mangobtw | 15.04.2021 10:18 | FRST.txt: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 14-04-2021
durchgeführt von Daniel Fadeev (Administrator) auf DESKTOP-73UDP7S (MSI MS-7A63) (15-04-2021 09:57:06)
Gestartet von C:\Users\Daniel Fadeev\Desktop
Geladene Profile: Daniel Fadeev
Platform: Windows 10 Pro Version 20H2 19042.928 (X64) Sprache: Deutsch (Deutschland)
Standard-Browser: Chrome
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
() [Datei ist nicht signiert] C:\Program Files (x86)\Franzis\Franzis Backup Professional\Reminder.exe
() [Datei ist nicht signiert] C:\Program Files (x86)\SHARK ZONE K30\OSD.exe
(Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2>
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
(Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
(Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
(Alexey Nicolaychuk -> ) C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe
(Amagicom AB -> Mullvad VPN AB) C:\Program Files\Mullvad VPN\resources\mullvad-daemon.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(A-Volute -> ) C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2Svc32.exe
(A-Volute -> ) C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2Svc64.exe
(A-Volute -> A-Volute) C:\Program Files\Nahimic\Nahimic VR\Foundation\NahimicVRSvc32.exe
(A-Volute -> A-Volute) C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2AppManager.exe
(A-Volute -> Nahimic) C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe
(cFos Software GmbH -> cFos Software GmbH) C:\Program Files\cFosSpeed\spd.exe
(Corsair Components, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.DisplayAdapter.exe
(Corsair Components, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe
(Corsair Components, Inc. -> Corsair Memory, Inc.) C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE.exe
(Discord Inc. -> Discord Inc.) C:\Users\Daniel Fadeev\AppData\Local\Discord\app-1.0.9001\Discord.exe <6>
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <32>
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation -> Intel Corporation) C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe
(Intel(R) Extreme Tuning Utility -> Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
(IQ OPTION EUROPE LTD -> ) C:\Program Files (x86)\IQ Option\IQOptionUpdater.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2103.17603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2101.10.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12101.1001.14.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\InputMethod\CHS\ChsIME.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\MSI\MSI Gaming Lan Manager\MSI_Gaming_Lan_Manager.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO.,LTD.) C:\Program Files (x86)\MSI\Fast Boot\FastBoot.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <7>
(Node.js Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Sharkoon Technologies) [Datei ist nicht signiert] C:\Program Files (x86)\SHARK ZONE K30\Monitor.exe
(SHARKOON) [Datei ist nicht signiert] C:\Program Files (x86)\Skiller SGM1\SkillerSGM1.exe
(Stefan Sundin) [Datei ist nicht signiert] C:\Users\Daniel Fadeev\Downloads\SuperF4\SuperF4.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Wondershare software CO., LIMITED -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9192960 2017-03-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Nahimic2UILauncher] => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe [725176 2017-03-28] (A-Volute -> Nahimic)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17988216 2017-08-18] (Logitech Inc -> Logitech Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [NahimicVRSvc32] => C:\Program Files\Nahimic\Nahimic VR\Foundation\NahimicVRSvc32.exe [990256 2018-02-05] (A-Volute -> A-Volute)
HKLM\...\Run: [NahimicVRSvc64] => C:\Program Files\Nahimic\Nahimic VR\Foundation\x64\NahimicVRSvc64.exe [1142320 2018-02-05] (A-Volute -> A-Volute)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [337720 2020-11-12] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [Fast Boot] => C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [759120 2015-04-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
HKLM-x32\...\Run: [X_Boost] => C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe [4224440 2017-04-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [MSI Gaming Lan Manager] => C:\MSI\MSI Gaming Lan Manager\MSI_Gaming_Lan_Manager.exe [4471736 2017-03-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [SHARK ZONE K30 Configuration] => C:\Program Files (x86)\SHARK ZONE K30\Monitor.exe [479232 2015-04-13] (Sharkoon Technologies) [Datei ist nicht signiert]
HKLM-x32\...\Run: [Command Center] => C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [835680 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM-x32\...\Run: [Skiller SGM1] => C:\Program Files (x86)\Skiller SGM1\SkillerSGM1.exe [3953664 2017-03-07] (SHARKOON) [Datei ist nicht signiert]
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2095672 2020-11-13] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [AgentMonitor] => C:\Program Files (x86)\VTech\DownloadManager\System\AgentMonitor.exe [317824 2016-01-18] (VTech Electronics North America, LLC -> )
HKLM-x32\...\Run: [NSWatchDog] => C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenSurvey\NielsenUninstallModule.exe [217232 2017-10-31] (The Nielsen Company -> The Nielsen Company)
HKLM-x32\...\Run: [MSIRegister] => C:\MSI\MSIRegister\MSIRegister.exe [1263288 2018-02-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [Steganos HotKeys] => C:\Program Files (x86)\Steganos Privacy Suite 19\SteganosHotKeyService.exe [142336 2018-03-27] (Steganos Software GmbH) [Datei ist nicht signiert]
HKLM-x32\...\Run: [SSS19 Chrome Autofill Relay] => C:\Program Files (x86)\Steganos Privacy Suite 19\passwordmanagercom.exe [1418784 2018-05-09] (Steganos Software GmbH -> Steganos Software GmbH)
HKLM-x32\...\Run: [SSS19 Browser Monitor] => C:\Program Files (x86)\Steganos Privacy Suite 19\SteganosBrowserMonitor.exe [1139240 2018-05-09] (Steganos Software GmbH -> Steganos Software GmbH)
HKLM-x32\...\Run: [SSS19 Notifier] => C:\Program Files (x86)\Steganos Privacy Suite 19\Notifier.exe [4188664 2018-05-09] (Steganos Software GmbH -> Steganos Software GmbH)
HKLM-x32\...\Run: [SSS19 File Redirection Starter] => C:\Program Files (x86)\Steganos Privacy Suite 19\fredirstarter.exe [23040 2018-03-27] (Steganos Software GmbH) [Datei ist nicht signiert]
HKLM-x32\...\Run: [CORSAIR iCUE Software] => C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\iCUE.exe [37221424 2018-10-31] (Corsair Components, Inc. -> Corsair Memory, Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7991528 2021-03-30] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [26282160 2019-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744 2016-10-08] (Wondershare software CO., LIMITED -> Wondershare)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [114824 2020-11-13] (Adobe Inc. -> )
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ACHTUNG
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Beschränkung <==== ACHTUNG
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [Windscribe] => "C:\Program Files (x86)\Windscribe\Windscribe.exe" -os_restart
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32440376 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [GoogleChromeAutoLaunch_91D5651F0FDEB360C4CDF88D91024EBD] => "C:\Users\Daniel Fadeev\AppData\Local\chromium\Application\chrome.exe" --no-startup-window /prefetch:5
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91016584 2021-01-15] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [677512 2020-11-13] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5536424 2021-03-06] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [EpicGamesLauncher] => H:\Programs\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32995296 2021-03-20] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Daniel Fadeev\AppData\Local\WebEx\ciscowebexstart.exe [2499784 2021-01-30] (Cisco WebEx LLC -> Cisco Webex LLC)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [AusweisApp2] => C:\Program Files (x86)\AusweisApp2\AusweisApp2.exe [2405504 2020-11-30] (Governikus GmbH & Co. KG -> Governikus GmbH & Co. KG)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [GoogleChromeAutoLaunch_08830A7886568A12AE4945EC5FF28ABB] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [CCProxy] => C:\CCProxy\CCProxy.exe [3533616 2018-09-14] (Youngzsoft Co., Ltd. -> Youngzsoft)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\Run: [Opera Browser Assistant] => C:\Users\Daniel Fadeev\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3363480 2021-04-13] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\RunOnce: [Application Restart #2] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-623904242-1755357256-1062796315-1001\...\MountPoints2: {5fd6d3ff-5bb6-11eb-9ec4-309c232a0145} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-18\...\Run: [CCProxy] => C:\CCProxy\CCProxy.exe [3533616 2018-09-14] (Youngzsoft Co., Ltd. -> Youngzsoft)
HKLM\...\Print\Monitors\HP CD11 Status Monitor: C:\Windows\system32\hpinkstsCD11LM.dll [391992 2019-03-15] (HP Inc -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\88.0.4324.146\Installer\chrmstp.exe [2021-02-05] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Franzis Reminder.lnk [2018-09-23]
ShortcutTarget: Franzis Reminder.lnk -> C:\Program Files (x86)\Franzis\Franzis Backup Professional\Reminder.exe () [Datei ist nicht signiert]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2018-09-18]
ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)
Startup: C:\Users\Daniel Fadeev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\IQTray.lnk [2019-03-09]
ShortcutTarget: IQTray.lnk -> C:\Program Files (x86)\IQ Option\iqtray.exe (IQ OPTION EUROPE LTD -> )
Startup: C:\Users\Daniel Fadeev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2019-06-08]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Daniel Fadeev\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)
Startup: C:\Users\Daniel Fadeev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SuperF4.exe.lnk [2019-02-15]
ShortcutTarget: SuperF4.exe.lnk -> C:\Users\Daniel Fadeev\Downloads\SuperF4\SuperF4.exe (Stefan Sundin) [Datei ist nicht signiert]
Policies: C:\ProgramData\NTUSER.pol: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Policies\Microsoft\Edge: Beschränkung <==== ACHTUNG
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {000BECBA-EFC3-4592-B523-3852C8FBF002} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [739624 2018-04-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {0CE271F7-3B9C-49C8-B853-43AA378DDF34} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1118C3AD-BA13-431E-87B9-58A59FC7FE6A} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-08] (Dropbox, Inc -> Dropbox, Inc.)
