActiveDesktopChanges] 1
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [89771848 2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [89771848 2025-09-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3800446035-506082590-1098873781-1001\...\Run: [OneDrive] => C:\Users\Micha\AppData\Local\Microsoft\OneDrive\OneDrive.exe [4746600 2026-04-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3800446035-506082590-1098873781-1001\...\Run: [Mozilla-Firefox-308046B0AF4A39CB] => "C:\Program Files\Mozilla Firefox\firefox.exe" -os-autostart [705152 2026-04-09] (Mozilla Corporation -> Mozilla Corporation)
HKU\S-1-5-21-3800446035-506082590-1098873781-1001\...\Run: [Teams] => C:\Users\Micha\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe [0 0] () [symlink -> ]
HKLM\...\Providers\Internet Print Provider: C:\Windows\system32\inetpp.dll [237568 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Providers\LanMan Print Services: C:\Windows\system32\win32spl.dll [1396736 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MG3600 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDCT.DLL [30208 2023-07-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\winprint: C:\Windows\System32\spool\prtprocs\x64\winprint.dll [77824 2026-01-15] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\Appmon: C:\Windows\system32\AppMon.dll [114688 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3600 series: C:\Windows\system32\CNMLMCT.DLL [406528 2023-07-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Local Port: C:\Windows\system32\localspl.dll [1519616 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\Standard TCP/IP Port: C:\Windows\system32\tcpmon.dll [307200 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\USB Monitor: C:\Windows\system32\usbmon.dll [1302528 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\Virtual Port Monitor: C:\Windows\system32\VirtualMon.dll [208896 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\WSD Port: C:\Windows\system32\APMon.dll [1634304 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> C:\WINDOWS\system32\unregmp2.exe [262144 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2C7339CF-2B09-4501-B3F3-F3508C9228ED}] -> C:\Windows\system32\themeui.dll [598016 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> C:\WINDOWS\system32\unregmp2.exe [262144 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89820200-ECBD-11cf-8B85-00AA005B4340}] -> C:\Windows\system32\shell32.dll [7777968 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89820200-ECBD-11cf-8B85-00AA005B4383}] -> C:\Windows\System32\ie4uinit.exe [286720 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
HKLM\Software\Microsoft\Active Setup\Installed Components: [{9459C573-B17A-45AE-9F64-1857B5D58CEE}] -> C:\Program Files (x86)\Microsoft\Edge\Application\147.0.3912.60\Installer\setup.exe [5158480 2026-04-14] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> C:\WINDOWS\SysWOW64\unregmp2.exe [204800 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> C:\WINDOWS\SysWOW64\unregmp2.exe [204800 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
HKLM\Software\...\Authentication\Credential Providers: [{01A30791-40AE-4653-AB2E-FD210019AE88}] -> C:\WINDOWS\system32\mgmtrefreshcredprov.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{1b283861-754f-4022-ad47-a5eaaa618894}] -> C:\WINDOWS\system32\SmartcardCredentialProvider.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{1ee7337f-85ac-45e2-a23c-37c753209769}] -> C:\WINDOWS\system32\SmartcardCredentialProvider.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{2135f72a-90b5-4ed3-a7f1-8bb705ac276a}] -> C:\WINDOWS\system32\credprovslegacy.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{25CBB996-92ED-457e-B28C-4774084BD562}] -> C:\WINDOWS\system32\credprovs.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{27FBDB57-B613-4AF2-9D7E-4FA7A66C21AD}] -> C:\WINDOWS\system32\TrustedSignalCredProv.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{3dd6bec0-8193-4ffe-ae25-e08e39ea4063}] -> C:\WINDOWS\system32\credprovs.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{48B4E58D-2791-456C-9091-D524C6C706F2}] -> C:\Windows\System32\devicengccredprov.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{600e7adb-da3e-41a4-9225-3c0399e88c0c}] -> C:\WINDOWS\system32\cngcredui.dll [2025-11-16] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{60b78e88-ead8-445c-9cfd-0b87f74ea6cd}] -> C:\WINDOWS\system32\credprovs.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{8AF662BF-65A0-4D0A-A540-A338A999D36F}] -> C:\Windows\System32\FaceCredentialProvider.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{8FD7E19C-3BF7-489B-A72C-846AB3678C96}] -> C:\WINDOWS\system32\SmartcardCredentialProvider.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{94596c7e-3744-41ce-893e-bbf09122f76a}] -> C:\WINDOWS\system32\SmartcardCredentialProvider.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{BEC09223-B018-416D-A0AC-523971B639F5}] -> C:\WINDOWS\System32\BioCredProv.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{C5D7540A-CD51-453B-B22B-05305BA03F07}] -> C:\Windows\System32\cxcredprov.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{cb82ea12-9f71-446d-89e1-8d0924e1256e}] -> C:\WINDOWS\system32\credprovslegacy.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{D6886603-9D2F-4EB2-B667-1971041FA96B}] -> C:\Windows\System32\ngccredprov.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{e74e57b0-6c6d-44d5-9cda-fb2df5ed7435}] -> C:\WINDOWS\system32\certCredProvider.dll [2025-07-13] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{f64945df-4fa9-4068-a2fb-61af319edd33}] -> C:\WINDOWS\system32\rdpcredentialprovider.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\WINDOWS\system32\wlidcredprov.dll [2026-02-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{F8A1793B-7873-4046-B2A7-1F318747F427}] -> C:\WINDOWS\system32\fidocredprov.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Provider Filters: [{DDC0EED2-ADBE-40b6-A217-EDE16A79A0DE}] -> C:\WINDOWS\system32\credprovs.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Authentication\PLAP Providers: [{5537E283-B1E7-4EF8-9C6E-7AB0AFE5056D}] -> C:\WINDOWS\system32\rasplap.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{0ACDD40C-75AC-47ab-BAA0-BF6DE7E7FE63}] -> C:\Windows\system32\wlgpclnt.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{0E28E245-9368-4853-AD84-6DA3BA35BB75}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{169EBF44-942F-4C43-87CE-13C93996EBBE}] -> C:\Windows\system32\AppManagementConfiguration.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{16be69fa-4209-4250-88cb-716cf41954e0}] -> C:\Windows\system32\auditcse.dll [2025-11-16] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{17D89FEC-5C44-4972-B12D-241CAEF74509}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{1A6364EB-776B-4120-ADE1-B63A406A76B5}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{25537BA6-77A8-11D2-9B6C-0000F8080861}] -> C:\Windows\system32\fdeploy.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{2A8FDC61-2347-4C87-92F6-B05EB91A201A}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{2BFCC077-22D2-48DE-BDE1-2F618D9B476D}] -> C:\Windows\system32\AppManagementConfiguration.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{35378EAC-683F-11D2-A89A-00C04FBBCFA2}] -> 
HKLM\Software\...\Winlogon\GPExtensions: [{3610eda5-77ef-11d2-8dc5-00c04fa31a66}] -> C:\WINDOWS\System32\dskquota.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{3A0DBA37-F8B2-4356-83DE-3E90BD5C261F}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{426031c0-0b47-4852-b0ca-ac3d37bfcb39}] -> C:\Windows\system32\gptext.dll [2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{42B5FAAE-6536-11d2-AE5A-0000F87571E3}] -> C:\Windows\System32\gpscript.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{4B7C3B0F-E993-4E06-A241-3FBE06943684}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{4bcd6cde-777b-48b6-9804-43568e23545d}] -> C:\WINDOWS\System32\TsUsbRedirectionGroupPolicyExtension.dll [2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{4CFB60C1-FAA6-47f1-89AA-0B18730C9FD3}] -> C:\Windows\System32\iedkcs32.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{4D2F9B6F-1E52-4711-A382-6A8B1A003DE6}] -> C:\Windows\System32\tsworkspace.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{4d968b55-cac2-4ff5-983f-0a54603781a3}] -> C:\Windows\system32\WorkFoldersGPExt.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{5794DAFD-BE60-433f-88A2-1A31939AC01F}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{6232C319-91AC-4931-9385-E70C2B099F0E}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{6A4C88C6-C502-4f74-8F60-2CB23EDC24E2}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{7150F9BF-48AD-4da4-A49C-29EF4A8369BA}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{728EE579-943C-4519-9EF7-AB56765798ED}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{74EE6C03-5363-4554-B161-627540339CAB}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{7909AD9E-09EE-4247-BAB9-7029D5F0A278}] -> C:\Windows\system32\dmenrollengine.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{7933F41E-56F8-41d6-A31C-4148A711EE93}] -> C:\WINDOWS\System32\srchadmin.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{7B849a69-220F-451E-B3FE-2CB811AF94AE}] -> C:\Windows\System32\iedkcs32.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{827D319E-6EAC-11D2-A4EA-00C04F79F83A}] -> C:\Windows\system32\scecli.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{8472C2C4-6B70-4301-A20D-A6CEA5F82B7E}] -> C:\WINDOWS\System32\StartTileData.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{8A28E2C5-8D06-49A4-A08C-632DAA493E17}] -> C:\WINDOWS\system32\gpprnext.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{91FBB303-0CD5-4055-BF42-E512A681B325}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{9F02E2F5-5A41-4D1A-B473-4617E84BC957}] -> C:\WINDOWS\system32\WindowsProtectedPrintConfiguration.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{A3F3E39B-5D83-4940-B954-28315B82F0A8}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{AADCED64-746C-4633-A97C-D61349046527}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{B087BE9D-ED37-454f-AF9C-04291E351182}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{B587E2B1-4D59-4e7e-AED9-22B9DF11D053}] -> C:\Windows\system32\dot3gpclnt.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{BA649533-0AAC-4E04-B9BC-4DBAE0325B12}] -> C:\Windows\system32\pwlauncher.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{BC75B1ED-5833-4858-9BB8-CBF0B166DF9D}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{C34B2751-1CF4-44F5-9262-C3FC39666591}] -> C:\Windows\system32\pwlauncher.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{C418DD9D-0D14-4efb-8FBF-CFE535C8FAC7}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{C631DF4C-088F-4156-B058-4375F0853CD8}] -> C:\WINDOWS\System32\cscobj.dll [2025-09-15] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{c6dc5466-785a-11d2-84d0-00c04fb169f7}] -> C:\Windows\system32\appmgmts.dll [2026-02-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{cdeafc3d-948d-49dd-ab12-e578ba4af7aa}] -> C:\Windows\system32\gptext.dll [2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{CF7639F3-ABA2-41DB-97F2-81E2C5DBFC5D}] -> C:\Windows\System32\iedkcs32.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{CFF649BD-601D-4361-AD3D-0FC365DB4DB7}] -> C:\WINDOWS\system32\domgmt.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{e437bc1c-aa7d-11d2-a382-00c04f991e27}] -> C:\WINDOWS\System32\polstore.dll [2024-04-01] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{E47248BA-94CC-49c4-BBB5-9EB7F05183D0}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{E4F48E54-F38D-4884-BFB9-D4D2E5729C18}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{E5094040-C46C-4115-B030-04FB2E545B00}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{E62688F0-25FD-4c90-BFF5-F508B9D2E31F}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{F312195E-3D9D-447A-A3F5-08DFFA24735E}] -> C:\Windows\system32\dggpext.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{f3ccc681-b74c-4060-9f26-cd84525dca2a}] -> C:\Windows\system32\auditcse.dll [2025-11-16] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{F9C77450-3A41-477E-9310-9ACD617BD9E3}] -> C:\Windows\System32\gpprefcl.dll [2026-03-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{FB2CA36D-0B40-4307-821B-A13B252DE56C}] -> C:\Windows\system32\gptext.dll [2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{fbf687e6-f063-4d9f-9f4f-fd9a26acdd5f}] -> C:\Windows\system32\gptext.dll [2025-02-23] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{FC491EF1-C4AA-4CE1-B329-414B101DB823}] -> C:\Windows\system32\dggpext.dll [2025-12-11] (Microsoft Windows -> Microsoft Corporation)
IFEO\svchost.exe: [MinimumStackCommitInBytes] 32768
Lsa: [Authentication Packages] msv1_0
Lsa: [Notification Packages] scecli
SecurityProviders: credssp.dll
BootExecute: autocheck autochk * 
AlternateShell: cmd.exe
HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG

