| Franxx82 | 09.12.2025 08:27 | Windows 11: nach Runterladen einer Datei (pishing) Trojaner, der sich nicht löschen lässt Hallo Liebes TB-Team,
ich habe am Freitag eine phishing E-Mail (vermeintliche Telekom Rechnung) erhalten.
da ich nebenbei telefoniert habe und einfach nur die Rechnung ausdrucken wollte habe ich dummerweise die ZIP datei heruntergeladen und geöffnet...
normal passiert mir das nicht... aber .. naja
nachdem ich schon vermutet habe dass ich sch... gebaut habe hab ich die heruntergeladene datei bei "virus-total online überprüfen lassen.
Ergebnis, ein Trojaner, (genau weis ich nicht mehr) der laut virus total nur von Kapersky erkannt wurde.
also, nachdem ich bisher nur den Windows defender aktiv hatte, den Kapersky premium gekauft und aufgespielt.
dieser hat mir gleich 2 verschiedene Trojaner angezeigt.
nur leider löscht er diese nicht. sie kommen nach der desinfektion immer wider.
ich bin nun nach eurer Anleitung vorgegangen und habe logdateien mit FRST erstellt.
bei Kapersky weis ich nicht wie man das machen kann, ich habe den bericht gespeichert (ist das die Logdatei)?
Ich möchte darauf hinweisen, dass ich ein kleines Handwerksunternhemen habe.
Der PC wird gewerblich und Privat genutzt
Gerne bin ich aber zum spenden bereit.
Hier kommenen die Logfiles:
FRST Logfile: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
durchgeführt von mail (Administrator) auf FRANK (Dell Inc. XPS 8960) (09-12-2025 07:21:52)
Gestartet von C:\Users\mail\Desktop\FRST64.exe
Geladene Profile: mail
Plattform: Microsoft Windows 11 Pro Version 24H2 26100.7171 (X64) Sprache: Englisch (Vereinigte Staaten) -> Deutsch (Deutschland)
Standard-Browser: FF
Start-Modus: Normal
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\Brother\ES Status Monitor\ptnmwnd.exe
(C:\Program Files (x86)\ISOCAL\ISOCAL.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.23\avp.exe ->) (AO Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.23\avpui.exe
(C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksde.exe ->) (AO Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksdeui.exe
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe ->) (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe <5>
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.UserProcess.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\DCF\Dell.Update.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files\Dell\DellOptimizer\DellEnterpriseClientFrameworkSubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> ) C:\Program Files\Dell\DTP\DiagnosticsSubAgent\Dell.TechHub.Diagnostics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellOptimizer\Console\DellOptimizer.Systray.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellOptimizer\SubAgents\Dell.UUE.CoreSubAgent\Dell.UUE.CoreSubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\Dell Remediation\Dell.Remediation.Agent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\DellDigitalDelivery\SubAgent\Dell.Digital.Delivery.Service.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\MyDell\Manager\Dell.UCA.Manager.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.CoreServices.Client.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\AnalyticsSubAgent\Dell.TechHub.Analytics.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\DataManagerSubAgent\Dell.TechHub.DataManager.SubAgent.exe
(C:\Program Files\Dell\TechHub\Dell.TechHub.exe ->) (Dell Technologies Inc. -> Dell, Inc.) C:\Program Files\Dell\DTP\InstrumentationSubAgent\Dell.TechHub.Instrumentation.SubAgent.exe
(C:\Program Files\Google\Drive File Stream\117.0.0.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\117.0.0.0\crashpad_handler.exe
(C:\Program Files\LogiOptionsPlus\logioptionsplus_agent.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_appbroker.exe
(C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_agent.exe
(C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\AI\ai.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudFirefox.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (AO Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.23\plugins_nms.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\Poly\Poly Lens Desktop\lens-desktop.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Poly Lens Desktop\CallControlApp\PolyLensCallControlApp.exe
(C:\Program Files\Poly\Poly Lens Desktop\lens-desktop.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Poly Lens Desktop\LegacyHost\LegacyHost.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> ) C:\Program Files\TeamViewer\crashpad_handler.exe
(C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudHome.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudCKKS.exe
(C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudHome.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe
(C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.40.1953.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel(R) Corporation) C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.40.1953.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\PresentMonService.exe
(C:\Users\mail\AppData\Local\Programs\Opera GX\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\mail\AppData\Local\Programs\Opera GX\124.0.5705.89\opera_crashreporter.exe
(drivers\RivetNetworks\Killer\KAPSService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPS.exe
(drivers\RivetNetworks\Killer\KNDBWMService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWM.exe
(DriverStore\FileRepository\ipf_cpu.inf_amd64_c493e10bcfd25250\ipf_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_c493e10bcfd25250\ipf_helper.exe
(EB742617-4934-4951-8B93-E211D04E5A38 -> Intel) C:\Program Files\WindowsApps\RivetNetworks.KillerControlCenter_3.1423.712.0_x64__rh07ty8m5nkag\KillerControlCenter_v2\KillerIntelligenceCenter.exe
(explorer.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\DYMO\DYMO Connect\DYMO.WebApi.Win.Host.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (GNE) [Datei ist nicht signiert] C:\Program Files (x86)\Dual Monitor Tools\DMT.exe
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\117.0.0.0\GoogleDriveFS.exe <2>
(explorer.exe ->) (Governikus GmbH & Co. KG -> Governikus GmbH & Co. KG) C:\Program Files\AusweisApp\AusweisApp.exe
(explorer.exe ->) (HP Inc. -> HP Development Company, L.P.) C:\Program Files\Poly\Poly Lens Desktop\lens-desktop.exe <4>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\mail\AppData\Local\Microsoft\BingSvc\BingSvc.exe
(explorer.exe ->) (Newell Brands Inc -> ) [Datei ist nicht signiert] C:\Program Files (x86)\DYMO\DYMO Connect\DYMOConnectLauncher.exe
(explorer.exe ->) (Now.gg, INC -> now.gg, Inc.) C:\Users\mail\AppData\Local\Programs\bluestacks-services\BlueStacksServices.exe <4>
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\mail\AppData\Local\Programs\Opera GX\opera.exe <21>
(explorer.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe
(explorer.exe ->) (Sanford, L.P.) [Datei ist nicht signiert] C:\Program Files (x86)\DYMO\DYMO Label Software\DymoQuickPrint.exe
(explorer.exe ->) (SWS Sascha Willwacher Software GmbH) [Datei ist nicht signiert] C:\Program Files (x86)\ISOCAL\ISOCAL.exe
(explorer.exe ->) (T&&T Datentechnik GmbH) [Datei ist nicht signiert] C:\Program Files (x86)\ClientService\ClientService.Controller.exe
(explorer.exe ->) (Thomas Holz -> IT-Services Thomas Holz) C:\Program Files (x86)\Easy2Sync für Outlook\E2S4Outlook64Bit.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo11de.inf_amd64_c6cd4cf632788a8e\WavesSvc64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\AI\aimgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <75>
(Sanford, L.P.) [Datei ist nicht signiert] C:\Program Files (x86)\DYMO\DYMO Label Software\DYMO.DLS.Printing.Host.exe
(services.exe ->) () [Datei ist nicht signiert] C:\Program Files (x86)\DYMO\DYMO Connect\PnpService\DYMO.Connect.PnP.Service.exe
(services.exe ->) (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> QuickShareService) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_2.2.19.0_x64__wyx1vj98g3asy\QuickShareService\QuickShareService.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(services.exe ->) (Dell Technologies Inc. -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Dell Technologies Inc. -> Dell INC.) C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe
(services.exe ->) (Dell Technologies Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Dell Technologies Inc. -> Dell) C:\Program Files\Dell\TechHub\Dell.TechHub.exe
(services.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.40.1953.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe
(services.exe ->) (FOR TESTING ONLY - IPF_PreProd_Cert -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_8edcf6be1c4ddd78\ipfsvc.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Lens Control Service\LensService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_8a3f88e34f6b8385\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorvd.inf_amd64_f28d27d12c1c64c5\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_91b5ed43a9896c4a\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_c493e10bcfd25250\ipf_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_b966ea70c5407e74\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_7955510f793739e6\Intel_PIE_Service.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe
(services.exe ->) (Intel Graphics Internal 2023 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_ea3add6a86481654\IntelCpHDCPSvc.exe
(services.exe ->) (Kaspersky Labs GmbH -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.23\avp.exe <2>
(services.exe ->) (Kaspersky Labs GmbH -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksde.exe
(services.exe ->) (KYOCERA Document Solutions Inc.) [Datei ist nicht signiert] C:\Program Files\KDService\bin\KDService.exe
(services.exe ->) (Lenovo -> ) C:\Program Files\Lenovo\LADMLauncherService\bin\LADMAutoInstallService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.216.1104.0002\FileSyncHelper.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdd.inf_amd64_1c978806815a7d2e\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_434f4faf6aa034b3\RtkAudUService64.exe <3>
(services.exe ->) (Sanford, L.P.) [Datei ist nicht signiert] C:\Program Files (x86)\DYMO\DYMO Label Software\DymoPnpService.exe
(services.exe ->) (Softland SRL -> Microsoft) C:\Program Files\Softland\novaPDF 11\Server\novapdfs.exe
(services.exe ->) (Star Finanz-Software Entwicklung und Vertriebs GmbH -> Star Finanz-Software Entwicklung und Vertriebs GmbH) C:\Program Files (x86)\StarMoney 14 Deluxe S-Edition\ouservice\StarMoneyOnlineUpdate.exe
(services.exe ->) (T&T Datentechnik GmbH) [Datei ist nicht signiert] C:\Program Files (x86)\ClientService\ClientService.Service.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd) C:\Windows\System32\DriverStore\FileRepository\wavesapo11de.inf_amd64_c6cd4cf632788a8e\WavesAudioService.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo11de.inf_amd64_c6cd4cf632788a8e\WavesSysSvc64.exe
(sihost.exe ->) (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2025.328.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe <5>
(sihost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudDrive.exe
(sihost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudHome.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Copilot_1.25114.55.0_x64__8wekyb3d8bbwe\Copilot.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2545.5.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\APSDaemon.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudOutlookConfig64.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple, Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\secd.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.27.350.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mmgaserver.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_434f4faf6aa034b3\RtkAudUService64.exe [2389992 2024-12-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Windows\System32\DriverStore\FileRepository\wavesapo11de.inf_amd64_c6cd4cf632788a8e\WavesSvc64.exe [5295368 2025-01-18] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [PowerDVD23Agent] => C:\Program Files\CyberLink\PowerDVD23\PowerDVD23Agent.exe [568584 2024-03-05] (CyberLink Corp. -> CyberLink Corp.)
