| Gulliver77 | 17.03.2026 13:06 | Win 11 - Sicherheitscenter nicht erreichbar und andere Warnungen Hallo zusammen,
ich hoffe, Ihr könnt mir noch mal helfen.
Mein PC verhält sich ungewöhnlich. bei Nutzung des Edge erhalte ich gelegentlich, die Warnung, dass die Systeme ungewöhnlichen Datenverkehr aus meinem Netzwerk festgestellt haben, bei GEMINI kann ich mich nicht mehr anmelden, weil meinem Browser nicht vertraut wird und ich kann das Windows Sicherheitscenter aus den Einstellungen nicht mehr aufrufen.
Hier die FRST.txt Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 15-03-2026
durchgeführt von danie (Administrator) auf DANIEL-G-ASUS (ASUS System Product Name) (17-03-2026 12:40:24)
Gestartet von C:\Users\danie\Desktop\FRST64.exe
Geladene Profile: danie
Plattform: Microsoft Windows 11 Pro for Workstations Version 25H2 26200.8037 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Edge
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe
(Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <3>
(C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe ->) (Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\ASUS\AsusDriverHub\ADU.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\AsusDriverHub\ASUS DriverHub.exe
(C:\Program Files\Google\Drive File Stream\122.0.1.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\122.0.1.0\crashpad_handler.exe
(C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
(C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
(C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\MKCHelper.exe
(C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AI\ai.exe
(C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AI\aimgr.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe
(cmd.exe ->) (Agilebits -> AgileBits, Inc.) C:\Program Files\WindowsApps\Agilebits.1Password_8.12.6.39_x64__amwd9z03whsfe\1Password-BrowserSupport.exe
(explorer.exe ->) (GN Audio A/S -> GN Hearing A/S) C:\Program Files (x86)\Jabra\Direct6\jabra-direct.exe <4>
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\122.0.1.0\GoogleDriveFS.exe <2>
(explorer.exe ->) (Learnpulse SAS -> Learnpulse) C:\Users\danie\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.032.0217.0003\OneDrive.Sync.Service.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe <2>
(explorer.exe ->) (PERPLEXITY AI, INC. -> Perplexity) C:\Users\danie\AppData\Local\Programs\Perplexity\Perplexity.exe <7>
(Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\ToastMessages Notifier\Haufe.Components.Notifier.exe
(Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\Update Manager\LxUpdateManager.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <49>
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(services.exe ->) (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) C:\Program Files\2BrightSparks\SyncBackPro\SchedulesMonitor.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\1.2.40\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.54\AsusFanControlService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.07.05\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (AVM Computersysteme Vertriebs GmbH -> AVM Berlin) C:\Program Files\FRITZ!Fernzugang\avmike.exe
(services.exe ->) (AVM Computersysteme Vertriebs GmbH -> AVM Berlin) C:\Program Files\FRITZ!Fernzugang\certsrv.exe
(services.exe ->) (AVM Computersysteme Vertriebs GmbH -> AVM Berlin) C:\Program Files\FRITZ!Fernzugang\nwtsrv.exe
(services.exe ->) (Brother Industries, Ltd.) [Datei ist nicht signiert] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (Geek Software GmbH -> geek software GmbH) C:\Program Files\PDF24\pdf24.exe <2>
(services.exe ->) (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\API Service\Lexware.Faktura.Api.HotChocolateHost.exe
(services.exe ->) (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\internal API Service\Lexware.Faktura.Api.InternalApi.exe
(services.exe ->) (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe
(services.exe ->) (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG) C:\Program Files (x86)\Lexware\WebApps Service\Lexware.Faktura.WebApps.WebAppsHost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.032.0217.0003\FileSyncHelper.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe
(services.exe ->) (NAVIMATICS LLC -> Navimatics LLC) C:\Program Files (x86)\WinFsp\SxS\sxs.20240621T172454Z\bin\launcher-x64.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Open Text Corporation -> MailStore Software GmbH) C:\Program Files (x86)\MailStore\MailStore Server\MailStoreServer_x64.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_b8f1bff0e3af96f2\RtkAudUService64.exe <2>
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(services.exe ->) (WireGuard LLC -> WireGuard LLC) C:\Program Files\WireGuard\wireguard.exe <2>
(sihost.exe ->) (Agilebits -> 1Password) C:\Program Files\WindowsApps\Agilebits.1Password_8.12.6.39_x64__amwd9z03whsfe\1Password.exe <4>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\AsusDriverHub\ADU.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.229.1.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (WhatsApp.Root) [Datei ist nicht signiert] D:\WindowsApps\5319275A.WhatsAppDesktop_2.2607.106.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_b8f1bff0e3af96f2\RtkAudUService64.exe [1594248 2022-08-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1792392 2025-02-18] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [PDF24] => C:\Program Files\PDF24\pdf24.exe [678624 2025-12-08] (Geek Software GmbH -> geek software GmbH)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [145344 2019-07-26] (Brother Industries, Ltd. -> Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088 2013-01-18] (Brother Industries, Ltd.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Reader_Sl] => C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\reader_sl.exe [4312128 2024-11-24] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
HKLM-x32\...\Run: [LexwareInfoService] => C:\Program Files (x86)\Lexware\Update Manager\LxUpdateManager.exe [307392 2025-10-07] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
HKLM-x32\...\Run: [LexwareToastMessagesNotifier] => C:\Program Files (x86)\Lexware\ToastMessages Notifier\Haufe.Components.Notifier.exe [46272 2025-12-15] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