==================== Geplante Aufgaben (Alle) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {925B0BEC-3700-4A02-B9F7-B99D954777CA} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSOptimization\AsusHotkey.exe [365064 2026-03-30] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {D4544310-1F61-435F-AD2D-E2CBE493E961} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSoftwareManager\AsusUpdateChecker.exe [852488 2026-03-30] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {6FEA0493-6BE4-4C56-9C81-BA31B3C9C962} - System32\Tasks\ASUSProArtUpdateService-Logon => C:\Program Files\ASUS\ProArt Creator Hub\ProArtCreatorHubService\AsusProArtUpdateService.exe [1699472 2023-01-05] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {C2E9E891-6D34-40F0-8C0C-8DB12EE4586E} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4454920 2026-03-30] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {11D0FE1B-83AD-4B77-BC6A-93F28A7AB956} - System32\Tasks\AsusSystemDiagnosis_DriverQuality => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_ebcc5101f0564a1b\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1305608 2026-03-30] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
Task: {18398CE6-80EB-4789-BA7B-174D161AB311} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [11419480 2025-10-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {D733DC85-2EE5-422E-8B2C-38066136FC7F} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29025120 2025-10-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {B4D11603-0555-4520-AF8F-40FB89978408} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [61280 2025-10-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {27A94C96-6CA9-4A77-A62F-F1D5DE99E8FB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29025120 2025-10-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {8CCB042E-E79C-4429-852B-01D0D40AF39C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224520 2025-10-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {77CC6B18-01F9-4AB8-847A-93270D60902E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224520 2025-10-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {09B75BFE-4FDF-47B3-A7FD-899A092F9899} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 => {84F0FAE1-C27B-4F6F-807B-28CF6F96287D} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [24096 2025-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {01612C27-6C74-4BA7-A9FC-F7D32415C0D4} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 => {429BC048-379E-45E0-80E4-EB1977941B5C} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [24096 2025-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {A089E292-F4B9-4EB5-A09E-0C4BF448E005} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical => {613FBA38-A3DF-4AB8-9674-5604984A299A} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [24096 2025-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {C4BB3D7E-BF6E-42EE-B532-1E0832DA3EA9} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical => {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [24096 2025-06-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {B40D6D45-D864-4BD8-AD56-B6C4D9918F8D} - System32\Tasks\Microsoft\Windows\AccountHealth\RecoverabilityToastTask => {B7F5B442-EBF8-46CD-9F0B-D8E45ED43492} C:\WINDOWS\system32\AccountHealth.dll [233472 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1A8080D1-F23D-4CF3-9F59-A4578B9D9E19} - System32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated) => {CF2CF428-325B-48D3-8CA8-7633E36E5A32} C:\WINDOWS\system32\msdrm.dll [593920 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F98BFCBD-867D-4734-B2CD-E9D72A80F093} - System32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual) => {BF5CB148-7C77-4D8A-A53E-D81C70CF743C} C:\WINDOWS\system32\msdrm.dll [593920 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {37077CCA-5981-49D0-8EAD-5A328E208C61} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager => {DECA92E0-AF85-439E-9204-86679978DA08} C:\WINDOWS\System32\AppLockerCsp.dll [368640 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {CD644B8B-7297-4AA8-96A4-F4EC1FD24615} - System32\Tasks\Microsoft\Windows\AppID\PolicyConverter => C:\WINDOWS\system32\appidpolicyconverter.exe [155648 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F65E78D2-6CBA-464C-921F-C03CAD0A1A91} - System32\Tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck => C:\WINDOWS\system32\appidcertstorecheck.exe [49152 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {61012F9B-FFD6-4E36-BD45-42CE5AC83FC1} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(1): %windir%\system32\compattelrunner.exe -> -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc
Task: {61012F9B-FFD6-4E36-BD45-42CE5AC83FC1} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(2): %windir%\system32\compattelrunner.exe -> -m:appraiser.dll -f:DoScheduledTelemetryRun
Task: {61012F9B-FFD6-4E36-BD45-42CE5AC83FC1} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(3): %windir%\system32\compattelrunner.exe -> -m:aemarebackup.dll -f:BackupMareData
Task: {A0C71CB8-E8F0-498A-901D-4EDA09E07FF4} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser Exp => C:\WINDOWS\system32\compattelrunner.exe [903536 2026-03-11] (Microsoft Corporation -> Microsoft Corporation) -> -m:appraiser.dll -f:DoScheduledTelemetryRun express
Task: {478FE0B6-9ACF-423D-849E-EE1B7ABB2205} - System32\Tasks\Microsoft\Windows\Application Experience\PcaPatchDbTask => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\PcaSvc.dll,PcaPatchSdbTask
Task: {B86F17B7-0298-4679-9BEA-3567E58A7D51} - System32\Tasks\Microsoft\Windows\Application Experience\SdbinstMergeDbTask => C:\WINDOWS\system32\sdbinst.exe [299008 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {DB351805-180A-4A8A-A7FB-048D230942B2} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> Startupscan.dll,SusRunTask
Task: {2D5F15D5-9A58-444A-B969-DE789BD44978} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierdaily => C:\WINDOWS\system32\AppHostRegistrationVerifier.exe [139264 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {9C8F22F7-E6C2-403A-B779-9125A0AA4159} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierinstall => C:\WINDOWS\system32\AppHostRegistrationVerifier.exe [139264 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {BEBB7728-850C-4618-BB88-D50757EB0EB4} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {1734B5C2-376F-40C4-9E48-E0284BFF7450} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\WINDOWS\system32\dstokenclean.exe [40960 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {C5B41A1D-9B4A-40B1-90E2-576692C9043D} - System32\Tasks\Microsoft\Windows\AppListBackup\Backup => {E0DCC2CC-3354-45F2-8914-519E07809082} C:\WINDOWS\system32\AppListBackupLauncher.dll [118784 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {8D51FC39-7A4E-40C3-BA08-FD4D2289F857} - System32\Tasks\Microsoft\Windows\AppListBackup\BackupNonMaintenance => {E0DCC2CC-3354-45F2-8914-519E07809082} C:\WINDOWS\system32\AppListBackupLauncher.dll [118784 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {6B00C177-C019-4C00-B0B6-C74E993BC9AA} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {4C15DAD2-FCFA-40CF-8C21-3E6BB41CB2AC} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\UCPD velocity => C:\WINDOWS\system32\UCPDMgr.exe [82944 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {30E6DB3D-C3AA-44DA-8E88-9DB52D84975E} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> /d acproxy.dll,PerformAutochkOperations
Task: {F449940A-F863-4436-87DD-962B5295EB2F} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\WINDOWS\System32\edptask.dll [147456 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {730947A5-753E-4D67-8F64-4AC1FEA62B46} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\WINDOWS\System32\edptask.dll [147456 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D8F53FD3-75B7-4BCB-AFC9-EFCDE6268034} - System32\Tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask => C:\Windows\system32\BthUdTask.exe [69632 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {61014571-FEE0-459A-99D6-DE84F00D0DF9} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask => {E984D939-0E00-4DD9-AC3A-7ACA04745521}
Task: {B8DEC486-8231-41C5-9109-D7ACDA5A5692} - System32\Tasks\microsoft\windows\capabilityaccessmanager\maintenancetasks => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\CapabilityAccessManager.dll,CapabilityAccessManagerDoStoreMaintenance
Task: {E72F1464-A3F9-406D-BF09-57DE4D764406} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask => {47E30D54-DAC1-473A-AFF7-2355BF78881F} C:\WINDOWS\system32\ngctasks.dll [225280 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {44CF38D1-7912-4AF5-85E0-B5B6A8A8709F} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask => {47E30D54-DAC1-473A-AFF7-2355BF78881F} C:\WINDOWS\system32\ngctasks.dll [225280 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {7235AFD9-C139-458E-AA61-F6FD579A198F} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask => {47E30D54-DAC1-473A-AFF7-2355BF78881F} C:\WINDOWS\system32\ngctasks.dll [225280 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {3821ECEF-67ED-4990-95B6-50C6DF64719D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\SystemTask => {58FB76B9-AC85-4E55-AC04-427593B1D060} C:\WINDOWS\system32\dimsjob.dll [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {24D897BB-FCA1-4D52-B199-9254D8D47895} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\UserTask => {58FB76B9-AC85-4E55-AC04-427593B1D060} C:\WINDOWS\system32\dimsjob.dll [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {2A8B3A75-27C9-41C5-935E-5B4575E6E059} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\UserTask-Roam => {58FB76B9-AC85-4E55-AC04-427593B1D060} C:\WINDOWS\system32\dimsjob.dll [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {DFDFAAE9-EA5E-4F25-ADD2-A3FE05CBE085} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan => {CF4270F5-2E43-4468-83B3-A8C45BB33EA1} C:\Windows\System32\pstask.dll [40960 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
Task: {2273CC53-20C0-46E1-87CE-1DA662FDABDB} - System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair => C:\WINDOWS\system32\bcdboot.exe [290816 2026-02-11] (Microsoft Windows -> Microsoft Corporation) -> %windir% /sysrepair