HKLM\...\Run: [DYMOWebApi] => C:\Program Files (x86)\DYMO\DYMO Connect\DYMO.WebApi.Win.Host.exe [103131420 2025-06-17] () [Datei ist nicht signiert]
HKLM\...\Run: [DymoOfficeHelper] => C:\Program Files (x86)\DYMO\DYMO Connect\DYMO.OfficeHelper.exe [185882 2025-06-17] () [Datei ist nicht signiert]
HKLM\...\Run: [novaPDF OEM 11 nPdfOem_817351 Tray] => C:\Program Files\Softland\novaPDF 11\Driver\Tray.exe [121616 2025-10-16] (Softland SRL -> )
HKLM-x32\...\Run: [DLSWebSvc] => C:\Program Files (x86)\DYMO\DYMO Label Software\DYMO.DLS.Printing.Host.exe [5130240 2021-03-18] (Sanford, L.P.) [Datei ist nicht signiert]
HKLM-x32\...\Run: [DYMOWebApi] => C:\Program Files (x86)\DYMO\DYMO Connect\DYMO.WebApi.Win.Host.exe [103131420 2025-06-17] () [Datei ist nicht signiert]
HKLM-x32\...\Run: [PTNMWND] => C:\Program Files (x86)\Brother\ES Status Monitor\ptnmwnd.exe [4052752 2025-01-23] (Brother Industries, Ltd. -> Brother Industries, Ltd.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Beschränkung <==== ACHTUNG
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Beschränkung <==== ACHTUNG
HKLM\SYSTEM\...\Terminal Server: [fDenyTSConnections] = 0 <==== ACHTUNG
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\117.0.0.0\GoogleDriveFS.exe [71918232 2025-11-19] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\117.0.0.0\GoogleDriveFS.exe [71918232 2025-11-19] (Google LLC -> Google LLC.)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4742504 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [Mozilla-Firefox-308046B0AF4A39CB] => "C:\Program Files\Mozilla Firefox\firefox.exe" -os-autostart [695424 2025-11-26] (Mozilla Corporation -> Mozilla Corporation)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3600072 2025-07-15] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [DymoQuickPrint] => C:\Program Files (x86)\DYMO\DYMO Label Software\DymoQuickPrint.exe [2033664 2021-03-18] (Sanford, L.P.) [Datei ist nicht signiert]
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\117.0.0.0\GoogleDriveFS.exe [71918232 2025-11-19] (Google LLC -> Google LLC.)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [electron.app.BlueStacks Services] => C:\Users\mail\AppData\Local\Programs\bluestacks-services\BlueStacksServices.exe [162219656 2024-05-08] (Now.gg, INC -> now.gg, Inc.)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [com.poly.lens.client.app] => C:\Program Files\Poly\Poly Lens Desktop\lens-desktop.exe [199433224 2025-06-09] (HP Inc. -> HP Development Company, L.P.)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [Opera GX Stable] => C:\Users\mail\AppData\Local\Programs\Opera GX\opera.exe [1986504 2025-12-05] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\mail\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [BingSvc] => C:\Users\mail\AppData\Local\Microsoft\BingSvc\BingSvc.exe [3279408 2025-05-30] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [] => [X]
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [DYMOConnectLauncher] => C:\Program Files (x86)\DYMO\DYMO Connect\DYMOConnectLauncher.exe [1616520 2025-06-17] (Newell Brands Inc -> ) [Datei ist nicht signiert]
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41663960 2025-12-01] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Run: [AusweisApp] => C:\Program Files\AusweisApp\AusweisApp.exe [3415088 2025-10-29] (Governikus GmbH & Co. KG -> Governikus GmbH & Co. KG)
HKU\S-1-5-21-731132713-3816676949-3657752684-1001\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-731132713-3816676949-3657752684-1004\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\117.0.0.0\GoogleDriveFS.exe [71918232 2025-11-19] (Google LLC -> Google LLC.)
HKU\S-1-5-21-731132713-3816676949-3657752684-1004\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4742504 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [CyberlinkPowerPlayerMediaServer_PowerDVD23] => C:\Program Files\CyberLink\PowerDVD23\Common\CLMediaServer\clmediaserver.exe [6770440 2024-03-05] (CyberLink Corp. -> CyberLink Corp.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\117.0.0.0\GoogleDriveFS.exe [71918232 2025-11-19] (Google LLC -> Google LLC.)
HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3600072 2025-07-15] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-18\...\Policies\system: [DisableLockWorkstation] 0
HKLM\...\Print\Monitors\Brother PT-P900W Monitor: C:\Windows\system32\bsp15bL6.DLL [110448 2025-03-04] (Brother Industries, Ltd. -> Brother Industries, Ltd.)
HKLM\...\Print\Monitors\DYMO LabelManager PnP Monitor: C:\Windows\system32\LMPNP_MON.DLL [16896 2024-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Sanford L.P.)
HKLM\...\Print\Monitors\DYMO LabelWriter 5xx Monitor: C:\Windows\system32\LW5XXMON.DLL [1423104 2025-06-17] (Newell Brands Inc -> DYMO Corp.)
HKLM\...\Print\Monitors\DYMO LabelWriter Monitor: C:\Windows\system32\LW400MON.DLL [16384 2024-04-24] (Microsoft Windows Hardware Compatibility Publisher -> DYMO Corp.)
HKLM\...\Print\Monitors\KX Language Monitor: C:\Windows\system32\KXPLM64.DLL [124416 2024-11-06] (KYOCERA Document Solutions Inc. -> KYOCERA Document Solutions Inc.)