HKLM-x32\...\Run: [Haufe.Loge.AutostartLauncher.exe] => C:\Program Files (x86)\Common Files\Lexware\Dll\Haufe.Loge.AutostartLauncher.exe [23744 2026-01-30] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
HKLM\SYSTEM\...\Terminal Server: [fDenyTSConnections] = 0 <==== ACHTUNG
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\122.0.1.0\GoogleDriveFS.exe [92414616 2026-03-11] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\122.0.1.0\GoogleDriveFS.exe [92414616 2026-03-11] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4746600 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [Screenpresso] => C:\Users\danie\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe [20313664 2026-01-03] (Learnpulse SAS -> Learnpulse)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [Zoom] => C:\Users\danie\AppData\Roaming\Zoom\bin\Zoom.exe [507784 2026-03-16] (Zoom Communications, Inc. -> Zoom Communications, Inc.)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\danie\AppData\Local\Microsoft\Teams\Update.exe [2589552 2023-09-30] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\122.0.1.0\GoogleDriveFS.exe [92414616 2026-03-11] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\26.032.0217.0003\OneDrive.Sync.Service.exe [953232 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [com.todesktop.25020447d4kq915] => C:\Users\danie\AppData\Local\Programs\Perplexity\Perplexity.exe [211074912 2025-09-15] (PERPLEXITY AI, INC. -> Perplexity)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [CanvaAutoLaunchAvailabilityCheckAgent] => C:\Users\danie\AppData\Local\Programs\Canva\Canva.exe [211217792 2025-11-17] (Canva -> Canva Pty Ltd)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [Jabra Direct] => C:\Program Files (x86)\Jabra\Direct6\jabra-direct.exe [161139000 2026-02-06] (GN Audio A/S -> GN Hearing A/S)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\Run: [MicrosoftEdgeAutoLaunch_E0359248083FDB44B7852C7D3585D0D2] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5001296 2026-03-13] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\...\MountPoints2: {4b7d3868-7437-11eb-9df9-f02f74300e86} - "F:\WD Drive Unlock.exe" autoplay=true
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\122.0.1.0\GoogleDriveFS.exe [92414616 2026-03-11] (Google LLC -> Google LLC.)
HKLM\...\Windows x64\Print Processors\hpcpp120: C:\Windows\System32\spool\prtprocs\x64\hpcpp120.DLL [342016 2012-01-27] (Hewlett-Packard Corporation) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\HP Standard TCP/IP Port: C:\Windows\system32\HpTcpMon.dll [331264 2009-09-16] (Hewlett Packard) [Datei ist nicht signiert]
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Startup: C:\Users\danie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk [2026-03-10]
ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\danie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SyncBackPro.exe - Verknüpfung.lnk [2021-02-21]
ShortcutTarget: SyncBackPro.exe - Verknüpfung.lnk -> C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2021-02-20]
ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH)
BootExecute: autocheck autochk /m /P \Device\VeraCryptVolumeWautocheck autochk *
HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {A9057CDE-23B4-4597-B9C7-DE67C4BF16F3} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\Daniel Cloud Backup => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Daniel Cloud Backup"
Task: {CF786753-359E-42B3-B673-0FF2CAA8A485} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\Gewerbe Cloud Backup => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Gewerbe Cloud Backup"
Task: {8738DE28-7DC1-4245-89C0-1C6FF0319E80} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\Lexware Ordner auf NAS => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Lexware Ordner auf NAS"
Task: {5175B474-173C-48C2-AEDB-9049F23AC91C} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Ausgangsrechnungen auf lokal => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Ausgangsrechnungen auf lokal"
Task: {51B00875-2096-4127-8427-AB8B6A4704B3} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Daniel auf OneDrive => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Daniel auf OneDrive"
Task: {D913F9B0-8661-459A-B823-EB672C955457} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro DMS Gewerbe auf One Drive encrypted => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "DMS Gewerbe auf One Drive encrypted"
Task: {7F528239-15E1-4D0B-A9A5-E81C795A2E40} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro DMS privat auf One Drive encrypted => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "DMS privat auf One Drive encrypted"
Task: {57866004-BCF6-4900-9479-998497975EED} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro DMS Server Backup => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "DMS Server Backup"
Task: {B0494485-691C-46FC-8BEA-47CCA1F1881C} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro facebook Bilder auf One Drive => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "facebook Bilder auf One Drive"
Task: {02C4AC23-2691-4EBE-8193-48E79613E157} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Fotos auf One Drive => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Fotos auf One Drive"
Task: {0321FCF5-1C14-4313-B5FD-945FBC5BAA8E} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Logo auf One Drive => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Logo auf One Drive"
Task: {704188F4-C0D3-45EF-B4CA-EA16B7FA549A} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Shop Datenbank auf NAS => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Datenbanken Site und Shop auf NAS"
Task: {40BFB1EF-9AFB-4151-AD7B-DFB1810EE543} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Shop Web auf NAS => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Shop Web auf NAS"
Task: {24685410-0BF0-4725-BE06-86BD9D3B8160} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Sony Kamera auf One Drive => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Sony Kamera auf One Drive"
