|
Log-Analyse und Auswertung: Verdacht: PC infiziertWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
15.03.2014, 14:24 | #1 |
| Verdacht: PC infiziert Hallo, ich habe einen Verdacht, dass mein Computer Infiziert ist. Ich habe Schon Tests durchgeführt und im Anhang sind die Loffiles. Danke Felix |
15.03.2014, 16:49 | #2 |
/// the machine /// TB-Ausbilder | Verdacht: PC infiziert hi,
__________________ich sehe keinen Anhang. Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
15.03.2014, 17:09 | #3 |
| Verdacht: PC infiziertCode:
ATTFilter 14:14:13.0220 4664 TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42 14:14:14.0688 4664 ============================================================ 14:14:14.0688 4664 Current date / time: 2014/03/15 14:14:14.0688 14:14:14.0688 4664 SystemInfo: 14:14:14.0688 4664 14:14:14.0688 4664 OS Version: 6.1.7601 ServicePack: 1.0 14:14:14.0688 4664 Product type: Workstation 14:14:14.0688 4664 ComputerName: FELIX-PC 14:14:14.0688 4664 UserName: Felix 14:14:14.0688 4664 Windows directory: C:\Windows 14:14:14.0689 4664 System windows directory: C:\Windows 14:14:14.0689 4664 Running under WOW64 14:14:14.0689 4664 Processor architecture: Intel x64 14:14:14.0689 4664 Number of processors: 8 14:14:14.0689 4664 Page size: 0x1000 14:14:14.0689 4664 Boot type: Normal boot 14:14:14.0689 4664 ============================================================ 14:14:15.0000 4664 Drive \Device\Harddisk0\DR0 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:14:15.0006 4664 ============================================================ 14:14:15.0006 4664 \Device\Harddisk0\DR0: 14:14:15.0007 4664 MBR partitions: 14:14:15.0007 4664 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 14:14:15.0007 4664 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x57513000 14:14:15.0007 4664 ============================================================ 14:14:15.0025 4664 C: <-> \Device\Harddisk0\DR0\Partition2 14:14:15.0025 4664 ============================================================ 14:14:15.0025 4664 Initialize success 14:14:15.0025 4664 ============================================================ 14:14:15.0798 2220 ============================================================ 14:14:15.0798 2220 Scan started 14:14:15.0798 2220 Mode: Manual; 14:14:15.0798 2220 ============================================================ 14:14:16.0577 2220 ================ Scan system memory ======================== 14:14:16.0577 2220 System memory - ok 14:14:16.0577 2220 ================ Scan services ============================= 14:14:16.0667 2220 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 14:14:16.0688 2220 1394ohci - ok 14:14:16.0709 2220 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys 14:14:16.0712 2220 ACPI - ok 14:14:16.0723 2220 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 14:14:16.0736 2220 AcpiPmi - ok 14:14:16.0804 2220 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 14:14:16.0805 2220 AdobeARMservice - ok 14:14:16.0834 2220 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 14:14:16.0845 2220 adp94xx - ok 14:14:16.0853 2220 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 14:14:16.0893 2220 adpahci - ok 14:14:16.0898 2220 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 14:14:16.0905 2220 adpu320 - ok 14:14:16.0947 2220 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 14:14:16.0948 2220 AeLookupSvc - ok 14:14:16.0995 2220 [ 79059559E89D06E8B80CE2944BE20228 ] AFD C:\Windows\system32\drivers\afd.sys 14:14:17.0000 2220 AFD - ok 14:14:17.0016 2220 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys 14:14:17.0032 2220 agp440 - ok 14:14:17.0059 2220 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe 14:14:17.0065 2220 ALG - ok 14:14:17.0078 2220 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys 14:14:17.0083 2220 aliide - ok 14:14:17.0097 2220 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys 14:14:17.0101 2220 amdide - ok 14:14:17.0109 2220 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 14:14:17.0114 2220 AmdK8 - ok 14:14:17.0117 2220 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 14:14:17.0122 2220 AmdPPM - ok 14:14:17.0136 2220 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys 14:14:17.0141 2220 amdsata - ok 14:14:17.0146 2220 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 14:14:17.0164 2220 amdsbs - ok 14:14:17.0174 2220 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys 14:14:17.0178 2220 amdxata - ok 14:14:17.0267 2220 [ 4D282B9C5BB05DF92C9F3977DFB9F916 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 14:14:17.0272 2220 AntiVirSchedulerService - ok 14:14:17.0317 2220 [ 65AF41A7A2C5B6693E1B4164E7632C3E ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 14:14:17.0323 2220 AntiVirService - ok 14:14:17.0367 2220 [ 3D15C6EDBF84D792ACEBD2289546DBAF ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE 14:14:17.0376 2220 AntiVirWebService - ok 14:14:17.0415 2220 [ B342CD9AA44E4AE99E2368EBDBC2E17A ] APNMCP C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe 14:14:17.0417 2220 APNMCP - ok 14:14:17.0462 2220 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys 14:14:17.0467 2220 AppID - ok 14:14:17.0471 2220 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll 14:14:17.0508 2220 AppIDSvc - ok 14:14:17.0546 2220 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll 14:14:17.0547 2220 Appinfo - ok 14:14:17.0633 2220 [ 30E3850F303EAE5C364782EA78579CC9 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 14:14:17.0634 2220 Apple Mobile Device - ok 14:14:17.0649 2220 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll 14:14:17.0658 2220 AppMgmt - ok 14:14:17.0662 2220 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys 14:14:17.0679 2220 arc - ok 14:14:17.0683 2220 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 14:14:17.0690 2220 arcsas - ok 14:14:17.0766 2220 [ FB03A917C1294D3E6D671F24722E1BA3 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe 14:14:17.0775 2220 asComSvc - ok 14:14:17.0802 2220 [ A63173897EA1A73A75D0E65036DE5B15 ] asHmComSvc C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe 14:14:17.0808 2220 asHmComSvc - ok 14:14:17.0862 2220 [ FEF9DD9EA587F8886ADE43C1BEFBDAFE ] AsIO C:\Windows\syswow64\drivers\AsIO.sys 14:14:17.0867 2220 AsIO - ok 14:14:17.0891 2220 [ 954950D11ADA98AC1B7EE3C770E4622C ] asmthub3 C:\Windows\system32\DRIVERS\asmthub3.sys 14:14:17.0897 2220 asmthub3 - ok 14:14:17.0923 2220 [ 01DBB05DB1DB95803E3C9F2B49AFE79C ] asmtxhci C:\Windows\system32\DRIVERS\asmtxhci.sys 14:14:17.0933 2220 asmtxhci - ok 14:14:18.0011 2220 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:14:18.0018 2220 aspnet_state - ok 14:14:18.0068 2220 [ 5C31DFB196CB3A488A041881634D86D2 ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe 14:14:18.0074 2220 AsSysCtrlService - ok 14:14:18.0090 2220 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 14:14:18.0091 2220 AsyncMac - ok 14:14:18.0115 2220 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys 14:14:18.0119 2220 atapi - ok 14:14:18.0151 2220 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 14:14:18.0156 2220 AudioEndpointBuilder - ok 14:14:18.0164 2220 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll 14:14:18.0169 2220 AudioSrv - ok 14:14:18.0221 2220 [ 7806BFCD1D7FA5EC23F7324D4EAFD25B ] avgntflt C:\Windows\system32\DRIVERS\avgntflt.sys 14:14:18.0229 2220 avgntflt - ok 14:14:18.0266 2220 [ C3A58DBD18786C338126D30BF8C33D72 ] avipbb C:\Windows\system32\DRIVERS\avipbb.sys 14:14:18.0274 2220 avipbb - ok 14:14:18.0302 2220 [ 390184FAD8FCC1B6DA25AEBAE928C3B6 ] avkmgr C:\Windows\system32\DRIVERS\avkmgr.sys 14:14:18.0307 2220 avkmgr - ok 14:14:18.0343 2220 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll 14:14:18.0401 2220 AxInstSV - ok 14:14:18.0418 2220 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 14:14:18.0429 2220 b06bdrv - ok 14:14:18.0451 2220 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 14:14:18.0458 2220 b57nd60a - ok 14:14:18.0488 2220 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll 14:14:18.0496 2220 BDESVC - ok 14:14:18.0504 2220 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys 14:14:18.0507 2220 Beep - ok 14:14:18.0559 2220 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll 14:14:18.0566 2220 BFE - ok 14:14:18.0619 2220 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll 14:14:18.0629 2220 BITS - ok 14:14:18.0642 2220 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 14:14:18.0646 2220 blbdrive - ok 14:14:18.0705 2220 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 14:14:18.0710 2220 Bonjour Service - ok 14:14:18.0729 2220 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 14:14:18.0736 2220 bowser - ok 14:14:18.0740 2220 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 14:14:18.0744 2220 BrFiltLo - ok 14:14:18.0747 2220 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 14:14:18.0751 2220 BrFiltUp - ok 14:14:18.0770 2220 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll 14:14:18.0771 2220 Browser - ok 14:14:18.0775 2220 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys 14:14:18.0781 2220 Brserid - ok 14:14:18.0784 2220 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 14:14:18.0787 2220 BrSerWdm - ok 14:14:18.0789 2220 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 14:14:18.0792 2220 BrUsbMdm - ok 14:14:18.0794 2220 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 14:14:18.0797 2220 BrUsbSer - ok 14:14:18.0800 2220 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 14:14:18.0821 2220 BTHMODEM - ok 14:14:18.0825 2220 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll 14:14:18.0832 2220 bthserv - ok 14:14:18.0865 2220 [ BFC427F02F0E77C79117B3B62D983839 ] busenum C:\Windows\system32\DRIVERS\SteelBus64.sys 14:14:18.0869 2220 busenum - ok 14:14:18.0872 2220 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 14:14:18.0875 2220 cdfs - ok 14:14:18.0903 2220 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys 14:14:18.0908 2220 cdrom - ok 14:14:18.0930 2220 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll 14:14:18.0930 2220 CertPropSvc - ok 14:14:18.0933 2220 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys 14:14:18.0946 2220 circlass - ok 14:14:18.0964 2220 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys 14:14:18.0966 2220 CLFS - ok 14:14:19.0021 2220 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:14:19.0043 2220 clr_optimization_v2.0.50727_32 - ok 14:14:19.0089 2220 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:14:19.0096 2220 clr_optimization_v2.0.50727_64 - ok 14:14:19.0160 2220 [ E87213F37A13E2B54391E40934F071D0 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:14:19.0162 2220 clr_optimization_v4.0.30319_32 - ok 14:14:19.0173 2220 [ 4AEDAB50F83580D0B4D6CF78191F92AA ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:14:19.0174 2220 clr_optimization_v4.0.30319_64 - ok 14:14:19.0178 2220 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 14:14:19.0182 2220 CmBatt - ok 14:14:19.0204 2220 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys 14:14:19.0208 2220 cmdide - ok 14:14:19.0237 2220 [ EBF28856F69CF094A902F884CF989706 ] CNG C:\Windows\system32\Drivers\cng.sys 14:14:19.0263 2220 CNG - ok 14:14:19.0283 2220 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 14:14:19.0287 2220 Compbatt - ok 14:14:19.0316 2220 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 14:14:19.0339 2220 CompositeBus - ok 14:14:19.0342 2220 COMSysApp - ok 14:14:19.0369 2220 cpuz136 - ok 14:14:19.0380 2220 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 14:14:19.0382 2220 crcdisk - ok 14:14:19.0413 2220 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll 14:14:19.0415 2220 CryptSvc - ok 14:14:19.0448 2220 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys 14:14:19.0462 2220 CSC - ok 14:14:19.0513 2220 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll 14:14:19.0520 2220 CscService - ok 14:14:19.0569 2220 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll 14:14:19.0576 2220 DcomLaunch - ok 14:14:19.0624 2220 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll 14:14:19.0628 2220 defragsvc - ok 14:14:19.0675 2220 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 14:14:19.0682 2220 DfsC - ok 14:14:19.0697 2220 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll 14:14:19.0701 2220 Dhcp - ok 14:14:19.0712 2220 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys 14:14:19.0713 2220 discache - ok 14:14:19.0717 2220 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys 14:14:19.0724 2220 Disk - ok 14:14:19.0736 2220 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll 14:14:19.0738 2220 Dnscache - ok 14:14:19.0767 2220 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll 14:14:19.0780 2220 dot3svc - ok 14:14:19.0809 2220 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll 14:14:19.0811 2220 DPS - ok 14:14:19.0838 2220 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 14:14:19.0842 2220 drmkaud - ok 14:14:19.0910 2220 [ 88612F1CE3BF42256913BF6E61C70D52 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 14:14:19.0926 2220 DXGKrnl - ok 14:14:19.0954 2220 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll 14:14:19.0956 2220 EapHost - ok 14:14:20.0017 2220 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 14:14:20.0108 2220 ebdrv - ok 14:14:20.0132 2220 [ 4D71227301DD8D09097B9E4CC6527E5A ] EFS C:\Windows\System32\lsass.exe 14:14:20.0132 2220 EFS - ok 14:14:20.0176 2220 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 14:14:20.0185 2220 ehRecvr - ok 14:14:20.0207 2220 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe 14:14:20.0211 2220 ehSched - ok 14:14:20.0229 2220 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 14:14:20.0240 2220 elxstor - ok 14:14:20.0281 2220 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys 14:14:20.0293 2220 ErrDev - ok 14:14:20.0379 2220 ESEADriver2 - ok 14:14:20.0402 2220 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll 14:14:20.0407 2220 EventSystem - ok 14:14:20.0412 2220 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys 14:14:20.0420 2220 exfat - ok 14:14:20.0425 2220 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys 14:14:20.0432 2220 fastfat - ok 14:14:20.0486 2220 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe 14:14:20.0493 2220 Fax - ok 14:14:20.0497 2220 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys 14:14:20.0513 2220 fdc - ok 14:14:20.0516 2220 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll 14:14:20.0517 2220 fdPHost - ok 14:14:20.0535 2220 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll 14:14:20.0536 2220 FDResPub - ok 14:14:20.0546 2220 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 14:14:20.0551 2220 FileInfo - ok 14:14:20.0558 2220 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 14:14:20.0576 2220 Filetrace - ok 14:14:20.0632 2220 [ 73081CF28F0AE20A52CA4F67CEE6E6B0 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe 14:14:20.0680 2220 FLEXnet Licensing Service - ok 14:14:20.0684 2220 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 14:14:20.0714 2220 flpydisk - ok 14:14:20.0742 2220 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 14:14:20.0754 2220 FltMgr - ok 14:14:20.0798 2220 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll 14:14:20.0809 2220 FontCache - ok 14:14:20.0873 2220 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:14:20.0886 2220 FontCache3.0.0.0 - ok 14:14:20.0901 2220 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 14:14:20.0914 2220 FsDepends - ok 14:14:20.0936 2220 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 14:14:20.0941 2220 Fs_Rec - ok 14:14:20.0988 2220 [ B99C240DEA85007044E178C1C9C75659 ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe 14:14:21.0005 2220 Futuremark SystemInfo Service - ok 14:14:21.0032 2220 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 14:14:21.0035 2220 fvevol - ok 14:14:21.0047 2220 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 14:14:21.0053 2220 gagp30kx - ok 14:14:21.0091 2220 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 14:14:21.0096 2220 GEARAspiWDM - ok 14:14:21.0127 2220 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll 14:14:21.0135 2220 gpsvc - ok 14:14:21.0197 2220 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:14:21.0199 2220 gupdate - ok 14:14:21.0207 2220 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:14:21.0208 2220 gupdatem - ok 14:14:21.0218 2220 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 14:14:21.0237 2220 hcw85cir - ok 14:14:21.0281 2220 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 14:14:21.0294 2220 HdAudAddService - ok 14:14:21.0314 2220 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 14:14:21.0315 2220 HDAudBus - ok 14:14:21.0330 2220 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 14:14:21.0334 2220 HidBatt - ok 14:14:21.0339 2220 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 14:14:21.0356 2220 HidBth - ok 14:14:21.0361 2220 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 14:14:21.0364 2220 HidIr - ok 14:14:21.0387 2220 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll 14:14:21.0388 2220 hidserv - ok 14:14:21.0427 2220 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 14:14:21.0432 2220 HidUsb - ok 14:14:21.0457 2220 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll 14:14:21.0459 2220 hkmsvc - ok 14:14:21.0476 2220 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll 14:14:21.0479 2220 HomeGroupListener - ok 14:14:21.0500 2220 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 14:14:21.0503 2220 HomeGroupProvider - ok 14:14:21.0515 2220 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 14:14:21.0520 2220 HpSAMD - ok 14:14:21.0555 2220 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys 14:14:21.0560 2220 HTTP - ok 14:14:21.0583 2220 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 14:14:21.0584 2220 hwpolicy - ok 14:14:21.0610 2220 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 14:14:21.0617 2220 i8042prt - ok 14:14:21.0638 2220 [ D1E30259353E7D8D1B713A76CDDEB88B ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 14:14:21.0642 2220 iaStor - ok 14:14:21.0666 2220 [ 2F74D37E4D7D0B04136261C969F1D23D ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 14:14:21.0667 2220 IAStorDataMgrSvc - ok 14:14:21.0702 2220 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 14:14:21.0714 2220 iaStorV - ok 14:14:21.0733 2220 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 14:14:21.0760 2220 IDriverT - ok 14:14:21.0816 2220 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:14:21.0859 2220 idsvc - ok 14:14:21.0875 2220 IEEtwCollectorService - ok 14:14:21.0903 2220 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 14:14:21.0908 2220 iirsp - ok 14:14:21.0955 2220 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT C:\Windows\System32\ikeext.dll 14:14:21.0964 2220 IKEEXT - ok 14:14:22.0023 2220 [ 589B94A9B73A0E819FF873743A480834 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 14:14:22.0090 2220 IntcAzAudAddService - ok 14:14:22.0113 2220 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys 14:14:22.0130 2220 intelide - ok 14:14:22.0147 2220 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 14:14:22.0148 2220 intelppm - ok 14:14:22.0163 2220 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll 14:14:22.0174 2220 IPBusEnum - ok 14:14:22.0192 2220 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:14:22.0199 2220 IpFilterDriver - ok 14:14:22.0234 2220 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 14:14:22.0241 2220 iphlpsvc - ok 14:14:22.0264 2220 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 14:14:22.0286 2220 IPMIDRV - ok 14:14:22.0303 2220 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 14:14:22.0309 2220 IPNAT - ok 14:14:22.0362 2220 [ 6660920D05A32DF2DC1260CEF0B6D172 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 14:14:22.0393 2220 iPod Service - ok 14:14:22.0400 2220 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 14:14:22.0405 2220 IRENUM - ok 14:14:22.0431 2220 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys 14:14:22.0436 2220 isapnp - ok 14:14:22.0453 2220 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 14:14:22.0464 2220 iScsiPrt - ok 14:14:22.0485 2220 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 14:14:22.0504 2220 kbdclass - ok 14:14:22.0528 2220 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 14:14:22.0548 2220 kbdhid - ok 14:14:22.0565 2220 [ 4D71227301DD8D09097B9E4CC6527E5A ] KeyIso C:\Windows\system32\lsass.exe 14:14:22.0566 2220 KeyIso - ok 14:14:22.0596 2220 [ 8F489706472F7E9A06BAAA198703FA64 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 14:14:22.0617 2220 KSecDD - ok 14:14:22.0632 2220 [ 868A2CAAB12EFC7A021682BCA0EEC54C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 