HKLM\...\Print\Monitors\novaPDF 11 Port Monitor: C:\Windows\system32\novamn11.dll [171520 2025-10-16] (Softland) [Datei ist nicht signiert]
HKLM\...\Print\Monitors\novaPDF OEM 7 Monitor: novamnv7.dll (Keine Datei)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\143.0.7499.40\Installer\chrmstp.exe [2025-12-05] (Google LLC -> Google LLC)
Startup: C:\Users\mail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DMT.lnk [2024-10-17]
ShortcutTarget: DMT.lnk -> C:\Program Files (x86)\Dual Monitor Tools\DMT.exe (GNE) [Datei ist nicht signiert]
Startup: C:\Users\mail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Easy2Sync für Outlook.lnk [2025-06-16]
ShortcutTarget: Easy2Sync für Outlook.lnk -> C:\Program Files (x86)\Easy2Sync für Outlook\E2S4Outlook64Bit.exe (Thomas Holz -> IT-Services Thomas Holz)
Startup: C:\Users\mail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Outlook (classic).lnk [2024-10-16]
ShortcutTarget: Outlook (classic).lnk -> C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\mail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\start.bat [2025-12-05] () [Datei ist nicht signiert]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LensDesktop1xUninstaller.lnk [2025-07-04]
ShortcutTarget: LensDesktop1xUninstaller.lnk -> C:\Program Files\Poly\Poly Lens Desktop\LensDesktop1xUninstaller\LensDesktop1xUninstaller.exe (HP Inc. -> HP Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TuT LicenseService.lnk [2024-12-18]
ShortcutTarget: TuT LicenseService.lnk -> C:\Program Files (x86)\ClientService\ClientService.Controller.exe (T&&T Datentechnik GmbH) [Datei ist nicht signiert]
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {9AD31C07-0786-4E10-8975-236C3D0BAABA} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {99E259BB-1EAF-4C0C-AA2C-AB1D5478EE9B} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [302960 2025-06-10] (Now.gg, INC -> BlueStack Systems, Inc.)
Task: {5AD479AD-6F37-4F33-8FDE-B8479CBC6F08} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\FrameworkAgents\SupportAssistInstaller.exe [1263768 2025-11-19] (Dell Technologies Inc. -> Dell Inc.) -> C:\Program Files\Dell\SupportAssistAgent\bin\AutoUpdate
Task: {94412085-678B-4FB2-8EFE-53F77EB3A5B4} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem144.0.7547.0{C75F1DF4-663C-4B2F-9167-DC9F22A24929} => C:\Program Files (x86)\Google\GoogleUpdater\144.0.7547.0\updater.exe [7056536 2025-11-26] (Google LLC -> Google LLC)
Task: {8CFE44BA-FF2D-43AF-B401-B2FFE5864246} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16667000 2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {5FBF446B-90AC-47CE-8418-FB1885929726} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28947776 2025-12-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {CA0E2E98-8802-4CB3-9EE8-42C9FA031C47} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70944 2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {05234996-60A1-4A81-A371-6E660FF13C59} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28947776 2025-12-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {A0918E3F-AC93-4FE5-8B36-7BF892149C52} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311576 2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {6D37D482-CD4E-460F-834C-CEC8A359CA75} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311576 2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {25BC2F1A-8DB9-42CF-A70F-EDBF40BAA0DC} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1351384 2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {DE1F0F6D-0306-4CBD-8744-327944748E3B} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16667000 2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Keine Datei)
Task: {5F66A413-B3C9-4925-B2E9-C1558ABBF386} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-731132713-3816676949-3657752684-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-26] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (Der Dateneintrag hat 6 weitere Zeichen).
Task: {AA502F1B-A5B0-4B34-B761-3FE6A3266F53} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-26] (Mozilla Corporation -> Mozilla Foundation)
Task: {86427F78-DE2B-4510-84D8-E785313597BB} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1277480 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {0773FD7C-6CEC-4B34-ABE3-F4791742D157} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3347496 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7779337D-54E1-41B5-ABDC-CDAA93799D38} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646696 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {F811A8B7-DE05-421A-95DF-E9761D0E681D} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0F61BF02-C62C-4922-A7C2-21DDCBD13837} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EFE27F03-D9CE-4C22-B2D3-7B12CB65473A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CE13D03B-C431-4A43-B102-A4BADC1CD18B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {7D6C2EA7-C04C-443E-AE07-4E669FB1F3F2} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4386704 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {F699AF8B-8BAF-4810-A077-23BB8F9D82C6} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-731132713-3816676949-3657752684-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4386704 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {338D8669-0A4C-4DEB-89B7-4D3A26E87B86} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-731132713-3816676949-3657752684-1002 => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe /reporting (Keine Datei)
Task: {FD1590FC-063E-4E17-A03D-F249A65861A2} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-731132713-3816676949-3657752684-1004 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4386704 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {61110A53-733B-416C-B95C-99F3102635B9} - System32\Tasks\OneDrive Startup Task-S-1-5-21-731132713-3816676949-3657752684-1001 => C:\Program Files\Microsoft OneDrive\25.216.1104.0002\OneDriveLauncher.exe [745872 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {8BAB7840-47EE-46C5-AD68-A3DEE7827862} - System32\Tasks\OneDrive Startup Task-S-1-5-21-731132713-3816676949-3657752684-1004 => C:\Program Files\Microsoft OneDrive\25.216.1104.0002\OneDriveLauncher.exe [745872 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {75F91637-BC1F-42F8-93F5-C36FF07E7128} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1740387192 => C:\Users\mail\AppData\Local\Programs\Opera GX\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\mail\AppData\Local\Programs\Opera GX\assistant" $(Arg0)
Task: {2A8CF9A8-B0DE-4800-A683-9234B7C0F9D6} - System32\Tasks\Opera GX scheduled Autoupdate 1739511949 => C:\Users\mail\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [6204360 2025-12-03] (Opera Norway AS -> Opera Software)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Winsock: Catalog5 06 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 06 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\..\Interfaces\{3b6cbf3e-461f-44f0-88ce-81211860eb53}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{3b6cbf3e-461f-44f0-88ce-81211860eb53}: [DhcpDomain] fritz.box
Tcpip\..\Interfaces\{92b5229f-792c-0bef-830a-2556638c2dc9}: [NameServer] 10.3.4.3,10.3.4.5
Tcpip\..\Interfaces\{94eb9ade-1311-4d17-b76c-481b11542a46}: [NameServer] 192.168.2.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\mail\AppData\Local\Microsoft\Edge\User Data\Default [2025-11-21]
Edge DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
Edge DefaultSearchKeyword: Default -> duckduckgo.com
Edge DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
Edge Session Restore: Default -> ist aktiviert.
Edge Extension: (DuckDuckGo) - C:\Users\mail\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2025-11-15]
Edge Extension: (Google Docs Offline) - C:\Users\mail\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-15]
Edge Extension: (Edge relevant text changes) - C:\Users\mail\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-10-15]
Edge Extension: (iCloud-Passwörter) - C:\Users\mail\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mfbcdcnpokpoajjciilocoachedjkima [2025-11-15]
Edge Extension: (Enpass Password Manager) - C:\Users\mail\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mliehcloacfoicbanjhhnlimealolgoi [2025-11-15]
FireFox:
========
FF DefaultProfile: 1rxw83i5.default
FF ProfilePath: C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\1rxw83i5.default [2025-12-05]
FF user.js: detected! => C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\1rxw83i5.default\user.js [2024-10-17]
FF ProfilePath: C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release [2025-12-09]
FF user.js: detected! => C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\user.js [2024-10-17]
FF Notifications: Mozilla\Firefox\Profiles\ysdsw9nt.default-release -> hxxps://www.elektro-wandelt.de; hxxps://eshop.wuerth.de; hxxps://drive.google.com; hxxps://www.mainpost.de; hxxps://www.maschinensucher.de; hxxps://www.kaspersky.de; hxxps://www.bussgeldrechner.org
FF Extension: (Facebook Container) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\@contain-facebook.xpi [2025-03-25]
FF Extension: (iCloud-Lesezeichen) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\firefoxdav@icloud.com.xpi [2024-10-15]
FF Extension: (Honey) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\jid1-93CWPmRbVPjRQA@jetpack.xpi [2024-10-15]
FF Extension: (Dark Background and Light Text) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\jid1-QoFqdK4qzUfGWQ@jetpack.xpi [2024-10-15]
FF Extension: (Kaspersky Protection) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com.xpi [2025-12-05]
FF Extension: (New Tab) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\newtab@mozilla.org.xpi [2025-12-01]
FF Extension: (Stealthy) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\stealthyextension@gmail.com.xpi [2024-10-15]
FF Extension: (uBlock Origin) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-12-04]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2025-11-19]
FF Extension: (NoScript) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2025-12-09]
FF Extension: (Google Search Maps Button) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\{884f845b-914f-4069-ad5b-b8bf870249fc}.xpi [2025-07-03]