Task: {1B196787-DBEE-48F6-8886-06D5288CC804} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1C13903A-CA0A-4938-BE39-861FE6E85268} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {236F5A0D-8B8A-47C1-88C8-14EB42471DCA} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {26FC98FA-0386-48B3-978B-D7DF8238FE9D} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {32495211-1606-42AB-B959-25D772025FB6} - System32\Tasks\Nahimic2svc32Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2svc32.exe [4168376 2017-03-28] (A-Volute -> )
Task: {398A3092-F606-488F-8A65-9B2086A784B9} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646896 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {39B93A2B-CA20-4B02-808A-3BFFA490491E} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {42F7CDA2-1BBC-4083-831D-38459A746E77} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {43448D06-81F7-4EFB-9F1A-AE05D1AD9494} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {4B69CA08-04E6-4F2C-A7C5-C2C9C25DA123} - System32\Tasks\Natürliche Verbessertes Windows => C:\Program Files\nodejs\\node.exe [29273240 2020-02-18] (Node.js Foundation -> Node.js) -> "C:\ProgramData\Package Cache\{6502AA34-00DC-4670-B9AA-E0BA9EEAD6F8}\{D1E68E66-B141-4069-B34A-68FC4C49F78E}"
Task: {53603383-239E-45E0-A6CE-3A4ACC0D44D2} - System32\Tasks\Opera scheduled assistant Autoupdate 1582964666 => C:\Users\Daniel Fadeev\AppData\Local\Programs\Opera\launcher.exe [1886872 2021-04-13] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Daniel Fadeev\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {5618D04A-8FAE-4BD0-8054-65BC192A1CB7} - System32\Tasks\MT66 Software Update => C:\Program Files (x86)\Common Files\MT66 Software Update\UpdateClient.exe [634152 2009-11-18] (Medien-Team 66 Verlags GmbH -> MedienTeam66) [Datei ist nicht signiert]
Task: {6179E009-F8F0-4684-82C9-D55C63CB8532} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {6711A7AB-1F04-4261-90C1-93CF896E6CC0} - System32\Tasks\MSISW_Host => C:\WINDOWS\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {6A0044E5-585D-4155-8D58-CBEBF2D3864C} - System32\Tasks\Nahimic2svc64Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2svc64.exe [516792 2017-03-28] (A-Volute -> )
Task: {744E87A8-21F3-427E-A484-BE481D33979C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {7749DED5-DD39-43D0-87A4-ADB67F2FF03E} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-623904242-1755357256-1062796315-1001 => C:\Users\Daniel Fadeev\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2020-03-16] (Mega Limited -> Mega Limited)
Task: {77E5723D-2D67-4EEC-8F72-7BBAA7EFA694} - System32\Tasks\Bluetooth-Audiogateway-DienstAVCTP-DienstBluetooth-Unterstützungsdienst => C:\Program Files\nodejs\node.exe [29273240 2020-02-18] (Node.js Foundation -> Node.js) -> C:\WINDOWS\Installer\{9E0FDAD7-E38D-416D-ABB9-0DFD5EAD1878}\{1759E802-E2D6-4A31-85A1-62490D110AC4} <==== ACHTUNG
Task: {782FDC6C-5181-480A-8062-1F9A02990F2D} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-08] (Dropbox, Inc -> Dropbox, Inc.)
Task: {79A49B3C-9CB8-4E2C-97D0-9BBA2C0C7F26} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {7A83D034-4414-45CF-9AEA-080AF9050D7E} - System32\Tasks\MSILEDKeeper_Host => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe [680632 2018-07-04] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {877455A0-829C-40CE-8BD8-F2F89C486D02} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8B928F89-7F73-4543-B20F-BCE7F45538F7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8E74C75F-5AB4-453F-B5A0-F47C051C2E7B} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [1328392 2015-11-20] (Intel(R) Software -> Intel Corporation)
Task: {9299A58E-23CE-4A12-BBDB-907D43637B36} - System32\Tasks\TrackerAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [4475136 2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
Task: {9FC2B26E-8134-4C1A-9A64-1CA6AEC021BB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {A424F77F-208C-4DAA-9095-0FF2B530F65C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114008 2021-04-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {A677D0F8-5806-47F1-9DA2-CA7A295D6B2A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1791712 2021-02-23] (Avast Software s.r.o. -> Avast Software)
Task: {A6F7CC7D-FF32-43AB-8F7E-09A0A659397D} - System32\Tasks\Nahimic2UILauncherRun => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe [725176 2017-03-28] (A-Volute -> Nahimic)
Task: {AA356F91-D1A8-456D-8B3C-4D6D25393FCC} - System32\Tasks\NahimicVRSvc32Run => C:\Program Files\Nahimic\Nahimic VR\Foundation\NahimicVRSvc32.exe [990256 2018-02-05] (A-Volute -> A-Volute)
Task: {B668764F-1543-468A-9F15-B70A1624D485} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-11] (Google LLC -> Google LLC)
Task: {B98EC316-1833-4823-B3AE-19E3719FA9C8} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {BA392208-560C-4587-AC98-DC3EFCFC360E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BA981694-78E8-4EF9-AFDB-4D8028245F09} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [696816 2021-03-25] (Mozilla Corporation -> Mozilla Foundation)
Task: {BABA4E77-2301-40D1-B950-BA7959F8E9BA} - System32\Tasks\Opera scheduled Autoupdate 1557947767 => C:\Users\Daniel Fadeev\AppData\Local\Programs\Opera\launcher.exe [1886872 2021-04-13] (Opera Software AS -> Opera Software)
Task: {CC31FEC2-267E-4455-8869-D1FE4AFD86AF} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3353784 2018-07-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {CECE3D81-BF33-4D58-89E2-2B4048892637} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248760 2021-04-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {CFCAA558-52E1-4DF5-A4BD-9DF2D227E0D7} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D4C75ED6-0155-4611-9B5A-C2BDDA7EE1C7} - System32\Tasks\NahimicVRSvc64Run => C:\Program Files\Nahimic\Nahimic VR\Foundation\x64\NahimicVRSvc64.exe [1142320 2018-02-05] (A-Volute -> A-Volute)
Task: {D6900584-3ED0-4C8E-9C54-9DF5B65BB386} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EE1762DE-0EC2-477D-8E3F-504EF8EB196D} - System32\Tasks\Opera scheduled Autoupdate 1618405835 => C:\Users\Daniel Fadeev\AppData\Local\Programs\Opera\launcher.exe [1886872 2021-04-13] (Opera Software AS -> Opera Software)
Task: {F110611A-E481-4650-8A95-B0FEE61134C1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {F378D428-697C-4E61-9C23-2B1AEED73EC3} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [754472 2021-04-05] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.)