14:14:22.0641 2220 KSecPkg - ok 14:14:22.0649 2220 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 14:14:22.0653 2220 ksthunk - ok 14:14:22.0677 2220 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll 14:14:22.0691 2220 KtmRm - ok 14:14:22.0717 2220 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll 14:14:22.0721 2220 LanmanServer - ok 14:14:22.0754 2220 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 14:14:22.0758 2220 LanmanWorkstation - ok 14:14:22.0768 2220 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 14:14:22.0787 2220 lltdio - ok 14:14:22.0811 2220 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll 14:14:22.0823 2220 lltdsvc - ok 14:14:22.0837 2220 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll 14:14:22.0839 2220 lmhosts - ok 14:14:22.0851 2220 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 14:14:22.0858 2220 LSI_FC - ok 14:14:22.0862 2220 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 14:14:22.0869 2220 LSI_SAS - ok 14:14:22.0872 2220 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 14:14:22.0878 2220 LSI_SAS2 - ok 14:14:22.0883 2220 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 14:14:22.0889 2220 LSI_SCSI - ok 14:14:22.0892 2220 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys 14:14:22.0897 2220 luafv - ok 14:14:22.0915 2220 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 14:14:22.0921 2220 Mcx2Svc - ok 14:14:22.0934 2220 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 14:14:22.0937 2220 megasas - ok 14:14:22.0942 2220 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 14:14:22.0948 2220 MegaSR - ok 14:14:22.0960 2220 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll 14:14:22.0961 2220 MMCSS - ok 14:14:22.0968 2220 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys 14:14:22.0971 2220 Modem - ok 14:14:22.0985 2220 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys 14:14:22.0985 2220 monitor - ok 14:14:22.0991 2220 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 14:14:22.0994 2220 mouclass - ok 14:14:23.0010 2220 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 14:14:23.0013 2220 mouhid - ok 14:14:23.0039 2220 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 14:14:23.0039 2220 mountmgr - ok 14:14:23.0051 2220 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys 14:14:23.0057 2220 mpio - ok 14:14:23.0063 2220 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 14:14:23.0082 2220 mpsdrv - ok 14:14:23.0116 2220 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll 14:14:23.0124 2220 MpsSvc - ok 14:14:23.0149 2220 [ 1A4F75E63C9FB84B85DFFC6B63FD5404 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 14:14:23.0156 2220 MRxDAV - ok 14:14:23.0177 2220 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 14:14:23.0181 2220 mrxsmb - ok 14:14:23.0197 2220 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:14:23.0206 2220 mrxsmb10 - ok 14:14:23.0224 2220 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:14:23.0231 2220 mrxsmb20 - ok 14:14:23.0246 2220 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys 14:14:23.0251 2220 msahci - ok 14:14:23.0262 2220 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys 14:14:23.0268 2220 msdsm - ok 14:14:23.0281 2220 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe 14:14:23.0289 2220 MSDTC - ok 14:14:23.0304 2220 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys 14:14:23.0308 2220 Msfs - ok 14:14:23.0324 2220 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 14:14:23.0327 2220 mshidkmdf - ok 14:14:23.0336 2220 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 14:14:23.0353 2220 msisadrv - ok 14:14:23.0382 2220 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 14:14:23.0402 2220 MSiSCSI - ok 14:14:23.0404 2220 msiserver - ok 14:14:23.0421 2220 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 14:14:23.0424 2220 MSKSSRV - ok 14:14:23.0433 2220 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 14:14:23.0436 2220 MSPCLOCK - ok 14:14:23.0439 2220 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 14:14:23.0442 2220 MSPQM - ok 14:14:23.0474 2220 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 14:14:23.0483 2220 MsRPC - ok 14:14:23.0515 2220 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 14:14:23.0515 2220 mssmbios - ok 14:14:23.0518 2220 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 14:14:23.0535 2220 MSTEE - ok 14:14:23.0539 2220 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 14:14:23.0543 2220 MTConfig - ok 14:14:23.0557 2220 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys 14:14:23.0576 2220 Mup - ok 14:14:23.0594 2220 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll 14:14:23.0600 2220 napagent - ok 14:14:23.0631 2220 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 14:14:23.0640 2220 NativeWifiP - ok 14:14:23.0682 2220 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys 14:14:23.0689 2220 NDIS - ok 14:14:23.0700 2220 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 14:14:23.0704 2220 NdisCap - ok 14:14:23.0722 2220 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 14:14:23.0741 2220 NdisTapi - ok 14:14:23.0757 2220 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 14:14:23.0762 2220 Ndisuio - ok 14:14:23.0784 2220 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 14:14:23.0792 2220 NdisWan - ok 14:14:23.0829 2220 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 14:14:23.0835 2220 NDProxy - ok 14:14:23.0839 2220 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 14:14:23.0844 2220 NetBIOS - ok 14:14:23.0868 2220 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 14:14:23.0870 2220 NetBT - ok 14:14:23.0890 2220 [ 4D71227301DD8D09097B9E4CC6527E5A ] Netlogon C:\Windows\system32\lsass.exe 14:14:23.0891 2220 Netlogon - ok 14:14:23.0919 2220 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll 14:14:23.0924 2220 Netman - ok 14:14:23.0987 2220 [ 21318671BCAD3ACF16638F98D4D00973 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:24.0019 2220 NetMsmqActivator - ok 14:14:24.0023 2220 [ 21318671BCAD3ACF16638F98D4D00973 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:24.0025 2220 NetPipeActivator - ok 14:14:24.0046 2220 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll 14:14:24.0051 2220 netprofm - ok 14:14:24.0093 2220 [ B72BB9496A126FCFC7FC5945DED9B411 ] netr28x C:\Windows\system32\DRIVERS\netr28x.sys 14:14:24.0105 2220 netr28x - ok 14:14:24.0125 2220 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:24.0127 2220 NetTcpActivator - ok 14:14:24.0131 2220 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:24.0133 2220 NetTcpPortSharing - ok 14:14:24.0146 2220 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 14:14:24.0152 2220 nfrd960 - ok 14:14:24.0181 2220 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll 14:14:24.0185 2220 NlaSvc - ok 14:14:24.0189 2220 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys 14:14:24.0194 2220 Npfs - ok 14:14:24.0197 2220 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll 14:14:24.0199 2220 nsi - ok 14:14:24.0229 2220 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 14:14:24.0230 2220 nsiproxy - ok 14:14:24.0265 2220 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 14:14:24.0323 2220 Ntfs - ok 14:14:24.0358 2220 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys 14:14:24.0361 2220 Null - ok 14:14:24.0391 2220 [ 805F0C2B9C07E4C0F74D0EF70E9E827A ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 14:14:24.0400 2220 NVHDA - ok 14:14:24.0557 2220 [ EE6B7B6A54BCAFF516E30B1C15467495 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 14:14:24.0706 2220 nvlddmkm - ok 14:14:24.0747 2220 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys 14:14:24.0752 2220 nvraid - ok 14:14:24.0767 2220 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys 14:14:24.0775 2220 nvstor - ok 14:14:25.0020 2220 [ 505BB5E5A0BE786DBB813A27A46355A5 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe 14:14:25.0198 2220 NvStreamSvc - ok 14:14:25.0228 2220 [ 25626309AD2F81D47C829CCB5E46E478 ] nvsvc C:\Windows\system32\nvvsvc.exe 14:14:25.0236 2220 nvsvc - ok 14:14:25.0292 2220 [ BC120F98DCA622BE48D16B4A5714CA71 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 14:14:25.0326 2220 nvUpdatusService - ok 14:14:25.0363 2220 [ 220B120EF4C36B4A3E23FAEC91E2FCE3 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys 14:14:25.0368 2220 nvvad_WaveExtensible - ok 14:14:25.0383 2220 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 14:14:25.0390 2220 nv_agp - ok 14:14:25.0422 2220 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 14:14:25.0437 2220 ohci1394 - ok 14:14:25.0469 2220 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 14:14:25.0487 2220 ose - ok 14:14:25.0509 2220 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 14:14:25.0514 2220 p2pimsvc - ok 14:14:25.0530 2220 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll 14:14:25.0535 2220 p2psvc - ok 14:14:25.0544 2220 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys 14:14:25.0549 2220 Parport - ok 14:14:25.0577 2220 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys 14:14:25.0583 2220 partmgr - ok 14:14:25.0591 2220 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll 14:14:25.0594 2220 PcaSvc - ok 14:14:25.0606 2220 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys 14:14:25.0616 2220 pci - ok 14:14:25.0631 2220 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys 14:14:25.0635 2220 pciide - ok 14:14:25.0640 2220 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 14:14:25.0647 2220 pcmcia - ok 14:14:25.0658 2220 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys 14:14:25.0662 2220 pcw - ok 14:14:25.0681 2220 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys 14:14:25.0705 2220 PEAUTH - ok 14:14:25.0758 2220 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 14:14:25.0780 2220 PeerDistSvc - ok 14:14:25.0830 2220 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe 14:14:25.0845 2220 PerfHost - ok 14:14:25.0893 2220 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll 14:14:25.0926 2220 pla - ok 14:14:25.0951 2220 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 14:14:25.0957 2220 PlugPlay - ok 14:14:25.0975 2220 PnkBstrA - ok 14:14:25.0986 2220 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 14:14:26.0024 2220 PNRPAutoReg - ok 14:14:26.0031 2220 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 14:14:26.0035 2220 PNRPsvc - ok 14:14:26.0063 2220 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 14:14:26.0069 2220 PolicyAgent - ok 14:14:26.0092 2220 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll 14:14:26.0096 2220 Power - ok 14:14:26.0124 2220 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 14:14:26.0131 2220 PptpMiniport - ok 14:14:26.0150 2220 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys 14:14:26.0157 2220 Processor - ok 14:14:26.0178 2220 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll 14:14:26.0181 2220 ProfSvc - ok 14:14:26.0189 2220 [ 4D71227301DD8D09097B9E4CC6527E5A ] ProtectedStorage C:\Windows\system32\lsass.exe 14:14:26.0191 2220 ProtectedStorage - ok 14:14:26.0227 2220 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys 14:14:26.0229 2220 Psched - ok 14:14:26.0256 2220 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 14:14:26.0281 2220 ql2300 - ok 14:14:26.0285 2220 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 14:14:26.0291 2220 ql40xx - ok 14:14:26.0306 2220 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll 14:14:26.0329 2220 QWAVE - ok 14:14:26.0342 2220 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 14:14:26.0347 2220 QWAVEdrv - ok 14:14:26.0357 2220 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 14:14:26.0360 2220 RasAcd - ok 14:14:26.0377 2220 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 14:14:26.0391 2220 RasAgileVpn - ok 14:14:26.0394 2220 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll 14:14:26.0413 2220 RasAuto - ok 14:14:26.0426 2220 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 14:14:26.0433 2220 Rasl2tp - ok 14:14:26.0442 2220 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll 14:14:26.0454 2220 RasMan - ok 14:14:26.0458 2220 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 14:14:26.0463 2220 RasPppoe - ok 14:14:26.0467 2220 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 14:14:26.0472 2220 RasSstp - ok 14:14:26.0488 2220 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 14:14:26.0497 2220 rdbss - ok 14:14:26.0505 2220 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 14:14:26.0521 2220 rdpbus - ok 14:14:26.0547 2220 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 14:14:26.0548 2220 RDPCDD - ok 14:14:26.0581 2220 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 14:14:26.0588 2220 RDPDR - ok 14:14:26.0605 2220 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 14:14:26.0605 2220 RDPENCDD - ok 14:14:26.0612 2220 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 14:14:26.0613 2220 RDPREFMP - ok 14:14:26.0628 2220 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 14:14:26.0648 2220 RDPWD - ok 14:14:26.0686 2220 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 14:14:26.0696 2220 rdyboost - ok 14:14:26.0726 2220 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll 14:14:26.0749 2220 RemoteAccess - ok 14:14:26.0754 2220 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll 14:14:26.0765 2220 RemoteRegistry - ok 14:14:26.0781 2220 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 14:14:26.0783 2220 RpcEptMapper - ok 14:14:26.0802 2220 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe 14:14:26.0806 2220 RpcLocator - ok 14:14:26.0826 2220 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll 14:14:26.0831 2220 RpcSs - ok 14:14:26.0834 2220 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 14:14:26.0839 2220 rspndr - ok 14:14:26.0864 2220 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 14:14:26.0882 2220 RTL8167 - ok 14:14:26.0910 2220 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys 14:14:26.0914 2220 s3cap - ok 14:14:26.0963 2220 [ 248ABD858FF7DCC966E5A54529DDD225 ] SaiH0255 C:\Windows\system32\DRIVERS\SaiH0255.sys 14:14:26.0971 2220 SaiH0255 - ok 14:14:26.0989 2220 [ 86873AA9867CA9D78850EE9DC1C6AE5B ] SAlphamHid C:\Windows\system32\DRIVERS\SAlpham64.sys 14:14:26.0993 2220 SAlphamHid - ok 14:14:26.0997 2220 [ 4D71227301DD8D09097B9E4CC6527E5A ] SamSs C:\Windows\system32\lsass.exe 14:14:26.0998 2220 SamSs - ok 14:14:27.0030 2220 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 14:14:27.0038 2220 sbp2port - ok 14:14:27.0052 2220 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll 14:14:27.0063 2220 SCardSvr - ok 14:14:27.0095 2220 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 14:14:27.0100 2220 scfilter - ok 14:14:27.0145 2220 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll 14:14:27.0156 2220 Schedule - ok 14:14:27.0189 2220 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll 14:14:27.0190 2220 SCPolicySvc - ok 14:14:27.0224 2220 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll 14:14:27.0240 2220 SDRSVC - ok 14:14:27.0247 2220 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 14:14:27.0260 2220 secdrv - ok 14:14:27.0271 2220 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll 14:14:27.0278 2220 seclogon - ok 14:14:27.0297 2220 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll 14:14:27.0299 2220 SENS - ok 14:14:27.0316 2220 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll 14:14:27.0325 2220 SensrSvc - ok 14:14:27.0342 2220 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 14:14:27.0346 2220 Serenum - ok 14:14:27.0356 2220 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys 14:14:27.0373 2220 Serial - ok 14:14:27.0396 2220 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 14:14:27.0401 2220 sermouse - ok 14:14:27.0434 2220 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll 14:14:27.0437 2220 SessionEnv - ok 14:14:27.0460 2220 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 14:14:27.0471 2220 sffdisk - ok 14:14:27.0490 2220 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 14:14:27.0495 2220 sffp_mmc - ok 14:14:27.0499 2220 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 14:14:27.0503 2220 sffp_sd - ok 14:14:27.0515 2220 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 14:14:27.0520 2220 sfloppy - ok 14:14:27.0542 2220 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll 14:14:27.0569 2220 SharedAccess - ok 14:14:27.0587 2220 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll 14:14:27.0592 2220 ShellHWDetection - ok 14:14:27.0611 2220 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 14:14:27.0629 2220 SiSRaid2 - ok 14:14:27.0642 2220 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 14:14:27.0661 2220 SiSRaid4 - ok 14:14:27.0679 2220 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys 14:14:27.0685 2220 Smb - ok 14:14:27.0707 2220 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe 14:14:27.0713 2220 SNMPTRAP - ok 14:14:27.0718 2220 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys 14:14:27.0723 2220 spldr - ok 14:14:27.0747 2220 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe 14:14:27.0756 2220 Spooler - ok 14:14:27.0839 2220 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe 14:14:27.0898 2220 sppsvc - ok 14:14:27.0902 2220 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll 14:14:27.0908 2220 sppuinotify - ok 14:14:27.0939 2220 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys 14:14:27.0965 2220 srv - ok 14:14:27.0987 2220 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 14:14:27.0998 2220 srv2 - ok 14:14:28.0022 2220 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 14:14:28.0031 2220 srvnet - ok 14:14:28.0047 2220 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 14:14:28.0051 2220 SSDPSRV - ok 14:14:28.0060 2220 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll 14:14:28.0067 2220 SstpSvc - ok 14:14:28.0095 2220 [ 2F3B5A3567FFB343D8867C3D34C687F1 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 14:14:28.0132 2220 Steam Client Service - ok 14:14:28.0186 2220 [ 2222073BE0232E70A397B8302293AA9D ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 14:14:28.0191 2220 Stereo Service - ok 14:14:28.0209 2220 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 14:14:28.0224 2220 stexstor - ok 14:14:28.0267 2220 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll 14:14:28.0274 2220 stisvc - ok 14:14:28.0291 2220 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys 14:14:28.0297 2220 storflt - ok 14:14:28.0316 2220 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll 14:14:28.0324 2220 StorSvc - ok 14:14:28.0332 2220 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys 14:14:28.0337 2220 storvsc - ok 14:14:28.0350 2220 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys 14:14:28.0354 2220 swenum - ok 14:14:28.0371 2220 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll 14:14:28.0378 2220 swprv - ok 14:14:28.0428 2220 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll 14:14:28.0450 2220 SysMain - ok 14:14:28.0481 2220 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll 14:14:28.0483 2220 TabletInputService - ok 14:14:28.0516 2220 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll 14:14:28.0537 2220 TapiSrv - ok 14:14:28.0559 2220 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll 14:14:28.0569 2220 TBS - ok 14:14:28.0622 2220 [ 40AF23633D197905F03AB5628C558C51 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 14:14:28.0664 2220 Tcpip - ok 14:14:28.0700 2220 [ 40AF23633D197905F03AB5628C558C51 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 14:14:28.0712 2220 TCPIP6 - ok 14:14:28.0726 2220 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 14:14:28.0729 2220 tcpipreg - ok 14:14:28.0747 2220 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 14:14:28.0749 2220 TDPIPE - ok 14:14:28.0773 2220 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 14:14:28.0777 2220 TDTCP - ok 14:14:28.0801 2220 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 14:14:28.0817 2220 tdx - ok 14:14:29.0041 2220 [ 2B29FD3AF7B4FEB272CD1F6EEC8FE4BA ] TeamViewer9 C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe 14:14:29.0070 2220 TeamViewer9 - ok 14:14:29.0102 2220 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys 14:14:29.0109 2220 TermDD - ok 14:14:29.0148 2220 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll 14:14:29.0156 2220 TermService - ok 14:14:29.0170 2220 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll 14:14:29.0173 2220 Themes - ok 14:14:29.0186 2220 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll 14:14:29.0188 2220 THREADORDER - ok 14:14:29.0198 2220 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll 14:14:29.0200 2220 TrkWks - ok 14:14:29.0254 2220 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 14:14:29.0256 2220 TrustedInstaller - ok 14:14:29.0285 2220 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 14:14:29.0290 2220 tssecsrv - ok 14:14:29.0318 2220 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 14:14:29.0325 2220 TsUsbFlt - ok 14:14:29.0363 2220 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 14:14:29.0365 2220 tunnel - ok 14:14:29.0369 2220 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 14:14:29.0375 2220 uagp35 - ok 14:14:29.0399 2220 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 14:14:29.0409 2220 udfs - ok 14:14:29.0424 2220 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe 14:14:29.0434 2220 UI0Detect - ok 14:14:29.0458 2220 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 14:14:29.0464 2220 uliagpkx - ok 14:14:29.0500 2220 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 14:14:29.0506 2220 umbus - ok 14:14:29.0517 2220 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 14:14:29.0521 2220 UmPass - ok 14:14:29.0532 2220 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll 14:14:29.0536 2220 UmRdpService - ok 14:14:29.0555 2220 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll 14:14:29.0561 2220 upnphost - ok 14:14:29.0588 2220 [ C9E9D59C0099A9FF51697E9306A44240 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys 14:14:29.0593 2220 USBAAPL64 - ok 14:14:29.0626 2220 [ DCA68B0943D6FA415F0C56C92158A83A ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 14:14:29.0632 2220 usbccgp - ok 14:14:29.0669 2220 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys 14:14:29.0677 2220 usbcir - ok 14:14:29.0706 2220 [ 18A85013A3E0F7E1755365D287443965 ] usbehci C:\Windows\system32\drivers\usbehci.sys 14:14:29.0711 2220 usbehci - ok 14:14:29.0748 2220 [ 8D1196CFBB223621F2C67D45710F25BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 14:14:29.0759 2220 usbhub - ok 14:14:29.0788 2220 [ 765A92D428A8DB88B960DA5A8D6089DC ] usbohci C:\Windows\system32\drivers\usbohci.sys 14:14:29.0804 2220 usbohci - ok 14:14:29.0815 2220 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 14:14:29.0820 2220 usbprint - ok 14:14:29.0832 2220 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 14:14:29.0850 2220 USBSTOR - ok 14:14:29.0872 2220 [ DD253AFC3BC6CBA412342DE60C3647F3 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 14:14:29.0876 2220 usbuhci - ok 14:14:29.0889 2220 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll 14:14:29.0891 2220 UxSms - ok 14:14:29.0898 2220 [ 4D71227301DD8D09097B9E4CC6527E5A ] VaultSvc C:\Windows\system32\lsass.exe 14:14:29.0899 2220 VaultSvc - ok 14:14:29.0907 2220 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 14:14:29.0912 2220 vdrvroot - ok 14:14:29.0947 2220 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe 14:14:29.0971 2220 vds - ok 14:14:29.0985 2220 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 14:14:29.0989 2220 vga - ok 14:14:29.0997 2220 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys 14:14:30.0001 2220 VgaSave - ok 14:14:30.0031 2220 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 14:14:30.0042 2220 vhdmp - ok 14:14:30.0063 2220 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys 14:14:30.0068 2220 viaide - ok 14:14:30.0078 2220 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys 14:14:30.0088 2220 vmbus - ok 14:14:30.0099 2220 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 14:14:30.0116 2220 VMBusHID - ok 14:14:30.0133 2220 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys 14:14:30.0139 2220 volmgr - ok 14:14:30.0167 2220 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 14:14:30.0171 2220 volmgrx - ok 14:14:30.0183 2220 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys 14:14:30.0194 2220 volsnap - ok 14:14:30.0210 2220 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 14:14:30.0217 2220 vsmraid - ok 14:14:30.0263 2220 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe 14:14:30.0280 2220 VSS - ok 14:14:30.0293 2220 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 14:14:30.0298 2220 vwifibus - ok 14:14:30.0310 2220 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 14:14:30.0316 2220 vwififlt - ok 14:14:30.0334 2220 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll 14:14:30.0340 2220 W32Time - ok 14:14:30.0354 2220 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 14:14:30.0359 2220 WacomPen - ok 14:14:30.0379 2220 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 14:14:30.0386 2220 WANARP - ok 14:14:30.0399 2220 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 14:14:30.0401 2220 Wanarpv6 - ok 14:14:30.0447 2220 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe 14:14:30.0481 2220 wbengine - ok 14:14:30.0496 2220 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 14:14:30.0508 2220 WbioSrvc - ok 14:14:30.0541 2220 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll 14:14:30.0554 2220 wcncsvc - ok 14:14:30.0558 2220 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 14:14:30.0568 2220 WcsPlugInService - ok 14:14:30.0582 2220 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys 14:14:30.0587 2220 Wd - ok 14:14:30.0627 2220 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 14:14:30.0659 2220 Wdf01000 - ok 14:14:30.0672 2220 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll 14:14:30.0675 2220 WdiServiceHost - ok 14:14:30.0678 2220 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll 14:14:30.0681 2220 WdiSystemHost - ok 14:14:30.0711 2220 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll 14:14:30.0724 2220 WebClient - ok 14:14:30.0734 2220 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll 14:14:30.0747 2220 Wecsvc - ok 14:14:30.0761 2220 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll 14:14:30.0764 2220 wercplsupport - ok 14:14:30.0775 2220 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll 14:14:30.0778 2220 WerSvc - ok 14:14:30.0785 2220 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 14:14:30.0789 2220 WfpLwf - ok 14:14:30.0796 2220 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 14:14:30.0800 2220 WIMMount - ok 14:14:30.0819 2220 WinDefend - ok 14:14:30.0825 2220 WinHttpAutoProxySvc - ok 14:14:30.0856 2220 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 14:14:30.0859 2220 Winmgmt - ok 14:14:30.0928 2220 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll 14:14:30.0978 2220 WinRM - ok 14:14:31.0009 2220 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 14:14:31.0023 2220 WinUsb - ok 14:14:31.0053 2220 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll 14:14:31.0063 2220 Wlansvc - ok 14:14:31.0093 2220 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 14:14:31.0094 2220 WmiAcpi - ok 14:14:31.0111 2220 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 14:14:31.0130 2220 wmiApSrv - ok 14:14:31.0141 2220 WMPNetworkSvc - ok 14:14:31.0149 2220 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 14:14:31.0158 2220 WPCSvc - ok 14:14:31.0166 2220 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 14:14:31.0177 2220 WPDBusEnum - ok 14:14:31.0191 2220 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 14:14:31.0195 2220 ws2ifsl - ok 14:14:31.0210 2220 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll 14:14:31.0213 2220 wscsvc - ok 14:14:31.0216 2220 WSearch - ok 14:14:31.0271 2220 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll 14:14:31.0313 2220 wuauserv - ok 14:14:31.0334 2220 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 14:14:31.0335 2220 WudfPf - ok 14:14:31.0352 2220 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 14:14:31.0374 2220 WUDFRd - ok 14:14:31.0400 2220 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 14:14:31.0408 2220 wudfsvc - ok 14:14:31.0433 2220 [ 04F82965C09CBDF646B487E145060301 ] WwanSvc C:\Windows\System32\wwansvc.dll 14:14:31.0445 2220 WwanSvc - ok 14:14:31.0496 2220 [ 2EE48CFCE7CA8E0DB4C44C7476C0943B ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys 14:14:31.0502 2220 xusb21 - ok 14:14:31.0506 2220 ================ Scan global =============================== 14:14:31.0524 2220 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll 14:14:31.0554 2220 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll 14:14:31.0562 2220 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll 14:14:31.0575 2220 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll 14:14:31.0589 2220 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe 14:14:31.0594 2220 [Global] - ok 14:14:31.0595 2220 ================ Scan MBR ================================== 14:14:31.0609 2220 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 14:14:31.0751 2220 \Device\Harddisk0\DR0 - ok 14:14:31.0751 2220 ================ Scan VBR ================================== 14:14:31.0753 2220 [ 518C171B4A0D3D874884866760B80343 ] \Device\Harddisk0\DR0\Partition1 14:14:31.0755 2220 \Device\Harddisk0\DR0\Partition1 - ok 14:14:31.0773 2220 [ 8D426B6A146A2D2AB83F5DC10FC55D28 ] \Device\Harddisk0\DR0\Partition2 14:14:31.0775 2220 \Device\Harddisk0\DR0\Partition2 - ok 14:14:31.0775 2220 ============================================================ 14:14:31.0775 2220 Scan finished 14:14:31.0775 2220 ============================================================ 14:14:31.0785 1884 Detected object count: 0 14:14:31.0785 1884 Actual detected object count: 0 14:14:39.0551 4048 ============================================================ 14:14:39.0551 4048 Scan started 14:14:39.0551 4048 Mode: Manual; SigCheck; TDLFS; |
15.03.2014, 17:14 | #4 |
| Verdacht: PC infiziertCode:
ATTFilter 14:14:39.0551 4048 ============================================================ 14:14:39.0784 4048 ================ Scan system memory ======================== 14:14:39.0784 4048 System memory - ok 14:14:39.0785 4048 ================ Scan services ============================= 14:14:39.0893 4048 [ A87D604AEA360176311474C87A63BB88 ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 14:14:39.0986 4048 1394ohci - ok 14:14:40.0035 4048 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI C:\Windows\system32\drivers\ACPI.sys 14:14:40.0054 4048 ACPI - ok 14:14:40.0099 4048 [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 14:14:40.0161 4048 AcpiPmi - ok 14:14:40.0221 4048 [ B362181ED3771DC03B4141927C80F801 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 14:14:40.0235 4048 AdobeARMservice - ok 14:14:40.0260 4048 [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 14:14:40.0282 4048 adp94xx - ok 14:14:40.0290 4048 [ 597F78224EE9224EA1A13D6350CED962 ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 14:14:40.0300 4048 adpahci - ok 14:14:40.0303 4048 [ E109549C90F62FB570B9540C4B148E54 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 14:14:40.0311 4048 adpu320 - ok 14:14:40.0330 4048 [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 14:14:40.0418 4048 AeLookupSvc - ok 14:14:40.0452 4048 [ 79059559E89D06E8B80CE2944BE20228 ] AFD C:\Windows\system32\drivers\afd.sys 14:14:40.0501 4048 AFD - ok 14:14:40.0525 4048 [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440 C:\Windows\system32\drivers\agp440.sys 14:14:40.0539 4048 agp440 - ok 14:14:40.0551 4048 [ 3290D6946B5E30E70414990574883DDB ] ALG C:\Windows\System32\alg.exe 14:14:40.0619 4048 ALG - ok 14:14:40.0637 4048 [ 5812713A477A3AD7363C7438CA2EE038 ] aliide C:\Windows\system32\drivers\aliide.sys 14:14:40.0650 4048 aliide - ok 14:14:40.0664 4048 [ 1FF8B4431C353CE385C875F194924C0C ] amdide C:\Windows\system32\drivers\amdide.sys 14:14:40.0677 4048 amdide - ok 14:14:40.0692 4048 [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 14:14:40.0725 4048 AmdK8 - ok 14:14:40.0730 4048 [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 14:14:40.0753 4048 AmdPPM - ok 14:14:40.0786 4048 [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata C:\Windows\system32\drivers\amdsata.sys 14:14:40.0802 4048 amdsata - ok 14:14:40.0807 4048 [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 14:14:40.0824 4048 amdsbs - ok 14:14:40.0833 4048 [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata C:\Windows\system32\drivers\amdxata.sys 14:14:40.0847 4048 amdxata - ok 14:14:40.0909 4048 [ 4D282B9C5BB05DF92C9F3977DFB9F916 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe 14:14:40.0932 4048 AntiVirSchedulerService - ok 14:14:40.0960 4048 [ 65AF41A7A2C5B6693E1B4164E7632C3E ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe 14:14:40.0976 4048 AntiVirService - ok 14:14:40.0998 4048 [ 3D15C6EDBF84D792ACEBD2289546DBAF ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE 14:14:41.0014 4048 AntiVirWebService - ok 14:14:41.0057 4048 [ B342CD9AA44E4AE99E2368EBDBC2E17A ] APNMCP C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe 14:14:41.0072 4048 APNMCP - ok 14:14:41.0104 4048 [ 89A69C3F2F319B43379399547526D952 ] AppID C:\Windows\system32\drivers\appid.sys 14:14:41.0215 4048 AppID - ok 14:14:41.0226 4048 [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc C:\Windows\System32\appidsvc.dll 14:14:41.0272 4048 AppIDSvc - ok 14:14:41.0296 4048 [ 9D2A2369AB4B08A4905FE72DB104498F ] Appinfo C:\Windows\System32\appinfo.dll 14:14:41.0345 4048 Appinfo - ok 14:14:41.0425 4048 [ 30E3850F303EAE5C364782EA78579CC9 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 14:14:41.0437 4048 Apple Mobile Device - ok 14:14:41.0458 4048 [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt C:\Windows\System32\appmgmts.dll 14:14:41.0484 4048 AppMgmt - ok 14:14:41.0488 4048 [ C484F8CEB1717C540242531DB7845C4E ] arc C:\Windows\system32\DRIVERS\arc.sys 14:14:41.0503 4048 arc - ok 14:14:41.0507 4048 [ 019AF6924AEFE7839F61C830227FE79C ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 14:14:41.0521 4048 arcsas - ok 14:14:41.0567 4048 [ FB03A917C1294D3E6D671F24722E1BA3 ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe 14:14:41.0606 4048 asComSvc - ok 14:14:41.0635 4048 [ A63173897EA1A73A75D0E65036DE5B15 ] asHmComSvc C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe 14:14:41.0651 4048 asHmComSvc - ok 14:14:41.0696 4048 [ FEF9DD9EA587F8886ADE43C1BEFBDAFE ] AsIO C:\Windows\syswow64\drivers\AsIO.sys 14:14:41.0703 4048 AsIO - ok 14:14:41.0716 4048 [ 954950D11ADA98AC1B7EE3C770E4622C ] asmthub3 C:\Windows\system32\DRIVERS\asmthub3.sys 14:14:41.0737 4048 asmthub3 ( UnsignedFile.Multi.Generic ) - warning 14:14:41.0737 4048 asmthub3 - detected UnsignedFile.Multi.Generic (1) 14:14:41.0756 4048 [ 01DBB05DB1DB95803E3C9F2B49AFE79C ] asmtxhci C:\Windows\system32\DRIVERS\asmtxhci.sys 14:14:41.0775 4048 asmtxhci ( UnsignedFile.Multi.Generic ) - warning 14:14:41.0775 4048 asmtxhci - detected UnsignedFile.Multi.Generic (1) 14:14:41.0854 4048 [ 9A262EDD17F8473B91B333D6B031A901 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:14:41.0870 4048 aspnet_state - ok 14:14:41.0918 4048 [ 5C31DFB196CB3A488A041881634D86D2 ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe 14:14:41.0940 4048 AsSysCtrlService - ok 14:14:41.0949 4048 [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 14:14:41.0983 4048 AsyncMac - ok 14:14:41.0998 4048 [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi C:\Windows\system32\drivers\atapi.sys 14:14:42.0005 4048 atapi - ok 14:14:42.0033 4048 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 14:14:42.0074 4048 AudioEndpointBuilder - ok 14:14:42.0090 4048 [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv C:\Windows\System32\Audiosrv.dll 14:14:42.0116 4048 AudioSrv - ok 14:14:42.0130 4048 [ 7806BFCD1D7FA5EC23F7324D4EAFD25B ] avgntflt C:\Windows\system32\DRIVERS\avgntflt.sys 14:14:42.0137 4048 avgntflt - ok 14:14:42.0167 4048 [ C3A58DBD18786C338126D30BF8C33D72 ] avipbb C:\Windows\system32\DRIVERS\avipbb.sys 14:14:42.0174 4048 avipbb - ok 14:14:42.0203 4048 [ 390184FAD8FCC1B6DA25AEBAE928C3B6 ] avkmgr C:\Windows\system32\DRIVERS\avkmgr.sys 14:14:42.0209 4048 avkmgr - ok 14:14:42.0235 4048 [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV C:\Windows\System32\AxInstSV.dll 14:14:42.0288 4048 AxInstSV - ok 14:14:42.0318 4048 [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 14:14:42.0354 4048 b06bdrv - ok 14:14:42.0367 4048 [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 14:14:42.0394 4048 b57nd60a - ok 14:14:42.0413 4048 [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC C:\Windows\System32\bdesvc.dll 14:14:42.0429 4048 BDESVC - ok 14:14:42.0437 4048 [ 16A47CE2DECC9B099349A5F840654746 ] Beep C:\Windows\system32\drivers\Beep.sys 14:14:42.0484 4048 Beep - ok 14:14:42.0518 4048 [ 82974D6A2FD19445CC5171FC378668A4 ] BFE C:\Windows\System32\bfe.dll 14:14:42.0542 4048 BFE - ok 14:14:42.0577 4048 [ 1EA7969E3271CBC59E1730697DC74682 ] BITS C:\Windows\System32\qmgr.dll 14:14:42.0632 4048 BITS - ok 14:14:42.0643 4048 [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 14:14:42.0660 4048 blbdrive - ok 14:14:42.0714 4048 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 14:14:42.0731 4048 Bonjour Service - ok 14:14:42.0746 4048 [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 14:14:42.0768 4048 bowser - ok 14:14:42.0771 4048 [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 14:14:42.0831 4048 BrFiltLo - ok 14:14:42.0835 4048 [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 14:14:42.0847 4048 BrFiltUp - ok 14:14:42.0870 4048 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser C:\Windows\System32\browser.dll 14:14:42.0887 4048 Browser - ok 14:14:42.0900 4048 [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid C:\Windows\System32\Drivers\Brserid.sys 14:14:42.0918 4048 Brserid - ok 14:14:42.0921 4048 [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 14:14:42.0936 4048 BrSerWdm - ok 14:14:42.0939 4048 [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 14:14:42.0961 4048 BrUsbMdm - ok 14:14:42.0963 4048 [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 14:14:42.0972 4048 BrUsbSer - ok 14:14:42.0975 4048 [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 14:14:42.0986 4048 BTHMODEM - ok 14:14:43.0007 4048 [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv C:\Windows\system32\bthserv.dll 14:14:43.0057 4048 bthserv - ok 14:14:43.0073 4048 [ BFC427F02F0E77C79117B3B62D983839 ] busenum C:\Windows\system32\DRIVERS\SteelBus64.sys 14:14:43.0092 4048 busenum - ok 14:14:43.0095 4048 [ B8BD2BB284668C84865658C77574381A ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 14:14:43.0132 4048 cdfs - ok 14:14:43.0162 4048 [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom C:\Windows\system32\drivers\cdrom.sys 14:14:43.0176 4048 cdrom - ok 14:14:43.0205 4048 [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc C:\Windows\System32\certprop.dll 14:14:43.0240 4048 CertPropSvc - ok 14:14:43.0243 4048 [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass C:\Windows\system32\DRIVERS\circlass.sys 14:14:43.0262 4048 circlass - ok 14:14:43.0281 4048 [ FE1EC06F2253F691FE36217C592A0206 ] CLFS C:\Windows\system32\CLFS.sys 14:14:43.0290 4048 CLFS - ok 14:14:43.0330 4048 [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:14:43.0343 4048 clr_optimization_v2.0.50727_32 - ok 14:14:43.0373 4048 [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:14:43.0385 4048 clr_optimization_v2.0.50727_64 - ok 14:14:43.0436 4048 [ E87213F37A13E2B54391E40934F071D0 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:14:43.0453 4048 clr_optimization_v4.0.30319_32 - ok 14:14:43.0465 4048 [ 4AEDAB50F83580D0B4D6CF78191F92AA ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:14:43.0478 4048 clr_optimization_v4.0.30319_64 - ok 14:14:43.0480 4048 [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 14:14:43.0490 4048 CmBatt - ok 14:14:43.0504 4048 [ E19D3F095812725D88F9001985B94EDD ] cmdide C:\Windows\system32\drivers\cmdide.sys 14:14:43.0512 4048 cmdide - ok 14:14:43.0545 4048 [ EBF28856F69CF094A902F884CF989706 ] CNG C:\Windows\system32\Drivers\cng.sys 14:14:43.0574 4048 CNG - ok 14:14:43.0582 4048 [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 14:14:43.0590 4048 Compbatt - ok 14:14:43.0607 4048 [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 14:14:43.0652 4048 CompositeBus - ok 14:14:43.0655 4048 COMSysApp - ok 14:14:43.0678 4048 cpuz136 - ok 14:14:43.0687 4048 [ 1C827878A998C18847245FE1F34EE597 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 14:14:43.0698 4048 crcdisk - ok 14:14:43.0729 4048 [ 6B400F211BEE880A37A1ED0368776BF4 ] CryptSvc C:\Windows\system32\cryptsvc.dll 14:14:43.0766 4048 CryptSvc - ok 14:14:43.0788 4048 [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC C:\Windows\system32\drivers\csc.sys 14:14:43.0845 4048 CSC - ok 14:14:43.0887 4048 [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService C:\Windows\System32\cscsvc.dll 14:14:43.0912 4048 CscService - ok 14:14:43.0943 4048 [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch C:\Windows\system32\rpcss.dll 14:14:43.0982 4048 DcomLaunch - ok 14:14:44.0006 4048 [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc C:\Windows\System32\defragsvc.dll 14:14:44.0040 4048 defragsvc - ok 14:14:44.0066 4048 [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC C:\Windows\system32\Drivers\dfsc.sys 14:14:44.0109 4048 DfsC - ok 14:14:44.0120 4048 [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp C:\Windows\system32\dhcpcore.dll 14:14:44.0141 4048 Dhcp - ok 14:14:44.0153 4048 [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache C:\Windows\system32\drivers\discache.sys 14:14:44.0175 4048 discache - ok 14:14:44.0178 4048 [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk C:\Windows\system32\DRIVERS\disk.sys 14:14:44.0184 4048 Disk - ok 14:14:44.0202 4048 [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache C:\Windows\System32\dnsrslvr.dll 14:14:44.0231 4048 Dnscache - ok 14:14:44.0266 4048 [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc C:\Windows\System32\dot3svc.dll 14:14:44.0317 4048 dot3svc - ok 14:14:44.0342 4048 [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS C:\Windows\system32\dps.dll 14:14:44.0373 4048 DPS - ok 14:14:44.0404 4048 [ 9B19F34400D24DF84C858A421C205754 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 14:14:44.0427 4048 drmkaud - ok 14:14:44.0468 4048 [ 88612F1CE3BF42256913BF6E61C70D52 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 14:14:44.0495 4048 DXGKrnl - ok 14:14:44.0503 4048 [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost C:\Windows\System32\eapsvc.dll 14:14:44.0526 4048 EapHost - ok 14:14:44.0572 4048 [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 14:14:44.0601 4048 ebdrv - ok 14:14:44.0623 4048 [ 4D71227301DD8D09097B9E4CC6527E5A ] EFS C:\Windows\System32\lsass.exe 14:14:44.0642 4048 EFS - ok 14:14:44.0687 4048 [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 14:14:44.0733 4048 ehRecvr - ok 14:14:44.0748 4048 [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched C:\Windows\ehome\ehsched.exe 14:14:44.0761 4048 ehSched - ok 14:14:44.0777 4048 [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 14:14:44.0794 4048 elxstor - ok 14:14:44.0822 4048 [ 34A3C54752046E79A126E15C51DB409B ] ErrDev C:\Windows\system32\drivers\errdev.sys 14:14:44.0844 4048 ErrDev - ok 14:14:44.0903 4048 ESEADriver2 - ok 14:14:44.0926 4048 [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem C:\Windows\system32\es.dll 14:14:44.0967 4048 EventSystem - ok 14:14:44.0972 4048 [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat C:\Windows\system32\drivers\exfat.sys 14:14:44.0994 4048 exfat - ok 14:14:44.0998 4048 [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat C:\Windows\system32\drivers\fastfat.sys 14:14:45.0031 4048 fastfat - ok 14:14:45.0069 4048 [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax C:\Windows\system32\fxssvc.exe 14:14:45.0125 4048 Fax - ok 14:14:45.0129 4048 [ D765D19CD8EF61F650C384F62FAC00AB ] fdc C:\Windows\system32\DRIVERS\fdc.sys 14:14:45.0144 4048 fdc - ok 14:14:45.0148 4048 [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost C:\Windows\system32\fdPHost.dll 14:14:45.0187 4048 fdPHost - ok 14:14:45.0201 4048 [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub C:\Windows\system32\fdrespub.dll 14:14:45.0226 4048 FDResPub - ok 14:14:45.0237 4048 [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 14:14:45.0244 4048 FileInfo - ok 14:14:45.0257 4048 [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 14:14:45.0279 4048 Filetrace - ok 14:14:45.0311 4048 [ 73081CF28F0AE20A52CA4F67CEE6E6B0 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe 14:14:45.0326 4048 FLEXnet Licensing Service - ok 14:14:45.0328 4048 [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 14:14:45.0335 4048 flpydisk - ok 14:14:45.0367 4048 [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 14:14:45.0385 4048 FltMgr - ok 14:14:45.0430 4048 [ C4C183E6551084039EC862DA1C945E3D ] FontCache C:\Windows\system32\FntCache.dll 14:14:45.0456 4048 FontCache - ok 14:14:45.0489 4048 [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:14:45.0502 4048 FontCache3.0.0.0 - ok 14:14:45.0506 4048 [ D43703496149971890703B4B1B723EAC ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 14:14:45.0516 4048 FsDepends - ok 14:14:45.0535 4048 [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 14:14:45.0544 4048 Fs_Rec - ok 14:14:45.0579 4048 [ B99C240DEA85007044E178C1C9C75659 ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe 14:14:45.0594 4048 Futuremark SystemInfo Service - ok 14:14:45.0615 4048 [ 8F6322049018354F45F05A2FD2D4E5E0 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 14:14:45.0636 4048 fvevol - ok 14:14:45.0646 4048 [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 14:14:45.0658 4048 gagp30kx - ok 14:14:45.0682 4048 [ 8E98D21EE06192492A5671A6144D092F ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 14:14:45.0691 4048 GEARAspiWDM - ok 14:14:45.0734 4048 [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc C:\Windows\System32\gpsvc.dll 14:14:45.0785 4048 gpsvc - ok 14:14:45.0830 4048 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:14:45.0842 4048 gupdate - ok 14:14:45.0846 4048 [ 506708142BC63DABA64F2D3AD1DCD5BF ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:14:45.0857 4048 gupdatem - ok 14:14:45.0867 4048 [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 14:14:45.0885 4048 hcw85cir - ok 14:14:45.0914 4048 [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 14:14:45.0944 4048 HdAudAddService - ok 14:14:45.0955 4048 [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 14:14:45.0971 4048 HDAudBus - ok 14:14:45.0974 4048 [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 14:14:45.0999 4048 HidBatt - ok 14:14:46.0015 4048 [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 14:14:46.0031 4048 HidBth - ok 14:14:46.0034 4048 [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 14:14:46.0054 4048 HidIr - ok 14:14:46.0070 4048 [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv C:\Windows\system32\hidserv.dll 14:14:46.0101 4048 hidserv - ok 14:14:46.0116 4048 [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 14:14:46.0138 4048 HidUsb - ok 14:14:46.0165 4048 [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc C:\Windows\system32\kmsvc.dll 14:14:46.0224 4048 hkmsvc - ok 14:14:46.0241 4048 [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll 14:14:46.0299 4048 HomeGroupListener - ok 14:14:46.0316 4048 [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 14:14:46.0342 4048 HomeGroupProvider - ok 14:14:46.0356 4048 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 14:14:46.0367 4048 HpSAMD - ok 14:14:46.0405 4048 [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP C:\Windows\system32\drivers\HTTP.sys 14:14:46.0445 4048 HTTP - ok 14:14:46.0466 4048 [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 14:14:46.0472 4048 hwpolicy - ok 14:14:46.0501 4048 [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 14:14:46.0517 4048 i8042prt - ok 14:14:46.0554 4048 [ D1E30259353E7D8D1B713A76CDDEB88B ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 14:14:46.0576 4048 iaStor - ok 14:14:46.0598 4048 [ 2F74D37E4D7D0B04136261C969F1D23D ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 14:14:46.0609 4048 IAStorDataMgrSvc - ok 14:14:46.0643 4048 [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 14:14:46.0664 4048 iaStorV - ok 14:14:46.0682 4048 [ 1CF03C69B49ACB70C722DF92755C0C8C ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 14:14:46.0698 4048 IDriverT ( UnsignedFile.Multi.Generic ) - warning 14:14:46.0698 4048 IDriverT - detected UnsignedFile.Multi.Generic (1) 14:14:46.0740 4048 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:14:46.0767 4048 idsvc - ok 14:14:46.0771 4048 IEEtwCollectorService - ok 14:14:46.0803 4048 [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 14:14:46.0816 4048 iirsp - ok 14:14:46.0871 4048 [ 344789398EC3EE5A4E00C52B31847946 ] IKEEXT C:\Windows\System32\ikeext.dll 14:14:46.0903 4048 IKEEXT - ok 14:14:46.0947 4048 [ 589B94A9B73A0E819FF873743A480834 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 14:14:46.0981 4048 IntcAzAudAddService - ok 14:14:46.0996 4048 [ F00F20E70C6EC3AA366910083A0518AA ] intelide C:\Windows\system32\drivers\intelide.sys 14:14:47.0002 4048 intelide - ok 14:14:47.0013 4048 [ ADA036632C664CAA754079041CF1F8C1 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 14:14:47.0020 4048 intelppm - ok 14:14:47.0029 4048 [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum C:\Windows\system32\ipbusenum.dll 14:14:47.0066 4048 IPBusEnum - ok 14:14:47.0083 4048 [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:14:47.0104 4048 IpFilterDriver - ok 14:14:47.0132 4048 [ 08C2957BB30058E663720C5606885653 ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 14:14:47.0154 4048 iphlpsvc - ok 14:14:47.0180 4048 [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 14:14:47.0205 4048 IPMIDRV - ok 14:14:47.0219 4048 [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT C:\Windows\system32\drivers\ipnat.sys 14:14:47.0257 4048 IPNAT - ok 14:14:47.0310 4048 [ 6660920D05A32DF2DC1260CEF0B6D172 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 14:14:47.0333 4048 iPod Service - ok 14:14:47.0341 4048 [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM C:\Windows\system32\drivers\irenum.sys 14:14:47.0370 4048 IRENUM - ok 14:14:47.0380 4048 [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp C:\Windows\system32\drivers\isapnp.sys 14:14:47.0388 4048 isapnp - ok 14:14:47.0427 4048 [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 14:14:47.0441 4048 iScsiPrt - ok 14:14:47.0451 4048 [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 14:14:47.0463 4048 kbdclass - ok 14:14:47.0469 4048 [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 14:14:47.0487 4048 kbdhid - ok 14:14:47.0497 4048 [ 4D71227301DD8D09097B9E4CC6527E5A ] KeyIso C:\Windows\system32\lsass.exe 14:14:47.0507 4048 KeyIso - ok 14:14:47.0537 4048 [ 8F489706472F7E9A06BAAA198703FA64 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 14:14:47.0546 4048 KSecDD - ok 14:14:47.0556 4048 [ 868A2CAAB12EFC7A021682BCA0EEC54C ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 14:14:47.0566 4048 KSecPkg - ok 14:14:47.0574 4048 [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 14:14:47.0606 4048 ksthunk - ok 14:14:47.0617 4048 [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm C:\Windows\system32\msdtckrm.dll 14:14:47.0650 4048 KtmRm - ok 14:14:47.0674 4048 [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer C:\Windows\system32\srvsvc.dll 14:14:47.0698 4048 LanmanServer - ok 14:14:47.0728 4048 [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 14:14:47.0767 4048 LanmanWorkstation - ok 14:14:47.0770 4048 [ 1538831CF8AD2979A04C423779465827 ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 14:14:47.0801 4048 lltdio - ok 14:14:47.0817 4048 [ C1185803384AB3FEED115F79F109427F ] lltdsvc C:\Windows\System32\lltdsvc.dll 14:14:47.0841 4048 lltdsvc - ok 14:14:47.0853 4048 [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts C:\Windows\System32\lmhsvc.dll 14:14:47.0875 4048 lmhosts - ok 14:14:47.0884 4048 [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 14:14:47.0891 4048 LSI_FC - ok 14:14:47.0893 4048 [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 14:14:47.0900 4048 LSI_SAS - ok 14:14:47.0902 4048 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 14:14:47.0909 4048 LSI_SAS2 - ok 14:14:47.0911 4048 [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 14:14:47.0919 4048 LSI_SCSI - ok 14:14:47.0921 4048 [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv C:\Windows\system32\drivers\luafv.sys 14:14:47.0949 4048 luafv - ok 14:14:47.0973 4048 [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 14:14:47.0989 4048 Mcx2Svc - ok 14:14:48.0000 4048 [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 14:14:48.0007 4048 megasas - ok 14:14:48.0011 4048 [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 14:14:48.0020 4048 MegaSR - ok 14:14:48.0026 4048 [ E40E80D0304A73E8D269F7141D77250B ] MMCSS C:\Windows\system32\mmcss.dll 14:14:48.0049 4048 MMCSS - ok 14:14:48.0059 4048 [ 800BA92F7010378B09F9ED9270F07137 ] Modem C:\Windows\system32\drivers\modem.sys 14:14:48.0081 4048 Modem - ok 14:14:48.0092 4048 [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor C:\Windows\system32\DRIVERS\monitor.sys 14:14:48.0111 4048 monitor - ok 14:14:48.0123 4048 [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 14:14:48.0130 4048 mouclass - ok 14:14:48.0135 4048 [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 14:14:48.0153 4048 mouhid - ok 14:14:48.0180 4048 [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 14:14:48.0187 4048 mountmgr - ok 14:14:48.0209 4048 [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio C:\Windows\system32\drivers\mpio.sys 14:14:48.0217 4048 mpio - ok 14:14:48.0219 4048 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 14:14:48.0242 4048 mpsdrv - ok 14:14:48.0271 4048 [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc C:\Windows\system32\mpssvc.dll 14:14:48.0302 4048 MpsSvc - ok 14:14:48.0348 4048 [ 1A4F75E63C9FB84B85DFFC6B63FD5404 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 14:14:48.0369 4048 MRxDAV - ok 14:14:48.0410 4048 [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 14:14:48.0447 4048 mrxsmb - ok 14:14:48.0463 4048 [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:14:48.0491 4048 mrxsmb10 - ok 14:14:48.0508 4048 [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:14:48.0524 4048 mrxsmb20 - ok 14:14:48.0537 4048 [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci C:\Windows\system32\drivers\msahci.sys 14:14:48.0551 4048 msahci - ok 14:14:48.0561 4048 [ DB801A638D011B9633829EB6F663C900 ] msdsm C:\Windows\system32\drivers\msdsm.sys 14:14:48.0574 4048 msdsm - ok 14:14:48.0581 4048 [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC C:\Windows\System32\msdtc.exe 14:14:48.0594 4048 MSDTC - ok 14:14:48.0603 4048 [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs C:\Windows\system32\drivers\Msfs.sys 14:14:48.0628 4048 Msfs - ok 14:14:48.0640 4048 [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 14:14:48.0674 4048 mshidkmdf - ok 14:14:48.0702 4048 [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 14:14:48.0709 4048 msisadrv - ok 14:14:48.0739 4048 [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 14:14:48.0785 4048 MSiSCSI - ok 14:14:48.0787 4048 msiserver - ok 14:14:48.0795 4048 [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 14:14:48.0822 4048 MSKSSRV - ok 14:14:48.0824 4048 [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 14:14:48.0858 4048 MSPCLOCK - ok 14:14:48.0860 4048 [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 14:14:48.0886 4048 MSPQM - ok 14:14:48.0923 4048 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 14:14:48.0933 4048 MsRPC - ok 14:14:48.0964 4048 [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 14:14:48.0977 4048 mssmbios - ok 14:14:48.0984 4048 [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 14:14:49.0022 4048 MSTEE - ok 14:14:49.0024 4048 [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 14:14:49.0036 4048 MTConfig - ok 14:14:49.0048 4048 [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup C:\Windows\system32\Drivers\mup.sys 14:14:49.0055 4048 Mup - ok 14:14:49.0066 4048 [ 582AC6D9873E31DFA28A4547270862DD ] napagent C:\Windows\system32\qagentRT.dll 14:14:49.0092 4048 napagent - ok 14:14:49.0096 4048 [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 14:14:49.0109 4048 NativeWifiP - ok 14:14:49.0148 4048 [ 760E38053BF56E501D562B70AD796B88 ] NDIS C:\Windows\system32\drivers\ndis.sys 14:14:49.0175 4048 NDIS - ok 14:14:49.0183 4048 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 14:14:49.0205 4048 NdisCap - ok 14:14:49.0213 4048 [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 14:14:49.0235 4048 NdisTapi - ok 14:14:49.0249 4048 [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 14:14:49.0271 4048 Ndisuio - ok 14:14:49.0291 4048 [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 14:14:49.0325 4048 NdisWan - ok 14:14:49.0354 4048 [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 14:14:49.0403 4048 NDProxy - ok 14:14:49.0406 4048 [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 14:14:49.0437 4048 NetBIOS - ok 14:14:49.0458 4048 [ 09594D1089C523423B32A4229263F068 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 14:14:49.0508 4048 NetBT - ok 14:14:49.0514 4048 [ 4D71227301DD8D09097B9E4CC6527E5A ] Netlogon C:\Windows\system32\lsass.exe 14:14:49.0521 4048 Netlogon - ok 14:14:49.0551 4048 [ 847D3AE376C0817161A14A82C8922A9E ] Netman C:\Windows\System32\netman.dll 14:14:49.0577 4048 Netman - ok 14:14:49.0628 4048 [ 21318671BCAD3ACF16638F98D4D00973 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:49.0646 4048 NetMsmqActivator - ok 14:14:49.0652 4048 [ 21318671BCAD3ACF16638F98D4D00973 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:49.0661 4048 NetPipeActivator - ok 14:14:49.0677 4048 [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm C:\Windows\System32\netprofm.dll 14:14:49.0706 4048 netprofm - ok 14:14:49.0723 4048 [ B72BB9496A126FCFC7FC5945DED9B411 ] netr28x C:\Windows\system32\DRIVERS\netr28x.sys 14:14:49.0737 4048 netr28x - ok 14:14:49.0739 4048 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:49.0748 4048 NetTcpActivator - ok 14:14:49.0750 4048 [ 21318671BCAD3ACF16638F98D4D00973 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:14:49.0759 4048 NetTcpPortSharing - ok 14:14:49.0770 4048 [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 14:14:49.0777 4048 nfrd960 - ok 14:14:49.0788 4048 [ 8AD77806D336673F270DB31645267293 ] NlaSvc C:\Windows\System32\nlasvc.dll 14:14:49.0797 4048 NlaSvc - ok 14:14:49.0800 4048 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs C:\Windows\system32\drivers\Npfs.sys 14:14:49.0821 4048 Npfs - ok 14:14:49.0824 4048 [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi C:\Windows\system32\nsisvc.dll 14:14:49.0853 4048 nsi - ok 14:14:49.0878 4048 [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 14:14:49.0925 4048 nsiproxy - ok 14:14:49.0959 4048 [ B98F8C6E31CD07B2E6F71F7F648E38C0 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 14:14:49.0980 4048 Ntfs - ok 14:14:49.0990 4048 [ 9899284589F75FA8724FF3D16AED75C1 ] Null C:\Windows\system32\drivers\Null.sys 14:14:50.0019 4048 Null - ok 14:14:50.0040 4048 [ 805F0C2B9C07E4C0F74D0EF70E9E827A ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 14:14:50.0047 4048 NVHDA - ok 14:14:50.0183 4048 [ EE6B7B6A54BCAFF516E30B1C15467495 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 14:14:50.0296 4048 nvlddmkm - ok 14:14:50.0322 4048 [ 0A92CB65770442ED0DC44834632F66AD ] nvraid C:\Windows\system32\drivers\nvraid.sys 14:14:50.0329 4048 nvraid - ok 14:14:50.0341 4048 [ DAB0E87525C10052BF65F06152F37E4A ] nvstor C:\Windows\system32\drivers\nvstor.sys 14:14:50.0349 4048 nvstor - ok 14:14:50.0583 4048 [ 505BB5E5A0BE786DBB813A27A46355A5 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe 14:14:50.0730 4048 NvStreamSvc - ok 14:14:50.0760 4048 [ 25626309AD2F81D47C829CCB5E46E478 ] nvsvc C:\Windows\system32\nvvsvc.exe 14:14:50.0777 4048 nvsvc - ok 14:14:50.0810 4048 [ BC120F98DCA622BE48D16B4A5714CA71 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 14:14:50.0838 4048 nvUpdatusService - ok 14:14:50.0862 4048 [ 220B120EF4C36B4A3E23FAEC91E2FCE3 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys 14:14:50.0868 4048 nvvad_WaveExtensible - ok 14:14:50.0882 4048 [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 14:14:50.0889 4048 nv_agp - ok 14:14:50.0913 4048 [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 14:14:50.0921 4048 ohci1394 - ok 14:14:50.0935 4048 [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 14:14:50.0941 4048 ose - ok 14:14:50.0958 4048 [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 14:14:50.0983 4048 p2pimsvc - ok 14:14:50.0996 4048 [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc C:\Windows\system32\p2psvc.dll 14:14:51.0012 4048 p2psvc - ok 14:14:51.0018 4048 [ 0086431C29C35BE1DBC43F52CC273887 ] Parport C:\Windows\system32\DRIVERS\parport.sys 14:14:51.0028 4048 Parport - ok 14:14:51.0043 4048 [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr C:\Windows\system32\drivers\partmgr.sys 14:14:51.0050 4048 partmgr - ok 14:14:51.0057 4048 [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc C:\Windows\System32\pcasvc.dll 14:14:51.0078 4048 PcaSvc - ok 14:14:51.0088 4048 [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci C:\Windows\system32\drivers\pci.sys 14:14:51.0096 4048 pci - ok 14:14:51.0114 4048 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide C:\Windows\system32\drivers\pciide.sys 14:14:51.0120 4048 pciide - ok 14:14:51.0123 4048 [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 14:14:51.0131 4048 pcmcia - ok 14:14:51.0140 4048 [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw C:\Windows\system32\drivers\pcw.sys 14:14:51.0147 4048 pcw - ok 14:14:51.0162 4048 [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH C:\Windows\system32\drivers\peauth.sys 14:14:51.0198 4048 PEAUTH - ok 14:14:51.0228 4048 [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 14:14:51.0255 4048 PeerDistSvc - ok 14:14:51.0312 4048 [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost C:\Windows\SysWow64\perfhost.exe 14:14:51.0329 4048 PerfHost - ok 14:14:51.0376 4048 [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla C:\Windows\system32\pla.dll 14:14:51.0419 4048 pla - ok 14:14:51.0441 4048 [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 14:14:51.0467 4048 PlugPlay - ok 14:14:51.0469 4048 PnkBstrA - ok 14:14:51.0477 4048 [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 14:14:51.0485 4048 PNRPAutoReg - ok 14:14:51.0489 4048 [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 14:14:51.0499 4048 PNRPsvc - ok 14:14:51.0527 4048 [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 14:14:51.0553 4048 PolicyAgent - ok 14:14:51.0575 4048 [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power C:\Windows\system32\umpo.dll 14:14:51.0606 4048 Power - ok 14:14:51.0623 4048 [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 14:14:51.0660 4048 PptpMiniport - ok 14:14:51.0662 4048 [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor C:\Windows\system32\DRIVERS\processr.sys 14:14:51.0680 4048 Processor - ok 14:14:51.0702 4048 [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc C:\Windows\system32\profsvc.dll 14:14:51.0739 4048 ProfSvc - ok 14:14:51.0747 4048 [ 4D71227301DD8D09097B9E4CC6527E5A ] ProtectedStorage C:\Windows\system32\lsass.exe 14:14:51.0754 4048 ProtectedStorage - ok 14:14:51.0784 4048 [ 0557CF5A2556BD58E26384169D72438D ] Psched C:\Windows\system32\DRIVERS\pacer.sys 14:14:51.0818 4048 Psched - ok 14:14:51.0844 4048 [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 14:14:51.0865 4048 ql2300 - ok 14:14:51.0868 4048 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 14:14:51.0875 4048 ql40xx - ok 14:14:51.0888 4048 [ 906191634E99AEA92C4816150BDA3732 ] QWAVE C:\Windows\system32\qwave.dll 14:14:51.0901 4048 QWAVE - ok 14:14:51.0908 4048 [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 14:14:51.0930 4048 QWAVEdrv - ok 14:14:51.0956 4048 [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 14:14:51.0997 4048 RasAcd - ok 14:14:52.0026 4048 [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 14:14:52.0048 4048 RasAgileVpn - ok 14:14:52.0051 4048 [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto C:\Windows\System32\rasauto.dll 14:14:52.0083 4048 RasAuto - ok 14:14:52.0092 4048 [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 14:14:52.0114 4048 Rasl2tp - ok 14:14:52.0124 4048 [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan C:\Windows\System32\rasmans.dll 14:14:52.0149 4048 RasMan - ok 14:14:52.0151 4048 [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 14:14:52.0174 4048 RasPppoe - ok 14:14:52.0176 4048 [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 14:14:52.0198 4048 RasSstp - ok 14:14:52.0212 4048 [ 77F665941019A1594D887A74F301FA2F ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 14:14:52.0235 4048 rdbss - ok 14:14:52.0246 4048 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 14:14:52.0264 4048 rdpbus - ok 14:14:52.0271 4048 [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 14:14:52.0293 4048 RDPCDD - ok 14:14:52.0321 4048 [ 1B6163C503398B23FF8B939C67747683 ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 14:14:52.0329 4048 RDPDR - ok 14:14:52.0346 4048 [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 14:14:52.0375 4048 RDPENCDD - ok 14:14:52.0387 4048 [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 14:14:52.0409 4048 RDPREFMP - ok 14:14:52.0427 4048 [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 14:14:52.0465 4048 RDPWD - ok 14:14:52.0494 4048 [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 14:14:52.0507 4048 rdyboost - ok 14:14:52.0525 4048 [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess C:\Windows\System32\mprdim.dll 14:14:52.0566 4048 RemoteAccess - ok 14:14:52.0570 4048 [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry C:\Windows\system32\regsvc.dll 14:14:52.0599 4048 RemoteRegistry - ok 14:14:52.0614 4048 [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 14:14:52.0654 4048 RpcEptMapper - ok 14:14:52.0677 4048 [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator C:\Windows\system32\locator.exe 14:14:52.0704 4048 RpcLocator - ok 14:14:52.0726 4048 [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs C:\Windows\system32\rpcss.dll 14:14:52.0770 4048 RpcSs - ok 14:14:52.0773 4048 [ DDC86E4F8E7456261E637E3552E804FF ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 14:14:52.0809 4048 rspndr - ok 14:14:52.0838 4048 [ EE082E06A82FF630351D1E0EBBD3D8D0 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 14:14:52.0848 4048 RTL8167 - ok 14:14:52.0876 4048 [ E60C0A09F997826C7627B244195AB581 ] s3cap C:\Windows\system32\drivers\vms3cap.sys 14:14:52.0883 4048 s3cap - ok 14:14:52.0904 4048 [ 248ABD858FF7DCC966E5A54529DDD225 ] SaiH0255 C:\Windows\system32\DRIVERS\SaiH0255.sys 14:14:52.0910 4048 SaiH0255 - ok 14:14:52.0921 4048 [ 86873AA9867CA9D78850EE9DC1C6AE5B ] SAlphamHid C:\Windows\system32\DRIVERS\SAlpham64.sys 14:14:52.0938 4048 SAlphamHid - ok 14:14:52.0947 4048 [ 4D71227301DD8D09097B9E4CC6527E5A ] SamSs C:\Windows\system32\lsass.exe 14:14:52.0955 4048 SamSs - ok 14:14:52.0979 4048 [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 14:14:52.0987 4048 sbp2port - ok 14:14:53.0000 4048 [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr C:\Windows\System32\SCardSvr.dll 14:14:53.0038 4048 SCardSvr - ok 14:14:53.0069 4048 [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 14:14:53.0106 4048 scfilter - ok 14:14:53.0141 4048 [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule C:\Windows\system32\schedsvc.dll 14:14:53.0181 4048 Schedule - ok 14:14:53.0204 4048 [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc C:\Windows\System32\certprop.dll 14:14:53.0226 4048 SCPolicySvc - ok 14:14:53.0256 4048 [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC C:\Windows\System32\SDRSVC.dll 14:14:53.0276 4048 SDRSVC - ok 14:14:53.0288 4048 [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv C:\Windows\system32\drivers\secdrv.sys 14:14:53.0323 4048 secdrv - ok 14:14:53.0337 4048 [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon C:\Windows\system32\seclogon.dll 14:14:53.0372 4048 seclogon - ok 14:14:53.0379 4048 [ C32AB8FA018EF34C0F113BD501436D21 ] SENS C:\Windows\System32\sens.dll 14:14:53.0414 4048 SENS - ok 14:14:53.0416 4048 [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc C:\Windows\system32\sensrsvc.dll 14:14:53.0435 4048 SensrSvc - ok 14:14:53.0441 4048 [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 14:14:53.0449 4048 Serenum - ok 14:14:53.0452 4048 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial C:\Windows\system32\DRIVERS\serial.sys 14:14:53.0460 4048 Serial - ok 14:14:53.0475 4048 [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 14:14:53.0483 4048 sermouse - ok 14:14:53.0508 4048 [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv C:\Windows\system32\sessenv.dll 14:14:53.0531 4048 SessionEnv - ok 14:14:53.0559 4048 [ A554811BCD09279536440C964AE35BBF ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 14:14:53.0583 4048 sffdisk - ok 14:14:53.0598 4048 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 14:14:53.0616 4048 sffp_mmc - ok 14:14:53.0617 4048 [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 14:14:53.0630 4048 sffp_sd - ok 14:14:53.0640 4048 [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 14:14:53.0647 4048 sfloppy - ok 14:14:53.0665 4048 [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess C:\Windows\System32\ipnathlp.dll 14:14:53.0691 4048 SharedAccess - ok 14:14:53.0702 4048 [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll 14:14:53.0728 4048 ShellHWDetection - ok 14:14:53.0735 4048 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 14:14:53.0742 4048 SiSRaid2 - ok 14:14:53.0750 4048 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 14:14:53.0757 4048 SiSRaid4 - ok 14:14:53.0768 4048 [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb C:\Windows\system32\DRIVERS\smb.sys 14:14:53.0790 4048 Smb - ok 14:14:53.0798 4048 [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP C:\Windows\System32\snmptrap.exe 14:14:53.0818 4048 SNMPTRAP - ok 14:14:53.0826 4048 [ B9E31E5CACDFE584F34F730A677803F9 ] spldr C:\Windows\system32\drivers\spldr.sys 14:14:53.0832 4048 spldr - ok 14:14:53.0853 4048 [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler C:\Windows\System32\spoolsv.exe 14:14:53.0885 4048 Spooler - ok 14:14:53.0963 4048 [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc C:\Windows\system32\sppsvc.exe 14:14:54.0012 4048 sppsvc - ok 14:14:54.0014 4048 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify C:\Windows\system32\sppuinotify.dll 14:14:54.0044 4048 sppuinotify - ok 14:14:54.0062 4048 [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv C:\Windows\system32\DRIVERS\srv.sys 14:14:54.0083 4048 srv - ok 14:14:54.0094 4048 [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 14:14:54.0115 4048 srv2 - ok 14:14:54.0129 4048 [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 14:14:54.0148 4048 srvnet - ok 14:14:54.0154 4048 [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 14:14:54.0185 4048 SSDPSRV - ok 14:14:54.0193 4048 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc C:\Windows\system32\sstpsvc.dll 14:14:54.0216 4048 SstpSvc - ok 14:14:54.0235 4048 [ 2F3B5A3567FFB343D8867C3D34C687F1 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 14:14:54.0330 4048 Steam Client Service - ok 14:14:54.0495 4048 [ 2222073BE0232E70A397B8302293AA9D ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 14:14:54.0515 4048 Stereo Service - ok 14:14:54.0526 4048 [ F3817967ED533D08327DC73BC4D5542A ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 14:14:54.0536 4048 stexstor - ok 14:14:54.0634 4048 [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc C:\Windows\System32\wiaservc.dll 14:14:54.0664 4048 stisvc - ok 14:14:54.0675 4048 [ 7785DC213270D2FC066538DAF94087E7 ] storflt C:\Windows\system32\drivers\vmstorfl.sys 14:14:54.0682 4048 storflt - ok 14:14:54.0707 4048 [ C40841817EF57D491F22EB103DA587CC ] StorSvc C:\Windows\system32\storsvc.dll 14:14:54.0740 4048 StorSvc - ok 14:14:54.0749 4048 [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc C:\Windows\system32\drivers\storvsc.sys 14:14:54.0760 4048 storvsc - ok 14:14:54.0767 4048 [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum C:\Windows\system32\drivers\swenum.sys 14:14:54.0776 4048 swenum - ok 14:14:54.0795 4048 [ E08E46FDD841B7184194011CA1955A0B ] swprv C:\Windows\System32\swprv.dll 14:14:54.0826 4048 swprv - ok 14:14:54.0864 4048 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain C:\Windows\system32\sysmain.dll 14:14:54.0887 4048 SysMain - ok 14:14:54.0914 4048 [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll 14:14:54.0946 4048 TabletInputService - ok 14:14:54.0975 4048 [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv C:\Windows\System32\tapisrv.dll 14:14:55.0015 4048 TapiSrv - ok 14:14:55.0026 4048 [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS C:\Windows\System32\tbssvc.dll 14:14:55.0056 4048 TBS - ok 14:14:55.0106 4048 [ 40AF23633D197905F03AB5628C558C51 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 14:14:55.0135 4048 Tcpip - ok 14:14:55.0166 4048 [ 40AF23633D197905F03AB5628C558C51 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 14:14:55.0190 4048 TCPIP6 - ok 14:14:55.0201 4048 [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 14:14:55.0209 4048 tcpipreg - ok 14:14:55.0222 4048 [ 3371D21011695B16333A3934340C4E7C ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 14:14:55.0237 4048 TDPIPE - ok 14:14:55.0257 4048 [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 14:14:55.0273 4048 TDTCP - ok 14:14:55.0301 4048 [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 14:14:55.0337 4048 tdx - ok 14:14:55.0536 4048 [ 2B29FD3AF7B4FEB272CD1F6EEC8FE4BA ] TeamViewer9 C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe 14:14:55.0587 4048 TeamViewer9 - ok 14:14:55.0602 4048 [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD C:\Windows\system32\drivers\termdd.sys 14:14:55.0609 4048 TermDD - ok 14:14:55.0646 4048 [ 2E648163254233755035B46DD7B89123 ] TermService C:\Windows\System32\termsrv.dll 14:14:55.0682 4048 TermService - ok 14:14:55.0696 4048 [ F0344071948D1A1FA732231785A0664C ] Themes C:\Windows\system32\themeservice.dll 14:14:55.0715 4048 Themes - ok 14:14:55.0728 4048 [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER C:\Windows\system32\mmcss.dll 14:14:55.0751 4048 THREADORDER - ok 14:14:55.0756 4048 [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks C:\Windows\System32\trkwks.dll 14:14:55.0789 4048 TrkWks - ok 14:14:55.0820 4048 [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 14:14:55.0848 4048 TrustedInstaller - ok 14:14:55.0877 4048 [ 4CE278FC9671BA81A138D70823FCAA09 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 14:14:55.0896 4048 tssecsrv - ok 14:14:55.0910 4048 [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 14:14:55.0958 4048 TsUsbFlt - ok 14:14:55.0997 4048 [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 14:14:56.0052 4048 tunnel - ok 14:14:56.0070 4048 [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 14:14:56.0078 4048 uagp35 - ok 14:14:56.0090 4048 [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 14:14:56.0123 4048 udfs - ok 14:14:56.0133 4048 [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect C:\Windows\system32\UI0Detect.exe 14:14:56.0142 4048 UI0Detect - ok 14:14:56.0149 4048 [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 14:14:56.0156 4048 uliagpkx - ok 14:14:56.0184 4048 [ DC54A574663A895C8763AF0FA1FF7561 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 14:14:56.0200 4048 umbus - ok 14:14:56.0204 4048 [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 14:14:56.0232 4048 UmPass - ok 14:14:56.0249 4048 [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService C:\Windows\System32\umrdp.dll 14:14:56.0282 4048 UmRdpService - ok 14:14:56.0322 4048 [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost C:\Windows\System32\upnphost.dll 14:14:56.0362 4048 upnphost - ok 14:14:56.0388 4048 [ C9E9D59C0099A9FF51697E9306A44240 ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys 14:14:56.0416 4048 USBAAPL64 - ok 14:14:56.0460 4048 [ DCA68B0943D6FA415F0C56C92158A83A ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 14:14:56.0503 4048 usbccgp - ok 14:14:56.0527 4048 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31 ] usbcir C:\Windows\system32\drivers\usbcir.sys 14:14:56.0571 4048 usbcir - ok 14:14:56.0598 4048 [ 18A85013A3E0F7E1755365D287443965 ] usbehci C:\Windows\system32\drivers\usbehci.sys 14:14:56.0641 4048 usbehci - ok 14:14:56.0682 4048 [ 8D1196CFBB223621F2C67D45710F25BA ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 14:14:56.0708 4048 usbhub - ok 14:14:56.0730 4048 [ 765A92D428A8DB88B960DA5A8D6089DC ] usbohci C:\Windows\system32\drivers\usbohci.sys 14:14:56.0749 4048 usbohci - ok 14:14:56.0766 4048 [ 73188F58FB384E75C4063D29413CEE3D ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 14:14:56.0787 4048 usbprint - ok 14:14:56.0824 4048 [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 14:14:56.0863 4048 USBSTOR - ok 14:14:56.0889 4048 [ DD253AFC3BC6CBA412342DE60C3647F3 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 14:14:56.0903 4048 usbuhci - ok 14:14:56.0914 4048 [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms C:\Windows\System32\uxsms.dll 14:14:56.0955 4048 UxSms - ok 14:14:56.0964 4048 [ 4D71227301DD8D09097B9E4CC6527E5A ] VaultSvc C:\Windows\system32\lsass.exe 14:14:56.0972 4048 VaultSvc - ok 14:14:56.0982 4048 [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 14:14:56.0989 4048 vdrvroot - ok 14:14:57.0020 4048 [ 8D6B481601D01A456E75C3210F1830BE ] vds C:\Windows\System32\vds.exe 14:14:57.0046 4048 vds - ok 14:14:57.0049 4048 [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 14:14:57.0058 4048 vga - ok 14:14:57.0097 4048 [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave C:\Windows\System32\drivers\vga.sys 14:14:57.0132 4048 VgaSave - ok 14:14:57.0164 4048 [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 14:14:57.0172 4048 vhdmp - ok 14:14:57.0188 4048 [ E5689D93FFE4E5D66C0178761240DD54 ] viaide C:\Windows\system32\drivers\viaide.sys 14:14:57.0195 4048 viaide - ok 14:14:57.0219 4048 [ 86EA3E79AE350FEA5331A1303054005F ] vmbus C:\Windows\system32\drivers\vmbus.sys 14:14:57.0228 4048 vmbus - ok 14:14:57.0241 4048 [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 14:14:57.0260 4048 VMBusHID - ok 14:14:57.0266 4048 [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr C:\Windows\system32\drivers\volmgr.sys 14:14:57.0274 4048 volmgr - ok 14:14:57.0300 4048 [ A255814907C89BE58B79EF2F189B843B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 14:14:57.0311 4048 volmgrx - ok 14:14:57.0324 4048 [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap C:\Windows\system32\drivers\volsnap.sys 14:14:57.0334 4048 volsnap - ok 14:14:57.0343 4048 [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 14:14:57.0351 4048 vsmraid - ok 14:14:57.0392 4048 [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS C:\Windows\system32\vssvc.exe 14:14:57.0430 4048 VSS - ok 14:14:57.0443 4048 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 14:14:57.0453 4048 vwifibus - ok 14:14:57.0460 4048 [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 14:14:57.0470 4048 vwififlt - ok 14:14:57.0483 4048 [ 1C9D80CC3849B3788048078C26486E1A ] W32Time C:\Windows\system32\w32time.dll 14:14:57.0509 4048 W32Time - ok 14:14:57.0521 4048 [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 14:14:57.0538 4048 WacomPen - ok 14:14:57.0546 4048 [ 356AFD78A6ED4457169241AC3965230C ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 14:14:57.0593 4048 WANARP - ok 14:14:57.0596 4048 [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 14:14:57.0619 4048 Wanarpv6 - ok 14:14:57.0659 4048 [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine C:\Windows\system32\wbengine.exe 14:14:57.0690 4048 wbengine - ok 14:14:57.0712 4048 [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 14:14:57.0742 4048 WbioSrvc - ok 14:14:57.0774 4048 [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc C:\Windows\System32\wcncsvc.dll 14:14:57.0792 4048 wcncsvc - ok 14:14:57.0795 4048 [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 14:14:57.0816 4048 WcsPlugInService - ok 14:14:57.0833 4048 [ 72889E16FF12BA0F235467D6091B17DC ] Wd C:\Windows\system32\DRIVERS\wd.sys 14:14:57.0842 4048 Wd - ok 14:14:57.0877 4048 [ E2C933EDBC389386EBE6D2BA953F43D8 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 14:14:57.0904 4048 Wdf01000 - ok 14:14:57.0913 4048 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost C:\Windows\system32\wdi.dll 14:14:57.0952 4048 WdiServiceHost - ok 14:14:57.0954 4048 [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost C:\Windows\system32\wdi.dll 14:14:57.0966 4048 WdiSystemHost - ok 14:14:57.0994 4048 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D ] WebClient C:\Windows\System32\webclnt.dll 14:14:58.0005 4048 WebClient - ok 14:14:58.0017 4048 [ C749025A679C5103E575E3B48E092C43 ] Wecsvc C:\Windows\system32\wecsvc.dll 14:14:58.0056 4048 Wecsvc - ok 14:14:58.0070 4048 [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport C:\Windows\System32\wercplsupport.dll 14:14:58.0106 4048 wercplsupport - ok 14:14:58.0117 4048 [ 6D137963730144698CBD10F202E9F251 ] WerSvc C:\Windows\System32\WerSvc.dll 14:14:58.0140 4048 WerSvc - ok 14:14:58.0144 4048 [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 14:14:58.0175 4048 WfpLwf - ok 14:14:58.0177 4048 [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount C:\Windows\system32\drivers\wimmount.sys 14:14:58.0183 4048 WIMMount - ok 14:14:58.0203 4048 WinDefend - ok 14:14:58.0206 4048 WinHttpAutoProxySvc - ok 14:14:58.0239 4048 [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 14:14:58.0268 4048 Winmgmt - ok 14:14:58.0321 4048 [ BCB1310604AA415C4508708975B3931E ] WinRM C:\Windows\system32\WsmSvc.dll 14:14:58.0371 4048 WinRM - ok 14:14:58.0392 4048 [ FE88B288356E7B47B74B13372ADD906D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 14:14:58.0403 4048 WinUsb - ok 14:14:58.0425 4048 [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc C:\Windows\System32\wlansvc.dll 14:14:58.0449 4048 Wlansvc - ok 14:14:58.0477 4048 [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 14:14:58.0485 