Task: {663DC9C2-27C5-406B-AC21-14E3725608CB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\WINDOWS\system32\ClipUp.exe [1141920 2026-03-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BCA27079-024C-4E21-AD68-38E1A87BEDA0} - System32\Tasks\Microsoft\Windows\Clip\LicenseImdsIntegration => C:\WINDOWS\system32\fclip.exe [513824 2026-01-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {72242617-4783-4FB8-A5CF-51FA4B2C1B76} - System32\Tasks\Microsoft\Windows\CloudExperienceHost\CreateObjectTask => {E4544ABA-62BF-4C54-AAB2-EC246342626C} C:\Windows\System32\CloudExperienceHostBroker.exe [95616 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {C19F959F-D831-43BD-A121-4B916F550E69} - System32\Tasks\Microsoft\Windows\CloudRestore\Backup => {722D0F89-B69C-4700-AE8C-4A44350E4876} C:\Windows\System32\CloudRestoreLauncher.dll [1671168 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {148E79F8-AFBF-42AA-8C50-17B2A157902A} - System32\Tasks\Microsoft\Windows\CloudRestore\Restore => {B4BCFA6F-948D-46B8-BF27-E8B1117E23B3} C:\WINDOWS\system32\CloudRestoreLauncher.dll [1671168 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {532B060A-FB14-4416-9F7A-BF8EB52FAB70} - System32\Tasks\Microsoft\Windows\ConsentUX\UnifiedConsent\UnifiedConsentSyncTask => {82AA0895-198A-4C1B-B2D1-C16894218AFB} C:\WINDOWS\System32\unifiedconsent.dll [675840 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {448D3788-5DAE-4B2B-92ED-A8561061E069} - System32\Tasks\Microsoft\Windows\Containers\CmCleanup => {F50E9363-6BC8-4DC5-8CAB-7D9F8C1B81B4} C:\WINDOWS\System32\cmcleanup.dll [87440 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {E4FED5BC-D567-4044-9642-2EDADF7DE108} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator => C:\WINDOWS\System32\wsqmcons.exe [86016 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {FD607F42-4541-418A-B812-05C32EBA8626} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip => {C27F6B1D-FE0B-45E4-9257-38799FA69BC8} C:\WINDOWS\System32\usbceip.dll [135168 2025-11-16] (Microsoft Windows -> Microsoft Corporation)
Task: {0A18F0F5-0A91-4636-A2B5-0D88BFC4B1C3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan => {DCFD3EA8-D960-4719-8206-490AE315F94F} C:\Windows\System32\discan.dll [356352 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1EA5FD1B-E4CF-4471-A78C-2FF0BFD6554F} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan => {DCFD3EA8-D960-4719-8206-490AE315F94F} C:\Windows\System32\discan.dll [356352 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {058FF498-213D-4A09-88C1-001C8A8FF1DB} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery => {DCFD3EA8-D960-4719-8206-490AE315F94F} C:\Windows\System32\discan.dll [356352 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {99199F85-AD41-4E99-9BD3-9559CCB6832D} - System32\Tasks\Microsoft\Windows\Defrag\ScheduledDefrag => C:\WINDOWS\system32\defrag.exe [241664 2025-09-15] (Microsoft Windows -> Microsoft Corp.)
Task: {E0897054-7E67-42E8-A5C0-290FE1BDB0BA} - System32\Tasks\Microsoft\Windows\Device Information\Device => C:\WINDOWS\system32\devicecensus.exe [148936 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1AC60082-C248-420C-9CBC-FCD612BDA90F} - System32\Tasks\Microsoft\Windows\Device Information\Device User => C:\WINDOWS\system32\devicecensus.exe [148936 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {47C3C3F6-EB0B-42F2-927C-2B1264CE08EC} - System32\Tasks\Microsoft\Windows\Device Setup\Driver Recovery on Reboot => {452f6ddc-7930-4b57-8794-19cd7420241d} C:\WINDOWS\System32\DeviceSetupManagerAPI.dll [118784 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {23713248-F0F1-436C-9DFF-BABCB2879EFC} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh => {23C1F3CF-C110-4512-ACA9-7B6174ECE888} C:\WINDOWS\System32\DeviceSetupManagerAPI.dll [118784 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {68766063-A2C4-4B25-ABBD-0F2131DFA45C} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleCommand => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {A5B0F702-FE3C-4E59-9261-DF5381421B49} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {69268C01-9811-426E-8087-4433A05BF16B} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {96E05586-64F9-4006-8269-B67332D73115} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F374D396-6F94-4A15-AF12-7E1990515D48} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {59AEFCC9-9F0A-438A-9DCE-05BECFF49233} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {0F9B213A-8671-4C1E-A5C7-A9E22E67FEE9} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24 => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5D3FCEA5-5A78-46A1-9AE7-582AEBFE47AF} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {222B1E40-DFB7-4001-B965-BB6BFDB425F9} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {B63B8F61-C8B2-4891-A366-119945CAA236} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {8C5F073D-4391-4D09-B411-560B09F3228B} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\WINDOWS\system32\DeviceDirectoryClient.dll [327680 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {E9FDE5C7-06DA-4076-AEC7-02A5487C4DA3} - System32\Tasks\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner => {AD08DCC2-4E35-4486-9D49-547CBD30942D} C:\WINDOWS\System32\MitigationClient.dll [565248 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F38F5944-B27C-41ED-8DC0-2A828A68B1A0} - System32\Tasks\Microsoft\Windows\Diagnosis\Scheduled => {C1F85EF8-BCC2-4606-BB39-70C523715EB3} C:\WINDOWS\System32\sdiagschd.dll [102400 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D1211565-C8D3-4652-94F0-E7177DB88C70} - System32\Tasks\Microsoft\Windows\Diagnosis\UnexpectedCodepath => C:\WINDOWS\system32\UCConfigTask.exe [57344 2025-12-11] (Microsoft Windows -> )
Task: {DB668C31-1324-4A15-85EA-0405D4E765DD} - System32\Tasks\Microsoft\Windows\DirectX\DirectXDatabaseUpdater => C:\WINDOWS\system32\directxdatabaseupdater.exe [176128 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F49854D8-60F3-475E-8F40-E85C4EC04138} - System32\Tasks\Microsoft\Windows\DirectX\DXGIAdapterCache => C:\WINDOWS\system32\dxgiadaptercache.exe [139264 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {46C68EA4-F9F7-40E2-84D3-FCE5F3AEBE31} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\WINDOWS\system32\cleanmgr.exe [307200 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> /autocleanstoragesense /d %systemdrive%
Task: {36A1CD88-920A-4A62-BEF3-68538A8ACF6B} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> dfdts.dll,DfdGetDefaultPolicyAndSMART
Task: {A01CBA68-8954-4C51-BEFF-37A017DAA227} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver => C:\WINDOWS\system32\DFDWiz.exe [77824 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {065878B2-62BA-48EC-9033-06E00B0E3945} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\WINDOWS\system32\disksnapshot.exe [98304 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {32B4915D-E6EF-432D-BD9C-D3FE6F9B3A69} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense => {AB2A519B-03B0-43CE-940A-A73DF850B49A} C:\WINDOWS\system32\StorageUsage.dll [331776 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {A4059604-7FC9-4F69-9ADD-7D66F2CD2A1F} - System32\Tasks\Microsoft\Windows\DUSM\dusmtask => C:\WINDOWS\System32\dusmtask.exe [77824 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {FEE6FEFC-0124-4367-8B6E-CF4E8671FCD7} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\WINDOWS\System32\edptask.dll [147456 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {75CFEFFD-AD00-4CA7-9271-F710151BCFA2} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\WINDOWS\System32\edptask.dll [147456 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5B059E26-35C9-42E7-A9B2-80B5AFFE86B7} - System32\Tasks\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\WINDOWS\System32\edptask.dll [147456 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {A00416EE-51A9-4A19-845A-5E6B88662E70} - System32\Tasks\Microsoft\Windows\EDP\StorageCardEncryption Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\WINDOWS\System32\edptask.dll [147456 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {B99FC784-B1E6-4A24-8751-39985E56C794} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask => C:\WINDOWS\system32\MDMAgent.exe [176128 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {0EEE7F7C-5414-4CA7-A534-C2F2E0A8738F} - System32\Tasks\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh => {711001CD-CC1D-4470-9B7E-1EF73849C79E} C:\WINDOWS\System32\MitigationConfiguration.dll [131072 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {4D8B7A8B-0E1C-45A9-8A64-27E4DFD546BE} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\WINDOWS\system32\dmclient.exe [172032 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {7285636E-5715-48F0-A8FF-3CFB5893A966} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload => C:\WINDOWS\system32\dmclient.exe [172032 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {9E4D1845-10D9-4202-9B3E-5926B0C6E2DE} - System32\Tasks\Microsoft\Windows\File Classification Infrastructure\Property Definition Sync => {2AE64751-B728-4D6B-97A0-B2DA2E7D2A3B} C:\Windows\System32\srmclient.dll [1179648 2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Task: {385EB27E-5315-4FC5-8EF9-ED1851D7A49C} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) => {89917B7C-A1A6-11DF-8BF6-18A90531A85A} C:\WINDOWS\System32\fhtask.dll [81920 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {2549604A-F072-45A2-A168-C27E8A160F0C} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\BootstrapUsageDataReporting => {D759C938-B375-41CB-A2A2-E6D866A767F4} C:\Windows\System32\fcon.dll [1003520 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {2D7E62F0-EF0A-4CDB-9AAF-FD8D2EC1801E} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\GovernedFeatureUsageProcessing => {866F38A9-0302-4926-A36F-E4BAABAAE116} C:\WINDOWS\System32\fcon.dll [1003520 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {CDD4C2C4-E94E-4B4F-BE5E-2D93809F11CA} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileConfigs => {15F5ECE1-4550-4A92-8E26-984FD1DA54FA} C:\Windows\System32\fcon.dll [1003520 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {2AA52E62-53A5-4071-83B5-8D892D70EBBB} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures => {59EECBFE-C2F5-4419-9B99-13FE05FF2675} C:\Windows\System32\fcon.dll [1003520 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {2F475B3F-E02B-4D43-895F-567C695900FE} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing => {99EFDAD1-0F11-4A6B-A702-4E1C37D1A3EF} C:\Windows\System32\fcon.dll [1003520 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {FA3565C7-5E2C-411F-9F53-682678DD1920} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReceiver => {D4C0420F-76BD-4F66-A91F-918A93ABEBEB} C:\Windows\System32\fcon.dll [1003520 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {8E2E6105-1013-478F-ADB6-E17C1784E8CF} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting => {BBFCD054-8AAC-45DE-A1EB-7B246C9028AF} C:\Windows\System32\fcon.dll [1003520 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {E5DAFE8A-DA05-457C-8C66-DB5A71445323} - System32\Tasks\Microsoft\Windows\Flighting\OneSettings\RefreshCache => {E07647F7-AED2-48D9-9720-939BC24A8A3C} C:\Windows\System32\wosc.dll [524288 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {6CA80ABB-7F3C-4B6B-A47F-371A2760708D} - System32\Tasks\Microsoft\Windows\Hotpatch\Monitoring => C:\WINDOWS\system32\cmd.exe [344064 2026-03-11] (Microsoft Windows -> Microsoft Corporation) -> /d /c %systemroot%\system32\hpatchmonTask.cmd