Task: {F40185AA-1F97-488D-85BE-E2FAB0D27AB5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MpCmdRun.exe [566368 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F7F06889-13CC-4C67-96E3-24E07F2A355E} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302128 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F9081390-3CAC-4798-9D2A-A1E333599D67} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-11] (Google LLC -> Google LLC)
Task: {FC9A09AC-726E-4919-8C14-D88A1B0776F8} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-73UDP7S-Daniel Fadeev => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {FD2C709C-9E49-4525-8ECE-4AFABD407FD3} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NoUACCheck
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\Intel PTT EK Recertification.job => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe
Task: C:\WINDOWS\Tasks\MSIGH_Host.job => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
Task: C:\WINDOWS\Tasks\MSILEDKeeper_Host.job => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe
Task: C:\WINDOWS\Tasks\MT66 Software Update.job => C:\Program Files (x86)\Common Files\MT66 Software Update\UpdateClient.exe
Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{0244b190-3363-4182-b23c-06f7aab20076}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{6a3b8f0e-f17b-450d-9d2f-ba6613e37c96}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{72b2f2fd-997f-43d9-8d23-95dace2636d4}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{8dfbf2c0-502b-4bad-8b03-643b4f9a0b77}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{966e12ac-2f72-4c93-a307-37438c40a547}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{df49edde-3fb5-4fe0-9c11-0ec518ef610d}: [DhcpNameServer] 192.168.42.129
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <==== ACHTUNG
Edge:
=======
Edge Extension: (Kein Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nicht gefunden]
Edge Extension: (Kein Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nicht gefunden]
Edge Extension: (Kein Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nicht gefunden]
Edge Extension: (Kein Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nicht gefunden]
Edge Profile: C:\Users\Daniel Fadeev\AppData\Local\Microsoft\Edge\User Data\Default [2021-04-15]
Edge Extension: ( ) - C:\Users\Daniel Fadeev\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdcjbjbpncdcmknmhnljiiagjklejkof [2021-04-04]
Edge Extension: (NordVPN — #1 VPN Chrome Extension: Get a VPN) - C:\Users\Daniel Fadeev\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fjoaledfpmneenckfbpdfhkmimnjocfa [2021-04-09]
Edge Extension: (Click&Clean) - C:\Users\Daniel Fadeev\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod [2021-02-19]
Edge Extension: ( ) - C:\Users\Daniel Fadeev\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kbehjmbfjkpicjkjdgbhehfjdihffgbn [2021-04-09]
Edge Extension: ( ) - C:\Users\Daniel Fadeev\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nnjepplmhfngacplnbpcipakkmpddfnd [2021-02-11]
FireFox:
========
FF DefaultProfile: oq5wtrc5.default-1567090634166
FF ProfilePath: C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166 [2021-04-15]
FF user.js: detected! => C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\user.js [2021-04-15]
FF NewTab: Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166 -> hxxps://myfiresearch.com/homepage?hp=1&bitmask=9996&pId=AC191101&iDate=2020-10-05 03:48:41&bName=
FF NetworkProxy: Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166 -> backup.ftp", "p.webshare.io"
FF Notifications: Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166 -> hxxps://mail.google.com
FF Extension: (English United States Dictionary) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\@unitedstatesenglishdictionary.xpi [2020-10-12]
FF Extension: (AdBlocker Ultimate) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\adblockultimate@adblockultimate.net.xpi [2020-12-07]
FF Extension: (SessionBox - Free multi login to any website) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\firefox@sessionbox.io.xpi [2021-01-18] [UpdateUrl:hxxps://sessionbox.io/assets/firefox/updates.json]
FF Extension: (AdBlocker for YouTube™) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\jid1-q4sG8pYhq8KGHs@jetpack.xpi [2020-11-23]
FF Extension: (English (US) Language Pack) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\langpack-en-US@firefox.mozilla.org.xpi [2021-03-25]
FF Extension: (Social Blade) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\self-extension@socialblade.com.xpi [2020-05-15] [UpdateUrl:hxxps://addon.socialblade.com/updates.json]
FF Extension: (Proxy Toggle) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\{0c3ab5c8-57ac-4ad8-9dd1-ee331517884d}.xpi [2020-11-23]
FF Extension: (Total Google Sign Out) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\{997bcded-a036-476e-88a7-b60e54e8fa4a}.xpi [2020-04-20]
FF Extension: (PeerName: Surf Blockchain-Based Domains) - C:\Users\Daniel Fadeev\AppData\Roaming\Mozilla\Firefox\Profiles\oq5wtrc5.default-1567090634166\Extensions\{a0bebfdc-3b21-46c2-bb53-1b9c2099b9b7}.xpi [2020-06-12]
FF HKLM\...\Firefox\Extensions: [{B561AEAD-6151-47D6-BF69-12EA3D599D94}] - C:\WINDOWS\Installer\{74FF02E9-6364-4214-9EB9-5F1A02925BFA}\{B561AEAD-6151-47D6-BF69-12EA3D599D94}.xpi => nicht gefunden
FF HKLM-x32\...\Firefox\Extensions: [{B561AEAD-6151-47D6-BF69-12EA3D599D94}] - C:\WINDOWS\Installer\{74FF02E9-6364-4214-9EB9-5F1A02925BFA}\{B561AEAD-6151-47D6-BF69-12EA3D599D94}.xpi => nicht gefunden
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-09-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-09-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2020-11-13] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [Keine Datei]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [Keine Datei]
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2020-11-13] (Adobe Inc. -> Adobe Systems)
FF Plugin HKU\S-1-5-21-623904242-1755357256-1062796315-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default [2021-04-15]
CHR Extension: (Präsentationen) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-03-30]
CHR Extension: (Docs) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-03-30]
CHR Extension: (Google Drive) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-03-30]
CHR Extension: (Vidar) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhhognmdnhhaioceljkcnfebgikfhdnk [2021-04-14]
CHR Extension: (YouTube) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-03-30]
CHR Extension: (MightyText - SMS from PC & Text from Computer) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkfhfaphfkopdgpbfkebjfcblcafcmpi [2021-03-30]
CHR Extension: (Adobe Acrobat) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-30]
CHR Extension: (Tabellen) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-03-30]
CHR Extension: (Proxy Auto Auth) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggmdpepbjljkkkdaklfihhngmmgmpggp [2021-04-02]
CHR Extension: ( ) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbalhopmniadcicolcbadfadpcbkppai [2021-04-15]
CHR Extension: (Anwendungs-Launcher für Drive (von Google)) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-03-30]
CHR Extension: (SessionBox - Multi login to any website) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\megbklhjamjbcafknkgmokldgolkdfig [2021-04-06]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-30]
CHR Extension: (Proxy SwitchyOmega) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\padekgcemlokbadohgkifijomclgjgif [2021-04-02]
CHR Extension: (Google Mail) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-03-30]
CHR Extension: (Chrome Media Router) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-30]
CHR Profile: C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-04-15]
CHR Profile: C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-04-15]
CHR Extension: (Präsentationen) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-03-31]
CHR Extension: (Docs) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-03-31]
CHR Extension: (Google Drive) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-03-31]
CHR Extension: (YouTube) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-03-31]
CHR Extension: (Adobe Acrobat) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-31]
CHR Extension: (Tabellen) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-03-31]
CHR Extension: (Avira Browserschutz) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2021-03-31]
CHR Extension: (Google Docs Offline) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-04-14]
CHR Extension: ( ) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hbalhopmniadcicolcbadfadpcbkppai [2021-04-15]
CHR Extension: (ModHeader) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\idgpnmonknjnojddfkpgkljpfnnfcklj [2021-04-13]