4048 WmiAcpi - ok 14:14:58.0502 4048 [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 14:14:58.0517 4048 wmiApSrv - ok 14:14:58.0525 4048 WMPNetworkSvc - ok 14:14:58.0533 4048 [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc C:\Windows\System32\wpcsvc.dll 14:14:58.0541 4048 WPCSvc - ok 14:14:58.0549 4048 [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 14:14:58.0566 4048 WPDBusEnum - ok 14:14:58.0575 4048 [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 14:14:58.0608 4048 ws2ifsl - ok 14:14:58.0618 4048 [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc C:\Windows\System32\wscsvc.dll 14:14:58.0634 4048 wscsvc - ok 14:14:58.0636 4048 WSearch - ok 14:14:58.0671 4048 [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv C:\Windows\system32\wuaueng.dll 14:14:58.0701 4048 wuauserv - ok 14:14:58.0718 4048 [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 14:14:58.0732 4048 WudfPf - ok 14:14:58.0743 4048 [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 14:14:58.0752 4048 WUDFRd - ok 14:14:58.0775 4048 [ B20F051B03A966392364C83F009F7D17 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 14:14:58.0791 4048 wudfsvc - ok 14:14:58.0816 4048 [ 04F82965C09CBDF646B487E145060301 ] WwanSvc C:\Windows\System32\wwansvc.dll 14:14:58.0842 4048 WwanSvc - ok 14:14:58.0871 4048 [ 2EE48CFCE7CA8E0DB4C44C7476C0943B ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys 14:14:58.0895 4048 xusb21 - ok 14:14:58.0898 4048 ================ Scan global =============================== 14:14:58.0916 4048 [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll 14:14:58.0938 4048 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll 14:14:58.0944 4048 [ 88EDD0B34EED542745931E581AD21A32 ] C:\Windows\system32\winsrv.dll 14:14:58.0959 4048 [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll 14:14:58.0973 4048 [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe 14:14:58.0976 4048 [Global] - ok 14:14:58.0977 4048 ================ Scan MBR ================================== 14:14:58.0992 4048 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 14:14:59.0197 4048 \Device\Harddisk0\DR0 - ok 14:14:59.0198 4048 ================ Scan VBR ================================== 14:14:59.0200 4048 [ 518C171B4A0D3D874884866760B80343 ] \Device\Harddisk0\DR0\Partition1 14:14:59.0202 4048 \Device\Harddisk0\DR0\Partition1 - ok 14:14:59.0223 4048 [ 8D426B6A146A2D2AB83F5DC10FC55D28 ] \Device\Harddisk0\DR0\Partition2 14:14:59.0225 4048 \Device\Harddisk0\DR0\Partition2 - ok 14:14:59.0225 4048 ============================================================ 14:14:59.0225 4048 Scan finished 14:14:59.0225 4048 ============================================================ 14:14:59.0234 4572 Detected object count: 3 14:14:59.0234 4572 Actual detected object count: 3 14:15:19.0761 4572 asmthub3 ( UnsignedFile.Multi.Generic ) - skipped by user 14:15:19.0761 4572 asmthub3 ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:15:19.0761 4572 asmtxhci ( UnsignedFile.Multi.Generic ) - skipped by user 14:15:19.0761 4572 asmtxhci ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:15:19.0762 4572 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user 14:15:19.0762 4572 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:18:07.0595 2672 Deinitialize success FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Felix (administrator) on FELIX-PC on 15-03-2014 17:11:50 Running from C:\Users\Felix\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe () C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.22.5\GoogleCrashHandler64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe (SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe (Spotify Ltd) C:\Users\Felix\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11613288 2010-11-19] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-08-27] (NVIDIA Corporation) HKLM\...\Run: [ProfilerU] - C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454144 2013-04-16] (Saitek) HKLM\...\Run: [SaiMfd] - C:\Program Files\SmartTechnology\Software\SaiMfd.exe [158208 2013-04-16] (Saitek) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1758160 2014-02-13] (APN) HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2013-08-26] (Microsoft Corporation) HKU\S-1-5-21-3962658854-962866362-2403926545-1001\...\Run: [SteelSeries Engine] - C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [242688 2013-07-12] (SteelSeries ApS) HKU\S-1-5-21-3962658854-962866362-2403926545-1001\...\Run: [Spotify Web Helper] - C:\Users\Felix\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1171968 2014-01-18] (Spotify Ltd) HKU\S-1-5-21-3962658854-962866362-2403926545-1001\...\Run: [LiveSupport] - "C:\Program Files (x86)\LiveSupport\LiveSupport.exe" /noshow /log HKU\S-1-5-21-3962658854-962866362-2403926545-1001\...\Run: [Akamai NetSession Interface] - "C:\Users\Felix\AppData\Local\Akamai\netsession_win.exe" HKU\S-1-5-21-3962658854-962866362-2403926545-1001\...\MountPoints2: {a04afc13-0d8f-11e3-8088-806e6f6e6963} - D:\Bin\assetup.exe ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://websearch.searchbomb.info/?pid=34&r=2013/11/26&hid=13480248181362442432&lg=EN&cc=DE&unqvl=42 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xEE016A463CA3CE01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://websearch.searchbomb.info/?pid=34&r=2013/11/26&hid=13480248181362442432&lg=EN&cc=DE&unqvl=42 SearchScopes: HKLM-x32 - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.searchbomb.info/?l=1&q={searchTerms}&pid=34&r=2013/11/26&hid=13480248181362442432&lg=EN&cc=DE&unqvl=42 SearchScopes: HKCU - DefaultScope {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.searchbomb.info/?l=1&q={searchTerms}&pid=34&r=2013/11/26&hid=13480248181362442432&lg=EN&cc=DE&unqvl=42 SearchScopes: HKCU - {BB74DE59-BC4C-4172-9AC4-73315F71CFFE} URL = hxxp://websearch.searchbomb.info/?l=1&q={searchTerms}&pid=34&r=2013/11/26&hid=13480248181362442432&lg=EN&cc=DE&unqvl=42 BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKCU - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - No File Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) Chrome: ======= CHR HomePage: https://www.google.de/ CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-08-25] CHR Extension: (Google Docs) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-26] CHR Extension: (Google Drive) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-26] CHR Extension: (YouTube) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-26] CHR Extension: (Google-Suche) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-26] CHR Extension: (AdBlock) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-11-27] CHR Extension: (Google Wallet) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25] CHR Extension: (Google Mail) - C:\Users\Felix\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-26] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-02-20] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-20] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [918144 2010-11-03] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe [915584 2010-12-02] () R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [586880 2010-10-21] () R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14997280 2013-08-27] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2013-10-12] () ==================== Drivers (Whitelisted) ==================== R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-24] () R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-12] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-12] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-12-03] (Avira Operations GmbH & Co. KG) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-08-20] (NVIDIA Corporation) R3 SaiH0255; C:\Windows\System32\DRIVERS\SaiH0255.sys [171144 2007-05-01] (Saitek) R3 SAlphamHid; C:\Windows\System32\DRIVERS\SAlpham64.sys [38016 2013-06-25] (SteelSeries Corporation) S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [X] S3 ESEADriver2; \??\C:\Users\Felix\AppData\Local\Temp\ESEADriver2.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-15 17:11 - 2014-03-15 17:12 - 00014511 _____ () C:\Users\Felix\Desktop\FRST.txt 2014-03-15 17:11 - 2014-03-15 17:11 - 02157056 _____ (Farbar) C:\Users\Felix\Desktop\FRST64.exe 2014-03-15 17:11 - 2014-03-15 17:11 - 00000000 ____D () C:\FRST 2014-03-15 14:19 - 2014-03-15 14:27 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-03-15 14:19 - 2014-03-15 14:19 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-15 14:19 - 2014-03-15 14:19 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-15 14:18 - 2014-03-15 14:18 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-14 23:59 - 2014-03-14 23:59 - 00001206 _____ () C:\Users\Felix\Downloads\Herunterladen.csv 2014-03-14 17:08 - 2014-03-14 17:08 - 00000000 ____D () C:\Users\Felix\Documents\My Games 2014-03-14 17:08 - 2014-03-14 17:08 - 00000000 ____D () C:\ProgramData\Codemasters 2014-03-12 20:06 - 2014-03-01 07:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-12 20:06 - 2014-03-01 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-12 20:06 - 2014-03-01 06:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-12 20:06 - 2014-03-01 05:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-12 20:06 - 2014-03-01 05:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-12 20:06 - 2014-03-01 05:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-12 20:06 - 2014-03-01 05:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-12 20:06 - 2014-03-01 05:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-12 20:06 - 2014-03-01 05:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-12 20:06 - 2014-03-01 05:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-12 20:06 - 2014-03-01 05:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-12 20:06 - 2014-03-01 05:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-12 20:06 - 2014-03-01 05:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-12 20:06 - 2014-03-01 05:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-12 20:06 - 2014-03-01 05:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-12 20:06 - 2014-03-01 05:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-12 20:06 - 2014-03-01 05:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-12 20:06 - 2014-03-01 04:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-12 20:06 - 2014-03-01 04:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-12 20:06 - 2014-03-01 04:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-12 20:06 - 2014-03-01 04:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-12 20:06 - 2014-03-01 04:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-12 20:06 - 2014-03-01 04:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-12 20:06 - 2014-03-01 04:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-12 20:06 - 2014-03-01 04:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-12 20:06 - 2014-03-01 04:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-12 20:06 - 2014-03-01 04:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-12 20:06 - 2014-03-01 04:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-12 20:06 - 2014-03-01 04:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-12 20:06 - 2014-03-01 04:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-12 20:06 - 2014-03-01 04:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-12 20:06 - 2014-03-01 04:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-12 20:06 - 2014-03-01 04:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-12 20:06 - 2014-03-01 04:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-12 20:06 - 2014-03-01 03:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-12 20:06 - 2014-03-01 03:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-12 20:06 - 2014-03-01 03:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-12 20:06 - 2014-03-01 03:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-12 20:06 - 2014-03-01 03:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-12 20:06 - 2014-03-01 03:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-03-12 20:06 - 2014-02-07 02:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-12 20:06 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-12 20:06 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-12 20:06 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-12 20:05 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-12 20:05 - 2014-02-04 03:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-12 20:05 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-12 20:05 - 2014-02-04 03:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-09 14:26 - 2014-03-09 14:26 - 00046130 _____ () C:\Users\Felix\Downloads\SteamAchievementManager63_hotfix.zip 2014-03-09 14:26 - 2013-08-10 04:20 - 00031232 _____ (Party Princess Palace) C:\Users\Felix\Downloads\SAM.API.dll 2014-03-09 14:26 - 2011-09-23 11:16 - 00045056 _____ (Party Princess Palace) C:\Users\Felix\Downloads\SAM.Picker.exe 2014-03-09 14:26 - 2011-09-23 11:16 - 00045056 _____ (Party Princess Palace) C:\Users\Felix\Downloads\SAM.Game.exe 2014-03-08 19:35 - 2014-03-08 19:35 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2014-03-08 19:24 - 2014-03-09 20:18 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\TeamViewer 2014-03-08 19:23 - 2014-03-08 19:24 - 05852336 _____ (TeamViewer GmbH) C:\Users\Felix\Downloads\TeamViewer_Setup_de.exe 2014-03-08 15:44 - 2014-03-08 15:44 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-03-08 15:43 - 2014-03-08 15:44 - 00000000 ____D () C:\Users\Felix\Documents\GTA San Andreas User Files 2014-03-08 15:43 - 2014-03-08 15:43 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2014-03-08 15:42 - 2014-03-08 15:42 - 11990847 _____ () C:\Users\Felix\Downloads\sa-mp-0.3z-R1-install (2).exe 2014-03-08 15:40 - 2014-03-08 15:43 - 00000000 ____D () C:\Users\Felix\Downloads\FSX 2014-03-08 15:11 - 2014-03-08 15:40 - 701897648 _____ () C:\Users\Felix\Downloads\FSX.rar 2014-03-08 14:23 - 2014-03-08 14:23 - 11990847 _____ () C:\Users\Felix\Downloads\sa-mp-0.3z-R1-install (1).exe 2014-03-08 14:22 - 2014-03-08 14:23 - 11990847 _____ () C:\Users\Felix\Downloads\sa-mp-0.3z-R1-install.exe 2014-03-07 11:08 - 2014-03-07 11:08 - 08066548 _____ () C:\Users\Felix\Downloads\PMDG_1403.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 10502010 _____ () C:\Users\Felix\Downloads\B736_PMDG_FSX_LHA3_DAESN.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 09376130 _____ () C:\Users\Felix\Downloads\B77F_PMDG_FSX_XMAS_DAXBA.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 08955036 _____ () C:\Users\Felix\Downloads\B77L_PMDG_FSX_LHA3_N704DK.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 03413235 _____ () C:\Users\Felix\Downloads\MD11_PMDG_FSX_LHA3_OHLGF.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 02798820 _____ () C:\Users\Felix\Downloads\B74F_PMDG_FSX_LHA3_DAKWD.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 00650924 _____ () C:\Users\Felix\Downloads\cr_pmdg_rte_week09.zip 2014-03-06 17:34 - 2014-03-06 17:34 - 00000615 _____ () C:\Users\Felix\Downloads\EDDF-EDDM.pln 2014-03-06 11:47 - 2014-03-05 14:48 - 00002061 _____ () C:\Users\Felix\Desktop\XAcars for MS Flightsimulator.lnk 2014-03-05 20:10 - 2014-03-05 20:10 - 00000000 ____D () C:\Users\Felix\Downloads\House Colors Wingview NO VC Version 2014-03-05 20:09 - 2014-03-05 20:09 - 17189618 _____ () C:\Users\Felix\Downloads\House Colors Wingview NO VC Version.zip 2014-03-05 17:52 - 2014-03-05 17:52 - 08226274 _____ () C:\Users\Felix\Downloads\New VC Version ( Note - Wingview version required ).zip 2014-03-05 16:34 - 2014-03-05 16:34 - 00000989 _____ () C:\Users\Felix\Downloads\EDDL-EDDM.pln 2014-03-05 14:57 - 2014-03-05 14:58 - 12251221 _____ () C:\Users\Felix\Downloads\ASNext_FSX_Update_HF2.zip 2014-03-05 14:56 - 2014-03-05 14:56 - 08554624 _____ () C:\Users\Felix\Downloads\B737_PMDGPTP_FSX_LHA3_DANKE.ptp 2014-03-05 14:55 - 2014-03-05 14:55 - 04731752 _____ () C:\Users\Felix\Downloads\B738_PMDGPTP_FSX_LHA3_DAKAD.ptp 2014-03-05 14:48 - 2014-03-05 18:58 - 00000000 ____D () C:\Program Files (x86)\XAcars for MSFS 2014-03-05 14:48 - 2014-03-05 14:48 - 02374571 _____ () C:\Users\Felix\Downloads\XAcars for MSFS (Setup).zip 2014-03-03 21:22 - 2014-03-03 21:22 - 00923275 _____ () C:\Users\Felix\Downloads\R3CLIENT.zip 2014-03-03 14:17 - 2014-03-03 14:17 - 00024291 _____ () C:\Users\Felix\Downloads\eddh3.zip 2014-03-03 14:15 - 2014-03-03 14:15 - 00000000 ____D () C:\Users\Felix\Downloads\edds_v3 2014-03-03 14:14 - 2014-03-03 14:15 - 04376760 _____ () C:\Users\Felix\Downloads\edds_v3.zip 2014-03-03 14:12 - 2014-03-03 14:12 - 00000000 ____D () C:\Users\Felix\Downloads\gaedds10 (1) 2014-03-03 14:06 - 2014-03-03 14:06 - 00369746 _____ () C:\Users\Felix\Downloads\limc_fsx.zip 2014-02-27 17:42 - 2014-02-27 17:43 - 13577123 _____ () C:\Users\Felix\Downloads\toma343.zip 2014-02-25 14:57 - 2014-02-25 14:57 - 09850113 _____ () C:\Users\Felix\Downloads\thai_772x_new1-1.zip 2014-02-25 14:57 - 2014-02-25 14:57 - 00000000 ____D () C:\Users\Felix\Downloads\thai_772x_new1-1 2014-02-25 14:51 - 2014-02-25 14:51 - 00000000 ____D () C:\Users\Felix\Downloads\PMDG_777LR_THAI 2014-02-25 14:49 - 2014-02-25 14:50 - 09129787 _____ () C:\Users\Felix\Downloads\PMDG_777LR_THAI.zip 2014-02-23 17:06 - 2014-02-23 17:07 - 03659809 _____ () C:\Users\Felix\Downloads\pmdg_777-200lr_southafrican.zip 2014-02-21 17:47 - 2014-02-21 17:47 - 00044125 _____ () C:\Users\Felix\Downloads\greekislandsvol2.zip 2014-02-21 15:12 - 2014-02-21 15:12 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Mozilla 2014-02-19 19:00 - 2014-02-19 19:00 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sim Giants 2014-02-19 18:53 - 2014-02-19 18:57 - 159635186 _____ () C:\Users\Felix\Downloads\GCLP FSX Setup.zip 2014-02-19 18:52 - 2014-02-19 18:52 - 02266185 _____ () C:\Users\Felix\Downloads\gaedds10.zip 2014-02-19 18:52 - 2014-02-19 18:52 - 02266185 _____ () C:\Users\Felix\Downloads\gaedds10 (1).zip 2014-02-19 18:52 - 2014-02-19 18:52 - 02140095 _____ () C:\Users\Felix\Downloads\gaeddk15.zip 2014-02-16 20:00 - 2014-02-16 20:00 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PMDG Simulations 2014-02-16 17:57 - 2014-02-16 17:57 - 00002964 _____ () C:\Windows\System32\Tasks\{CF5FB70D-CD83-4F94-AEA2-1552953F54A5} 2014-02-16 17:57 - 2014-02-16 17:57 - 00002964 _____ () C:\Windows\System32\Tasks\{76A67DF2-BE6B-49D6-A782-9F01AE9265DC} 2014-02-16 17:56 - 2014-02-16 17:56 - 00002964 _____ () C:\Windows\System32\Tasks\{3CC788E0-FED6-41A7-9974-2B8B2CE38DED} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{5ACDCAC8-4E89-4861-A1A4-1C62D5FBA56C} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{40DC8003-4A94-44D8-BD48-0C99D96E2B53} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{3239AEAD-C9FA-48F0-A1E1-7677B1705B58} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{12ED34FF-34C6-462D-91D9-49CDAFA64E29} 2014-02-16 17:43 - 2014-02-16 17:43 - 00002964 _____ () C:\Windows\System32\Tasks\{B25D8A2E-4AB0-4BAB-9541-E3BBF4AACEFF} 2014-02-16 17:42 - 2014-02-16 17:42 - 00002964 _____ () C:\Windows\System32\Tasks\{05ADB2C3-29DB-4061-AA7C-CEF1CF29573B} 2014-02-16 17:41 - 2014-02-16 17:41 - 00002964 _____ () C:\Windows\System32\Tasks\{F0383696-5DD4-4CF2-886A-951CE4E63D82} 2014-02-16 17:41 - 2014-02-16 17:41 - 00002964 _____ () C:\Windows\System32\Tasks\{E8D3F046-4F05-4BFB-A766-20552B74656C} 2014-02-16 16:09 - 2014-02-16 16:09 - 00032666 _____ () C:\Users\Felix\Downloads\dtta_ade_rs_fsx.zip 2014-02-16 14:05 - 2014-02-16 14:05 - 00001105 _____ () C:\Users\Felix\Desktop\Active Sky 2012.lnk 2014-02-16 12:23 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-02-16 12:17 - 2014-02-16 12:17 - 00000000 ____D () C:\Users\Felix\Documents\EZDock Einstellungen 2014-02-16 11:53 - 2014-02-16 11:53 - 00001917 _____ () C:\Users\UpdatusUser\Desktop\VATroute.lnk 2014-02-16 11:53 - 2014-02-16 11:53 - 00001917 _____ () C:\Users\Felix\Desktop\VATroute.lnk 2014-02-16 11:53 - 2014-02-16 11:53 - 00000000 ____D () C:\Windows\uninstall 2014-02-16 11:53 - 2014-02-16 11:53 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VATroute 2014-02-16 11:53 - 2014-02-16 11:53 - 00000000 ____D () C:\Program Files (x86)\VATroute 2014-02-15 10:34 - 2014-02-15 10:34 - 00003410 _____ () C:\Windows\System32\Tasks\{B8725524-053D-42D7-A352-463826570A4E} 2014-02-13 18:52 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-02-13 18:52 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-02-13 16:06 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-02-13 16:06 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-02-13 16:06 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-02-13 16:06 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-02-13 16:06 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-02-13 16:06 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-02-13 16:06 