FF Extension: (Video DownloadHelper) - C:\Users\mail\AppData\Roaming\Mozilla\Firefox\Profiles\ysdsw9nt.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2025-06-05]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-11-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-12-01] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-11-18] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2025-12-05] <==== ACHTUNG (Zeigt auf eine *.cfg Datei)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2025-12-05] <==== ACHTUNG
Chrome:
=======
CHR Profile: C:\Users\mail\AppData\Local\Google\Chrome\User Data\Default [2025-12-05]
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Extension: (McAfee® WebAdvisor) - C:\Users\mail\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-11-28]
CHR Extension: (Google Docs Offline) - C:\Users\mail\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-28]
CHR Extension: (Anwendungs-Launcher für Drive (von Google)) - C:\Users\mail\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2025-04-14]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\mail\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-03-24]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-731132713-3816676949-3657752684-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-731132713-3816676949-3657752684-1001) Opera GXStable - "C:\Users\mail\AppData\Local\Programs\Opera GX\opera.exe"
==================== Dienste (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
R2 AVP21.23; C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.23\avp.exe [115592 2025-10-14] (Kaspersky Labs GmbH -> AO Kaspersky Lab)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13423504 2025-12-01] (Microsoft Corporation -> Microsoft Corporation)
R2 Dell SupportAssist Remediation; C:\Program Files\Dell\SARemediation\agent\DellSupportAssistRemedationService.exe [20240 2025-07-10] (Dell Technologies Inc. -> Dell INC.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [49952 2025-09-10] (Dell Technologies Inc. -> )
R2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [153288 2025-07-03] (Dell Technologies Inc. -> Dell)
R2 dptftcs; C:\Windows\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_8edcf6be1c4ddd78\ipfsvc.exe [562040 2024-08-15] (FOR TESTING ONLY - IPF_PreProd_Cert -> Intel Corporation)
R2 DYMOConnectPnPService; C:\Program Files (x86)\DYMO\DYMO Connect\PnpService\DYMO.Connect.PnP.Service.exe [1706669 2025-06-17] () [Datei ist nicht signiert]
R2 DymoPnpService; C:\Program Files (x86)\DYMO\DYMO Label Software\DymoPnpService.exe [27136 2021-03-18] (Sanford, L.P.) [Datei ist nicht signiert]
R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.216.1104.0002\FileSyncHelper.exe [3608936 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
S2 Intel(R) Platform License Manager Service; C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_c25dbc60ad3b371a\lib\PlatformLicenseManagerService.exe [742904 2024-11-20] (Intel Corporation -> Intel(R) Corporation)
R2 IntelGraphicsSoftwareService; C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.40.1953.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe [300544 2025-12-05] (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation)
R2 ipfsvc; C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_c493e10bcfd25250\ipf_uf.exe [3102808 2024-10-23] (Intel Corporation -> Intel Corporation)
R3 KAPSService; C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe [78088 2023-08-17] (Intel Corporation -> Intel® Corporation)
R2 KDService; C:\Program Files\KDService\bin\KDService.exe [500736 2024-11-06] (KYOCERA Document Solutions Inc.) [Datei ist nicht signiert]
R2 Killer Analytics Service; C:\Windows\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2480944 2023-08-17] (Intel Corporation -> Intel)
R2 Killer Network Service; C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2981168 2023-08-17] (Intel Corporation -> Intel)
S3 klvssbridge64_21.23; C:\Program Files (x86)\Kaspersky Lab\Kaspersky 21.23\x64\vssbridge64.exe [304664 2025-10-14] (AO Kaspersky Lab -> AO Kaspersky Lab)
R3 KNDBWM; C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [78128 2023-08-17] (Intel Corporation -> Intel® Corporation)
S3 kpm_service_25.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 25.1\kpm_service.exe [318480 2025-10-15] (AO Kaspersky Lab -> AO Kaspersky Lab)
R2 KSDE5.23; C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksde.exe [115592 2025-10-14] (Kaspersky Labs GmbH -> AO Kaspersky Lab)
R2 LADMLauncherService; C:\Program Files\Lenovo\LADMLauncherService\bin\LADMAutoInstallService.exe [2412832 2024-07-10] (Lenovo -> )
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe [2026184 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NovaPdf11Server; C:\Program Files\Softland\novaPDF 11\Server\novapdfs.exe [48904 2025-10-16] (Softland SRL -> Microsoft)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvdd.inf_amd64_1c978806815a7d2e\Display.NvContainer\NVDisplay.Container.exe [1275032 2025-11-04] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.216.1104.0002\OneDriveUpdaterService.exe [3902312 2025-12-05] (Microsoft Corporation -> Microsoft Corporation)
R2 OptionsPlusUpdaterService; C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe [21685912 2025-12-03] (Logitech Inc -> Logitech, Inc.)
R2 Poly Lens Control Service; C:\Program Files\Poly\Lens Control Service\LensService.exe [150024 2025-06-09] (HP Inc. -> HP Inc.)
R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256256 2024-10-15] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [300232 2025-07-15] (Razer USA Ltd. -> Razer Inc.)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [513672 2025-04-28] (Razer USA Ltd. -> Razer Inc.)
R2 SamsungQuickShareService; C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_2.2.19.0_x64__wyx1vj98g3asy\QuickShareService\QuickShareService.exe [16499712 2025-10-10] (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> QuickShareService)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-11-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 StarMoney 14 Deluxe OnlineUpdate; C:\Program Files (x86)\StarMoney 14 Deluxe S-Edition\ouservice\StarMoneyOnlineUpdate.exe [766880 2025-01-13] (Star Finanz-Software Entwicklung und Vertriebs GmbH -> Star Finanz-Software Entwicklung und Vertriebs GmbH)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [149656 2025-11-19] (Dell Technologies Inc. -> Dell Inc.)
R2 T&T LicenseService; C:\Program Files (x86)\ClientService\ClientService.Service.exe [27136 2017-07-04] (T&T Datentechnik GmbH) [Datei ist nicht signiert]
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [25728872 2025-12-01] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 WavesAudioService; C:\Windows\System32\DriverStore\FileRepository\wavesapo11de.inf_amd64_c6cd4cf632788a8e\WavesAudioService.exe [163592 2025-01-18] (Waves Inc -> Waves Audio Ltd)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe [4414480 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe [282440 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [394312 2025-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Bluestack System Inc.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [110592 2024-11-12] (Microsoft Corporation) [Datei ist nicht signiert]
R2 CLFCL5.23; C:\Windows\System32\drivers\CLFCL5.23\000.fcl [47808 2024-02-22] (CyberLink Corp. -> CyberLink Corp.)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [226872 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S3 CtaChildDriver; C:\Windows\System32\drivers\CtaChildDriver.sys [65952 2023-12-01] (Intel Corporation -> )
R3 DellInstrumentation; C:\Windows\System32\drivers\DellInstrumentation.sys [33336 2025-11-15] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R3 e3k25cx21x64; C:\Windows\System32\DriverStore\FileRepository\e3k25cx21x64.inf_amd64_2187e0f3da9ad764\e3k25cx21x64.sys [717144 2023-08-17] (Realtek Semiconductor Corp. -> Realtek)
R2 googledrivefs31931; C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2025-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
S3 GSCAuxDriver; C:\Windows\System32\DriverStore\FileRepository\gscauxdriver.inf_amd64_f6b6712856d991b0\GSCAuxDriverx64.sys [119096 2023-12-01] (Intel Corporation -> Intel Corporation)
S3 GSCx64; C:\Windows\System32\DriverStore\FileRepository\gscheci.inf_amd64_cf885aa8c7fcd01e\TeeDriverGSCW8x64.sys [289080 2023-12-01] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_GPIO2_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_302e75596cffa74a\iaLPSS2_GPIO2_ADL.sys [150616 2022-10-24] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_adl.inf_amd64_e736c048ca307ed2\iaLPSS2_I2C_ADL.sys [220224 2022-10-24] (Intel Corporation -> Intel Corporation)
S3 iaLPSS2_SPI_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_spi_adl.inf_amd64_334c460fea9b11a4\iaLPSS2_SPI_ADL.sys [171608 2022-10-24] (Intel Corporation -> Intel Corporation)
S3 iaLPSS2_UART2_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_uart2_adl.inf_amd64_43d5df63d19fde70\iaLPSS2_UART2_ADL.sys [329320 2022-10-24] (Intel Corporation -> Intel Corporation)
R0 iaStorVD; C:\Windows\System32\drivers\iaStorVD.sys [1623632 2025-10-02] (Intel Corporation -> Intel Corporation)
R3 IntelGNA; C:\Windows\System32\DriverStore\FileRepository\gna.inf_amd64_8e2f374849f1eba9\gna.sys [90304 2024-04-29] (Intel Corporation -> Intel Corporation)
S3 Intel_NF_I2C; C:\Windows\System32\DriverStore\FileRepository\intel_nf_i2c_child.inf_amd64_ec05d531d6f2e4c0\Intel_NF_I2C.sys [232752 2023-12-01] (Intel Corporation -> Intel Corporation)
R3 ipf_acpi; C:\Windows\System32\DriverStore\FileRepository\ipf_acpi.inf_amd64_ca5ac87d28341730\ipf_acpi.sys [89688 2024-10-23] (Intel Corporation -> Intel Corporation)
R3 ipf_cpu; C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_c493e10bcfd25250\ipf_cpu.sys [89688 2024-10-23] (Intel Corporation -> Intel Corporation)
R3 ipf_lf; C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_c493e10bcfd25250\ipf_lf.sys [504920 2024-10-23] (Intel Corporation -> Intel Corporation)
R3 KfeCoSvc; C:\Windows\System32\drivers\RivetNetworks\Killer\KfeCo11X64.sys [209200 2023-08-17] (Intel Corporation -> Rivet Networks, LLC.)