CHR Extension: (Anwendungs-Launcher für Drive (von Google)) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-03-31]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-31]
CHR Extension: (Google Mail) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-03-31]
CHR Extension: (Chrome Media Router) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-31]
CHR Profile: C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2 [2021-04-15]
CHR Extension: (Slides) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-04-15]
CHR Extension: (Docs) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2021-04-15]
CHR Extension: (Google Drive) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-04-15]
CHR Extension: (YouTube) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-04-15]
CHR Extension: ( ) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\deaajlmhgoafbndkonfoilanolpkomml [2021-04-15]
CHR Extension: (Adobe Acrobat) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-04-15]
CHR Extension: (Sheets) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-04-15]
CHR Extension: (Avira Browser Safety) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2021-04-15]
CHR Extension: (Google Docs Offline) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-04-15]
CHR Extension: (Application Launcher For Drive (by Google)) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-04-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-04-15]
CHR Extension: (Gmail) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-04-15]
CHR Extension: (Chrome Media Router) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-15]
CHR Profile: C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3 [2021-04-15]
CHR Extension: (Slides) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-04-15]
CHR Extension: (Docs) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2021-04-15]
CHR Extension: (Google Drive) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-04-15]
CHR Extension: (YouTube) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-04-15]
CHR Extension: ( ) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cgeegckglhemgniblcmcehlfgncbjmcf [2021-04-15]
CHR Extension: (Adobe Acrobat) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-04-15]
CHR Extension: (Sheets) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-04-15]
CHR Extension: (Avira Browser Safety) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2021-04-15]
CHR Extension: (Google Docs Offline) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-04-15]
CHR Extension: (Application Launcher For Drive (by Google)) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-04-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-04-15]
CHR Extension: (Gmail) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-04-15]
CHR Extension: (Chrome Media Router) - C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-15]
CHR Profile: C:\Users\Daniel Fadeev\AppData\Local\Google\Chrome\User Data\System Profile [2021-04-15]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce]
CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej]
CHR HKU\S-1-5-21-623904242-1755357256-1062796315-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKU\S-1-5-21-623904242-1755357256-1062796315-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce]
CHR HKU\S-1-5-21-623904242-1755357256-1062796315-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
CHR HKLM-x32\...\Chrome\Extension: [iigcbafcnfakaokfjaplokfbgmjldpfg]
CHR HKLM-x32\...\Chrome\Extension: [nahhmpbckpgdidfnmfkfgiflpjijilce]
CHR HKLM-x32\...\Chrome\Extension: [njlppdgedlaobpcbobcllbibebebkgam]
CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej]
Opera:
=======
OPR Profile: C:\Users\Daniel Fadeev\AppData\Roaming\Opera Software\Opera Stable [2021-04-15]
OPR Notifications: Opera Stable -> hxxps://web.skype.com
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\Daniel Fadeev\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-04-14]
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [852024 2020-11-13] (Adobe Inc. -> Adobe Inc.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3780296 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3548360 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 Apache2.4; C:\Server\bin\Apache24\bin\httpd.exe [29696 2020-08-02] (Apache Software Foundation) [Datei ist nicht signiert]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-09-24] (Apple Inc. -> Apple Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-02-24] (BattlEye Innovations e.K. -> )
R2 cFosSpeedS; C:\Program Files\cFosSpeed\spd.exe [598872 2016-11-11] (cFos Software GmbH -> cFos Software GmbH)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8788368 2021-03-29] (Microsoft Corporation -> Microsoft Corporation)
R2 CorsairService; C:\Program Files (x86)\Corsair\CORSAIR iCUE Software\Corsair.Service.exe [46640 2018-10-31] (Corsair Components, Inc. -> Corsair Memory, Inc.)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-08] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-06-08] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44272 2021-03-30] (Dropbox, Inc -> Dropbox, Inc.)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-12-09] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [410864 2021-01-25] (NVIDIA Corporation -> NVIDIA)
S2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [46776 2018-09-06] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
S2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2027192 2018-03-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 IQOptionUpdater; C:\Program Files (x86)\IQ Option\\IQOptionUpdater.exe [2866304 2019-05-30] (IQ OPTION EUROPE LTD -> )
S2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-08-18] (Logitech Inc -> Logitech Inc.)
S3 MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService.exe [2107488 2017-06-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2346080 2017-08-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService.exe [4052064 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S2 MSICTL_CC; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [2242144 2017-08-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2487904 2017-08-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [128976 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S3 MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2134624 2017-06-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [4786272 2017-08-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [86688 2018-07-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MSI_DPCLTSERVICE; C:\Program Files (x86)\MSI\DPC Latency Tuner\DPCLT_Service.exe [2133968 2017-03-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [111568 2017-04-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2323632 2019-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MSI_RAMDisk_Service; C:\Program Files (x86)\MSI\RAMDisk\MSI_RAMDisk_Service.exe [70608 2016-12-02] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 MullvadVPN; C:\Program Files\Mullvad VPN\resources\mullvad-daemon.exe [10234792 2021-02-18] (Amagicom AB -> Mullvad VPN AB)
S2 MysticLight2_Service; C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe [31928 2018-03-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
S2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [269584 2020-08-05] (TEFINCOM S.A. -> TEFINCOM S.A.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2466608 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3344176 2019-11-19] (Electronic Arts, Inc. -> Electronic Arts)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5361256 2021-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
S2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -> DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12849960 2021-03-15] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [744968 2020-05-14] (Oracle Corporation -> Oracle Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\NisSrv.exe [2624104 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-04-11] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 tor; "C:\Tor\tor.exe" --nt-service "-f" "C:\Tor\torrc"
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-04-07] (Bluestack Systems, Inc -> Bluestack System Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Datei ist nicht signiert]
R1 cFosSpeed; C:\WINDOWS\system32\DRIVERS\cfosspeed6.sys [1496672 2016-11-11] (cFos Software GmbH -> cFos Software GmbH)
R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [45984 2020-07-06] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [21920 2020-07-06] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 cpuz147; C:\WINDOWS\temp\cpuz147\cpuz147_x64.sys [53848 2021-04-15] (CPUID -> CPUID)
R3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
S3 ladfGSS; C:\WINDOWS\system32\drivers\ladfGSS.sys [45192 2017-08-18] (Logitech Inc -> Logitech Inc.)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-08-18] (Logitech Inc -> Logitech Inc.)