Task: {71F46DFC-F0EF-47EA-8514-5E9C2B2B950C} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Spiegelung Gewerbe auf Business OneDrive => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Spiegelung Gewerbe auf Business OneDrive"
Task: {AF34ED4B-CDDA-47B5-9E5F-0AE3456A7323} - System32\Tasks\2BrightSparks\SyncBackProx64\DANIEL-G-ASUS-danie\SyncBackPro Website Backup auf NAS => C:\Program Files\2BrightSparks\SyncBackPro\SyncBackPro.exe [184687536 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd) -> C:\Program Files\2BrightSparks\SyncBackPro\-m "Website Backup auf NAS"
Task: {973F0BA7-2057-4827-8B63-B145F51F4A77} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Keine Datei)
Task: {18D2D9E4-8F32-4462-811F-A9078C05D375} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [401304 2025-11-24] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {730FB6CD-D430-4B7C-A462-D9F1FB7D7C65} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\TaskSchedulerTool_ArmourySocketServer.exe [120728 2025-11-24] (ASUSTeK COMPUTER INC. -> TODO: <公司名稱>)
Task: {800B2533-0C6C-4B0B-9731-84D6B7301DA9} - System32\Tasks\ASUS\AsusDriverHub => C:\Program Files\ASUS\AsusDriverHub\ADU.exe [9944984 2025-06-16] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {FA3C23A9-2B0D-4BD6-B315-458D3C753C96} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d70752ec7682d0 => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-02-20] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {ABDB82B2-0BC1-4653-9217-E8FB8CD8712D} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-02-20] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {CDEC6F54-9393-461A-A05A-B7BB5F849B60} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (Keine Datei)
Task: {3DCE9352-D1C0-4659-B31C-2DBFD31F88E1} - System32\Tasks\EaseUS_FileShare_Web => C:\Program Files (x86)\EaseUS\EaseUS Todo PCTrans\bin\TaskSchedulerWeb.exe [39360 2025-03-12] (CHENGDU YIWO Tech Development Co., Ltd. -> )
Task: {3E184CF4-C573-4386-80AE-90228B1FFD74} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem147.0.7703.0{171766A3-D130-498F-8222-F0E3C0E230C7} => C:\Program Files (x86)\Google\GoogleUpdater\147.0.7703.0\updater.exe [8495256 2026-02-25] (Google LLC -> Google LLC)
Task: {5C2D41AD-A0F6-41A2-B963-102779D7BBF7} - System32\Tasks\Lexware Datensynchronisation_DANIEL-G-ASUS_danie => C:\Program Files (x86)\Lexware\professional\2024\Lexware.Faktura.Datensynchronisation.exe (Keine Datei)
Task: {75279E9D-5C64-435F-A157-7996DE0A1073} - System32\Tasks\LexwareAppSysOpt => C:\Program Files (x86)\Lexware\professional\2026\Haufe.Components.LxAppSysOpt.exe [40128 2025-12-15] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
Task: {1A7F3AB5-81C7-48D8-B791-E4B458BD242A} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16300328 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {A39C8C5E-CB24-4D9A-9C4C-2BDEA08B2445} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28604744 2026-03-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {10B91ED5-8623-446D-BC2A-2228AB50D372} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [73648 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {367A2A26-4968-4E14-BB6C-FD184102D73F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28604744 2026-03-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {5CF3E94B-A6B9-4F6B-AE62-B767CAAB8242} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427808 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {0214AFF2-3C88-4210-A2DF-F22D087A3D7C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427808 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {D986F15D-3BF4-410F-8C55-BFFDEB8AC929} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1349992 2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {E5E979E5-5976-4B8A-989C-4331B266157C} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4448800 2026-03-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3BA3FFB-0AB7-46A1-BD81-35D3BD08F438} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16300328 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (Keine Datei)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Keine Datei)
Task: {E897860E-291F-428F-8A41-80AE4C34A381} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (Keine Datei)
Task: {175597A5-4572-4DFF-91C9-88F786C6F84B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (Keine Datei)
Task: {4B1DF2AD-229B-4B99-ACE6-43212A83D4A6} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (Keine Datei)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Keine Datei)
Task: {8F3B34A3-3D2F-4142-BEC9-8C492F5A2663} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {115B5B44-7633-4CCD-92C8-4867C543555F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CE5A31F8-7425-4ED5-9F04-6D2F60FA0846} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {822BAD6A-9356-4093-99CF-D000C156A390} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AEB51FA5-7265-4F0D-9280-D5BD21A62E06} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2463600 2021-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {554B6514-022C-45CE-96A1-5D2A1EFFB5E0} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1938792 2021-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA2B41EC-E4BD-47EC-9403-34814DE87355} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2335600 2021-09-08] (Microsoft Corporation -> Microsoft)
Task: {3D8A420B-DB47-4B62-9797-7D97E156CDED} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\CEIP.exe [32632 2021-09-08] (Microsoft Corporation -> Microsoft)
Task: {FFD174A5-637E-4F2E-93E5-0F7CB30D0DBD} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2463600 2021-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {D0179C23-08A7-4F6A-BBD2-D1C800A03CF8} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1938792 2021-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {224CC6A8-156C-4F37-9B47-4F94BEE12DBD} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [707200 2026-03-11] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (Der Dateneintrag hat 6 weitere Zeichen).
Task: {CD769156-A117-4483-98C4-C0B21BC751E5} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-2782327805-1913230689-3329431176-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [707200 2026-03-11] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (Der Dateneintrag hat 6 weitere Zeichen).