R1 klbackupdisk.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\klbackupdisk.sys [93296 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klbackupflt.K4W-21-23; C:\Windows\System32\DRIVERS\K4W-21-23\klbackupflt.sys [255600 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kldisk.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\kldisk.sys [109168 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [48776 2025-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\klflt.sys [729216 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klgse.K4W-21-23; C:\Windows\System32\DRIVERS\K4W-21-23\klgse.sys [857080 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klhk.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\klhk.sys [2959384 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klids.K4W-21-23; C:\ProgramData\Kaspersky Lab\AVP21.23\Bases\klids.sys [242808 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 KLIF.K4W-21-23; C:\Windows\System32\DRIVERS\K4W-21-23\klif.sys [1482368 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [91784 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klkbdflt.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\klkbdflt.sys [100464 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klmouflt.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\klmouflt.sys [95344 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpd.K4W-21-23; C:\Windows\System32\DRIVERS\K4W-21-23\klpd.sys [60528 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpnpflt.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\klpnpflt.sys [94832 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 kltun; C:\Windows\system32\DRIVERS\kltun.sys [110704 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_K4W-21-23_arkmon; C:\Windows\System32\Drivers\klupd_K4W-21-23_arkmon.sys [420432 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_K4W-21-23_klark; C:\Windows\System32\Drivers\klupd_K4W-21-23_klark.sys [365160 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_K4W-21-23_klbg; C:\Windows\System32\Drivers\klupd_K4W-21-23_klbg.sys [213360 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_K4W-21-23_mark; C:\Windows\System32\Drivers\klupd_K4W-21-23_mark.sys [275320 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klwtp.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\klwtp.sys [554608 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kneps.K4W-21-23; C:\Windows\system32\DRIVERS\K4W-21-23\kneps.sys [450160 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
R3 PRI-Driver; C:\Windows\System32\DriverStore\FileRepository\socthermalprovider_sw.inf_amd64_d8d2967b40ed3b12\Intel(R) PRI Driver\PRI-Driver.sys [297080 2024-11-04] (Intel Corporation -> Intel Corporation)
S3 tap0901; C:\Windows\System32\drivers\tap0901.sys [51192 2025-01-16] (OpenVPN Inc. -> The OpenVPN Project)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [20904 2025-11-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [629168 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 WireGuard; C:\Windows\System32\drivers\wireguard.sys [489368 2025-12-05] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
R3 WSDPrintDevice; C:\Windows\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2024-09-22] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\Windows\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-17] (Microsoft Windows -> Microsoft Corporation)
S3 IntelTACD; \??\C:\Windows\System32\drivers\IntelTACD.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat (erstellte) (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2025-12-09 07:21 - 2025-12-09 07:22 - 000059964 _____ C:\Users\mail\Desktop\FRST.txt
2025-12-09 07:21 - 2025-12-09 07:22 - 000000000 ____D C:\FRST
2025-12-09 07:04 - 2025-12-09 07:04 - 002444288 _____ (Farbar) C:\Users\mail\Downloads\FRST64(1).exe
2025-12-09 07:03 - 2025-12-09 07:03 - 002444288 _____ (Farbar) C:\Users\mail\Desktop\FRST64.exe
2025-12-08 17:05 - 2025-12-08 17:05 - 000709232 _____ C:\Windows\system32\perfh007.dat
2025-12-08 17:05 - 2025-12-08 17:05 - 000151190 _____ C:\Windows\system32\perfc007.dat
2025-12-08 11:07 - 2025-12-08 11:08 - 000000000 ___HD C:\Users\mail\AppData\Local\205903c92023c8a72aa9235f3491af76
2025-12-08 10:05 - 2025-12-08 10:05 - 002844952 _____ (Malwarebytes) C:\Users\mail\Downloads\MBSetup.exe
2025-12-08 08:00 - 2025-12-08 08:00 - 000000000 ____D C:\Windows\system32\appmgmt
2025-12-08 07:41 - 2025-12-08 07:41 - 000001132 _____ C:\Users\Public\Desktop\OpenOffice 4.1.16.lnk
2025-12-08 07:41 - 2025-12-08 07:41 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.16
2025-12-08 07:39 - 2025-12-08 07:39 - 000000000 ____D C:\Users\mail\Desktop\OpenOffice 4.1.16 (de) Installation Files
2025-12-07 20:17 - 2025-09-04 21:36 - 002372376 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2025-12-07 20:17 - 2025-09-04 21:36 - 002372376 _____ C:\Windows\system32\vulkaninfo.exe
2025-12-07 20:17 - 2025-09-04 21:36 - 002071088 _____ C:\Windows\system32\ze_intel_gpu_raytracing.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 001880880 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-12-07 20:17 - 2025-09-04 21:36 - 001880880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2025-12-07 20:17 - 2025-09-04 21:36 - 001621584 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 001621584 _____ C:\Windows\system32\vulkan-1.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 001428056 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 001428056 _____ C:\Windows\SysWOW64\vulkan-1.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 001099720 _____ C:\Windows\system32\ze_validation_layer.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000955248 _____ (Intel Corporation) C:\Windows\system32\libmfxhw64.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000949000 _____ C:\Windows\system32\ze_loader.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000792936 _____ (Intel) C:\Windows\system32\libvpl.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000713968 _____ (Intel Corporation) C:\Windows\SysWOW64\libmfxhw32.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000671936 _____ C:\Windows\system32\ze_tracing_layer.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000671016 _____ (Intel) C:\Windows\SysWOW64\libvpl.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000656224 _____ C:\Windows\SysWOW64\IntelControlLib32.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000597904 _____ (Intel Corporation) C:\Windows\system32\intel_gfx_api-x64.dll
2025-12-07 20:17 - 2025-09-04 21:36 - 000456888 _____ (Intel Corporation) C:\Windows\SysWOW64\intel_gfx_api-x86.dll
2025-12-07 20:17 - 2025-09-04 21:34 - 000324240 _____ C:\Windows\system32\ControlLib.dll
2025-12-07 20:17 - 2025-09-04 21:34 - 000270512 _____ C:\Windows\SysWOW64\ControlLib32.dll
2025-12-07 18:25 - 2025-12-08 18:58 - 000000000 ____D C:\Windows\CbsTemp
2025-12-07 18:12 - 2025-12-07 18:12 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-12-05 11:13 - 2025-12-05 11:13 - 003522576 _____ C:\Users\mail\Downloads\P2122_826_826-260.zip
2025-12-05 10:02 - 2025-12-05 10:02 - 000001376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Password Manager.lnk
2025-12-05 10:02 - 2025-12-05 10:02 - 000001372 _____ C:\Users\Public\Desktop\Kaspersky Password Manager.lnk
2025-12-05 10:02 - 2025-12-05 10:02 - 000000000 ____D C:\Users\mail\AppData\Local\Kaspersky Lab
2025-12-05 10:02 - 2025-12-05 10:02 - 000000000 ____D C:\Users\Default\AppData\Local\Kaspersky Lab
2025-12-05 10:01 - 2025-12-05 10:01 - 000002242 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky VPN.lnk
2025-12-05 10:01 - 2025-12-05 10:01 - 000000000 ____D C:\Program Files\Common Files\AV
2025-12-05 10:00 - 2025-12-05 10:02 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2025-12-05 10:00 - 2025-12-05 10:01 - 000002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky.lnk