R3 MpKsl3336548c; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7A24C8B9-106F-437C-8F33-625B63FB6250}\MpKslDrv.sys [97528 2021-04-15] (Microsoft Windows -> Microsoft Corporation)
S3 MpKsl499f552a; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7A24C8B9-106F-437C-8F33-625B63FB6250}\MpKslDrv.sys [97528 2021-04-15] (Microsoft Windows -> Microsoft Corporation)
S3 MpKsld9354f17; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{7A24C8B9-106F-437C-8F33-625B63FB6250}\MpKslDrv.sys [97528 2021-04-15] (Microsoft Windows -> Microsoft Corporation)
R3 NAL; C:\WINDOWS\system32\Drivers\iqvw64e.sys [50640 2016-09-01] (Intel(R) INTELNPG1 -> Intel Corporation)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2020-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 NewAudioTechnologySpatialSoundCard; C:\WINDOWS\System32\drivers\vacnatkd.sys [114008 2016-12-06] (New Audio Technology GmbH -> NEW AUDIO TECHNOLOGY)
R3 nlwt; C:\WINDOWS\system32\DRIVERS\nlwt.sys [39360 2020-06-10] (TEFINCOM S.A. -> WireGuard LLC)
S3 NTIOLib_CC_DDR; C:\Program Files (x86)\MSI\Command Center\DDR\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_DPC; C:\Program Files (x86)\MSI\DPC Latency Tuner\NTIOLib_X64.sys [14288 2017-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [14288 2017-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_MBAPI; C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MysticLight\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
U5 PROCMON24; C:\Windows\System32\Drivers\PROCMON24.sys [92008 2021-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Sysinternals - www.sysinternals.com)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
S3 scaudio; C:\WINDOWS\System32\drivers\scaudio.sys [54792 2020-06-05] (Brandmeister LLC -> )
R1 SLEE_19_DRIVER; C:\WINDOWS\Sleen1964.sys [117848 2018-03-16] (Softwareentwicklung Patric Remus - ArchiCrypt - (Patric W.Remus) -> Softwareentwicklung Remus - ArchiCrypt -)
S3 splitcam_hd_driver; C:\WINDOWS\System32\drivers\splitcam_hd_driver.sys [38000 2020-04-18] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [162960 2018-09-23] (Disc Soft Ltd -> Duplex Secure Ltd)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [48320 2018-08-20] (SteelSeries ApS -> )
R3 sssmbus; C:\WINDOWS\System32\drivers\sssmbus.sys [30928 2018-08-20] (SteelSeries ApS -> )
R1 StarPortLite; C:\WINDOWS\System32\drivers\StarPortLite.sys [120704 2013-02-04] (StarWind Software Inc -> StarWind Software)
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapmullvad0901; C:\WINDOWS\System32\drivers\tapmullvad0901.sys [39616 2020-02-04] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project)
S3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49008 2020-04-06] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2020-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R3 VirtualAudioCable_83ed7f0e-2028-4956-b0b4-39c76fdaef1d; C:\WINDOWS\System32\drivers\vrtaucbl.sys [235440 2021-01-21] (Muzychenko Evgenii Viktorovich, IP -> EuMus Design)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-04-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [421088 2021-04-11] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72928 2021-04-11] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\system32\DRIVERS\wintun.sys [38192 2021-02-26] (WireGuard LLC -> WireGuard LLC)
S3 ipadtst; \??\C:\Program Files (x86)\MSI\Super Charger\ipadtst_64.sys [X]
S3 ipadtst2; \??\C:\Program Files (x86)\MSI\Super Charger\ipadtst2_64.sys [X]
S3 VBAudioVACMME; \SystemRoot\System32\drivers\vbaudio_cable64_win7.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2021-04-15 09:57 - 2021-04-15 09:58 - 000064340 ____C C:\Users\Daniel Fadeev\Desktop\FRST.txt
2021-04-15 09:56 - 2021-04-15 09:57 - 000000000 ___DC C:\FRST
2021-04-15 09:56 - 2021-04-15 09:56 - 002298368 ____C (Farbar) C:\Users\Daniel Fadeev\Desktop\FRST64.exe
2021-04-15 09:36 - 2021-04-15 09:36 - 281871280 ____C C:\Users\Daniel Fadeev\Downloads\EmsisoftEmergencyKit (1).exe
2021-04-15 09:21 - 2021-04-15 09:34 - 000000000 ___DC C:\EEK
2021-04-15 09:21 - 2021-04-15 09:21 - 000000000 ____D C:\ProgramData\Emsisoft
2021-04-15 09:19 - 2021-04-15 09:20 - 281871280 ____C C:\Users\Daniel Fadeev\Downloads\EmsisoftEmergencyKit.exe
2021-04-15 08:15 - 2021-04-15 08:15 - 000004692 ____C C:\Users\Daniel Fadeev\Downloads\settings (2).json
2021-04-15 08:08 - 2021-04-15 08:08 - 076929137 ____C C:\Users\Daniel Fadeev\Downloads\Jupiter_1.1.2.zip
2021-04-14 19:30 - 2021-04-14 19:31 - 000000626 ____C C:\Users\Daniel Fadeev\Desktop\peso profiles.txt
2021-04-14 17:37 - 2021-04-14 17:37 - 000041500 ____C C:\Users\Daniel Fadeev\Downloads\nebula_de_363659001004556288.txt
2021-04-14 15:10 - 2021-04-14 15:10 - 002406576 ____C (Opera Software) C:\Users\Daniel Fadeev\Downloads\OperaSetup.exe
2021-04-14 15:10 - 2021-04-14 15:10 - 000004292 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1618405835
2021-04-14 14:22 - 2021-04-14 14:22 - 000495052 ____C C:\Users\Daniel Fadeev\Downloads\view-account.html
2021-04-14 13:17 - 2021-04-14 13:17 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-04-14 13:16 - 2021-04-14 13:16 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-04-14 13:16 - 2021-04-14 13:16 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-04-14 07:49 - 2021-04-14 07:56 - 000000000 ____D C:\Program Files\SoleAIO
2021-04-14 07:49 - 2021-04-14 07:49 - 000000503 ____C C:\Users\Daniel Fadeev\Desktop\SoleAIO.lnk
2021-04-14 07:49 - 2021-04-14 07:49 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\Sole
2021-04-14 07:44 - 2021-04-14 07:45 - 275882496 ____C () C:\Users\Daniel Fadeev\Downloads\SoleAIO Installer.exe
2021-04-13 19:48 - 2021-04-13 19:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2021-04-13 14:35 - 2021-04-15 08:09 - 000000000 ___DC C:\Users\Daniel Fadeev\Documents\JupiterScripts_1.1.0
2021-04-13 14:35 - 2021-04-13 14:35 - 000000000 ___DC C:\Users\Daniel Fadeev\Documents\JupiterConnect
2021-04-13 14:34 - 2021-04-13 14:34 - 000004415 ____C C:\Users\Daniel Fadeev\Downloads\settings (1).json
2021-04-13 14:32 - 2021-04-13 14:32 - 076923610 ____C C:\Users\Daniel Fadeev\Downloads\Jupiter_1.1.0.zip
2021-04-12 19:31 - 2021-04-12 19:31 - 000000895 _____ C:\Users\Daniel Fadeev\Downloads\chatlog(15).txt
2021-04-12 16:52 - 2021-04-12 16:52 - 000005476 _____ C:\Users\Daniel Fadeev\Downloads\Versandaufkleber-8332564461.pdf
2021-04-11 10:39 - 2021-04-15 08:57 - 000092008 ____H (Sysinternals - www.sysinternals.com) C:\WINDOWS\system32\Drivers\PROCMON24.SYS
2021-04-11 10:39 - 2021-04-11 10:39 - 002052793 _____ C:\Users\Daniel Fadeev\Downloads\ProcessMonitor.zip
2021-04-11 10:28 - 2021-04-11 10:28 - 000022509 _____ C:\Users\Daniel Fadeev\Downloads\DHL-Paketmarke_P4RA8L63SGY6_1_Timo_Bosselman.pdf