Task: {313BF36C-74EB-494E-9891-1E50BAD3C843} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-03-11] (Mozilla Corporation -> Mozilla Foundation)
Task: {3CDD1788-2B58-4297-85EC-427C8A86875E} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1277480 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {17D44A42-52F8-4B83-B938-2597E8BF4877} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3347496 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {50AC65C2-D4CB-471D-BD09-8A6CF281C52A} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646696 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {F0872436-BCC0-4268-A9AD-E9DAD87B05E8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {381EBDB8-D2DA-409B-A097-51B48A567226} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EF70EC72-95B6-43C6-B716-6089CBE16106} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {50A93B24-1DD4-4637-8479-71A54B945E70} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {532F2B14-6F80-4B6C-9B4E-0AFF4E8AEA0A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FB27FAFF-688E-44BB-921C-07BBC225EC2C} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F6C601AE-049D-4440-91F3-920385BB2F91} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428648 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {F33E1033-CCF4-4805-BE15-8AAE344061F9} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2782327805-1913230689-3329431176-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428648 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {C16476C9-3558-4419-941A-562C31160123} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2782327805-1913230689-3329431176-1001 => C:\Program Files\Microsoft OneDrive\26.032.0217.0003\OneDriveLauncher.exe [757608 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {88A2A473-55AB-4CC1-AEEF-77F52EFB65D3} - System32\Tasks\ZoomUpdateTaskUser-S-1-5-21-2782327805-1913230689-3329431176-1001 => C:\Users\danie\AppData\Roaming\Zoom\bin\Zoom.exe [507784 2026-03-16] (Zoom Communications, Inc. -> Zoom Communications, Inc.)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\..\Interfaces\{309d5d73-737b-4ccf-a8bb-28bbe2c6d3f1}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{309d5d73-737b-4ccf-a8bb-28bbe2c6d3f1}: [DhcpDomain] fritz.box
Tcpip\..\Interfaces\{f608156c-5946-4206-a989-ce12309293ae}\64259445A51224F687026353931302341626C656023444: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{f608156c-5946-4206-a989-ce12309293ae}\64259445A51224F687026353931302341626C656023444: [DhcpDomain] fritz.box
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: 7lqen0pg.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\danie\AppData\Roaming\Mozilla\Firefox\Profiles\ks8urf0i.default [2024-07-09]
FF ProfilePath: C:\Users\danie\AppData\Roaming\Mozilla\Firefox\Profiles\7lqen0pg.default-release [2026-03-16]
FF Extension: (New Tab) - C:\Users\danie\AppData\Roaming\Mozilla\Firefox\Profiles\7lqen0pg.default-release\Extensions\newtab@mozilla.org.xpi [2026-03-02]
FF Extension: (NordVPN) - C:\Users\danie\AppData\Roaming\Mozilla\Firefox\Profiles\7lqen0pg.default-release\Extensions\nordvpnproxy@nordvpn.com.xpi [2025-12-17]
FF Extension: (1Password – Passwort-Manager) - C:\Users\danie\AppData\Roaming\Mozilla\Firefox\Profiles\7lqen0pg.default-release\Extensions\{d634138d-c276-4fc8-924b-40a0ea21d284}.xpi [2026-03-06]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.23 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-12-23] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [Keine Datei]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [Keine Datei]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Editor\plugins\npFoxitPDFEditorPlugin.dll [Keine Datei]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2026-02-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-09] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default [2026-03-17]
Edge Notifications: Default -> hxxps://www.facebook.com; hxxps://www.panerai.com
Edge HomePage: Default -> hxxp://www.google.de/
Edge StartupUrls: Default -> "hxxp://google.de/","hxxps://www.google.de/","hxxp://www.google.de/","hxxps://duckduckgo.com/"
Edge DefaultSearchURL: Default -> hxxps://www.google.com/search?q={searchTerms}
Edge DefaultSearchKeyword: Default -> @google
Edge Extension: (ColorZilla) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2026-02-27]
Edge Extension: (DuckDuckGo) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caoacbimdbbljakfhgikoodekdnlcgpk [2026-02-27]
Edge Extension: (lock) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dppgmdbiimibapkepcbdbmkaabgiofem [2026-03-16]
Edge Extension: (MyJDownloader Browser Erweiterung) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2026-02-27]
Edge Extension: (NordVPN - the Fastest VPN proxy for privacy) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fphgeikpdcdcheaochkhldmnfblfogla [2026-03-16]
Edge Extension: (Google Docs Offline) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-27]
Edge Extension: (True Key™ by McAfee) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gnnbmcifkkjgjdbkilfglpdpmidkgefn [2026-02-27]
Edge Extension: (ScriptBlock) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hcdjknjpbnhdoabbngpmfekaecnpajba [2026-02-27]
Edge Extension: (MyJDownloader Browser Erweiterung) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ieapabanbplofifeaapjocpaogdhncdd [2026-02-27]
Edge Extension: (Edge relevant text changes) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-02-27]