2025-12-05 10:00 - 2025-12-05 10:01 - 000002276 _____ C:\Users\Public\Desktop\Kaspersky.lnk
2025-12-05 10:00 - 2025-12-05 10:01 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2025-12-05 10:00 - 2025-12-05 10:00 - 000000000 ____D C:\Windows\system32\Drivers\K4W-21-23
2025-12-05 09:54 - 2025-12-05 09:54 - 005761808 _____ (Kaspersky) C:\Users\mail\Downloads\kaspersky4win202121.23.6.614de_46460.exe
2025-12-05 08:44 - 2025-12-05 08:44 - 000044021 _____ C:\Users\mail\AppData\LocalLow\37c7b68ec7ce59bb3fbbea724abe1e07aeb17fe31574619b0c137c3e1461a6fe
2025-12-05 08:44 - 2025-12-05 08:44 - 000032406 _____ C:\Users\mail\AppData\LocalLow\e60509fddc859f1e377f05bb5666c3f94d474358aa869f9c866d601527c995a6
2025-12-05 08:44 - 2025-12-05 08:44 - 000005895 _____ C:\Users\mail\AppData\LocalLow\380064f733c36c8c24d3de7ba64f91a8484e27de48d207007ffce3b859e13c19
2025-12-05 08:44 - 2025-12-05 08:44 - 000005884 _____ C:\Users\mail\AppData\LocalLow\02b2846b00ceedfbd0fe03d755def17e5a67a179217a0bda07579d156b44fe2b
2025-12-05 08:44 - 2025-12-05 08:44 - 000000130 _____ C:\Users\mail\AppData\LocalLow\dda32a1bd41845f373a453c6fe7f2100bbcffbf046452f742fceb374d6d7c94d
2025-12-05 08:44 - 2025-12-05 08:44 - 000000130 _____ C:\Users\mail\AppData\LocalLow\308fd1f7acc018ce199c1284859b82c6857bc2f321f233d0686d253502588fb8
2025-12-05 08:44 - 2025-12-05 08:44 - 000000130 _____ C:\Users\mail\AppData\LocalLow\214d8e117f9063072e22ab10aff0bf071c1d02bee386e29a69b7f3fe0daf38e7
2025-12-05 08:44 - 2025-12-05 08:44 - 000000130 _____ C:\Users\mail\AppData\LocalLow\0ab7f9cae0b21e4d6824a6d87c17bf43bd15f3f08d56a708cd0c36586ad401ee
2025-12-05 08:44 - 2025-12-05 08:44 - 000000000 ____D C:\Windows\LastGood.Tmp
2025-12-05 08:43 - 2025-11-04 12:58 - 000478440 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2025-12-05 08:43 - 2025-11-04 12:58 - 000374424 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2025-12-05 08:43 - 2025-11-04 12:54 - 001315992 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2025-12-05 08:43 - 2025-11-04 12:54 - 000674456 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2025-12-05 08:43 - 2025-11-04 12:54 - 000508568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2025-12-05 08:43 - 2025-11-04 12:53 - 026341016 _____ C:\Windows\system32\nvidia-pcc.exe
2025-12-05 08:43 - 2025-11-04 12:53 - 002317032 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2025-12-05 08:43 - 2025-11-04 12:53 - 001715944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2025-12-05 08:43 - 2025-11-04 12:53 - 001596048 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2025-12-05 08:43 - 2025-11-04 12:53 - 001572584 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2025-12-05 08:43 - 2025-11-04 12:53 - 001222296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2025-12-05 08:43 - 2025-11-04 12:53 - 001057512 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2025-12-05 08:43 - 2025-11-04 12:53 - 000812696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2025-12-05 08:43 - 2025-11-04 12:53 - 000468120 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2025-12-05 08:43 - 2025-11-04 12:53 - 000135888 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2025-12-05 08:43 - 2025-11-04 12:52 - 024675048 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2025-12-05 08:43 - 2025-11-04 12:52 - 021712528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2025-12-05 08:43 - 2025-11-04 12:52 - 007682712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2025-12-05 08:43 - 2025-11-04 12:52 - 005917840 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2025-12-05 08:43 - 2025-11-04 12:52 - 005469928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2025-12-05 08:43 - 2025-11-04 12:52 - 004175080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2025-12-05 08:43 - 2025-11-04 12:51 - 000853736 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2025-12-05 08:43 - 2025-11-04 12:50 - 005620888 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2025-12-05 08:43 - 2025-11-04 12:50 - 004919920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2025-12-05 08:43 - 2025-11-04 12:14 - 000149896 _____ C:\Windows\system32\nvinfo.pb
2025-12-05 08:37 - 2025-12-05 08:38 - 000000000 ____D C:\Program Files\LogiOptionsPlus
2025-12-05 08:37 - 2025-12-05 08:37 - 000000859 _____ C:\Users\Public\Desktop\Logi Options+.lnk
2025-12-05 08:37 - 2025-12-05 08:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2025-12-05 08:26 - 2025-12-05 08:26 - 000000000 ____D C:\Users\mail\AppData\Local\ent
2025-12-05 08:10 - 2025-12-05 08:10 - 000034881 _____ C:\Users\mail\Downloads\Wuerzburg_HRB_17669_AD_05.12.2025.PDF
2025-12-05 01:23 - 2025-12-05 01:23 - 000000000 ____D C:\Users\UMFD-0.Font Driver Host
2025-12-05 01:23 - 2025-12-05 01:23 - 000000000 ____D C:\Users\TEMP.Font Driver Host
2025-12-03 13:53 - 2025-12-03 13:56 - 1102685245 _____ C:\Users\mail\Downloads\bilder.zip
2025-12-02 17:39 - 2025-12-02 17:39 - 000005233 _____ C:\Users\mail\Downloads\Positionsvergleich_A22_vs_A23.xlsx
2025-12-01 14:49 - 2025-12-01 14:49 - 000153528 _____ C:\Users\mail\Downloads\S_20251201_144855_Postfach_-_Sammeldownload(1).ZIP
2025-12-01 14:48 - 2025-12-01 14:48 - 000153528 _____ C:\Users\mail\Downloads\S_20251201_144855_Postfach_-_Sammeldownload.ZIP
2025-12-01 13:18 - 2025-12-01 13:18 - 000030284 _____ C:\Users\mail\Desktop\RTS SW-Schalen alu-kasch..ieg
2025-12-01 07:21 - 2025-12-01 07:21 - 000000211 _____ C:\Users\mail\AppData\Roaming\com.reolink.app.client
2025-11-28 08:56 - 2025-11-28 08:56 - 000130005 _____ C:\Users\mail\Desktop\Unbenannt-2.pdf
2025-11-27 12:38 - 2025-11-27 12:38 - 000000000 ____D C:\Users\UMFD-0
2025-11-27 12:38 - 2025-11-27 12:38 - 000000000 ____D C:\Users\TEMP
2025-11-27 10:56 - 2025-11-27 10:59 - 000903933 _____ C:\Users\mail\Desktop\Rückmeldeformular 2025.pdf
2025-11-26 16:20 - 2025-11-26 16:21 - 000000000 ____D C:\Users\mail\Desktop\Neuer Ordner
2025-11-26 10:59 - 2025-11-26 10:59 - 000139549 _____ C:\Users\mail\Desktop\581.0005.01.pdf
2025-11-26 07:50 - 2025-11-26 07:51 - 043616864 _____ C:\Users\mail\Downloads\finale-variante-prospekt-1.pdf
2025-11-26 07:50 - 2025-11-26 07:50 - 043616864 _____ C:\Users\mail\Downloads\finale-variante-prospekt.pdf
2025-11-26 07:48 - 2025-11-26 07:48 - 004330635 _____ C:\Users\mail\Downloads\Prospekt_HBT_10.pdf
2025-11-26 07:47 - 2025-11-26 07:47 - 000486989 _____ C:\Users\mail\Downloads\HA Flyer 4-seitig 2011 finish.pdf
2025-11-25 14:29 - 2025-11-25 14:29 - 000059546 _____ C:\Users\mail\Desktop\XRechnung_RE25-115.xml
2025-11-25 07:44 - 2025-11-25 07:44 - 000121498 _____ C:\Users\mail\Downloads\DEU_DOP K-FLEX S2 - 19-32mm thk sheet 15370103201-01DF-1.pdf
2025-11-25 07:39 - 2025-11-25 07:39 - 000573390 _____ C:\Users\mail\Desktop\Preisliste mit Rabattandruck.pdf
2025-11-24 10:53 - 2025-11-24 10:53 - 014057976 _____ C:\Users\mail\Downloads\stbaer_25-089872_2362689(1).avasign
2025-11-24 10:52 - 2025-11-24 10:52 - 014057976 _____ C:\Users\mail\Downloads\stbaer_25-089872_2362689.avasign
2025-11-24 10:07 - 2025-11-24 10:07 - 011614582 _____ C:\Users\mail\Downloads\SPPM_NLH-490_2362619.avasign
2025-11-20 11:52 - 2025-11-20 11:52 - 000120794 _____ C:\Users\mail\Downloads\rechnung-FM.F25032488574.pdf
2025-11-19 07:52 - 2025-11-19 07:52 - 000032400 _____ C:\Users\mail\Downloads\Stuttgart_HRB_733915_19.11.2025.pdf
2025-11-19 07:33 - 2025-11-19 07:33 - 000031841 _____ C:\Users\mail\Downloads\Wuerzburg_HRB_******_19.11.2025.pdf
2025-11-18 16:32 - 2025-11-18 16:47 - 006983273 _____ C:\Users\mail\Desktop\***************.pdf
2025-11-18 15:22 - 2025-11-18 15:22 - 000334266 _____ C:\Users\mail\Desktop\2025000637.iea
2025-11-17 16:47 - 2025-11-17 16:47 - 000025102 _____ C:\Users\mail\Downloads\DRP141673251.pdf
2025-11-17 16:46 - 2025-11-17 16:46 - 000043713 _____ C:\Users\mail\Downloads\DRP142555317.pdf
2025-11-17 09:48 - 2025-11-17 09:49 - 000110155 _____ C:\Users\mail\Desktop\*** Kündigung - Dynamische Sach-Inhaltsversicherung.pdf
2025-11-15 13:48 - 2025-11-15 13:48 - 000005860 _____ C:\Users\mail\Downloads\sammelueberweisung.xlsx