2021-04-10 15:15 - 2021-04-10 15:15 - 000044652 _____ C:\Users\Daniel Fadeev\Downloads\ps_mathematik_2021_gk.pdf
2021-04-10 15:13 - 2021-04-10 15:13 - 000056845 _____ C:\Users\Daniel Fadeev\Downloads\ps_physik_lk_2021.pdf
2021-04-10 15:07 - 2021-04-10 15:07 - 000638096 _____ C:\Users\Daniel Fadeev\Downloads\20210326 - Fragen und Antworten Leistungsfeststellung.pdf
2021-04-09 14:23 - 2021-04-09 14:23 - 001487287 _____ C:\Users\Daniel Fadeev\Downloads\relationale-datenbanken.pdf
2021-04-09 12:52 - 2021-04-09 12:52 - 000022593 _____ C:\Users\Daniel Fadeev\Downloads\DHL-Paketmarke_6QUAB8QRKG37_1_Sigrid_Staigies.pdf
2021-04-09 08:10 - 2021-04-09 08:10 - 000001625 ____C C:\Users\Daniel Fadeev\Downloads\bstn working.txt
2021-04-09 07:54 - 2021-04-09 07:54 - 000001207 ____C C:\Users\Daniel Fadeev\Downloads\settings.json
2021-04-08 20:06 - 2021-04-08 20:06 - 001613664 ____C C:\Users\Daniel Fadeev\Downloads\JupiterScripts_1.0.8.zip
2021-04-08 19:48 - 2021-04-08 19:48 - 000424764 ____C C:\Users\Daniel Fadeev\Downloads\JupiterScripts_Release_Extension.zip
2021-04-08 19:48 - 2021-04-08 19:48 - 000000000 ___DC C:\Users\Daniel Fadeev\Documents\JupiterScripts Release Extension
2021-04-08 14:35 - 2021-04-08 14:35 - 000896949 _____ C:\Users\Daniel Fadeev\Downloads\TermineAbitur.pdf
2021-04-08 14:26 - 2021-04-15 09:35 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-04-08 14:26 - 2021-04-08 14:27 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\TeamViewer
2021-04-08 14:26 - 2021-04-08 14:26 - 000001112 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2021-04-08 14:26 - 2021-04-08 14:26 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\TeamViewer
2021-04-08 14:25 - 2021-04-08 14:25 - 029028008 _____ (TeamViewer Germany GmbH) C:\Users\Daniel Fadeev\Downloads\TeamViewer_Setup.exe
2021-04-08 10:20 - 2021-04-08 10:20 - 000024461 _____ C:\Users\Daniel Fadeev\Downloads\DHL-Paketmarke_DF8BUDVBFPST_1_Yakup_Özdemir.pdf
2021-04-07 13:34 - 2021-04-07 13:34 - 000519227 ____C C:\Users\Daniel Fadeev\Downloads\Rechtsverbindliche_-_Retoure.pdf
2021-04-07 13:28 - 2021-04-07 13:28 - 000056577 _____ C:\Users\Daniel Fadeev\Downloads\Rechtsverbindliche - Retoure.pdf
2021-04-07 13:16 - 2021-04-07 13:16 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\hiri
2021-04-07 13:15 - 2021-04-07 13:15 - 099310696 _____ (Whittl Media ) C:\Users\Daniel Fadeev\Downloads\Hiri-setup.exe
2021-04-07 13:02 - 2021-04-07 13:02 - 000001249 _____ C:\Users\Daniel Fadeev\Downloads\chatlog(14).txt
2021-04-07 10:12 - 2021-04-07 10:12 - 000022396 _____ C:\Users\Daniel Fadeev\Downloads\DHL-Paketmarke_CNCEVPMPVFDE_1_Omar_Kamih.pdf
2021-04-07 09:21 - 2021-04-07 10:53 - 000261173 ____C C:\Users\Daniel Fadeev\Desktop\test.html
2021-04-05 15:59 - 2021-04-05 15:59 - 001681658 _____ C:\Users\Daniel Fadeev\Downloads\dap2-09_skript.pdf
2021-04-05 13:00 - 2021-04-05 13:00 - 000347856 _____ C:\Users\Daniel Fadeev\Downloads\FMdI-06--2010-01-10--FormaleSprachen_Vorlesung.pdf
2021-04-04 14:26 - 2021-04-04 14:26 - 001640763 _____ C:\Users\Daniel Fadeev\Downloads\fpphp.zip
2021-04-04 10:26 - 2021-04-04 10:26 - 002179093 _____ C:\Users\Daniel Fadeev\Downloads\IMG_0446.HEIC
2021-04-04 10:25 - 2021-04-04 10:25 - 001776795 _____ C:\Users\Daniel Fadeev\Downloads\IMG_0360.HEIC
2021-04-04 09:56 - 2021-04-04 09:56 - 001307299 _____ C:\Users\Daniel Fadeev\Downloads\IMG_0330.HEIC
2021-04-04 09:53 - 2021-04-04 09:53 - 001288487 _____ C:\Users\Daniel Fadeev\Downloads\IMG_0316.HEIC
2021-04-02 17:59 - 2021-04-15 07:41 - 000000692 ____C C:\Users\Daniel Fadeev\Desktop\fix virus.txt
2021-04-02 14:20 - 2021-04-02 14:20 - 001258731 _____ C:\Users\Daniel Fadeev\Downloads\EPA-Informatik.pdf
2021-04-02 10:09 - 2021-04-02 10:09 - 000402120 _____ (AnalogX, LLC) C:\Users\Daniel Fadeev\Downloads\proxyi(1).exe
2021-04-01 18:39 - 2021-04-01 18:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCProxy
2021-04-01 17:42 - 2021-04-01 18:39 - 000000000 ___DC C:\CCProxy
2021-04-01 17:42 - 2021-04-01 17:42 - 001093328 _____ (Youngzsoft, Inc. ) C:\Users\Daniel Fadeev\Downloads\ccproxysetup.exe
2021-04-01 17:32 - 2021-04-01 17:32 - 000402120 _____ (AnalogX, LLC) C:\Users\Daniel Fadeev\Downloads\proxyi.exe
2021-04-01 11:37 - 2021-04-01 11:37 - 000000000 ___DC C:\Users\Daniel Fadeev\Documents\MangoPreme
2021-03-31 10:30 - 2021-03-31 13:21 - 000000042 ____C C:\Users\Daniel Fadeev\Desktop\px up down.txt
2021-03-30 19:52 - 2021-03-30 19:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2021-03-30 19:52 - 2021-03-30 19:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2021-03-30 19:52 - 2021-03-30 19:52 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2021-03-30 19:52 - 2021-03-30 19:52 - 000044272 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2021-03-30 18:19 - 2021-03-30 18:23 - 000000000 ___DC C:\AdwCleaner
2021-03-30 18:19 - 2021-03-30 18:19 - 008534696 _____ (Malwarebytes) C:\Users\Daniel Fadeev\Downloads\adwcleaner_8.2.exe
2021-03-30 18:11 - 2021-03-30 18:11 - 000000637 _____ C:\Users\Daniel
2021-03-30 18:04 - 2021-03-30 18:25 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\Google
2021-03-28 11:13 - 2021-03-28 11:13 - 000097432 _____ C:\Users\Daniel Fadeev\Downloads\Labeln.pdf
2021-03-26 07:44 - 2021-03-26 07:44 - 001890000 _____ C:\Users\Daniel Fadeev\backuptrans-wa-sync.apk
2021-03-26 07:42 - 2021-03-26 07:42 - 016241096 ____C (Backuptrans Studio) C:\Users\Daniel Fadeev\Downloads\android-whatsapp-to-iphone-transfer_x64 (1).exe
2021-03-26 07:41 - 2021-03-26 07:49 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\BackupTrans
2021-03-26 07:34 - 2021-03-26 07:41 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\Apple Computer
2021-03-26 07:34 - 2021-03-26 07:34 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Backuptrans Android WhatsApp to iPhone Transfer (x64)
2021-03-26 07:34 - 2021-03-26 07:34 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\Backuptrans Android WhatsApp to iPhone Transfer (x64)
2021-03-26 07:34 - 2021-03-26 07:34 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\Apple Computer
2021-03-26 07:34 - 2021-03-26 07:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2021-03-26 07:34 - 2021-03-26 07:34 - 000000000 ____D C:\ProgramData\Apple Computer
2021-03-26 07:34 - 2021-03-26 07:34 - 000000000 ____D C:\Program Files\iTunes
2021-03-26 07:34 - 2021-03-26 07:34 - 000000000 ____D C:\Program Files\iPod
2021-03-26 07:33 - 2021-03-26 07:33 - 016237408 _____ (Backuptrans Studio) C:\Users\Daniel Fadeev\Downloads\android-whatsapp-to-iphone-transfer_x64.exe
2021-03-26 07:33 - 2021-03-26 07:33 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2021-03-26 07:33 - 2021-03-26 07:33 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple
2021-03-26 07:33 - 2021-03-26 07:33 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\Apple