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-02-13 16:06 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-02-13 16:06 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-02-13 16:06 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-02-13 16:06 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-02-13 16:06 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-02-13 16:06 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-02-13 16:06 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-02-13 16:06 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-02-13 16:06 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-02-13 16:06 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-02-13 16:06 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-02-13 16:06 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-02-13 16:06 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-02-13 16:06 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-02-13 16:06 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-02-13 16:06 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-02-13 16:06 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-02-13 16:06 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-02-13 16:06 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-02-13 16:06 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-02-13 16:06 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll ==================== One Month Modified Files and Folders ======= 2014-03-15 17:12 - 2014-03-15 17:11 - 00014511 _____ () C:\Users\Felix\Desktop\FRST.txt 2014-03-15 17:11 - 2014-03-15 17:11 - 02157056 _____ (Farbar) C:\Users\Felix\Desktop\FRST64.exe 2014-03-15 17:11 - 2014-03-15 17:11 - 00000000 ____D () C:\FRST 2014-03-15 17:09 - 2013-08-25 15:13 - 01999735 _____ () C:\Windows\WindowsUpdate.log 2014-03-15 17:05 - 2013-11-26 21:20 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-15 17:05 - 2013-11-26 20:54 - 00000448 ____H () C:\Windows\Tasks\SK.Enhancer-S-161304646.job 2014-03-15 17:05 - 2013-08-25 15:29 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-03-15 17:05 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-03-15 17:05 - 2009-07-14 05:51 - 00125350 _____ () C:\Windows\setupact.log 2014-03-15 14:27 - 2014-03-15 14:19 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2014-03-15 14:19 - 2014-03-15 14:19 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-15 14:19 - 2014-03-15 14:19 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-15 14:18 - 2014-03-15 14:18 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-15 13:49 - 2013-08-25 16:36 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-03-15 13:44 - 2013-11-26 21:20 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-15 13:14 - 2013-08-25 16:45 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\TS3Client 2014-03-15 12:30 - 2009-07-14 05:45 - 00014752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-15 12:30 - 2009-07-14 05:45 - 00014752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-15 12:08 - 2009-07-14 05:45 - 00021504 _____ () C:\Windows\system32\umstartup.etl 2014-03-15 00:06 - 2009-07-14 05:45 - 00021504 _____ () C:\Windows\system32\umstartup000.etl 2014-03-14 23:59 - 2014-03-14 23:59 - 00001206 _____ () C:\Users\Felix\Downloads\Herunterladen.csv 2014-03-14 22:46 - 2013-08-25 16:32 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Spotify 2014-03-14 18:53 - 2013-08-25 16:54 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-03-14 17:08 - 2014-03-14 17:08 - 00000000 ____D () C:\Users\Felix\Documents\My Games 2014-03-14 17:08 - 2014-03-14 17:08 - 00000000 ____D () C:\ProgramData\Codemasters 2014-03-13 17:42 - 2009-07-14 05:45 - 00296040 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-03-10 14:03 - 2013-08-25 16:33 - 00000000 ____D () C:\Users\Felix\AppData\Local\Spotify 2014-03-09 20:18 - 2014-03-08 19:24 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\TeamViewer 2014-03-09 14:26 - 2014-03-09 14:26 - 00046130 _____ () C:\Users\Felix\Downloads\SteamAchievementManager63_hotfix.zip 2014-03-09 14:02 - 2013-08-25 15:35 - 00067128 _____ () C:\Users\Felix\AppData\Local\GDIPFONTCACHEV1.DAT 2014-03-08 19:35 - 2014-03-08 19:35 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2014-03-08 19:24 - 2014-03-08 19:23 - 05852336 _____ (TeamViewer GmbH) C:\Users\Felix\Downloads\TeamViewer_Setup_de.exe 2014-03-08 15:44 - 2014-03-08 15:44 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-03-08 15:44 - 2014-03-08 15:43 - 00000000 ____D () C:\Users\Felix\Documents\GTA San Andreas User Files 2014-03-08 15:43 - 2014-03-08 15:43 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2014-03-08 15:43 - 2014-03-08 15:40 - 00000000 ____D () C:\Users\Felix\Downloads\FSX 2014-03-08 15:42 - 2014-03-08 15:42 - 11990847 _____ () C:\Users\Felix\Downloads\sa-mp-0.3z-R1-install (2).exe 2014-03-08 15:40 - 2014-03-08 15:11 - 701897648 _____ () C:\Users\Felix\Downloads\FSX.rar 2014-03-08 14:23 - 2014-03-08 14:23 - 11990847 _____ () C:\Users\Felix\Downloads\sa-mp-0.3z-R1-install (1).exe 2014-03-08 14:23 - 2014-03-08 14:22 - 11990847 _____ () C:\Users\Felix\Downloads\sa-mp-0.3z-R1-install.exe 2014-03-07 18:18 - 2013-08-27 11:45 - 00000000 ____D () C:\REX Essential Plus Overdrive 2014-03-07 18:15 - 2013-09-12 19:48 - 00194678 _____ () C:\AEMODULE.LOG 2014-03-07 11:08 - 2014-03-07 11:08 - 08066548 _____ () C:\Users\Felix\Downloads\PMDG_1403.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 10502010 _____ () C:\Users\Felix\Downloads\B736_PMDG_FSX_LHA3_DAESN.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 09376130 _____ () C:\Users\Felix\Downloads\B77F_PMDG_FSX_XMAS_DAXBA.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 08955036 _____ () C:\Users\Felix\Downloads\B77L_PMDG_FSX_LHA3_N704DK.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 03413235 _____ () C:\Users\Felix\Downloads\MD11_PMDG_FSX_LHA3_OHLGF.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 02798820 _____ () C:\Users\Felix\Downloads\B74F_PMDG_FSX_LHA3_DAKWD.zip 2014-03-06 18:18 - 2014-03-06 18:18 - 00650924 _____ () C:\Users\Felix\Downloads\cr_pmdg_rte_week09.zip 2014-03-06 17:34 - 2014-03-06 17:34 - 00000615 _____ () C:\Users\Felix\Downloads\EDDF-EDDM.pln 2014-03-06 11:45 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-03-05 20:10 - 2014-03-05 20:10 - 00000000 ____D () C:\Users\Felix\Downloads\House Colors Wingview NO VC Version 2014-03-05 20:09 - 2014-03-05 20:09 - 17189618 _____ () C:\Users\Felix\Downloads\House Colors Wingview NO VC Version.zip 2014-03-05 18:58 - 2014-03-05 14:48 - 00000000 ____D () C:\Program Files (x86)\XAcars for MSFS 2014-03-05 17:52 - 2014-03-05 17:52 - 08226274 _____ () C:\Users\Felix\Downloads\New VC Version ( Note - Wingview version required ).zip 2014-03-05 16:34 - 2014-03-05 16:34 - 00000989 _____ () C:\Users\Felix\Downloads\EDDL-EDDM.pln 2014-03-05 14:58 - 2014-03-05 14:57 - 12251221 _____ () C:\Users\Felix\Downloads\ASNext_FSX_Update_HF2.zip 2014-03-05 14:56 - 2014-03-05 14:56 - 08554624 _____ () C:\Users\Felix\Downloads\B737_PMDGPTP_FSX_LHA3_DANKE.ptp 2014-03-05 14:55 - 2014-03-05 14:55 - 04731752 _____ () C:\Users\Felix\Downloads\B738_PMDGPTP_FSX_LHA3_DAKAD.ptp 2014-03-05 14:48 - 2014-03-06 11:47 - 00002061 _____ () C:\Users\Felix\Desktop\XAcars for MS Flightsimulator.lnk 2014-03-05 14:48 - 2014-03-05 14:48 - 02374571 _____ () C:\Users\Felix\Downloads\XAcars for MSFS (Setup).zip 2014-03-03 21:22 - 2014-03-03 21:22 - 00923275 _____ () C:\Users\Felix\Downloads\R3CLIENT.zip 2014-03-03 19:15 - 2013-12-01 18:42 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\.minecraft 2014-03-03 14:17 - 2014-03-03 14:17 - 00024291 _____ () C:\Users\Felix\Downloads\eddh3.zip 2014-03-03 14:15 - 2014-03-03 14:15 - 00000000 ____D () C:\Users\Felix\Downloads\edds_v3 2014-03-03 14:15 - 2014-03-03 14:14 - 04376760 _____ () C:\Users\Felix\Downloads\edds_v3.zip 2014-03-03 14:12 - 2014-03-03 14:12 - 00000000 ____D () C:\Users\Felix\Downloads\gaedds10 (1) 2014-03-03 14:06 - 2014-03-03 14:06 - 00369746 _____ () C:\Users\Felix\Downloads\limc_fsx.zip 2014-03-01 07:05 - 2014-03-12 20:06 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-01 06:17 - 2014-03-12 20:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-01 06:16 - 2014-03-12 20:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-01 05:58 - 2014-03-12 20:06 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-01 05:52 - 2014-03-12 20:06 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-01 05:51 - 2014-03-12 20:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-01 05:42 - 2014-03-12 20:06 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-01 05:40 - 2014-03-12 20:06 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-01 05:37 - 2014-03-12 20:06 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-01 05:33 - 2014-03-12 20:06 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-01 05:33 - 2014-03-12 20:06 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-01 05:32 - 2014-03-12 20:06 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-01 05:30 - 2014-03-12 20:06 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-01 05:23 - 2014-03-12 20:06 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-01 05:17 - 2014-03-12 20:06 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-01 05:11 - 2014-03-12 20:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-01 05:02 - 2014-03-12 20:06 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-01 04:54 - 2014-03-12 20:06 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-01 04:52 - 2014-03-12 20:06 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-01 04:51 - 2014-03-12 20:06 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-01 04:47 - 2014-03-12 20:06 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-01 04:43 - 2014-03-12 20:06 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-01 04:43 - 2014-03-12 20:06 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-01 04:42 - 2014-03-12 20:06 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-01 04:40 - 2014-03-12 20:06 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-01 04:38 - 2014-03-12 20:06 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-01 04:37 - 2014-03-12 20:06 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-01 04:35 - 2014-03-12 20:06 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-01 04:18 - 2014-03-12 20:06 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-01 04:16 - 2014-03-12 20:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-01 04:14 - 2014-03-12 20:06 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-01 04:10 - 2014-03-12 20:06 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-01 04:03 - 2014-03-12 20:06 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-01 04:00 - 2014-03-12 20:06 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-01 03:57 - 2014-03-12 20:06 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-01 03:38 - 2014-03-12 20:06 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-01 03:32 - 2014-03-12 20:06 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-01 03:27 - 2014-03-12 20:06 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-01 03:25 - 2014-03-12 20:06 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-01 03:25 - 2014-03-12 20:06 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-27 17:43 - 2014-02-27 17:42 - 13577123 _____ () C:\Users\Felix\Downloads\toma343.zip 2014-02-26 12:17 - 2013-08-25 18:59 - 01602778 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-02-26 12:17 - 2009-07-14 18:58 - 00702954 _____ () C:\Windows\system32\perfh007.dat 2014-02-26 12:17 - 2009-07-14 18:58 - 00150612 _____ () C:\Windows\system32\perfc007.dat 2014-02-26 12:17 - 2009-07-14 06:13 - 01602778 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-02-25 17:02 - 2013-08-25 15:20 - 00375216 _____ () C:\Windows\PFRO.log 2014-02-25 16:06 - 2013-11-24 12:04 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Virtuali 2014-02-25 15:58 - 2013-09-08 12:36 - 00000000 ____D () C:\Users\Felix\Documents\Flight Simulator X-Dateien 2014-02-25 14:57 - 2014-02-25 14:57 - 09850113 _____ () C:\Users\Felix\Downloads\thai_772x_new1-1.zip 2014-02-25 14:57 - 2014-02-25 14:57 - 00000000 ____D () C:\Users\Felix\Downloads\thai_772x_new1-1 2014-02-25 14:51 - 2014-02-25 14:51 - 00000000 ____D () C:\Users\Felix\Downloads\PMDG_777LR_THAI 2014-02-25 14:50 - 2014-02-25 14:49 - 09129787 _____ () C:\Users\Felix\Downloads\PMDG_777LR_THAI.zip 2014-02-23 17:07 - 2014-02-23 17:06 - 03659809 _____ () C:\Users\Felix\Downloads\pmdg_777-200lr_southafrican.zip 2014-02-21 17:47 - 2014-02-21 17:47 - 00044125 _____ () C:\Users\Felix\Downloads\greekislandsvol2.zip 2014-02-21 15:12 - 2014-02-21 15:12 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Mozilla 2014-02-19 19:00 - 2014-02-19 19:00 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sim Giants 2014-02-19 18:57 - 2014-02-19 18:53 - 159635186 _____ () C:\Users\Felix\Downloads\GCLP FSX Setup.zip 2014-02-19 18:52 - 2014-02-19 18:52 - 02266185 _____ () C:\Users\Felix\Downloads\gaedds10.zip 2014-02-19 18:52 - 2014-02-19 18:52 - 02266185 _____ () C:\Users\Felix\Downloads\gaedds10 (1).zip 2014-02-19 18:52 - 2014-02-19 18:52 - 02140095 _____ () C:\Users\Felix\Downloads\gaeddk15.zip 2014-02-18 18:59 - 2013-08-25 16:57 - 00000000 ____D () C:\Users\Felix\Documents\Euro Truck Simulator 2 2014-02-17 21:22 - 2013-09-27 15:55 - 00000000 ____D () C:\Windows\system32\MRT 2014-02-17 21:21 - 2013-09-27 15:55 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-02-16 20:00 - 2014-02-16 20:00 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PMDG Simulations 2014-02-16 20:00 - 2013-09-12 19:34 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FSFDT 2014-02-16 17:57 - 2014-02-16 17:57 - 00002964 _____ () C:\Windows\System32\Tasks\{CF5FB70D-CD83-4F94-AEA2-1552953F54A5} 2014-02-16 17:57 - 2014-02-16 17:57 - 00002964 _____ () C:\Windows\System32\Tasks\{76A67DF2-BE6B-49D6-A782-9F01AE9265DC} 2014-02-16 17:56 - 2014-02-16 17:56 - 00002964 _____ () C:\Windows\System32\Tasks\{3CC788E0-FED6-41A7-9974-2B8B2CE38DED} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{5ACDCAC8-4E89-4861-A1A4-1C62D5FBA56C} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{40DC8003-4A94-44D8-BD48-0C99D96E2B53} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{3239AEAD-C9FA-48F0-A1E1-7677B1705B58} 2014-02-16 17:44 - 2014-02-16 17:44 - 00002964 _____ () C:\Windows\System32\Tasks\{12ED34FF-34C6-462D-91D9-49CDAFA64E29} 2014-02-16 17:43 - 2014-02-16 17:43 - 00002964 _____ () C:\Windows\System32\Tasks\{B25D8A2E-4AB0-4BAB-9541-E3BBF4AACEFF} 2014-02-16 17:42 - 2014-02-16 17:42 - 00002964 _____ () C:\Windows\System32\Tasks\{05ADB2C3-29DB-4061-AA7C-CEF1CF29573B} 2014-02-16 17:41 - 2014-02-16 17:41 - 00002964 _____ () C:\Windows\System32\Tasks\{F0383696-5DD4-4CF2-886A-951CE4E63D82} 2014-02-16 17:41 - 2014-02-16 17:41 - 00002964 _____ () C:\Windows\System32\Tasks\{E8D3F046-4F05-4BFB-A766-20552B74656C} 2014-02-16 16:09 - 2014-02-16 16:09 - 00032666 _____ () C:\Users\Felix\Downloads\dtta_ade_rs_fsx.zip 2014-02-16 14:07 - 2013-08-25 15:41 - 00505642 _____ () C:\Windows\DirectX.log 2014-02-16 14:05 - 2014-02-16 14:05 - 00001105 _____ () C:\Users\Felix\Desktop\Active Sky 2012.lnk 2014-02-16 12:57 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-02-16 12:19 - 2013-11-26 21:35 - 00000000 ____D () C:\Users\Felix\Documents\!FSX Zip 2014-02-16 12:19 - 2013-08-25 16:24 - 00000000 ____D () C:\Users\Felix\Documents\Rechnungen 2014-02-16 12:17 - 2014-02-16 12:17 - 00000000 ____D () C:\Users\Felix\Documents\EZDock Einstellungen 2014-02-16 12:14 - 2013-08-26 12:10 - 00000000 ____D () C:\Program Files (x86)\HiFi 2014-02-16 11:53 - 2014-02-16 11:53 - 00001917 _____ () C:\Users\UpdatusUser\Desktop\VATroute.lnk 2014-02-16 11:53 - 2014-02-16 11:53 - 00001917 _____ () C:\Users\Felix\Desktop\VATroute.lnk 2014-02-16 11:53 - 2014-02-16 11:53 - 00000000 ____D () C:\Windows\uninstall 2014-02-16 11:53 - 2014-02-16 11:53 - 00000000 ____D () C:\Users\Felix\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VATroute 2014-02-16 11:53 - 2014-02-16 11:53 - 00000000 ____D () C:\Program Files (x86)\VATroute 2014-02-15 10:34 - 2014-02-15 10:34 - 00003410 _____ () C:\Windows\System32\Tasks\{B8725524-053D-42D7-A352-463826570A4E} 2014-02-15 10:17 - 2013-11-24 12:03 - 00000000 ____D () C:\ProgramData\Esellerate 2014-02-14 21:49 - 2013-08-25 15:19 - 00015538 _____ () C:\Windows\DPINST.LOG 2014-02-13 16:39 - 2013-11-26 21:20 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-02-13 16:39 - 2013-11-26 21:20 - 00003852 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore Files to move or delete: ==================== C:\Users\Felix\FSDreamTeam_GSX.reg Some content of TEMP: ==================== C:\Users\Felix\AppData\Local\Temp\avgnt.exe C:\Users\Felix\AppData\Local\Temp\FastDownload.exe C:\Users\Felix\AppData\Local\Temp\installerdll10777843.dll C:\Users\Felix\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Felix\AppData\Local\Temp\LiveSupport_setup.exe C:\Users\Felix\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Felix\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Felix\AppData\Local\Temp\nvStereoApiI64.dll C:\Users\Felix\AppData\Local\Temp\nvStInst.exe C:\Users\Felix\AppData\Local\Temp\sonarinst.exe C:\Users\Felix\AppData\Local\Temp\x2blapi.dll C:\Users\Felix\AppData\Local\Temp\_is703F.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-03-11 19:09 ==================== End Of Log ============================ --- --- --- --- --- --- |
15.03.2014, 17:15 | #5 |
| Verdacht: PC infiziert Addition von Farbar Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014 Ran by Felix at 2014-03-15 17:12:40 Running from C:\Users\Felix\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== 3DMark 11 (HKLM-x32\...\{46EDCFA5-7EDB-46A9-B093-1C6237470CEC}) (Version: 1.0.5 - Futuremark Corporation) 767 LEVL D FSX 1.00 - SP2a (HKLM-x32\...\767 LEVL D FSX 1.00 - SP2a) (Version: - ) Active Sky 2012 (HKLM-x32\...\{A9C7C8A6-22A5-2012-8E5A-F77D709A9489}_is1) (Version: 13.1.4826.8230 - HiFi Technologies, Inc.) Active Sky Next for FSX Hotfix 2 (HKLM-x32\...\{F1AE1E08-5094-46AD-AA4D-670C482723B2}_is1) (Version: 1.0.5173.6666 - HiFi Technologies, Inc.) Adobe Reader XI (11.0.06) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated) Aerosoft's - Airbus X Extended - FSX (HKLM-x32\...\Airbus X Extended - FSX) (Version: - ) aerosoft's - Mega Airport Frankfurt X (HKLM-x32\...\{BAEE0C24-C8C2-4820-9DF4-887909F1A286}) (Version: 1.01 - aerosoft) aerosoft's - Mega Airport London Heathrow X (HKLM-x32\...\{2F4AF40B-433A-494E-BB41-816D113F32BA}) (Version: 1.10 - aerosoft) aerosoft's - Mega Airport Munich X (HKLM-x32\...\{1B19DA07-6870-4E60-9171-5C53AD21A0E0}) (Version: 1.02 - aerosoft) aerosoft's - Mega Airport Paris CDG X (HKLM-x32\...\{0F5E7FC8-3D49-47DA-9A51-6A8B4BE393B0}) (Version: 1.00 - aerosoft) aerosoft's - Mega Airport Paris Orly X (HKLM-x32\...\{5946BF7B-BB03-4B01-B329-04C02D1E5815}) (Version: 1.01 - aerosoft) aerosoft's - Nice Cote dAzur X (HKLM-x32\...\{90447E05-DE8E-470D-8D3E-C871D2AE74AF}) (Version: 1.10 - aerosoft) AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 1.01.32 - ASUSTeK Computer Inc.) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira) Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C0A03}) (Version: 12.10.3.4487 - APN, LLC) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.0.0.0 - Electronic Arts) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Call of Duty: Modern Warfare 3 - Multiplayer (HKLM-x32\...\Steam App 42690) (Version: - Infinity Ward) Core Temp 1.0 RC5 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) Euro Truck Simulator 2 (HKLM-x32\...\{1B705E8F-9893-4486-B5D7-4F7FEB9C871E}_is1) (Version: 1.1.1 - SCS Software) EZdok Camera for Microsoft Flight Simulator X (HKLM-x32\...\EZdok Camera for Microsoft Flight Simulator X) (Version: - ) F1 2013 (HKLM-x32\...\Steam App 223670) (Version: - Codemasters Birmingham) Flight Simulator X (HKLM-x32\...\RTMshadow_{7D606567-5047-451A-B49E-29FCB6012B4E}) (Version: - ) Flight Simulator X Service Pack 1 (HKLM-x32\...\SP1shadow_{7D606567-5047-451A-B49E-29FCB6012B4E}) (Version: - ) FSDreamTeam GSX 1.8.3 (HKLM-x32\...\FSDreamTeam GSX_is1) (Version: - ) FSFDT FSCopilot (HKLM-x32\...\FSFDT FSCopilot) (Version: - ) FSFDT FSInn (HKLM-x32\...\FSFDT FSInn) (Version: - ) Futuremark SystemInfo (HKLM-x32\...\{BEE64C14-BEF1-4610-8A68-A16EAA47B882}) (Version: 4.17.0 - Futuremark Corporation) GeForce Experience NvStream Client Components (Version: 0.1.87 - NVIDIA Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 33.0.1750.146 - Google Inc.) Google Update Helper (x32 Version: 1.3.22.5 - Google Inc.) Hidden iCloud (HKLM\...\{EAFB2AD8-D92B-464C-8D97-B9CB94703C4A}) (Version: 3.0.2.163 - Apple Inc.) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.1.1001 - Intel Corporation) iTunes (HKLM\...