2025-11-15 13:43 - 2025-11-15 13:43 - 000014103 _____ C:\Users\mail\Downloads\SEPA_NORMAL_FINAL.xml
2025-11-15 13:39 - 2025-11-15 13:39 - 000014103 _____ C:\Users\mail\Downloads\***_10.2025_TOMORROW.xml
2025-11-15 13:37 - 2025-11-15 13:37 - 000014103 _____ C:\Users\mail\Downloads\***_10.2025_UPDATED.xml
2025-11-15 13:23 - 2025-11-15 13:23 - 001082368 _____ C:\Users\mail\Downloads\EasyDTASEPAPruef.exe
2025-11-15 13:20 - 2025-11-15 13:20 - 000014674 _____ C:\Users\mail\Desktop\*** 10.2025.xml
2025-11-15 13:20 - 2025-11-15 13:20 - 000001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AusweisApp.lnk
2025-11-15 13:20 - 2025-11-15 13:20 - 000001080 _____ C:\Users\Public\Desktop\AusweisApp.lnk
2025-11-15 13:20 - 2025-11-15 13:20 - 000000000 ____D C:\Program Files\AusweisApp
2025-11-12 08:53 - 2025-11-12 08:53 - 006469129 _____ C:\Users\mail\Downloads\_4090-CBBE-BA2_2357881(1).avasign
2025-11-12 08:53 - 2025-11-12 08:53 - 000197157 _____ C:\Users\mail\Downloads\_4090-CBBE-BA2_2357881_1c.avasign
2025-11-11 20:08 - 2025-11-11 20:08 - 000079894 _____ C:\Windows\SysWOW64\ctac.json
2025-11-11 20:08 - 2025-11-11 20:08 - 000079894 _____ C:\Windows\system32\ctac.json
2025-11-11 20:08 - 2025-11-11 20:08 - 000035082 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-11-11 20:08 - 2025-11-11 20:08 - 000035082 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2025-11-11 15:28 - 2025-11-11 15:33 - 001242401 _____ C:\Users\mail\Desktop\REGIEZETTEL Neu (1).pdf
2025-11-11 12:40 - 2025-11-11 12:40 - 000000000 ____D C:\Users\mail\AppData\Local\Softland
2025-11-11 12:40 - 2025-11-11 12:40 - 000000000 ____D C:\ProgramData\Softland
2025-11-11 12:38 - 2025-11-11 12:38 - 000000000 ____D C:\Program Files\Softland
2025-11-11 12:38 - 2025-11-11 12:38 - 000000000 ____D C:\Program Files\Print2PDFAnnotator
2025-11-10 17:16 - 2025-11-10 17:16 - 006469200 _____ C:\Users\mail\Downloads\_4090-CBBE-BA2_2357881.avasign
2025-11-10 15:50 - 2025-11-10 15:52 - 003903609 _____ C:\Users\mail\Downloads\wilo363641.pdf
2025-11-10 11:51 - 2025-11-10 11:51 - 000002209 _____ C:\Users\Public\Desktop\Brother P-touch Editor 6.lnk
2025-11-10 11:44 - 2025-12-08 08:07 - 000002264 _____ C:\Users\mail\AppData\LocalLow\27552428dd8bb418eb75074cdd3f329cd8108c694c3a907d01516f437731a47f
==================== Ein Monat (geänderte) ==================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2025-12-09 07:26 - 2024-10-18 13:47 - 000000000 ____D C:\Users\mail\Documents\Outlook-Dateien
2025-12-09 07:01 - 2024-10-15 16:38 - 000000000 ___SD C:\Users\mail\AppData\Roaming\Microsoft\Credentials
2025-12-09 06:51 - 2024-12-18 09:52 - 000000224 _____ C:\Windows\system32\Drivers\mstpr12x.sys
2025-12-09 06:44 - 2024-10-17 09:41 - 000000000 ____D C:\Users\mail\AppData\Local\LogiOptionsPlus
2025-12-09 05:03 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemTemp
2025-12-09 02:26 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\AppReadiness
2025-12-09 02:26 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-08 17:07 - 2025-09-22 05:53 - 000000130 _____ C:\Users\mail\AppData\LocalLow\1156a6bdb7a6ab63c7e010bb15eeebdead41901fd3b52007f6c94107447639eb
2025-12-08 17:05 - 2024-09-22 11:24 - 001637736 _____ C:\Windows\system32\PerfStringBackup.INI
2025-12-08 17:05 - 2024-04-01 08:24 - 000000000 ____D C:\Windows\INF
2025-12-08 17:03 - 2024-10-17 11:56 - 000000000 ___RD C:\Users\mail\iCloudPhotos
2025-12-08 17:03 - 2024-10-17 11:56 - 000000000 ___RD C:\Users\mail\iCloudDrive
2025-12-08 17:03 - 2024-10-17 09:57 - 000000000 ____D C:\Program Files (x86)\ISOCAL
2025-12-08 17:02 - 2024-10-15 16:56 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-12-08 17:01 - 2024-10-28 08:13 - 000000000 ____D C:\Users\mail\AppData\Roaming\bluestacks-services
2025-12-08 17:01 - 2024-10-15 16:48 - 000000000 ___RD C:\Users\mail\OneDrive
2025-12-08 17:00 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\Registration
2025-12-08 16:58 - 2025-11-05 08:59 - 000000000 ____D C:\Program Files\TeamViewer
2025-12-08 16:58 - 2024-10-16 01:05 - 000010658 _____ C:\Windows\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-12-08 16:58 - 2024-09-25 03:00 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-08 16:58 - 2024-09-22 11:06 - 000012288 ___SH C:\DumpStack.log.tmp
2025-12-08 16:58 - 2024-09-22 11:06 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-12-08 16:58 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ServiceState
2025-12-08 16:57 - 2024-04-01 08:21 - 000524288 _____ C:\Windows\system32\config\BBI
2025-12-08 11:53 - 2024-10-15 16:43 - 000000000 ____D C:\Users\mail\AppData\Local\Packages
2025-12-08 09:04 - 2024-10-15 16:56 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2025-12-08 09:01 - 2024-11-06 11:11 - 000000000 ____D C:\ProgramData\KDService
2025-12-08 09:00 - 2025-04-01 09:11 - 002245984 _____ C:\Windows\system32\FNTCACHE.DAT
2025-12-08 09:00 - 2025-02-07 15:19 - 000000000 ____D C:\Program Files\WinRAR
2025-12-08 08:59 - 2024-10-17 10:13 - 000000000 ____D C:\Users\mail\AppData\Roaming\reolink
2025-12-08 08:10 - 2024-09-22 12:29 - 000000000 ____D C:\ProgramData\Packages
2025-12-08 08:00 - 2024-10-17 09:43 - 000000000 ____D C:\Users\mail\AppData\Local\Deployment
2025-12-08 07:50 - 2024-10-17 10:29 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2025-12-08 07:41 - 2025-05-07 10:23 - 000000000 ____D C:\Program Files (x86)\OpenOffice 4
2025-12-08 07:39 - 2025-02-07 15:19 - 000001100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2025-12-08 07:39 - 2025-02-07 15:19 - 000000000 ____D C:\Users\mail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2025-12-08 07:39 - 2025-02-07 15:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2025-12-08 06:57 - 2025-09-22 05:53 - 000000026 _____ C:\Users\mail\AppData\LocalLow\993f4cc5892ababaf01ccbfa8e1ac0aea51fafac31437fa96c626f9c16f6e958
2025-12-08 06:55 - 2025-10-29 08:27 - 000000026 _____ C:\Users\mail\AppData\LocalLow\ed029e93b22f4ecf0278b087252ab367de76ea9fd84ba946af85efd5ace544e6
2025-12-08 06:54 - 2025-11-05 07:33 - 000000000 ____D C:\ProgramData\Whesvc
2025-12-08 06:53 - 2024-09-22 11:06 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-12-08 06:53 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-07 20:45 - 2024-09-25 03:05 - 000001623 _____ C:\Windows\system32\config\VSMIDK
2025-12-07 18:11 - 2024-09-22 11:21 - 000000000 ____D C:\Program Files\Microsoft Office
2025-12-06 19:36 - 2024-09-22 11:07 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-05 14:55 - 2025-03-24 15:01 - 000002241 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-12-05 14:55 - 2025-03-24 15:01 - 000002200 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-12-05 12:00 - 2024-10-18 11:24 - 000000000 ____D C:\Users\mail\AppData\Roaming\Microsoft\Excel
2025-12-05 10:09 - 2024-10-15 16:44 - 000000000 ____D C:\Users\mail\AppData\Local\D3DSCache
2025-12-05 10:06 - 2024-10-15 16:56 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-12-05 10:01 - 2024-10-15 16:48 - 000000000 ____D C:\Users\mail\AppData\Local\CrashDumps
2025-12-05 10:00 - 2024-04-01 08:26 - 000000000 ___HD C:\Windows\ELAMBKUP
2025-12-05 10:00 - 2024-04-01 08:21 - 000008192 _____ C:\Windows\system32\config\ELAM
2025-12-05 08:38 - 2025-02-10 07:28 - 000000000 ____D C:\Program Files\Logi
2025-12-05 08:36 - 2024-10-17 08:52 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-12-05 08:36 - 2024-10-15 16:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-12-05 07:20 - 2025-02-14 06:45 - 000004198 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1739511949
2025-12-05 07:20 - 2025-02-14 06:45 - 000001451 _____ C:\Users\mail\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Browser Opera GX.lnk
2025-12-05 07:19 - 2025-02-05 13:00 - 000003546 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-731132713-3816676949-3657752684-1004
2025-12-05 07:19 - 2025-02-05 13:00 - 000003546 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-731132713-3816676949-3657752684-1001