Task: {DF0B0704-51A1-444C-91A2-EDF935C1010F} - System32\Tasks\Microsoft\Windows\Input\InputSettingsRestoreDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {79C47DD1-1A7C-49F3-9F96-E16624FC46BC} - System32\Tasks\Microsoft\Windows\Input\LocalUserSyncDataAvailable => {8E7C2AFB-72B9-415C-9AC2-5037693309B7} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1496620A-FFC5-40C3-9F9C-32EFC5E61387} - System32\Tasks\Microsoft\Windows\Input\MouseSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {345AD540-7F9F-430D-B31A-B1C54F7C1024} - System32\Tasks\Microsoft\Windows\Input\PenSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F6ED4BB1-307A-4741-A501-2EA44DC82F18} - System32\Tasks\Microsoft\Windows\Input\RemoteMouseSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {04235E20-6363-4136-B1BD-36593DD669C6} - System32\Tasks\Microsoft\Windows\Input\RemotePenSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {284404BF-41DE-47CC-9EAB-694B6EAD93CB} - System32\Tasks\Microsoft\Windows\Input\RemoteTouchpadSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {386A631A-CAE3-48DE-ACFE-3137D4CD1C61} - System32\Tasks\microsoft\windows\input\syncpensettings => {3ECEE215-83F5-4123-A592-74F1FE4C3D59} C:\Windows\System32\SettingsHandlers_Pen.dll [557056 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {585A50E1-9603-484F-B968-BA548FAFE798} - System32\Tasks\Microsoft\Windows\Input\TouchpadSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [311296 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {497E1A38-F975-4158-A775-2A3EB053F644} - System32\Tasks\Microsoft\Windows\InstallService\RestoreDevice => {7F019157-05C8-473F-8664-2BA04A090DC8} C:\Windows\System32\InstallServiceTasks.dll [438272 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {B2301A61-DA96-4438-AF41-9B8864D59F67} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdates => {A558C6A5-B42B-4C98-B610-BF9559143139} C:\Windows\System32\InstallServiceTasks.dll [438272 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {53F72FF9-4DB7-4FAB-BB8A-A635EB34E10F} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdatesAsUser => {DDAFAEA2-8842-4E96-BADE-D44A8D676FDB} C:\Windows\System32\InstallServiceTasks.dll [438272 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {086B6188-FDC7-406C-9AC7-C9B32B6E7716} - System32\Tasks\Microsoft\Windows\InstallService\SmartRetry => {F3A219C3-2698-4CBF-9C07-037EDB8E72E6} C:\Windows\System32\InstallServiceTasks.dll [438272 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D4CAFB46-93D5-4E18-AA3D-20DE8826C425} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates => {0DC331EE-8438-49D5-A721-E10B937CE459} C:\Windows\System32\InstallServiceTasks.dll [438272 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {053354A1-BDC4-419C-89B7-EC01731AF165} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates => {D5A04D91-6FE6-4FE4-A98A-FEB4500C5AF7} C:\Windows\System32\InstallServiceTasks.dll [438272 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {824A786C-8D14-4BD5-AE7C-61CCDB4CEEFE} - System32\Tasks\Microsoft\Windows\International\Synchronize Language Settings => {10D62541-90D0-42FE-848C-0DBC1AC42EDA} C:\Windows\System32\CoreGlobConfig.dll [249376 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {863CD78A-0758-4D73-9995-73195045DAEE} - System32\Tasks\Microsoft\Windows\Kernel\La57Cleanup => C:\WINDOWS\system32\la57setup.exe [40960 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {8B909FCF-7BD6-4374-98B7-F5E4513BB8EB} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation => {6F58F65F-EC0E-4ACA-99FE-FC5A1A25E4BE} C:\Windows\System32\LanguageComponentsInstaller.dll [245760 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {023A6A90-6810-4BBD-8F9E-AFF9981BD6A4} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources => {D0582E3B-3126-4CAA-9155-AC37C912A489} C:\WINDOWS\System32\LanguageOverlayServer.dll [610304 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {3268D6FE-574B-44F4-816D-BBDCA47D058E} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation => {6F58F65F-EC0E-4ACA-99FE-FC5A1A25E4BE} C:\Windows\System32\LanguageComponentsInstaller.dll [245760 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1D65E5D8-2D83-4025-B8B3-0FC2192972B2} - System32\Tasks\Microsoft\Windows\License Manager\TempSignedLicenseExchange => {77646A68-AD14-4D53-897D-7BE4DDE5F929} C:\Windows\System32\TempSignedLicenseExchangeTask.dll [98304 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (Keine Datei)
Task: {D65186C7-C4E4-43DF-A485-050BBF1DBBF0} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\WINDOWS\System32\WindowsActionDialog.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {731E952A-D01C-4D49-A37F-C8F1396F13B7} - System32\Tasks\Microsoft\Windows\Maintenance\WinSAT => {A9A33436-678B-4C9C-A211-7CC38785E79D} C:\WINDOWS\system32\WinSATAPI.dll [417792 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {EA454F25-D763-42A3-B501-5F741CAA5BB8} - System32\Tasks\Microsoft\Windows\Management\Autopilot\DetectHardwareChange => {62B2DD2C-F129-42EE-BF59-55D3FD21C215} C:\Windows\System32\Autopilot.dll [221184 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {B385CC07-5D33-4329-847E-1231807E3A1A} - System32\Tasks\Microsoft\Windows\Management\Autopilot\RemediateHardwareChange => {62B2DD2C-F129-42EE-BF59-55D3FD21C215} C:\Windows\System32\Autopilot.dll [221184 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {0F79111A-3C39-48C3-9A5E-B9BD89E8D385} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Cellular => C:\WINDOWS\system32\ProvTool.exe [114688 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {17C2E7E1-51B3-4F45-8EA8-3D8334DB66CF} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Logon => C:\WINDOWS\system32\ProvTool.exe [114688 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {33633593-08C9-463E-B57F-0DABB42098C5} - System32\Tasks\Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup => C:\WINDOWS\system32\MdmDiagnosticsTool.exe [90112 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {BAA6BFA5-88F3-4108-BD13-401B4C431121} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Retry => C:\WINDOWS\system32\ProvTool.exe [114688 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D1B5BFAC-8670-441D-9D56-45F4AFAD548E} - System32\Tasks\Microsoft\Windows\Management\Provisioning\RunOnReboot => C:\WINDOWS\system32\ProvTool.exe [114688 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D52A78FD-0791-4BF2-8602-D6C4777A145D} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask => {9885AEF2-BD9F-41E0-B15E-B3141395E803} C:\WINDOWS\System32\mapstoasttask.dll [81920 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {3618F5DB-17E6-4B70-BD4A-D3F82EC3B63E} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask => {B9033E87-33CF-4D77-BC9B-895AFBBA72E4} C:\WINDOWS\System32\mapsupdatetask.dll [77824 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {29D2AAF3-5A5F-4764-A994-5D4729CEA3A0} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\AutomaticOfflineMemoryDiagnostic => {44f6c389-604a-4363-b09a-f38da08e6079} C:\WINDOWS\System32\MemoryDiagnostic.dll [212992 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5AC3DDAF-EE16-4833-A062-AB221796F2FD} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents => {8168e74a-b39f-46d8-adcd-7bed477b80a3} C:\WINDOWS\System32\MemoryDiagnostic.dll [212992 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F01B5427-289D-46FC-83CC-CAADAFAFCB3B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic => {8168e74a-b39f-46d8-adcd-7bed477b80a3} C:\WINDOWS\System32\MemoryDiagnostic.dll [212992 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {8974D66A-7871-4688-9C1C-161573A419A4} - System32\Tasks\Microsoft\Windows\MUI\LPRemove => C:\WINDOWS\system32\lpremove.exe [106496 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1C88B08F-C544-4B23-869D-D5050316AC18} - System32\Tasks\Microsoft\Windows\Multimedia\SystemSoundsService => {2DEA658F-54C1-4227-AF9B-260AB5FC3543} C:\WINDOWS\System32\PlaySndSrv.dll [147456 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {B8AE930D-D1A3-4BE8-A42B-51308A375CB8} - System32\Tasks\Microsoft\Windows\Network Connectivity Status Indicator\NcsiIdentifyUserProxies => {706B965A-8308-4CD4-9900-87C2D79C121B} C:\Windows\System32\netprofm.dll [450560 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5B35F89B-B670-40F3-8121-E0D9D51579A6} - System32\Tasks\Microsoft\Windows\NlaSvc\WiFiTask => C:\WINDOWS\System32\WiFiTask.exe [128416 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {7C541CA9-81DC-4FCB-BFEA-4284ECD053E8} - System32\Tasks\Microsoft\Windows\Offline Files\Background Synchronization => {FA3F3DD9-4C1A-456B-A8FA-C76EF3ED83B8} C:\WINDOWS\System32\cscui.dll [831488 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {085FEA65-19CA-4947-BFB0-9E5A52EB4887} - System32\Tasks\Microsoft\Windows\Offline Files\Logon Synchronization => {FA3F3DD9-4C1A-456B-A8FA-C76EF3ED83B8} C:\WINDOWS\System32\cscui.dll [831488 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D98236D9-30E6-4A41-9E16-CE6E2EAC3CC2} - System32\Tasks\Microsoft\Windows\PCRPF\PCR Prediction Framework Firmware Update Task => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\pcrpf.dll,NotifyFirmwareUpdateStaged
Task: {4E851D03-560C-4C0B-BB9F-D550EEC28E6B} - System32\Tasks\Microsoft\Windows\PerformanceTrace\RequestTrace => {9efeb182-2ee3-4af9-affa-521410d110d1} C:\WINDOWS\system32\PerformanceTraceHandler.dll [172032 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D451160C-8602-433B-90BE-937C926519F8} - System32\Tasks\Microsoft\Windows\PerformanceTrace\WhesvcToast => {c34546ad-2e37-41d9-8e23-277837b7a234} C:\WINDOWS\system32\PerformanceTraceHandler.dll [172032 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {7F78D546-80FB-460A-984D-0D0BF66B4870} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\WINDOWS\system32\TpmTasks.dll [753664 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {BCF58885-E3FA-4095-86C0-8710662F258E} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\WINDOWS\system32\TpmTasks.dll [753664 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {32223710-817E-4F06-B592-FC3E9148C7B6} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy => {60400283-B242-4FA8-8C25-CAF695B88209} C:\Windows\System32\pnppolicy.dll [90112 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {C37138D9-47FB-429C-B098-33C5BE461E3E} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required => {48794782-6A1F-47B9-BD52-1D5F95D49C1B} C:\Windows\System32\pnpui.dll [114688 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {BC910DFC-AF38-44AE-80B7-36504BAE7749} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\WINDOWS\System32\drvinst.exe [450560 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {C2678FF0-352D-49C0-8D77-93754DF198C3} - System32\Tasks\Microsoft\Windows\Pluton\Pluton-Ksp-Provisioning => {997e11e1-0eff-40bd-9b25-8da694816600} C:\WINDOWS\system32\PlutonTasks.dll [81920 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F3475DC3-625B-48EA-B471-DDB64F03977D} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem => {927EA2AF-1C54-43D5-825E-0074CE028EEE} C:\WINDOWS\System32\energytask.dll [53248 2025-11-16] (Microsoft Windows -> Microsoft Corporation)
Task: {89CB1F37-7249-46BB-8136-2A842FD64BCE} - System32\Tasks\Microsoft\Windows\Printing\EduPrintProv => C:\WINDOWS\system32\eduprintprov.exe [143360 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5297A9C1-50B4-4FAF-B986-96493046DA3F} - System32\Tasks\Microsoft\Windows\Printing\PrinterCleanupTask => {C56F065E-DE49-4E42-BE7C-305C45609D25} C:\Windows\System32\PrinterCleanupTask.dll [159744 2026-01-15] (Microsoft Windows -> Microsoft Corporation)
Task: {694CFE9E-EF92-4F44-880A-613DBB5A32F1} - System32\Tasks\Microsoft\Windows\Printing\PrintJobCleanupTask => {8ABCE260-32B6-476C-AE13-B34D0C91292D} C:\Windows\System32\PrinterCleanupTask.dll [159744 2026-01-15] (Microsoft Windows -> Microsoft Corporation)
Task: {2504C39D-2BDB-47D6-B184-6288CB373478} - System32\Tasks\Microsoft\Windows\PushToInstall\LoginCheck => C:\WINDOWS\system32\sc.exe [102400 2025-07-13] (Microsoft Windows -> Microsoft Corporation) -> start pushtoinstall login