Edge Extension: (Microsoft Power Automate) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kagpabjoboikccfdghpdlaaopmgpgfdc [2026-02-27]
Edge Extension: (Tag Assistant) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2026-03-08]
Edge Extension: (Chrome-Erweiterung für Google Notizen) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2026-03-16]
Edge Extension: (Total Script Blocker) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oakdjiehbhihbklollmmmkhfilbklgkf [2026-02-27]
Edge Extension: (uBlock Origin) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2026-03-11]
Edge Extension: (OneNote Web Clipper) - C:\Users\danie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oogbnpmeihfgnccdnmmlgicknopghhma [2026-02-27]
Edge HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [kagpabjoboikccfdghpdlaaopmgpgfdc]
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default [2025-04-21]
CHR Extension: (lock) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\aeblfdkhhhdcdjpifhhbdiojplfjncoa [2025-04-19]
CHR Extension: (ColorZilla) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2024-05-29]
CHR Extension: (DuckDuckGo) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2025-04-11]
CHR Extension: (uBlock Origin) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2025-03-22]
CHR Extension: (change-language) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\cofdbpoegempjloogbagkncekinflcnj [2025-04-19]
CHR Extension: (True Key™ by McAfee) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpaibbcbodhimfnjnakiidgbpiehfgci [2024-08-24]
CHR Extension: (MyJDownloader Browser Erweiterung) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2021-06-28]
CHR Extension: (NordVPN - VPN proxy for privacy and security) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjoaledfpmneenckfbpdfhkmimnjocfa [2025-04-05]
CHR Extension: (Google Docs Offline) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-20]
CHR Extension: (ScriptBlock) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdjknjpbnhdoabbngpmfekaecnpajba [2021-02-20]
CHR Extension: (Audio Verbinden) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihiafjkopgiakbmihgoieodihjcblfbk [2021-02-20]
CHR Extension: (Tag Assistant) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2025-04-19]
CHR Extension: (Microsoft Power Automate) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljglajjnnkapghbckkcmodicjhacbfhk [2025-03-22]
CHR Extension: (Anwendungs-Launcher für Drive (von Google)) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-08-23]
CHR Extension: (Chrome-Erweiterung für Google Notizen) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2025-04-19]
CHR Extension: (Ghostery Tracker- & Werbeblocker | Datenschutz AdBlocker) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2025-04-19]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-20]
CHR Extension: (Video Cutter) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nodkcjollmmjidmcnhloaoahmciabnai [2021-02-20]
CHR Extension: (Audio Cutter) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Default\Extensions\plimnkafgoiilijmlbnfoafihjjijbfp [2021-02-20]
CHR Profile: C:\Users\danie\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-03-26]
CHR Profile: C:\Users\danie\AppData\Local\Google\Chrome\User Data\Profile 1 [2025-04-12]
CHR Extension: (lock) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aeblfdkhhhdcdjpifhhbdiojplfjncoa [2025-04-04]
CHR Extension: (Google Docs Offline) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-27]
CHR Extension: (Microsoft Power Automate) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ljglajjnnkapghbckkcmodicjhacbfhk [2025-03-27]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\danie\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-07-12]
CHR Profile: C:\Users\danie\AppData\Local\Google\Chrome\User Data\System Profile [2025-04-21]
CHR HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ljglajjnnkapghbckkcmodicjhacbfhk]
CHR HKU\S-1-5-21-2782327805-1913230689-3329431176-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S4 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3910472 2024-02-07] (AnyDesk Software GmbH -> AnyDesk Software GmbH)
R2 ArmouryCrateService; C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe [454560 2026-03-03] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.07.05\atkexComSvc.exe [1122712 2026-01-30] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-02-20] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\1.2.40\AsusCertService.exe [497560 2025-09-13] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.54\AsusFanControlService.exe [1879960 2026-01-30] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [168520 2021-02-20] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [838760 2026-03-17] (ASUSTeK Computer Inc. -> )
R2 avmike; C:\Program Files\FRITZ!Fernzugang\avmike.exe [337824 2012-11-28] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [Datei ist nicht signiert]
R2 certsrv; C:\Program Files\FRITZ!Fernzugang\certsrv.exe [143776 2012-11-28] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13270328 2026-03-09] (Microsoft Corporation -> Microsoft Corporation)
S4 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [5751024 2022-03-30] (devolo AG -> devolo AG)
R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.032.0217.0003\FileSyncHelper.exe [3600744 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2514016 2025-07-28] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
S4 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230352 2023-09-08] (HP Inc. -> HP Inc.)