2021-03-26 07:33 - 2021-03-26 07:33 - 000000000 ____D C:\Program Files\Common Files\Apple
2021-03-26 07:33 - 2021-03-26 07:33 - 000000000 ____D C:\Program Files\Bonjour
2021-03-26 07:33 - 2021-03-26 07:33 - 000000000 ____D C:\Program Files (x86)\Bonjour
2021-03-26 07:33 - 2021-03-26 07:33 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2021-03-26 07:31 - 2021-03-26 07:32 - 200529736 _____ (Apple Inc.) C:\Users\Daniel Fadeev\Downloads\iTunes64Setup.exe
2021-03-25 21:24 - 2021-03-25 21:25 - 000122267 ____C C:\Users\Daniel Fadeev\Downloads\PDF Document (neu) (2) - Kopie - Kopie.pdf
2021-03-25 21:24 - 2021-03-25 21:24 - 000111441 _____ C:\Users\Daniel Fadeev\Downloads\Rücksende-Aufkleber-9480284d-83d0-4722-aaeb-edc8fe22cb1e.pdf
2021-03-25 20:58 - 2021-03-25 20:58 - 001684344 ____C C:\Users\Daniel Fadeev\Downloads\ELIGELLA BEST OF CLIPS 2020! #2😂_Trim.mp4
2021-03-25 20:45 - 2021-03-25 20:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-03-24 20:32 - 2021-03-24 20:32 - 000024403 _____ C:\Users\Daniel Fadeev\Downloads\DHL-Paketmarke_ZNU6HQBWCDZX_1_Nele_Nickel.pdf
2021-03-24 17:45 - 2021-03-24 17:47 - 001572388 _____ C:\Users\Daniel Fadeev\Downloads\Stephen W. Hawking - Eine kurze Geschichte der Zeit-Rowohlt, Reinbek (2001).pdf
2021-03-23 21:06 - 2021-03-23 21:06 - 000226568 _____ C:\Users\Daniel Fadeev\Downloads\233.pdf
2021-03-23 21:04 - 2021-03-23 21:04 - 000510719 _____ C:\Users\Daniel Fadeev\Downloads\Mustervorlage_Prepaid_Kuendigung_mit_Rufnummernmitnahme.pdf
2021-03-23 21:04 - 2021-03-23 21:04 - 000487881 _____ C:\Users\Daniel Fadeev\Downloads\Mustervorlage_Prepaid_Kuendigung_mit_Rufnummernmitnahme_01(1).pdf
2021-03-23 19:17 - 2021-03-23 19:17 - 000114713 _____ C:\Users\Daniel Fadeev\Downloads\Vollmacht_Rufnummernmitnahme.pdf
2021-03-23 19:13 - 2021-03-23 19:13 - 000487881 _____ C:\Users\Daniel Fadeev\Downloads\Mustervorlage_Prepaid_Kuendigung_mit_Rufnummernmitnahme_01.pdf
2021-03-23 10:54 - 2021-03-23 10:54 - 000116539 ____C C:\Users\Daniel Fadeev\Downloads\PDF Document (neu) (2) - Kopie.pdf
2021-03-23 10:51 - 2021-03-23 10:51 - 000109635 _____ C:\Users\Daniel Fadeev\Downloads\10103311298896-shipping-label.pdf
2021-03-21 19:47 - 2021-03-21 19:47 - 000051184 _____ C:\Users\Daniel Fadeev\Downloads\factory.pdf
2021-03-21 18:49 - 2021-03-21 18:49 - 008700159 ____C C:\Users\Daniel Fadeev\Downloads\ALOPLATINUM.rar
2021-03-20 12:59 - 2021-03-20 12:59 - 000043403 _____ C:\Users\Daniel Fadeev\Downloads\handout.pdf
2021-03-20 12:55 - 2021-03-20 12:55 - 021371091 _____ C:\Users\Daniel Fadeev\Downloads\Energy.pptx
2021-03-20 11:15 - 2021-03-20 11:15 - 000102781 _____ C:\Users\Daniel Fadeev\Downloads\VATInvoice.pdf
2021-03-20 11:12 - 2021-03-20 11:12 - 000022278 _____ C:\Users\Daniel Fadeev\Downloads\DHL-Paketmarke_CEKEEQXZKVR3_1_GUAN_WANG.pdf
2021-03-19 20:25 - 2021-03-19 20:26 - 000113284 ____C C:\Users\Daniel Fadeev\Downloads\PDF Document (neu) (2).pdf
2021-03-19 20:20 - 2021-03-19 20:21 - 000185973 ____C C:\Users\Daniel Fadeev\Downloads\zala personal.pdf
2021-03-19 20:19 - 2021-03-19 20:19 - 000112675 _____ C:\Users\Daniel Fadeev\Downloads\Rücksende-Aufkleber-527193d2-f3bc-4169-bb7c-41590dea5391.pdf
2021-03-18 20:00 - 2021-03-18 20:00 - 000399892 _____ C:\Users\Daniel Fadeev\Downloads\Schrittfolge zur Berechnung des MWG 11.03.21.pdf
2021-03-18 19:53 - 2021-03-18 19:53 - 000288045 _____ C:\Users\Daniel Fadeev\Downloads\Aufgaben zu Berechnungen des Massenwirkungsgesetztes 11.03.21.pdf
2021-03-18 19:52 - 2021-03-18 19:52 - 000433951 _____ C:\Users\Daniel Fadeev\Downloads\LÖSUNG Lückentest MWG 11.03.21.pdf
2021-03-18 19:52 - 2021-03-18 19:52 - 000315850 _____ C:\Users\Daniel Fadeev\Downloads\Lückentest ... Modellreaktion A + B - C + D ... Anwendung MWG 04.03.21.pdf
2021-03-17 20:33 - 2021-03-17 20:33 - 000338518 _____ C:\Users\Daniel Fadeev\Downloads\WhatsApp Unknown 2021-03-17 at 19.33.29.zip
2021-03-17 20:33 - 2021-03-17 20:33 - 000120414 ____C C:\Users\Daniel Fadeev\Downloads\WhatsApp Image 2021-03-17 at 06.53.31.jpeg
2021-03-17 20:33 - 2021-03-17 20:33 - 000111493 ____C C:\Users\Daniel Fadeev\Downloads\WhatsApp Image 2021-03-17 at 06.53.32 (1).jpeg
2021-03-17 20:33 - 2021-03-17 20:33 - 000106101 ____C C:\Users\Daniel Fadeev\Downloads\WhatsApp Image 2021-03-17 at 06.53.32.jpeg
2021-03-17 16:52 - 2021-03-17 16:52 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-03-17 16:52 - 2021-03-17 16:52 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-03-17 16:52 - 2021-03-17 16:52 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-03-17 16:52 - 2021-03-17 16:52 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-03-17 16:52 - 2021-03-17 16:52 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2021-03-17 16:51 - 2021-03-17 16:51 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-03-17 16:51 - 2021-03-17 16:51 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-03-17 16:51 - 2021-03-17 16:51 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-03-17 16:51 - 2021-03-17 16:51 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-03-16 18:50 - 2021-03-16 18:50 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2021-04-15 09:58 - 2017-09-30 16:09 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Roaming\discord
2021-04-15 09:53 - 2017-09-30 16:09 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Local\Discord
2021-04-15 09:47 - 2019-02-05 21:34 - 000000000 ___DC C:\ProgramData\Mozilla
2021-04-15 09:47 - 2018-01-29 20:58 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\LocalLow\Mozilla
2021-04-15 09:45 - 2017-09-08 16:42 - 000000000 ___DC C:\ProgramData\NVIDIA
2021-04-15 09:43 - 2020-05-13 11:41 - 000000000 ____D C:\ProgramData\Mullvad VPN
2021-04-15 09:37 - 2019-10-03 11:24 - 000000000 __HDC C:\ProgramData\Documents\AdobeGCData
2021-04-15 09:37 - 2017-10-13 19:51 - 000000000 ___DC C:\Program Files\CCleaner
2021-04-15 09:35 - 2021-03-06 21:00 - 003166990 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-04-15 09:35 - 2021-03-06 20:56 - 000000006 ___HC C:\WINDOWS\Tasks\SA.DAT
2021-04-15 09:35 - 2021-03-06 15:19 - 000414580 _____ C:\WINDOWS\system32\prfh0804.dat
2021-04-15 09:35 - 2021-03-06 15:19 - 000131532 _____ C:\WINDOWS\system32\prfc0804.dat
2021-04-15 09:35 - 2021-03-06 15:18 - 000756464 _____ C:\WINDOWS\system32\perfh019.dat
2021-04-15 09:35 - 2021-03-06 15:18 - 000150382 _____ C:\WINDOWS\system32\perfc019.dat
2021-04-15 09:35 - 2019-12-07 16:51 - 000739414 _____ C:\WINDOWS\system32\perfh007.dat
2021-04-15 09:35 - 2019-12-07 16:51 - 000149046 _____ C:\WINDOWS\system32\perfc007.dat
2021-04-15 09:35 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-04-15 09:35 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-04-15 09:34 - 2021-03-06 20:56 - 000003158 _____ C:\WINDOWS\system32\Tasks\MSIAfterburner