Task: {811E3675-EB86-48E0-AC79-E6EAA40EC6F9} - System32\Tasks\Microsoft\Windows\PushToInstall\Registration => C:\WINDOWS\system32\sc.exe [102400 2025-07-13] (Microsoft Windows -> Microsoft Corporation) -> start pushtoinstall registration
Task: {C90F18E7-745C-44E7-9D02-463B6BE97450} - System32\Tasks\Microsoft\Windows\Ras\MobilityManager => {C463A0FC-794F-4FDF-9201-01938CEACAFA} C:\WINDOWS\system32\rasmbmgr.dll [90112 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
Task: {35F07B74-3228-49B0-AFAA-1AAA5AD480A7} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE => {89D1D0C2-A3CF-490C-ABE3-B86CDE34B047} C:\WINDOWS\System32\ReAgentTask.dll [40960 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {FD953D65-B217-4C79-946C-40F34EA51665} - System32\Tasks\Microsoft\Windows\ReFsDedupSvc\Initialization => {DCFF735B-64F7-45F3-B39C-6C66BBE2120F} C:\WINDOWS\System32\ReFsDedupSvc.exe [2191360 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {81A02E60-1890-47D6-AA36-4416EDF073FE} - System32\Tasks\Microsoft\Windows\Registry\RegIdleBackup => {CA767AA8-9157-4604-B64B-40747123D5F2} C:\WINDOWS\System32\regidle.dll [40960 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
Task: {76BDF487-DB81-45B2-8D85-7BE3A77647B9} - System32\Tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask => C:\WINDOWS\system32\RAServer.exe [176128 2026-01-15] (Microsoft Windows -> Microsoft Corporation) -> %windir%\/offerraupdate
Task: {27CE9D59-9D48-4D29-99BC-64657AEBA494} - System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask => {8702A841-D5CA-47C3-812D-9CEDC304C200}
Task: {75B4DFDF-C6F2-47AB-9AF4-AFE80B5A3488} - System32\Tasks\Microsoft\Windows\Servicing\OOBEFodSetup => C:\WINDOWS\system32\OOBEFodSetup.exe [40960 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {3103A74F-970C-4D84-A348-24D2450F72A3} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup => {752073A1-23F2-4396-85F0-8FDB879ED0ED} C:\WINDOWS\servicing\TrustedInstaller.exe [263624 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {EE1D26D9-D899-43BA-8FE2-BA00FAD1CA95} - System32\Tasks\Microsoft\Windows\Setup\PITRTask => {093cb270-c282-4c22-b2ea-7d2bf1c30bbf} C:\WINDOWS\system32\oobe\PITRTask.dll [122880 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1626A0BF-63C6-4416-ABD6-47B21A8490EF} - System32\Tasks\Microsoft\Windows\Setup\SetupRecoveryDataTask => {717aa9c3-17e5-483b-81cc-8e27ed927763} C:\WINDOWS\system32\oobe\SetupRecoveryDataTask.dll [106496 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {6E9522D4-5ECB-478B-90ED-91561B8D4524} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup => {7750564D-D61C-4557-8A9D-7DF56BDCFF96} C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll [258048 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {9E61170E-82C0-4506-9499-699611AE7BF9} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask => {990A9F8F-301F-45F7-8D0E-68C5952DBA43} C:\WINDOWS\system32\shell32.dll [7777968 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {1577E872-F23F-41CA-9935-97CC72D6A015} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\WINDOWS\System32\wpcmon.exe [1241128 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {3F29C71B-509E-45C9-B4B0-CC08875EA007} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefreshTask => {C844C79D-AED8-4DCE-AB25-4D359BED84F8} C:\WINDOWS\System32\WpcRefreshTask.dll [1085440 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {CB3FE234-86FD-480D-B99F-8D64B8CD2FCA} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance => {3FBA60A6-7BF5-4868-A2CA-6623B3DFFEA6} C:\WINDOWS\System32\srchadmin.dll [315392 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {BAAD3A4A-D43E-4282-8FF8-DB4C1FE0D633} - System32\Tasks\Microsoft\Windows\Shell\ThemeAssetTask_SyncFODState => {3BC5DD7D-EA3B-428C-B9B6-0723DB6A1057} C:\Windows\System32\Windows.UI.Immersive.dll [1368064 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {623E8262-63F5-4D54-B90B-09D21A347C4B} - System32\Tasks\Microsoft\Windows\Shell\ThemesSyncedImageDownload => {79F8E185-4E45-4B74-8182-02AA430661E4} C:\Windows\System32\Themes.SsfDownload.ScheduledTask.dll [184320 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {EF42572A-FB6E-4513-9AA4-69C9382BB47E} - System32\Tasks\Microsoft\Windows\Shell\UpdateUserPictureTask => {09c5dd34-009d-40fa-bcb9-0165ad0c15d4} C:\Windows\System32\Windows.UI.Immersive.dll [1368064 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {FA55F881-EB13-4BBB-AFFE-6711549212FA} - System32\Tasks\Microsoft\Windows\Shell\UpdateUserPictureTaskContained => {09c5dd34-009d-40fa-bcb9-0165ad0c15d4} C:\Windows\System32\Windows.UI.Immersive.dll [1368064 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {EBBD491B-D054-4669-AB31-07F0B5970A6F} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC} C:\WINDOWS\System32\sppcext.dll [655360 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5FFBF5D5-77BD-42D7-A505-01FCE106375A} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon => {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC} C:\WINDOWS\System32\sppcext.dll [655360 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {9B410F40-12C4-4D00-9590-9F7837C2FE4E} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork => {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC} C:\WINDOWS\System32\sppcext.dll [655360 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5D30627B-A7A3-4C57-9B4D-05976FBC73CF} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\WINDOWS\system32\SpaceAgent.exe [225280 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {DB50AD04-05BC-474F-93EB-C341D19BC4DB} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceManagerTask => C:\WINDOWS\system32\spaceman.exe [112024 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {E6C7550D-E55B-4429-B9DF-F0802C7E96F1} - System32\Tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask => C:\WINDOWS\system32\speech_onecore\common\SpeechModelDownload.exe [217088 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {E514D19D-6BC0-4298-A90D-AA41B59396A1} - System32\Tasks\Microsoft\Windows\StateRepository\MaintenanceTasks => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks
Task: {D8BCE74A-1F26-46E6-9D24-84BF4ABBA4D3} - System32\Tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization => {5C9AB547-345D-4175-9AF6-65133463A100} C:\Windows\System32\TieringEngineService.exe [348160 2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Task: {8937A0CF-1957-42EF-BC56-4A45225A53CB} - System32\Tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization => C:\WINDOWS\system32\defrag.exe [241664 2025-09-15] (Microsoft Windows -> Microsoft Corp.)
Task: {6FCF44C2-56AC-44F1-AD44-9E3C0DC68096} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [144768 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {9F4DFCA7-3E8B-44C6-8383-2842DB2C9696} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [144768 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {6B549F30-9F73-486A-9FFB-D9A4B9B0B516} - System32\Tasks\Microsoft\Windows\Sustainability\PowerGridForecastTask => {251E5B1F-E370-4E12-B5BD-B7AD2A8EE810} C:\WINDOWS\system32\PowerGridForecastTask.dll [331776 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {E0918A1C-A695-4337-81C7-CAEFA5924E4E} - System32\Tasks\Microsoft\Windows\Sustainability\SustainabilityTelemetry => {6EE41D75-D091-4FB7-9AD5-018760DD25D4} C:\WINDOWS\system32\EcoScoreTask.dll [69632 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {A6CC9955-DA1C-40A6-AADF-620FAF810BA6} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate => {17C82257-654E-4C47-8E23-DCA24EAA76A0} C:\WINDOWS\system32\sysmain.dll [1007616 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {7793D1DA-8479-4F54-9C92-B8A43BDF293F} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance => {D44377B8-1F2F-4FAA-9C8E-6C4AD2928E47} C:\WINDOWS\system32\sysmain.dll [1007616 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {0A3D2698-8228-462D-A139-FA1DD68CE37D} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync => {297EE78C-BA95-4E94-81D3-D6E7F089C7B5} C:\WINDOWS\system32\sysmain.dll [1007616 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {A49BC374-394E-43D1-A5A7-2B1EE849351E} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> sysmain.dll,PfSvWsSwapAssessmentTask
Task: {B757E9B6-9B2B-44AF-B8AD-2BBD5CFB1671} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\WINDOWS\system32\srtasks.exe [81920 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
Task: {B9DBE743-6F45-488B-AF39-2CD4016D60A7} - System32\Tasks\Microsoft\Windows\Task Manager\Interactive => {855FEC53-D2E4-4999-9E87-3414E9CF0FF4} C:\WINDOWS\system32\wdc.dll [802816 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {6E2FF6C7-5CB1-44F3-B28F-54ED797AC95B} - System32\Tasks\Microsoft\Windows\TextServicesFramework\MsCtfMonitor => {01575CFE-9A55-4003-A5E1-F38D1EBDCBE1} C:\WINDOWS\system32\MsCtfMonitor.dll [106496 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {BE34C44D-1192-446D-AE35-7C9214A07A0A} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime => {A31AD6C2-FF4C-43D4-8E90-7101023096F9} C:\WINDOWS\system32\TimeSyncTask.dll [45056 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {B4EC4778-2619-41D7-A0EF-A5558FFF1ADC} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => C:\WINDOWS\system32\sc.exe [102400 2025-07-13] (Microsoft Windows -> Microsoft Corporation) -> start w32time task_started
Task: {2A17D950-8899-44EB-89E5-405C0B59D9C2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\WINDOWS\system32\tzsync.exe [252928 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F7EB3DC1-4DCB-4602-B765-0E7C9BE19754} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\WINDOWS\system32\TpmTasks.dll [753664 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {187DC6DC-5E2F-4506-8999-ECB15CBBEC85} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\WINDOWS\system32\TpmTasks.dll [753664 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {18F88C47-24DC-4202-8F1F-D8B05AE9E45E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-PreAttestationHealthCheck => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\WINDOWS\system32\TpmTasks.dll [753664 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {EC2A03E8-2F81-4030-A3A7-53DAC1DB0E2D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Report policies => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {721EACF9-8C71-4CDA-9EE5-5F1845A168F3} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {20CB6D88-35E1-45EC-8FA7-3A13C8F74050} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {0F95DB85-8F35-4B2A-93DE-E4A31A713F54} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D78A29E7-798E-4995-B879-8A0C30EB72D8} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {8D1C6774-738C-420D-B0E9-77F21A66FD23} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Work => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {0AF6A994-1B3A-4B10-B485-9753CE6DF6A4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Start Oobe Expedite Work => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {EDC62534-48CF-4D30-A263-32780ED68B57} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\StartOobeAppsScan_LicenseAccepted => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {DD6E2608-767B-4449-BB55-45CAD83FADA4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\StartOobeAppsScanAfterUpdate => C:\WINDOWS\system32\usoclient.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5486A223-5121-459D-A25A-C4BC00D5EBE3} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator => C:\WINDOWS\system32\UIEOrchestratorStub.exe [86016 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (Keine Datei)