S4 iked; C:\Program Files\ShrewSoft\VPN Client\iked.exe [1127736 2013-07-01] (Shrew Soft Inc -> )
S4 ipsecd; C:\Program Files\ShrewSoft\VPN Client\ipsecd.exe [810808 2013-07-01] (Shrew Soft Inc -> )
R2 Lexware API Service; C:\Program Files (x86)\Lexware\API Service\Lexware.Faktura.Api.HotChocolateHost.exe [191413296 2026-01-27] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
R2 Lexware internal API Service; C:\Program Files (x86)\Lexware\internal API Service\Lexware.Faktura.Api.InternalApi.exe [211136 2026-01-27] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
R2 Lexware WebApps Service; C:\Program Files (x86)\Lexware\WebApps Service\Lexware.Faktura.WebApps.WebAppsHost.exe [93195400 2026-01-28] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
R2 Lexware_Update_Service; C:\Program Files (x86)\Lexware\Update Service\Hmg.InstallationService.Service.exe [85184 2025-10-13] (Haufe-Lexware GmbH & Co. KG -> Haufe-Lexware GmbH & Co. KG)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [5083032 2025-12-18] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 MailStoreServer; C:\Program Files (x86)\MailStore\MailStore Server\MailStoreServer_x64.exe [490488 2025-12-16] (Open Text Corporation -> MailStore Software GmbH)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe [2067464 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [320088 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2022-12-21] (nordvpn s.a. -> nordvpn S.A.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-15] (NVIDIA Corporation -> NVIDIA Corporation)
R2 nwtsrv; C:\Program Files\FRITZ!Fernzugang\nwtsrv.exe [191328 2013-06-10] (AVM Computersysteme Vertriebs GmbH -> AVM Berlin)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.032.0217.0003\OneDriveUpdaterService.exe [3995496 2026-03-14] (Microsoft Corporation -> Microsoft Corporation)
R2 PDF24; C:\Program Files\PDF24\pdf24.exe [678624 2025-12-08] (Geek Software GmbH -> geek software GmbH)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2769512 2026-01-14] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [811360 2026-02-27] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 SharedRealitySvc; C:\WINDOWS\System32\SharedRealitySvc.dll [307200 2024-04-24] (Microsoft Corporation) [Datei ist nicht signiert]
S2 SonosLibraryService; C:\Program Files (x86)\SonosV2\SonosLibraryService.exe [27648 2023-09-12] () [Datei ist nicht signiert]
R2 SyncBackProSchedulesMonitor; C:\Program Files\2BrightSparks\SyncBackPro\SchedulesMonitor.exe [7444784 2026-01-12] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte Ltd)
S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [42560 2024-12-21] (Microsoft Corporation -> Microsoft)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe [4435096 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe [290744 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinFsp.Launcher; C:\Program Files (x86)\WinFsp\SxS\sxs.20240621T172454Z\bin\launcher-x64.exe [34592 2023-03-16] (NAVIMATICS LLC -> Navimatics LLC)
R2 WireGuardManager; C:\Program Files\WireGuard\wireguard.exe [8185648 2021-12-22] (WireGuard LLC -> WireGuard LLC)
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 ACSEHIDRemap; C:\WINDOWS\System32\drivers\ACSEHIDRemap.sys [135160 2025-09-29] (WDKTestCert Ken,133462420546156706 -> )
R3 ACSEVirtualBus; C:\WINDOWS\System32\drivers\ACSEVirtualBus.sys [47088 2025-09-29] (WDKTestCert Ken,133462420546156706 -> )
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [27920 2024-03-26] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R1 Asusgio2; C:\Windows\system32\drivers\AsIO2.sys [33832 2019-04-09] (ASUSTeK Computer Inc. -> )
R1 Asusgio3; C:\Windows\system32\drivers\AsIO3.sys [60040 2025-09-13] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R1 avm_nwim; C:\WINDOWS\system32\DRIVERS\avmnwim.sys [396088 2017-03-17] (WDKTestCert shuebner,130916460956458304 -> AVM)
S3 BrSerIb; C:\WINDOWS\system32\DRIVERS\BrSerIb.sys [95344 2014-06-06] (Brother Industries, Ltd. -> Brother Industries Ltd.)
S3 BrUsbSIb; C:\WINDOWS\system32\DRIVERS\BrUsbSIb.sys [21872 2014-06-06] (Brother Industries, Ltd. -> Brother Industries Ltd.)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-04-24] (Microsoft Corporation) [Datei ist nicht signiert]
R1 CTIAIO; C:\WINDOWS\system32\drivers\CtiAIo64.sys [34920 2025-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [385528 2021-05-31] (Microsoft Windows Hardware Compatibility Publisher -> Dokan Project)
R1 GLCKIO2; C:\Windows\system32\drivers\GLCKIO2.sys [29368 2019-04-24] (ASUSTeK Computer Inc. -> )
R2 googledrivefs31931; C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2025-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [55416 2024-12-01] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R2 NDivert; C:\Program Files\NordVPN\7.32.5.0\Drivers\NDivert.sys [131472 2024-10-31] (nordvpn s.a. -> Nordvpn S.A.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2024-05-29] (nordvpn s.a. -> TEFINCOM S.A.)
R2 NPF_devolo; C:\WINDOWS\sysWOW64\drivers\npf_devolo.sys [36496 2022-03-30] (devolo AG -> Riverbed Technology, Inc.)
R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 ovpn-dco; C:\WINDOWS\System32\drivers\ovpn-dco.sys [91584 2024-06-05] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc)
S3 rtwlane_13; C:\WINDOWS\System32\drivers\rtwlane_13.sys [3717120 2024-03-28] (Microsoft Windows -> Realtek Semiconductor Corporation)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [41120 2024-08-29] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 UsbNcm; C:\WINDOWS\System32\DriverStore\FileRepository\usbncm.inf_amd64_989230fcb4a5468f\UsbNcm.sys [208896 2026-02-27] (Microsoft Windows -> )