\{A535111D-95C8-487F-869E-CE4C239972D2}) (Version: 11.1.1.11 - Apple Inc.) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Level-D 767-300 for FSX (HKCU\...\Level-D 767-300 for FSX) (Version: - ) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Flight Simulator X (x32 Version: 10.0.60905 - Microsoft Game Studios) Hidden Microsoft Flight Simulator X: Acceleration (HKLM-x32\...\FlightSim_{7D606567-5047-451A-B49E-29FCB6012B4E}) (Version: 10.0.61637.0 - Microsoft Game Studios) Microsoft Flight Simulator X: Acceleration (x32 Version: 10.0.61637.0 - Microsoft Game Studios) Hidden Microsoft Office Basic Edition 2003 (HKLM-x32\...\{91130407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser und SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) Navigraph Charts 4 (HKLM-x32\...\{3768DDA4-3BF1-468D-82BD-1CC4D4AB1594}) (Version: 4.1.1.6 - Navigraph) Navigraph FMS Data Manager version 1.0.3.0110 (HKLM-x32\...\{7E4D5716-374A-4DB6-90CF-D2AEB67362CE}_is1) (Version: 1.0.3.0110 - Navigraph) NVIDIA 3D Vision Controller-Treiber 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 320.49 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 320.49 - NVIDIA Corporation) NVIDIA GeForce Experience 1.6.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 1.6.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 320.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 320.49 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.24.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.24.2 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.133.902 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.0604 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.0604 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0604 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2049 - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 320.49 (Version: 320.49 - NVIDIA Corporation) Hidden NVIDIA Update 8.3.14 (Version: 8.3.14 - NVIDIA Corporation) Hidden NVIDIA Update Components (Version: 8.3.14 - NVIDIA Corporation) Hidden NVIDIA Virtual Audio 1.2.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.5 - NVIDIA Corporation) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.3.7.2735 - Electronic Arts, Inc.) PMDG 737 6700 NGX RTM (HKLM-x32\...\{C7EE862A-D83D-4A9F-B746-CBDE39BD7001}) (Version: 1.00.3219 - PMDG Simulations, LLC.) PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.3219 - PMDG Simulations, LLC.) PMDG 777-200LR/F Base Package FSX (HKLM-x32\...\{0F16340B-5B5B-4531-8D87-4952E3BCA6E6}) (Version: 1.00.5376 - PMDG Simulations, LLC.) Professional Flight Planner X (HKLM-x32\...\{1A5D2729-4A3B-4CD5-85C8-4896FD44B78D}) (Version: 1.10 - aerosoft) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.) REX Essential Plus Overdrive (HKLM-x32\...\{9F30A684-44DC-4BDF-89ED-70F9021B851F}) (Version: 3.5.2012.1029 - REX Game Studios) REX Essential Plus Overdrive SP2 (Patch Only) (HKLM-x32\...\{5BDF0BB3-838A-4A73-A874-F3D44146B5CC}) (Version: 3.7.2013.0715 - REX Game Studios, LLC.) SHIELD Streaming (Version: 1.05.28 - NVIDIA Corporation) Hidden Smart Technology Programming Software 7.0.27.13 (HKLM\...\{C9193CBB-C31A-412A-A074-AD08F0F2CF3D}) (Version: 7.0.27.13 - Mad Catz) Spotify (HKCU\...\Spotify) (Version: 0.9.7.16.g4b197456 - Spotify AB) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) SteelSeries Engine (HKLM\...\SteelSeries Engine) (Version: 2.8.59.30483 - SteelSeries) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.13.1 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.26297 - TeamViewer) TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) UK2000 Gatwick Xtreme FSX (HKLM-x32\...\UK2000 Gatwick Xtreme FSX) (Version: 3.00 - UK2000 Scenery) Ultimate Terrain X - Europe (HKCU\...\Ultimate Terrain X - Europe) (Version: - ) VATroute 0.0.1.021 (HKLM-x32\...\VATroute) (Version: 0.0.1.021 - Dirk Trinkaus, Henning Hülsebusch) VAT-Spy (HKLM-x32\...\VATSpy) (Version: - ) VIRTUALI Addon ManagerX FSX (HKLM-x32\...\VIRTUALI Addon ManagerX FSX_is1) (Version: 2.9.0.15 - VIRTUALI Sagl) WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) XAcars for Microsoft Flightsimulator (HKLM-x32\...\{AA755AA7-B941-48A0-828C-7F43975E3EDE}_is1) (Version: 2.5 - XAcars Development Team) ==================== Restore Points ========================= 05-03-2014 13:49:18 Windows Update 11-03-2014 13:49:27 Windows Update 12-03-2014 20:49:03 Windows Update 14-03-2014 16:07:40 DirectX wurde installiert ==================== Hosts content: ========================== 2009-07-14 03:34 - 2013-12-12 11:17 - 00001297 ____A C:\Windows\system32\Drivers\etc\hosts 255.255.255.255 easyanticheat.se # misleading site 255.255.255.255 www.easyanticheat.se # misleading site 255.255.255.255 easyanticheat.com # misleading site 255.255.255.255 www.easyanticheat.com # misleading site 255.255.255.255 easyanticheat.info # misleading site 255.255.255.255 www.easyanticheat.info # misleading site 255.255.255.255 easyanticheat.org # misleading site 255.255.255.255 www.easyanticheat.org # misleading site ==================== Scheduled Tasks (whitelisted) ============= Task: {134E7CB2-EB25-4B4B-A254-3306822A58D3} - System32\Tasks\{3239AEAD-C9FA-48F0-A1E1-7677B1705B58} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {258C6996-E0F9-46F2-91E0-615A8EA24FF6} - System32\Tasks\{3CC788E0-FED6-41A7-9974-2B8B2CE38DED} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {29762AAF-8D0D-4977-8F5E-CC4141ADFF99} - System32\Tasks\SK.Enhancer-S-161304646 => c:\programdata\quickset\sk.enhancer\SK.Enhancer.exe <==== ATTENTION Task: {2D78457E-F4E6-458A-9C1D-B23C317FFF35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-26] (Google Inc.) Task: {33D48FF5-C5F5-4595-93A6-060EC3CFC7B9} - System32\Tasks\{E8D3F046-4F05-4BFB-A766-20552B74656C} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {407DE1CE-C189-4070-9B25-70F14ACB9176} - System32\Tasks\{95B8DCAC-149E-4550-89FF-9CC61BB30997} => C:\Users\Felix\Downloads\crownthook\crownthook\crownthook 1.0 Loader.exe Task: {4EA9A2A6-ADE3-4AA6-8D91-8BB5EFEC1C5A} - System32\Tasks\{05ADB2C3-29DB-4061-AA7C-CEF1CF29573B} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {5EC3852D-AA39-4DB2-B9BD-46BB730BE402} - System32\Tasks\{40DC8003-4A94-44D8-BD48-0C99D96E2B53} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {9BD8E1A4-4FB0-4DDF-BA30-EA4ACAA43673} - System32\Tasks\{CF5FB70D-CD83-4F94-AEA2-1552953F54A5} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {ADC5AB16-5C48-42EB-B14C-A4C6D7971846} - System32\Tasks\{5ACDCAC8-4E89-4861-A1A4-1C62D5FBA56C} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {AE99E3D9-B0D6-47A8-9399-D8C40DB06A0F} - System32\Tasks\{B25D8A2E-4AB0-4BAB-9541-E3BBF4AACEFF} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {BC1D1B39-46A4-4E69-A032-CEA6DADDABD9} - System32\Tasks\{76A67DF2-BE6B-49D6-A782-9F01AE9265DC} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {C1B92FCB-AB5E-45F2-8D3D-EACE55E613B9} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {D6D63B4A-6D8A-41AD-8F5A-C04B4DBABC1D} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2010-11-26] (ASUSTeK Computer Inc.) Task: {F0E1C6BC-CADD-4F89-9085-DEF03269DF92} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-26] (Google Inc.) Task: {F6285804-8F3C-4696-9F42-FE6EF9DA7C73} - System32\Tasks\{12ED34FF-34C6-462D-91D9-49CDAFA64E29} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: {F8DE0733-C03E-4BD7-BAAF-1C8099CC2F7B} - System32\Tasks\{F0383696-5DD4-4CF2-886A-951CE4E63D82} => C:\Program Files (x86)\HiFi\ASNext_FSX\ASNext.exe [2014-03-01] (HiFi Technologies, Inc.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\SK.Enhancer-S-161304646.job => c:\programdata\quickset\sk.enhancer\SK.Enhancer.exe <==== ATTENTION ==================== Loaded Modules (whitelisted) ============= 2013-08-25 15:28 - 2013-06-21 11:23 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2010-11-03 10:30 - 2010-11-03 10:30 - 00918144 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe 2010-12-02 03:15 - 2010-12-02 03:15 - 00915584 ____N () C:\Program Files (x86)\ASUS\AAHM\1.00.14\aaHMSvc.exe 2013-08-25 15:26 - 2010-10-21 10:52 - 00586880 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe 2013-07-12 15:57 - 2013-07-12 15:57 - 00665088 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineLib.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00175104 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DBUtils.dll 2013-08-25 17:04 - 2013-08-25 17:04 - 00089915 _____ () C:\Users\Felix\AppData\Local\Temp\70aeaca4-098f-4bcc-b0fa-e2544fb40678\CliSecureRT64.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00278528 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DriverCommunication.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00139776 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\ISSPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00148480 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Localization.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00145408 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Utilities.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 00047616 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesDrivers\x2api.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 09519104 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineWinGui.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 01102336 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\System.Data.SQLite.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00209408 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CustomWPFColorPicker.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00349696 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00171008 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\D3MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00173568 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\KKMousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00171008 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SRawPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00307200 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MLGSenseiPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00154624 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWGoldPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00170496 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\GW2MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00169472 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CSGOMousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00169984 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DOTA2MousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00157184 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWWirelessPlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00170496 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CODMousePlugin.dll 2013-07-12 15:57 - 2013-07-12 15:57 - 00169984 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoTMousePlugin.dll 2013-10-11 22:40 - 2013-10-12 09:13 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-09-23 18:39 - 2013-09-23 18:38 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2013-09-13 18:51 - 2013-09-13 18:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-09-13 18:51 - 2013-09-13 18:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2013-08-25 15:24 - 2014-03-15 17:05 - 00020480 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\PEbiosinterface32.dll 2013-08-25 15:24 - 2010-06-29 03:58 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.13\ATKEX.dll 2014-03-05 15:46 - 2014-03-02 03:35 - 00051016 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\chrome_elf.dll 2013-08-25 15:26 - 2011-02-24 09:19 - 00143360 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll 2013-08-25 15:26 - 2010-06-21 14:21 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll 2013-08-25 15:26 - 2009-08-12 19:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll 2013-08-25 15:26 - 2011-05-16 16:35 - 00965632 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll 2013-08-25 15:26 - 2011-05-20 08:12 - 00881152 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll 2013-08-25 15:26 - 2011-04-07 16:33 - 01607168 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll 2013-08-25 15:26 - 2011-01-07 15:39 - 01246208 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll 2013-08-25 15:26 - 2010-08-06 17:11 - 00850944 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll 2013-08-25 15:26 - 2010-08-06 17:13 - 00886272 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll 2014-03-05 15:46 - 2014-03-02 03:35 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libglesv2.dll 2014-03-05 15:46 - 2014-03-02 03:35 - 00100168 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\libegl.dll 2013-08-25 15:26 - 2010-06-21 14:21 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\ImageHelper.dll 2014-03-05 15:46 - 2014-03-02 03:35 - 04061000 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\pdf.dll 2014-03-05 15:46 - 2014-03-02 03:35 - 00394568 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ppGoogleNaClPluginChrome.dll 2014-03-05 15:46 - 2014-03-02 03:35 - 01647432 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\ffmpegsumo.dll 2014-02-15 16:59 - 2014-02-15 16:59 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\78034656d498941bc0d95b15a7be73c5\IsdiInterop.ni.dll 2013-08-25 15:23 - 2011-05-19 14:34 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-03-05 15:46 - 2014-03-02 03:35 - 13632840 _____ () C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.146\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\TEMP:74603393 ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: ApnTBMon => "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" MSCONFIG\startupreg: ApplePhotoStreams => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: IAStorIcon => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe MSCONFIG\startupreg: iCloudServices => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Felix\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" ==================== Faulty Device Manager Devices ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (03/15/2014 11:56:54 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: chrome.exe, Version: 33.0.1750.146, Zeitstempel: 0x531287da Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc0000374 Fehleroffset: 0x000ce753 ID des fehlerhaften Prozesses: 0x1244 Startzeit der fehlerhaften Anwendung: 0xchrome.exe0 Pfad der fehlerhaften Anwendung: chrome.exe1 Pfad des fehlerhaften Moduls: chrome.exe2 Berichtskennung: chrome.exe3 Error: (03/14/2014 08:14:24 PM) (Source: Windows Search Service) (User: ) Description: Benachrichtigungen für Volume C:\ sind nicht aktiv. Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) Error: (03/13/2014 07:45:21 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: csgo.exe, Version: 0.0.0.0, Zeitstempel: 0x52f977fe Name des fehlerhaften Moduls: shaderapidx9.dll, Version: 0.0.0.0, Zeitstempel: 0x531c50d6 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000a2213 ID des fehlerhaften Prozesses: 0x15f8 Startzeit der fehlerhaften Anwendung: 0xcsgo.exe0 Pfad der fehlerhaften Anwendung: csgo.exe1 Pfad des fehlerhaften Moduls: csgo.exe2 Berichtskennung: csgo.exe3 Error: (03/11/2014 07:24:33 PM) (Source: Windows Search Service) (User: ) Description: Benachrichtigungen für Volume C:\ sind nicht aktiv. Kontext: Windows Anwendung Details: Falscher Parameter. (HRESULT : 0x80070057) (0x80070057) Error: (03/11/2014 03:22:37 PM) (Source: Windows Search Service) (User: ) Description: Benachrichtigungen für Volume C:\ sind nicht aktiv. Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) Error: (03/10/2014 04:43:41 PM) (Source: Windows Search Service) (User: ) Description: Benachrichtigungen für Volume C:\ sind nicht aktiv. Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) Error: (03/10/2014 01:58:42 PM) (Source: Windows Search Service) (User: ) Description: Benachrichtigungen für Volume C:\ sind nicht aktiv. Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) Error: (03/09/2014 06:11:05 PM) (Source: Application Hang) (User: ) Description: Programm csgo.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: d28 Startzeit: 01cf3bba6313cca6 Endzeit: 22 Anwendungspfad: C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe Berichts-ID: bfa5072d-a7ad-11e3-b938-f46d04666d62 Error: (03/09/2014 06:08:30 PM) (Source: Windows Search Service) (User: ) Description: Benachrichtigungen für Volume C:\ sind nicht aktiv. Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) Error: (03/09/2014 04:22:20 PM) (Source: Windows Search Service) (User: ) Description: Benachrichtigungen für Volume C:\ sind nicht aktiv. Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) System errors: ============= Error: (03/15/2014 00:26:12 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (03/12/2014 05:13:06 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Echtzeit-Scanner" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/12/2014 05:13:06 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Browser-Schutz" ist vom Dienst "Avira Echtzeit-Scanner" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%0 Error: (03/12/2014 05:13:06 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (03/12/2014 05:13:05 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (03/09/2014 06:10:23 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Intel(R) Rapid Storage Technology" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (03/09/2014 06:10:23 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Rapid Storage Technology erreicht. Error: (03/09/2014 06:06:47 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 09.03.2014 um 18:01:36 unerwartet heruntergefahren. Error: (03/08/2014 07:41:35 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (03/08/2014 07:41:35 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Microsoft Office Sessions: ========================= Error: (03/15/2014 11:56:54 AM) (Source: Application Error)(User: ) Description: chrome.exe33.0.1750.146531287dantdll.dll6.1.7601.18247521ea8e7c0000374000ce753124401cf403ca21e6a17C:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Windows\SysWOW64\ntdll.dll846d3d59-ac30-11e3-beb4-f46d04666d62 Error: (03/14/2014 08:14:24 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) C:\ Error: (03/13/2014 07:45:21 PM) (Source: Application Error)(User: ) Description: csgo.exe0.0.0.052f977feshaderapidx9.dll0.0.0.0531c50d6c0000005000a221315f801cf3eebab823eccC:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exeC:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\bin\shaderapidx9.dlla0dd0a09-aadf-11e3-b990-f46d04666d62 Error: (03/11/2014 07:24:33 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Falscher Parameter. (HRESULT : 0x80070057) (0x80070057) C:\ Error: (03/11/2014 03:22:37 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) C:\ Error: (03/10/2014 04:43:41 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) C:\ Error: (03/10/2014 01:58:42 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) C:\ Error: (03/09/2014 06:11:05 PM) (Source: Application Hang)(User: ) Description: csgo.exe0.0.0.0d2801cf3bba6313cca622C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exebfa5072d-a7ad-11e3-b938-f46d04666d62 Error: (03/09/2014 06:08:30 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) C:\ Error: (03/09/2014 04:22:20 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Das Datenträgeränderungsjournal wird gelöscht. (HRESULT : 0x8007049a) (0x8007049a) C:\ ==================== Memory info =========================== Percentage of memory in use: 27% Total physical RAM: 8172.12 MB Available physical RAM: 5925.92 MB Total Pagefile: 16342.42 MB Available Pagefile: 13801.71 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:698.54 GB) (Free:413.85 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 699 GB) (Disk ID: 805FD19F) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=699 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
16.03.2014, 17:04 | #6 |
/// the machine /// TB-Ausbilder | Verdacht: PC infiziert Was für Probleme haste mit dem Gerät?
__________________ --> Verdacht: PC infiziert |
16.03.2014, 17:07 | #7 |
| Verdacht: PC infiziert Hey, mir wurden Datein über Skype geschickt. Da ich so eine Leier schon kenne, habe ich sie gleich gelöscht. Dennoch könnte es ja sein, dass ich die trotzdem geöffnet habe. Ist da was zu finden in den Logs? Also vielleicht einen keylogger oder ähnliches |
17.03.2014, 10:13 | #8 |
/// the machine /// TB-Ausbilder | Verdacht: PC infiziert Nein. Solange Du sie nicht mit Absicht öffnest ist alles gut, und Logs sind sauber
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Verdacht: PC infiziert |
anhang, compu, computer, durchgeführt, infiziert, pc infiziert, tests, verdacht |