Task: {AE889AF2-B6E2-4941-8C89-FCD4EB658F9B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UUS Failover Task => C:\WINDOWS\System32\MLEngineStub.exe [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {6CA8B686-3177-4FF3-86AB-EA5ECCAE64E3} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => C:\Windows\system32\sc.exe [102400 2025-07-13] (Microsoft Windows -> Microsoft Corporation) -> config upnphost start= auto
Task: {242028DB-0742-40BB-8B49-C09D7F7A497C} - System32\Tasks\Microsoft\Windows\UsageAndQualityInsights\UsageAndQualityInsights-MaintenanceTask => C:\Windows\System32\Microsoft.Data.UsageAndQualityInsights.MaintenanceTask.exe [86016 2026-03-11] (Microsoft Windows -> )
Task: {C4976E90-6B5C-45B9-ACA5-7F5CC2044584} - System32\Tasks\Microsoft\Windows\USB\Usb-Notifications => {E05BE1C8-92A8-4757-B575-ACAECB4E6A40} C:\Windows\System32\UsbTask.dll [90112 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {25D10847-F3F9-4477-8F94-B56D3179716D} - System32\Tasks\Microsoft\Windows\User Profile Service\HiveUploadTask => {BA677074-762C-444B-94C8-8C83F93F6605} C:\WINDOWS\system32\profsvc.dll [593920 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {74CC5ECB-BE7D-4237-A501-D4CE08A4325A} - System32\Tasks\Microsoft\Windows\WaaSMedic\MaintenanceWork => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32} C:\WINDOWS\system32\WaaSMedicPS.dll [57344 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {74CC5ECB-BE7D-4237-A501-D4CE08A4325A} - System32\Tasks\Microsoft\Windows\WaaSMedic\MaintenanceWork => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32} C:\WINDOWS\System32\WaaSMedicSvc.dll [94208 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D2E8BEB4-6AC1-4881-8DAD-33150CE72101} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32} C:\WINDOWS\system32\WaaSMedicPS.dll [57344 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D2E8BEB4-6AC1-4881-8DAD-33150CE72101} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32} C:\WINDOWS\System32\WaaSMedicSvc.dll [94208 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {2C0B586A-AC15-4863-A89E-664DEF94EC3F} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\WINDOWS\System32\WiFiTask.exe [128416 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {4C63A334-2548-434D-8B00-16514798798F} - System32\Tasks\Microsoft\Windows\WDI\ResolutionHost => {900BE39D-6BE8-461A-BC4D-B0FA71F5ECB1} C:\WINDOWS\System32\wdi.dll [118784 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {070383F5-AD33-4524-9C86-9FA2EE517364} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7905FB07-D0C6-4BBF-86A1-3C4AEA795E0B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B95324D1-7799-417E-8288-50045898D9C3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E97D92CB-0743-43E8-B2F3-AB3BAEAE220A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6FD85B93-7A13-4DCA-B793-1D7D18FEAC39} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting => C:\WINDOWS\system32\wermgr.exe [292256 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {70EA4628-714E-4EA6-A8A7-FA417104A9CA} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => C:\Windows\system32\rundll32.exe [98304 2025-12-11] (Microsoft Windows -> Microsoft Corporation) -> bfe.dll,BfeOnServiceStartTypeChange
Task: {66F287E7-86FA-4C10-8D84-212C3F4C3B83} - System32\Tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary => C:\Program Files\Windows Media Player\wmpnscfg.exe [98304 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Task: {BBCFE754-C57A-40EE-AEDA-2C70BB18D323} - System32\Tasks\Microsoft\Windows\WindowsAI\Recall\InitialConfiguration => {709FD5EF-7296-4154-BD3A-E9830FCFA60A} C:\WINDOWS\system32\ShellConfigTask.dll [303104 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {EFCFA44F-12F3-4BB0-8E4E-5438DFA938DF} - System32\Tasks\Microsoft\Windows\WindowsAI\Recall\PolicyConfiguration => {0BE6820D-B667-4CB6-931B-C153A77DA895} C:\WINDOWS\system32\ShellConfigTask.dll [303104 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {70803787-7B02-44D6-8AD7-A51AB3425C73} - System32\Tasks\Microsoft\Windows\WindowsAI\Settings\InitialConfiguration => {2886e5fb-4f01-4a89-9a0e-5d6a9c8048ac} C:\WINDOWS\system32\SettingsConfigTask.dll [225280 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {47280794-6FA6-4302-8DA5-F7AD59555015} - System32\Tasks\Microsoft\Windows\WindowsColorSystem\Calibration Loader => {B210D694-C8DF-490D-9576-9E20CDBC20BD} C:\Windows\System32\mscms.dll [798944 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {95425085-1A14-4B85-9028-E50D0FC160B4} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Refresh Group Policy Cache => {07369A67-07A6-4608-ABEA-379491CB7C46} C:\Windows\System32\UpdatePolicy.dll [139720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {A0FB6F87-FEC5-46F8-843B-B58DD5E06AD6} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => C:\WINDOWS\System32\sc.exe [102400 2025-07-13] (Microsoft Windows -> Microsoft Corporation) -> start wuauserv
Task: {624E1293-9271-4BE0-B2E5-41A4A5154081} - System32\Tasks\Microsoft\Windows\Wininet\CacheTask => {0358B920-0AC7-461F-98F4-58E32CD89148} C:\WINDOWS\system32\wininet.dll [2670736 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {0C9E24B1-FA69-4154-B7F3-041454657229} - System32\Tasks\Microsoft\Windows\WlanSvc\CDSSync => {B0D2B535-12E1-439F-86B3-BADA289510F0} C:\Windows\System32\WiFiCloudStore.dll [380928 2026-02-11] (Microsoft Windows -> Microsoft Corporation)
Task: {67121E94-8B59-4246-A2CE-D5C90ED9C316} - System32\Tasks\Microsoft\Windows\WlanSvc\MoProfileManagement => {085EDA12-CF4A-4944-8222-8ADCADE137CB} C:\Windows\System32\WlanMediaManager.dll [819200 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {C7C43F15-53A7-4BCA-B40A-722E93323D54} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management => {B7BFFB5A-EFA8-4D8C-BBDE-C8D5FAAF54A1} C:\WINDOWS\system32\WofTasks.dll [57344 2025-07-13] (Microsoft Windows -> Microsoft Corporation)
Task: {A33031EE-8F2E-4CF7-8048-51A9E75B3435} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation => {B7BFFB5A-EFA8-4D8C-BBDE-C8D5FAAF54A1} C:\WINDOWS\system32\WofTasks.dll [57344 2025-07-13] (Microsoft Windows -> Microsoft Corporation)
Task: {7AAA90CE-9F21-421F-AA1D-5E86810A100A} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization => {97D47D56-3777-49FB-8E8F-90D7E30E1A1E} C:\Windows\System32\WorkFoldersShell.dll [233472 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {89208439-025A-4385-855C-4A9634FD0543} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work => {63260BCE-A3FB-4A34-AA51-D4D8E877B62B} C:\Windows\System32\WorkFoldersShell.dll [233472 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {ABE99E23-4D6E-4AB2-B67C-0E57C1BC2D10} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\WINDOWS\System32\dsregcmd.exe [520192 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {34302CB6-1B34-4AC0-B652-672CDD164780} - System32\Tasks\Microsoft\Windows\Workplace Join\Device-Sync => {C662D912-E4D6-44A3-89A0-20550514951D} C:\Windows\System32\dsregtask.dll [77824 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {A47C623F-DBF2-42C4-887A-4BFE7AAAEC6D} - System32\Tasks\Microsoft\Windows\Workplace Join\Recovery-Check => C:\WINDOWS\System32\dsregcmd.exe [520192 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {73EA68AF-816A-4184-9D0D-BD9F95777E69} - System32\Tasks\Microsoft\Windows\WwanSvc\NotificationTask => C:\WINDOWS\System32\WiFiTask.exe [128416 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {D6202CD9-DA83-4CCD-8770-2D23C3500179} - System32\Tasks\Microsoft\Windows\WwanSvc\OobeDiscovery => {C93CF9D5-031B-4AAA-AB0B-EF802347B381} C:\Windows\System32\MBMediaManager.dll [581632 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Task: {08096759-0895-4572-A56D-BF687397A9DF} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTask => C:\WINDOWS\System32\XblGameSaveTask.exe [61440 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {5C2A8769-6DF7-410C-851E-7B7C4B86136B} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {CFF7BD05-B530-4EE9-9328-AD14D8E83209} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206944 2026-03-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {CD21DF1B-5590-40F3-9DBD-49859EC33DE4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-04-09] (Mozilla Corporation -> Mozilla Foundation)
Task: {9F4DC9C2-454E-4A22-AE52-3BD6EF10FB47} - System32\Tasks\NvBroadcast_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA Broadcast\NVIDIA Broadcast UI.exe [11015736 2023-01-16] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NVIDIA Broadcast\-minimized
Task: {3AFA38B3-BB34-400D-BB7E-F920F02CFB91} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {5847EE62-AC06-4624-8CFC-33C1C4CE64CE} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation)
Task: {95F821FD-920F-4963-A8C1-C3F9BBB35677} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {D0C3BA46-8FDE-4C5F-8EF8-B78F5AFD2E38} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D30B6397-68B5-4D3B-8F04-5ACB60836EE0} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0AFC71D4-8BB8-4B9E-99EB-9212933EC894} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7D3935EB-76BB-46F8-BC3C-2DAF3BC63696} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E7E417C4-A503-4D9B-9C6E-EA0FFB82CF51} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3800446035-506082590-1098873781-1001 => C:\Users\Micha\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [4428136 2026-04-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {93426057-5056-4DBA-9D61-6F8622BA583C} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3800446035-506082590-1098873781-1001 => C:\Users\Micha\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [4428136 2026-04-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {5A2B8EF1-A50B-488B-B17E-89B8E514F14B} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3800446035-506082590-1098873781-500 => C:\Users\Micha\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [4428136 2026-04-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {71A9A113-36F2-4490-82CA-F69E6D742EBF} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3800446035-506082590-1098873781-1001 => C:\Users\Micha\AppData\Local\Microsoft\OneDrive\26.055.0323.0004_1\OneDriveLauncher.exe [756584 2026-04-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {DAC8C3A1-356C-458E-B099-4689D41952BB} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-3800446035-506082590-1098873781-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [65536 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Task: {53C51EFB-8577-44FD-B84A-1615318D4597} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_5349479f7c9fe8a6\RtkAudUService64.exe [1951648 2023-12-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {E10E86B9-D123-417E-A43E-7BDDB72A9C05} - System32\Tasks\SoftLanding\S-1-5-21-3800446035-506082590-1098873781-1001\SoftLandingCreativeManagementTask => {F576B2F9-7850-4226-ADB0-E5993FED4F02}