R1 veracrypt; C:\WINDOWS\System32\drivers\veracrypt.sys [817672 2025-03-02] (Microsoft Windows Hardware Compatibility Publisher -> IDRIX)
R1 vflt; C:\WINDOWS\system32\DRIVERS\vfilter.sys [24064 2013-06-30] (Microsoft Windows Hardware Compatibility Publisher -> Shrew Soft Inc)
S3 vnet; C:\WINDOWS\System32\drivers\virtualnet.sys [17408 2013-06-30] (Microsoft Windows Hardware Compatibility Publisher -> Shrew Soft Inc)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [25704 2022-10-03] (WDKTestCert user,132375440089837053 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S3 WinFsp+20240621T172454Z; C:\Program Files (x86)\WinFsp\SxS\sxs.20240621T172454Z\bin\winfsp-x64.sys [168512 2023-03-16] (Microsoft Windows Hardware Compatibility Publisher -> Navimatics LLC)
R3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2023-09-23] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
R3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2024-09-06] (Microsoft Windows -> Microsoft Corporation)
R3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
S1 EneTechIo; \??\C:\Windows\system32\drivers\ene.sys [X]
S0 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2026-03-17 12:40 - 2026-03-17 12:42 - 000063656 _____ C:\Users\danie\Desktop\FRST.txt
2026-03-17 12:40 - 2026-03-17 12:42 - 000000000 ____D C:\FRST
2026-03-17 12:38 - 2026-03-17 12:38 - 000746746 _____ C:\WINDOWS\system32\perfh007.dat
2026-03-17 12:38 - 2026-03-17 12:38 - 000159414 _____ C:\WINDOWS\system32\perfc007.dat
2026-03-17 12:37 - 2026-03-17 12:37 - 002445312 _____ (Farbar) C:\Users\danie\Desktop\FRST64.exe
2026-03-16 12:12 - 2026-03-16 12:12 - 000000000 ____D C:\Users\danie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2026-03-14 10:02 - 2026-03-15 12:56 - 000000000 ____D C:\Users\danie\Local Sites
2026-03-14 09:57 - 2026-03-14 09:57 - 000002313 _____ C:\Users\danie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Local.lnk
2026-03-14 09:57 - 2026-03-14 09:57 - 000002305 _____ C:\Users\danie\Desktop\Local.lnk
2026-03-14 09:57 - 2026-03-14 09:57 - 000000000 ____D C:\Users\danie\AppData\Local\local-updater
2026-03-14 05:14 - 2026-03-14 05:14 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-03-13 18:16 - 2026-03-17 09:51 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-03-12 19:07 - 2026-03-12 19:07 - 000002268 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung Steuerjahr 2025.lnk
2026-03-12 19:07 - 2026-03-12 19:07 - 000002211 _____ C:\Users\Public\Desktop\SteuerSparErklärung Steuerjahr 2025.lnk
2026-03-12 19:07 - 2026-03-12 19:07 - 000002183 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steuerwissen 2025-2026.lnk
2026-03-12 19:07 - 2026-03-12 19:07 - 000002171 _____ C:\Users\Public\Desktop\Steuerwissen 2025-2026.lnk
2026-03-12 19:07 - 2026-03-12 19:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteuerSparErklärung Steuerjahr 2025
2026-03-11 16:17 - 2026-03-17 07:51 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-03-09 19:48 - 2026-03-09 19:48 - 000000000 ____D C:\Users\danie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python
2026-03-09 19:48 - 2026-03-09 19:48 - 000000000 ____D C:\Users\danie\AppData\Local\Python
2026-03-09 19:41 - 2026-03-09 20:51 - 000000000 ____D C:\Users\danie\AppData\Roaming\Code
2026-03-09 19:41 - 2026-03-09 19:42 - 000000000 ____D C:\Users\danie\.vscode
2026-03-09 19:41 - 2026-03-09 19:41 - 000000000 ____D C:\Users\danie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
2026-03-09 08:11 - 2026-03-09 08:11 - 000000000 ____D C:\WINDOWS\system32\Tasks\SoftLanding
2026-02-27 09:00 - 2026-02-27 09:00 - 000036382 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-02-27 09:00 - 2026-02-27 09:00 - 000036382 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-02-27 08:59 - 2026-02-27 08:59 - 000083946 _____ C:\WINDOWS\SysWOW64\ctac.json
2026-02-27 08:59 - 2026-02-27 08:59 - 000083946 _____ C:\WINDOWS\system32\ctac.json
2026-02-19 13:03 - 2026-02-19 13:03 - 000077957 _____ C:\Users\danie\Desktop\S2924700.pdf
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2026-03-17 12:42 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-03-17 12:42 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-03-17 12:40 - 2021-02-20 11:30 - 000000000 ____D C:\Users\danie\AppData\Roaming\Microsoft\Word
2026-03-17 12:38 - 2025-04-24 17:49 - 001733784 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-03-17 12:38 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2026-03-17 12:34 - 2024-07-07 20:18 - 000000000 ____D C:\Users\danie\AppData\Roaming\Jabra Direct
2026-03-17 12:33 - 2025-10-05 10:26 - 000000000 ____D C:\Users\danie\AppData\Roaming\Perplexity
2026-03-17 12:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-03-17 12:33 - 2023-10-05 19:51 - 000000000 ____D C:\Users\danie\AppData\Roaming\1Password
2026-03-17 12:32 - 2025-04-24 19:07 - 000000000 ____D C:\Users\danie\AppData\Roaming\asus_framework
2026-03-17 12:32 - 2021-02-21 14:48 - 000000000 ____D C:\Users\danie\AppData\Local\CrashDumps
2026-03-17 12:32 - 2021-02-20 07:13 - 000000000 ____D C:\ProgramData\NVIDIA
2026-03-17 12:31 - 2025-04-24 18:05 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-03-17 12:31 - 2025-04-24 17:49 - 000013432 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-03-17 12:31 - 2021-10-16 13:22 - 000000000 ____D C:\ProgramData\firebird
2026-03-17 12:31 - 2021-02-20 07:13 - 000838760 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2026-03-17 12:30 - 2021-02-20 07:13 - 000877320 _____ C:\WINDOWS\system32\wpbbin.exe