2021-04-15 09:34 - 2021-03-06 20:49 - 000008192 ___SH C:\DumpStack.log.tmp
2021-04-15 09:34 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-04-15 09:34 - 2019-08-20 19:10 - 000000296 ___HC C:\WINDOWS\Tasks\MSILEDKeeper_Host.job
2021-04-15 09:34 - 2017-09-10 14:07 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Local\CrashDumps
2021-04-15 09:13 - 2020-10-05 17:58 - 000001152 __RSH C:\ProgramData\ntuser.pol
2021-04-15 09:13 - 2020-09-25 17:24 - 000000000 ___DC C:\Program Files\Mozilla Firefox
2021-04-15 09:13 - 2018-09-08 14:04 - 000000000 ___DC C:\Program Files (x86)\RivaTuner Statistics Server
2021-04-15 09:10 - 2021-03-06 15:39 - 000000000 ____D C:\Users\Daniel Fadeev
2021-04-15 09:10 - 2018-09-08 14:03 - 000000000 ___DC C:\Program Files (x86)\MSI Afterburner
2021-04-15 08:54 - 2021-03-06 20:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-04-15 07:25 - 2017-09-10 11:52 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Roaming\.minecraft
2021-04-15 07:24 - 2020-03-18 11:48 - 000000000 ___DC C:\Users\Daniel Fadeev\Desktop\Hausaufgaben
2021-04-14 19:36 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-04-14 19:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-04-14 18:39 - 2021-03-06 20:49 - 000345432 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-04-14 18:39 - 2019-12-07 16:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-04-14 18:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-04-14 17:39 - 2020-09-06 18:11 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\gnupg
2021-04-14 17:06 - 2020-09-06 18:11 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\kleopatra
2021-04-14 15:10 - 2021-03-06 20:56 - 000004540 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1582964666
2021-04-14 15:10 - 2019-05-15 21:16 - 000001497 ____C C:\Users\Daniel Fadeev\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Opera-Browser.lnk
2021-04-14 13:18 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-04-14 13:16 - 2021-03-06 20:50 - 002877440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2021-04-14 13:11 - 2017-09-08 20:08 - 000000000 ___DC C:\WINDOWS\system32\MRT
2021-04-14 13:08 - 2017-09-08 20:08 - 131963968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-04-14 10:47 - 2020-07-25 10:47 - 000000000 __HDC C:\Users\Daniel Fadeev\Downloads\.opera
2021-04-14 10:47 - 2020-07-25 10:47 - 000000000 ___HD C:\Users\Daniel Fadeev\.opera
2021-04-13 20:01 - 2020-01-16 17:19 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\Atom
2021-04-13 20:01 - 2020-01-16 17:19 - 000000000 ____D C:\Users\Daniel Fadeev\.atom
2021-04-13 20:00 - 2017-09-30 16:09 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Local\SquirrelTemp
2021-04-13 19:48 - 2019-06-08 16:35 - 000000000 ___DC C:\Program Files (x86)\Dropbox
2021-04-11 09:34 - 2018-04-18 19:28 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-04-10 09:54 - 2020-03-23 17:22 - 000000000 _____ C:\WINDOWS\system32\Drivers\lvuvc.hs
2021-04-09 14:30 - 2017-09-14 18:27 - 000000000 ___DC C:\Program Files (x86)\Microsoft Office
2021-04-09 10:11 - 2018-09-02 09:49 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Local\D3DSCache
2021-04-07 10:58 - 2019-09-13 19:02 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\Spotify
2021-04-07 10:37 - 2019-09-13 19:02 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\Spotify
2021-04-07 08:39 - 2021-03-06 20:56 - 000003962 _____ C:\WINDOWS\system32\Tasks\BlueStacksHelper
2021-04-06 11:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-04-05 20:17 - 2020-05-13 11:41 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\Mullvad VPN
2021-04-05 16:01 - 2018-01-04 20:52 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Local\Packages
2021-04-01 18:34 - 2020-01-12 21:09 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\spectre-browser
2021-03-30 18:13 - 2018-08-25 18:51 - 000000000 ___DC C:\Program Files (x86)\Steam
2021-03-30 18:13 - 2017-09-07 21:44 - 000000000 ___DC C:\Program Files (x86)\MSI
2021-03-30 18:13 - 2017-09-07 21:36 - 000000000 ___DC C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2021-03-30 18:13 - 2017-09-07 21:36 - 000000000 ___DC C:\MSI
2021-03-30 18:12 - 2021-03-06 20:56 - 000003672 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2021-03-30 18:12 - 2020-10-18 12:59 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\Wondershare
2021-03-30 18:11 - 2020-06-06 18:05 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Roaming\REAIO
2021-03-30 18:11 - 2020-05-13 12:38 - 000000000 ____D C:\Users\Daniel Fadeev\AppData\Local\Nox
2021-03-30 18:11 - 2020-05-13 12:38 - 000000000 ____D C:\Program Files (x86)\Nox
2021-03-30 18:10 - 2017-09-07 21:39 - 000000000 ___DC C:\Program Files (x86)\VulkanRT
2021-03-30 18:06 - 2017-09-25 21:27 - 000000000 ___DC C:\Program Files\Common Files\Adobe
2021-03-30 18:06 - 2017-09-07 21:15 - 000000000 ___DC C:\Users\Daniel Fadeev\AppData\Roaming\Adobe
2021-03-26 07:33 - 2020-05-23 10:11 - 000000000 ____D C:\ProgramData\Apple
2021-03-25 21:27 - 2018-01-29 20:58 - 000000000 ___DC C:\Program Files (x86)\Mozilla Maintenance Service
2021-03-25 20:45 - 2018-01-29 20:58 - 000001005 ____C C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-03-25 20:13 - 2017-11-19 20:11 - 000000000 ___DC C:\Program Files (x86)\IQ Option
2021-03-20 20:16 - 2019-09-27 16:13 - 000000000 ___DC C:\Users\Daniel Fadeev\Documents\Soundaufnahmen
2021-03-19 17:57 - 2021-03-06 14:16 - 000000000 ___DC C:\WINDOWS\Panther
2021-03-17 20:36 - 2019-12-07 16:54 - 000000000 ___SD C:\WINDOWS\system32\AppV
2021-03-17 20:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-03-17 20:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-03-17 20:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-03-17 20:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-03-17 20:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-03-17 20:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-03-17 16:53 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2021-03-16 19:48 - 2020-10-06 19:35 - 000000000 ____D C:\ProgramData\Epic
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2017-12-29 13:39 - 2017-12-29 13:39 - 000000000 ____C () C:\Users\Daniel Fadeev\AppData\Roaming\dmchwid.txt
2018-09-29 10:57 - 2018-09-29 10:57 - 000000000 ____C () C:\Users\Daniel Fadeev\AppData\Local\oobelibMkey.log
2020-06-26 09:15 - 2020-06-26 09:15 - 000004824 _____ () C:\Users\Daniel Fadeev\AppData\Local\recently-used.xbel
2018-01-24 19:57 - 2021-01-20 10:41 - 000007598 ____C () C:\Users\Daniel Fadeev\AppData\Local\resmon.resmoncfg
2017-09-09 10:25 - 2017-09-09 10:25 - 000000171 ____C () C:\Users\Daniel Fadeev\AppData\Local\uts.ini
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== |