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\ASUSProArtUpdateService-Logon.job => C:\Program Files\ASUS\ProArt Creator Hub\ProArtCreatorHubService\AsusProArtUpdateService.exe

==================== Internet (Alle) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Winsock: Catalog5 01 C:\WINDOWS\SysWOW64\napinsp.dll [69272 2024-04-01] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 02 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 03 C:\WINDOWS\SysWOW64\winrnr.dll [46112 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 04 C:\WINDOWS\SysWOW64\nlansp_c.dll [86016 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 05 C:\WINDOWS\SysWOW64\wshbth.dll [54784 2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 11 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 12 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 13 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9 14 C:\WINDOWS\SysWOW64\mswsock.dll [332704 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 01 C:\Windows\system32\napinsp.dll [108792 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 02 C:\Windows\System32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 03 C:\Windows\System32\winrnr.dll [84120 2025-02-23] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 04 C:\Windows\system32\nlansp_c.dll [139264 2025-12-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 05 C:\Windows\system32\wshbth.dll [90112 2025-09-15] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 01 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 02 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 03 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 04 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 05 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 06 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 07 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 08 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 09 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 10 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 11 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 12 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 13 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog9-x64 14 C:\Windows\system32\mswsock.dll [447720 2026-03-11] (Microsoft Windows -> Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{b8ee50e4-3903-4e77-8b61-1aeaf7a624a4}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{b8ee50e4-3903-4e77-8b61-1aeaf7a624a4}: [DhcpDomain] speedport.ip
Tcpip\..\Interfaces\{b8ee50e4-3903-4e77-8b61-1aeaf7a624a4}\4505D2C494E4B4F553831334: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: rg5j2uvg.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\kfv5r5ob.default [2024-07-06]
FF ProfilePath: C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\rg5j2uvg.default-release [2026-04-15]
FF Homepage: Mozilla\Firefox\Profiles\rg5j2uvg.default-release -> hxxps://www.bing.com/?PC=B996
FF Notifications: Mozilla\Firefox\Profiles\rg5j2uvg.default-release -> hxxps://jetsono.com
FF Extension: (Language: Deutsch (German)) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\rg5j2uvg.default-release\Extensions\langpack-de@firefox.mozilla.org.xpi [2026-04-14]
FF Extension: (New Tab) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\rg5j2uvg.default-release\Extensions\newtab@mozilla.org.xpi [2026-04-15]
FF Extension: (Web Compatibility Interventions) - C:\Users\Micha\AppData\Roaming\Mozilla\Firefox\Profiles\rg5j2uvg.default-release\features\{ce623e98-0479-4bab-8c5f-10093646ccbd}\webcompat@mozilla.org.xpi [2026-02-13]
FF HKLM\...\Mozilla Firefox 149.0.2\Extensions: [Components] - C:\Program Files\Mozilla Firefox\components => nicht gefunden
FF HKLM\...\Mozilla Firefox 149.0.2\Extensions: [Plugins] - C:\Program Files\Mozilla Firefox\plugins => nicht gefunden
FF HKU\S-1-5-21-3800446035-506082590-1098873781-1001\...\Mozilla Firefox 149.0.2\Extensions: [Components] - C:\Program Files\Mozilla Firefox\components => nicht gefunden
FF HKU\S-1-5-21-3800446035-506082590-1098873781-1001\...\Mozilla Firefox 149.0.2\Extensions: [Plugins] - C:\Program Files\Mozilla Firefox\plugins => nicht gefunden
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-09-07] (Microsoft Corporation -> Microsoft Corporation)
StartMenuInternet: Firefox-308046B0AF4A39CB - "C:\Program Files\Mozilla Firefox\firefox.exe"
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\channel-prefs.js [2024-06-24]