2025-12-05 07:19 - 2024-11-13 10:44 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-731132713-3816676949-3657752684-1004
2025-12-05 07:19 - 2024-10-16 14:40 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-12-05 07:19 - 2024-10-16 14:39 - 000002134 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-12-05 07:19 - 2024-10-15 16:48 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-731132713-3816676949-3657752684-1001
2025-12-03 14:02 - 2024-10-16 13:15 - 000000000 ____D C:\Users\mail\AppData\Roaming\Microsoft\Word
2025-12-01 07:30 - 2024-09-22 11:07 - 000003830 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{0177441F-9BFC-4401-82E2-1A23015FF7F6}
2025-12-01 07:30 - 2024-09-22 11:07 - 000003704 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{B7519F7E-0E70-436D-9F54-331BF832C3EF}
2025-12-01 07:21 - 2024-10-17 10:13 - 000000000 ____D C:\Program Files\Reolink
2025-12-01 07:17 - 2024-10-17 16:21 - 000000000 ____D C:\Users\mail\AppData\Roaming\DYMOConnect
2025-12-01 07:15 - 2024-10-16 15:50 - 000000000 ____D C:\Program Files (x86)\StarMoney 14 Deluxe S-Edition
2025-11-26 16:24 - 2024-10-16 16:41 - 000000950 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Annotator.lnk
2025-11-26 16:24 - 2024-10-16 16:41 - 000000938 _____ C:\Users\Public\Desktop\PDF Annotator.lnk
2025-11-26 16:24 - 2024-10-16 16:41 - 000000000 ____D C:\Program Files\PDF Annotator
2025-11-26 16:23 - 2024-10-16 16:41 - 000000000 ____D C:\Users\mail\AppData\Local\PDF Annotator
2025-11-26 10:49 - 2024-10-15 16:56 - 000001067 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-11-26 10:12 - 2024-09-25 03:18 - 000003940 _____ C:\Windows\system32\Tasks\Dell SupportAssistAgent AutoUpdate
2025-11-26 10:11 - 2024-09-25 03:06 - 000000000 ____D C:\Program Files (x86)\Dell
2025-11-21 12:44 - 2025-01-17 11:46 - 000000001 _____ C:\Users\mail\.lock
2025-11-21 12:44 - 2025-01-17 11:46 - 000000000 ____D C:\Users\mail\BCockpit
2025-11-21 12:44 - 2024-10-15 16:38 - 000000000 ____D C:\Users\mail
2025-11-19 18:50 - 2024-10-21 15:27 - 000002175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2025-11-19 18:50 - 2024-10-21 15:27 - 000002046 _____ C:\Users\mail\Desktop\Google Drive.lnk
2025-11-18 12:08 - 2024-09-22 11:07 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-11-12 07:56 - 2025-07-09 19:00 - 000000000 ____D C:\Windows\system32\ruxim
2025-11-12 07:56 - 2025-01-08 14:49 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-11-12 07:56 - 2024-09-22 11:54 - 000000000 ____D C:\Windows\InboxApps
2025-11-12 07:56 - 2024-06-01 10:34 - 000000000 ____D C:\Windows\SysWOW64\de
2025-11-12 07:56 - 2024-06-01 10:34 - 000000000 ____D C:\Windows\system32\de
2025-11-12 07:56 - 2024-04-01 09:08 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\UUS
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\setup
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\InstallShield
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\Dism
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemResources
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinMetadata
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\vi-VN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ur-PK
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ug-CN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\tt-RU
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\te-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ta-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\sq-AL
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ShellExperiences
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\setup
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\quz-PE
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-plocm
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-ploc
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\pa-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\or-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\oobe
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\nn-NO
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ne-NP
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mt-MT
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mr-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ml-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mk-MK
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mi-NZ
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\migwiz
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lv-LV
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lt-LT
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lo-LA
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lb-LU
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kok-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kn-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\km-KH
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kk-KZ
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ka-GE
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\is-IS
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\id-ID
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hy-AM
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hi-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gu-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gl-ES
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gd-GB
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ga-IE
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fil-PH
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fa-IR
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\eu-ES
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\et-EE
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\es-MX
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\Dism
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\DDFs
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\cy-GB
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ca-ES
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\bn-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\be-BY
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\as-IN
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\appraiser
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\am-ET
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\af-ZA
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellExperiences
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellComponents
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\Provisioning
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\PolicyDefinitions
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\DiagTrack
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\BrowserCore
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\bcastdvr
2025-11-12 07:56 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-11-11 20:27 - 2024-10-16 08:00 - 000000000 ____D C:\Windows\system32\MRT
2025-11-11 20:24 - 2024-10-16 08:00 - 215625816 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-11-11 20:24 - 2024-09-25 03:05 - 000000000 ____D C:\ProgramData\Package Cache
2025-11-11 20:23 - 2024-09-25 03:05 - 000000000 ____D C:\Program Files\dotnet
2025-11-11 20:08 - 2024-09-22 11:10 - 003277824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-11-11 08:38 - 2024-10-21 07:24 - 000002464 ____H C:\Users\mail\Documents\Default.rdp
2025-11-10 11:51 - 2025-11-04 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother P-touch
2025-11-10 11:48 - 2025-11-04 17:39 - 000000000 ____D C:\Program Files (x86)\Brother
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ========
2025-12-01 07:21 - 2025-12-01 07:21 - 000000211 _____ () C:\Users\mail\AppData\Roaming\com.reolink.app.client
==================== SigCheck ============================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
==================== Ende von FRST.txt ======================== --- --- --- |