2026-03-17 12:29 - 2024-04-01 08:21 - 002883584 _____ C:\WINDOWS\system32\config\BBI
2026-03-17 12:16 - 2025-04-24 17:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-03-17 12:00 - 2021-02-20 07:31 - 000000000 ___SD C:\Users\danie\AppData\Roaming\Microsoft\Credentials
2026-03-17 11:00 - 2025-04-24 18:05 - 000004090 _____ C:\WINDOWS\system32\Tasks\LexwareAppSysOpt
2026-03-17 10:25 - 2021-02-20 07:33 - 000000000 ____D C:\Users\danie\AppData\Local\Packages
2026-03-17 08:29 - 2021-02-20 12:26 - 000000000 ____D C:\Users\danie\AppData\Roaming\Zoom
2026-03-17 07:52 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-03-17 07:51 - 2025-04-24 17:44 - 000590368 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-03-17 07:51 - 2021-09-08 14:59 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-03-17 07:51 - 2021-04-06 18:36 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-03-16 19:55 - 2021-02-20 09:59 - 000000000 ____D C:\Users\danie\AppData\Roaming\FileZilla
2026-03-16 19:15 - 2021-02-20 10:50 - 000000000 ____D C:\ProgramData\Lexware
2026-03-16 18:45 - 2021-02-20 12:24 - 000000000 ____D C:\Users\danie\AppData\Roaming\vlc
2026-03-16 17:37 - 2021-02-28 17:40 - 000000128 _____ C:\Users\danie\AppData\Local\PUTTY.RND
2026-03-16 15:55 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-03-16 12:12 - 2025-04-24 18:05 - 000004254 _____ C:\WINDOWS\system32\Tasks\ZoomUpdateTaskUser-S-1-5-21-2782327805-1913230689-3329431176-1001
2026-03-16 12:12 - 2024-06-26 22:35 - 000001951 _____ C:\Users\danie\Desktop\Zoom Workplace.lnk
2026-03-15 12:30 - 2019-12-07 15:52 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2026-03-14 21:08 - 2021-02-20 07:14 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-03-14 17:48 - 2021-02-20 11:31 - 000000000 ____D C:\Users\danie\AppData\Roaming\Microsoft\Excel
2026-03-14 15:32 - 2022-10-19 14:00 - 000000000 ____D C:\Users\danie\AppData\Local\JDownloader 2.0
2026-03-14 11:35 - 2025-04-24 18:05 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2782327805-1913230689-3329431176-1001
2026-03-14 11:35 - 2025-04-24 18:05 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2782327805-1913230689-3329431176-1001
2026-03-14 11:35 - 2025-04-24 18:05 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-03-14 11:35 - 2021-06-20 10:00 - 000001983 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-03-14 10:02 - 2025-04-24 17:45 - 000000000 ____D C:\Users\danie
2026-03-14 10:00 - 2024-12-12 13:36 - 000000000 ____D C:\Users\danie\AppData\Local\D3DSCache
2026-03-14 05:12 - 2021-02-20 11:02 - 000000000 ____D C:\Program Files\Microsoft Office
2026-03-13 21:50 - 2021-02-20 09:36 - 000015911 _____ C:\WINDOWS\BRRBCOM.INI
2026-03-12 20:04 - 2022-09-25 11:17 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-03-11 18:15 - 2022-09-23 12:13 - 000002133 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2026-03-11 18:15 - 2022-09-23 12:13 - 000002008 _____ C:\Users\danie\Desktop\Google Drive.lnk
2026-03-11 17:31 - 2021-04-06 18:36 - 000001025 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-03-11 11:06 - 2021-04-06 20:26 - 000000000 ____D C:\Users\danie\AppData\Local\1Password
2026-03-11 08:17 - 2024-04-01 17:36 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-03-11 08:17 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-03-11 08:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-03-11 08:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-03-11 08:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-03-10 22:23 - 2024-04-01 08:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2026-03-10 22:23 - 2024-04-01 08:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2026-03-10 22:16 - 2025-04-24 17:46 - 003270144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-03-10 22:12 - 2021-02-20 07:37 - 000000000 ____D C:\ProgramData\Package Cache
2026-03-10 22:11 - 2025-06-21 08:49 - 000000000 ____D C:\Program Files (x86)\dotnet
2026-03-09 19:47 - 2021-02-20 07:33 - 000000000 ____D C:\ProgramData\Packages
2026-03-09 19:41 - 2025-04-24 17:45 - 000000000 ____D C:\Users\danie\AppData\Roaming\Microsoft\Spelling
2026-03-08 04:59 - 2025-04-24 18:05 - 000003754 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-03-08 04:59 - 2025-04-24 18:05 - 000003628 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-03-05 08:51 - 2022-10-18 11:40 - 000000000 ____D C:\Users\danie\AppData\Roaming\Bitwarden
2026-03-03 09:51 - 2021-02-20 09:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2026-03-03 09:51 - 2021-02-20 09:59 - 000000000 ____D C:\Program Files\FileZilla FTP Client
2026-03-03 09:29 - 2021-02-20 07:39 - 000000000 ____D C:\Program Files\ASUS
2026-02-27 09:23 - 2024-04-01 17:37 - 000000000 ____D C:\WINDOWS\InboxApps
2026-02-27 09:23 - 2024-04-01 17:37 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-02-27 09:23 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\appcompat
2026-02-27 09:23 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2023-09-21 10:19 - 2023-09-21 16:20 - 000000099 _____ () C:\ProgramData\101280_mgr.dat
2022-10-05 08:50 - 2023-11-14 19:30 - 000000128 _____ () C:\Users\danie\AppData\Roaming\PUTTY.RND
2021-02-28 17:40 - 2026-03-16 17:37 - 000000128 _____ () C:\Users\danie\AppData\Local\PUTTY.RND
2022-01-31 11:33 - 2022-01-31 11:33 - 000001662 _____ () C:\Users\danie\AppData\Local\recently-used.xbel
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ========================
Für die Additions ist nicht genug Platz, die poste ich, wenn der Thread gesehen wurde.
Vielen Dank vorab! |