Edge: 
=======
Edge Profile: C:\Users\Micha\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-11]
Edge Extension: (Google Docs Offline) - C:\Users\Micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-04-11]
Edge Extension: (Edge relevant text changes) - C:\Users\Micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-07-06]
StartMenuInternet: Microsoft Edge - "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe"
         
__________________


Alt 15.04.2026, 19:06   #3
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 11 Rentner fällt auf Scam rein - Standard

Windows 11 Rentner fällt auf Scam rein



Das fällt in diese Kategorie --> https://www.trojaner-board.de/186209...arbeitern.html

Also Neuinstallation von Windows, denn die Betrüger waren per Fernzugriff auf dem System.
__________________
__________________

Alt 15.04.2026, 19:21   #4
bistlie
 
Windows 11 Rentner fällt auf Scam rein - Standard

Windows 11 Rentner fällt auf Scam rein



Alles klar danke

Alt 15.04.2026, 19:44   #5
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 11 Rentner fällt auf Scam rein - Standard

Windows 11 Rentner fällt auf Scam rein



Natürlich kann dein Freund auch statt Windows ein Linux seiner Wahl installieren.
Mit Windows 11 stehen vielen ja mittlerweile auf Kriegsfuß.

__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Windows 11 Rentner fällt auf Scam rein
abend, andere, angeboten, angst, anschauen, bekannter, firma, geld, guten, installiert, interne, internet, komisches, laptop, laufen, logdateien, min, nicht mehr, schadprogramme, schlimm, seitdem, stelle, vorhanden, windows, zugang




Ähnliche Themen: Windows 11 Rentner fällt auf Scam rein


  1. Auf Link in Spam-/Scam Email geklickt
    Log-Analyse und Auswertung - 16.12.2024 (30)
  2. Deepfake-Anruf: Lastpass-Mitarbeiter fällt fast auf Fake-CEO rein
    Nachrichten - 14.04.2024 (0)
  3. Windows 10- Festplatten Formatiert, BIOS flashed.. ist jetzt alles rein?
    Diskussionsforum - 26.10.2023 (5)
  4. US-Antidrogenbehörde fällt auf Kryptowährungs-Scammer rein
    Nachrichten - 28.08.2023 (0)
  5. Your Windows is infected with (3) Pop-up Scam entfernen
    Anleitungen, FAQs & Links - 05.11.2018 (2)
  6. You must update your Windows Cleaner Pop-up Scam entfernen
    Anleitungen, FAQs & Links - 15.10.2018 (2)
  7. Support.Windows.com Says Pop-ups (Microsoft Scam) entfernen
    Anleitungen, FAQs & Links - 01.08.2018 (2)
  8. Windows Games TS (Windows Product Key Scam) entfernen
    Anleitungen, FAQs & Links - 19.08.2016 (2)
  9. Social Engineering: Jeder zweite fällt auf USB-Sticks und Facebook-Nachrichten rein
    Nachrichten - 04.08.2016 (0)
  10. 9939117.info (Windows Support Scam) entfernen
    Anleitungen, FAQs & Links - 06.12.2015 (2)
  11. Windows 10 mit Windows Hello: Anmeldung per Gesichtserkennung fällt nicht auf Masken rein
    Nachrichten - 27.07.2015 (0)
  12. Windows 8.1: Komme nicht mehr in mein Thema rein
    Lob, Kritik und Wünsche - 01.07.2015 (4)
  13. l+f: Politiker, Militärs und Journalisten fallen auf Free-Wifi-Trick rein
    Nachrichten - 15.01.2015 (0)
  14. Tastatur unter Windows 7 fällt aus
    Log-Analyse und Auswertung - 19.06.2014 (5)
  15. Windows Vista Recovery Scam?
    Log-Analyse und Auswertung - 15.06.2011 (39)

Zum Thema Windows 11 Rentner fällt auf Scam rein - Guten Abend, ein mir bekannter älterer Herr wurde angeboten mit KI sein Geld zu vermehren. Leider ist er drauf reingefallen und hat der "Firma" Geld überwiesen. Und als wäre das - Windows 11 Rentner fällt auf Scam rein...
Archiv
Du betrachtest: Windows 11 Rentner fällt auf Scam rein auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.