|
Plagegeister aller Art und deren Bekämpfung: Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen)Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
23.05.2014, 18:54 | #1 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Guten Abend, ich habe seit längerem das Problem das Windows mich ständig auf den Desktop wirft vorallem beim zocken nervt das sehr, ich kann nicht viel dazu sagen ich starte ein Spiel und irgendwann minimiert es sich und ich sehe den Desktop. Leider ist das schon länger so das ich nicht mehr weiß seit wann das Problem auftritt. Und eine andere kleinigkeit gäbe es da noch, in 80-90% der Fälle stürzt die explorer.exe ab wenn ich versuche über die Systemsteuerung->Software Programme zu de-installieren, ich konnte das zum Glück durch REVO Uninstaller umgehen aber eine Dauerlösung ist das ja auch nicht zumal ich nicht mal weiß wie es dazu kommt. Für eure Hilfe bin sehr dankbar Noch ein paar Daten zu meinem PC. Packard Bell Easy note LS13HR CPU: Core i5 2410m Grafik: Intel HD 3000, AMD Radeon HD 6650M - 2GB VRAM HDD: 640 GB RAM: 6GB FRST Log Datei FRST.txt FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-05-2014 Ran by Don Corleone (administrator) on DONCORLEONE-PC on 23-05-2014 19:20:55 Running from C:\Users\Don Corleone\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe (AMD) C:\Windows\System32\atieclxx.exe (SANDBOXIE L.T.D) D:\Programme\Windows Sandbox\SbieSvc.exe (AVAST Software) D:\Programme\AVAST Software\Avast\AvastSvc.exe () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe (CyberLink) D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe (CyberLink) D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe (Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe (Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\ProgramData\Internet Manager\OnlineUpdate\LiveUpd.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVAST Software) D:\Programme\AVAST Software\Avast\AvastUI.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Atheros) C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Safer-Networking Ltd.) D:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) D:\Programme\Spybot - Search & Destroy 2\SDFSSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Microsoft Corporation) C:\Windows\System32\UI0Detect.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe (SiSoftware) F:\Programme\SiSoftware Sandra Lite 2014.SP2\RpcAgentSrv.exe () C:\Program Files\Core Temp\Core Temp.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_206.exe (AppWork GmbH) D:\Programme\JDownloader 2\JDownloader v2.0\JDownloader2.exe (Microsoft Corporation) C:\Windows\System32\prevhost.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-04-17] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [AvastUI.exe] => D:\Programme\AVAST Software\Avast\AvastUI.exe [3873704 2014-05-11] (AVAST Software) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2014-04-03] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55360 2014-05-15] (Raptr, Inc) HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD) HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\Policies\Explorer: [NoAutoTrayNotify] 0 HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf16-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf25-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bfb2-405f-11e3-8a38-dc0ea10ddbd3} - F:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {a391a184-e16a-11e3-b674-dc0ea10ddbd3} - G:\Autorun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {e48290c6-4099-11e2-8d62-dc0ea10ddbd3} - G:\CTT-Startmenu.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xE207433E9241CF01 SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programme\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - D:\Programme\ARC Client\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.22.0.cab Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{2A812DA1-111F-4EDA-AE7C-93F4568EE599}: [NameServer]10.74.210.210 10.74.210.211 Tcpip\..\Interfaces\{4291DCC6-2FBC-4719-A60E-52E6D90A8716}: [NameServer]10.74.210.210 10.74.210.211 FireFox: ======== FF ProfilePath: C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250 FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_206.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - D:\Programme\ARC Client\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - D:\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - D:\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Don Corleone\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-18] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - D:\Programme\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - D:\Programme\AVAST Software\Avast\WebRep\FF [2014-03-31] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR Plugin: (Shockwave Flash) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Plus Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll No File CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Plugin: (Google Update) - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (Uplay PC) - D:\Programme\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft) CHR Extension: (Google Drive) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-01-26] CHR Extension: (YouTube) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-01-26] CHR Extension: (Google-Suche) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-01-26] CHR Extension: (YTBookMaarK) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbgaldchpdlibgibolafkiheflddbicf [2014-02-17] CHR Extension: (avast! Online Security) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-03-31] CHR Extension: (Google Wallet) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-29] CHR Extension: (Google Mail) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-01-26] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - D:\Programme\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-11] ==================== Services (Whitelisted) ================= S3 ArcService; D:\Programme\ARC Client\Arc\ArcService.exe [88400 2014-02-24] (Perfect World Entertainment Inc) R2 avast! Antivirus; D:\Programme\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-11] (AVAST Software) R2 CLHNServiceForPowerDVD; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [83240 2011-08-24] () R2 CyberLink PowerDVD 11.0 Monitor Service; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [75048 2011-09-02] (CyberLink) R2 CyberLink PowerDVD 11.0 Service; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [292136 2011-09-02] (CyberLink) R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [868224 2010-10-29] (Acer Incorporated) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2011-06-17] () R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated) S3 MatSvc; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [343856 2011-06-13] (Microsoft Corporation) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [4249088 2014-03-06] (A-Volute) R3 SandraAgentSrv; F:\Programme\SiSoftware Sandra Lite 2014.SP2\RpcAgentSrv.exe [72344 2008-04-08] (SiSoftware) R2 SbieSvc; D:\Programme\Windows Sandbox\SbieSvc.exe [123664 2012-12-16] (SANDBOXIE L.T.D) R2 SDScannerService; D:\Programme\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) S2 SDUpdateService; D:\Programme\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; D:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S3 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation) R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [15888 2013-02-11] (Intel(R) Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe [57344 2011-08-10] (Atheros) ==================== Drivers (Whitelisted) ==================== R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-11] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-11] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-11] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-11] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-15] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-15] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-15] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-11] () S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [211456 2013-06-05] () S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-22] (Disc Soft Ltd) S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [41032 2013-05-23] (ThreatTrack Security) R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-02-13] (GFI Software) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [238080 2012-04-23] (Huawei Technologies Co., Ltd.) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-03-22] (Intel Corporation) R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [25448 2013-01-07] (Intel Corporation) S3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2013-04-09] ( ) S3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1989504 2013-04-09] (Creative Technology Ltd.) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-03] (Qualcomm Atheros Co., Ltd.) S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [35328 2013-06-05] () S2 lirsgt; C:\Windows\SysWOW64\DRIVERS\lirsgt.sys [18048 2013-06-05] () R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-03-20] (Intel Corporation) R2 ntk_PowerDVD; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys [75248 2011-08-24] (Cyberlink Corp.) R3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [40696 2014-03-06] (Windows (R) Win 7 DDK provider) R3 SANDRA; F:\Programme\SiSoftware Sandra Lite 2014.SP2\WNt500x64\Sandra.sys [23112 2009-08-07] (SiSoftware) R3 SbieDrv; D:\Programme\Windows Sandbox\SbieDrv.sys [202632 2012-12-16] (SANDBOXIE L.T.D) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [44344 2013-04-09] (Synaptics Incorporated) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2609784 2013-04-09] (Sunplus Technology) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1307648 2011-03-31] (C-Media Electronics Inc) S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [113952 2014-02-25] (Oracle Corporation) S3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [10368 2012-12-07] () R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\NavFilter\000.fcl [148976 2011-09-02] (CyberLink Corp.) R3 ALSysIO; \??\C:\Users\DONCOR~1\AppData\Local\Temp\ALSysIO64.sys [X] S3 TVICPORT; \??\C:\Windows\system32\DRIVERS\TVICPORT.SYS [X] S3 XFDriver64; \??\C:\Program Files (x86)\Xfire2\XFDriver64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-23 19:20 - 2014-05-23 19:21 - 00022652 _____ () C:\Users\Don Corleone\Downloads\FRST.txt 2014-05-23 19:20 - 2014-05-23 19:20 - 00000000 ____D () C:\FRST 2014-05-23 19:18 - 2014-05-23 19:18 - 02067456 _____ (Farbar) C:\Users\Don Corleone\Downloads\FRST64.exe 2014-05-23 17:21 - 2014-05-23 17:25 - 00000000 ____D () C:\Users\Don Corleone\Documents\HospitalTycoon 2014-05-23 17:20 - 2014-05-23 17:20 - 00000794 _____ () C:\Users\Don Corleone\Desktop\Hospital Tycoon.lnk 2014-05-23 17:20 - 2014-05-23 17:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Codemasters 2014-05-23 16:41 - 2014-05-23 16:42 - 47208309 _____ () C:\Users\Don Corleone\Downloads\3dgamemaker.zip 2014-05-23 15:36 - 2014-05-23 16:34 - 14151680 _____ () C:\Users\Don Corleone\AppData\Roaming\Sandra.mdb 2014-05-23 14:51 - 2014-05-23 14:51 - 00000540 _____ () C:\Windows\WMFDist64.log 2014-05-23 14:48 - 2014-05-23 14:48 - 00000845 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP2.lnk 2014-05-23 14:48 - 2014-05-23 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2014-05-23 14:43 - 2014-05-23 14:46 - 00000000 ____D () C:\Users\Don Corleone\Downloads\Systemprogramme 2014-05-23 14:43 - 2014-05-23 14:45 - 69069552 _____ (SiSoftware ) C:\Users\Don Corleone\Downloads\san2025.exe 2014-05-23 14:39 - 2014-05-23 14:39 - 00000017 _____ () C:\Users\Don Corleone\AppData\Local\resmon.resmoncfg 2014-05-23 14:13 - 2014-05-23 14:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepSilver 2014-05-22 19:56 - 2014-05-22 19:56 - 00003035 _____ () C:\Users\Don Corleone\Desktop\Stadtbahn Simulator Düsseldorf.lnk 2014-05-22 19:56 - 2014-05-22 19:56 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stadtbahn Simulator Düsseldorf 2014-05-22 17:21 - 2014-05-22 17:21 - 00000000 ____D () C:\Users\Don Corleone\Documents\Atari 2014-05-22 17:16 - 2014-05-22 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari 2014-05-22 07:07 - 2014-05-22 07:07 - 00000000 ____D () C:\Users\Don Corleone\Documents\Stronghold 3 2014-05-22 06:58 - 2014-05-22 06:58 - 00000927 _____ () C:\Users\Public\Desktop\Stronghold 3 Gold.lnk 2014-05-22 06:41 - 2014-05-22 06:41 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-05-22 06:30 - 2014-05-22 06:30 - 00000000 ____D () C:\Users\Don Corleone\Documents\DIE SIEDLER - Aufstieg eines Königreichs 2014-05-22 01:29 - 2014-05-22 01:29 - 11803391 _____ () C:\Users\Don Corleone\Desktop\The Godfather - Main Title (The Godfather Waltz) - HQ - Nino Rota (480p).mp4 2014-05-22 01:27 - 2014-05-22 01:27 - 11945569 _____ () C:\Users\Don Corleone\Desktop\The Godfather Love Theme (480p).mp4 2014-05-21 07:13 - 2014-05-21 07:13 - 00004096 _____ () C:\Windows\d3dx.dat 2014-05-21 07:13 - 2014-05-21 07:13 - 00000000 ____D () C:\Users\Public\Documents\Deutschland Spielt 2014-05-21 04:44 - 2014-05-21 04:44 - 00000000 ____D () C:\Users\Don Corleone\Downloads\AC2_THEME 2014-05-21 04:43 - 2014-05-21 04:44 - 02923720 _____ () C:\Users\Don Corleone\Downloads\AC2_THEME.ZIP 2014-05-19 22:00 - 2014-05-19 22:04 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller.exe 2014-05-19 18:24 - 2014-05-19 18:24 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap.bmp 2014-05-19 17:42 - 2014-05-19 17:42 - 00000823 _____ () C:\Users\Don Corleone\Desktop\Uplay.lnk 2014-05-19 17:40 - 2014-05-19 17:41 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller_4.5.0.exe 2014-05-19 17:03 - 2014-05-19 17:03 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection(1).msi 2014-05-19 16:33 - 2014-05-23 17:21 - 00200192 _____ () C:\Windows\DirectX.log 2014-05-17 21:24 - 2014-05-23 15:02 - 00000896 _____ () C:\Windows\setupact.log 2014-05-17 21:24 - 2014-05-22 12:46 - 00005998 _____ () C:\Windows\PFRO.log 2014-05-17 21:24 - 2014-05-17 21:24 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-17 21:22 - 2014-05-17 21:22 - 01325827 _____ () C:\Users\Don Corleone\Downloads\adwcleaner_3.208.exe 2014-05-17 21:22 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-05-17 10:08 - 2014-05-17 10:08 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Alte Firefox-Daten 2014-05-17 09:18 - 2014-05-17 09:18 - 23792584 _____ (Foofind Labs, S.L. ) C:\Users\Don Corleone\Downloads\foofind_download_manager_redist.exe 2014-05-17 09:18 - 2014-05-17 09:18 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Foofind Download Manager 2014-05-17 09:17 - 2014-05-17 09:17 - 00166112 _____ () C:\Users\Don Corleone\Desktop\Foofind-Download-Manager_0.3-20140421.exe 2014-05-17 09:09 - 2014-05-17 09:09 - 00000000 ____D () C:\Users\Don Corleone\Desktop\ost 2014-05-17 04:21 - 2014-05-17 04:21 - 01001280 _____ (DivX, LLC) C:\Users\Don Corleone\Desktop\DivXInstaller.exe 2014-05-15 05:23 - 2014-05-15 05:23 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 05:21 - 2014-05-08 09:14 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-15 05:21 - 2014-05-08 08:37 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-15 05:21 - 2014-05-08 07:52 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-15 05:21 - 2014-05-08 07:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-15 05:21 - 2014-05-08 06:57 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-15 05:21 - 2014-05-08 06:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-15 05:10 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-15 05:10 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-15 05:10 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-15 05:10 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-15 05:09 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-15 05:09 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-15 05:09 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-15 05:09 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-15 05:09 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-15 05:09 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-15 05:09 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-15 05:09 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-15 05:09 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-15 05:09 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-15 05:09 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-15 05:09 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-15 05:09 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-11 06:11 - 2014-05-11 06:11 - 21745912 _____ () C:\Users\Don Corleone\Desktop\_Scarface_ (1983) - End Credits theme (original) HD - Giorgio Moroder - YouTube [720p].mp4 2014-05-11 02:40 - 2014-05-11 02:40 - 00062044 _____ () C:\Windows\SysWOW64\CCCInstall_201405110240294523.log 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\ATI 2014-05-11 02:35 - 2014-05-11 02:35 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2014-05-11 02:34 - 2014-05-23 19:03 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Raptr 2014-05-11 02:31 - 2014-05-11 02:40 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-05-11 02:31 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files\ATI 2014-05-11 02:30 - 2014-05-11 02:39 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-05-11 02:27 - 2014-04-18 05:43 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 08866928 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 08010968 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 07520200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 06799688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 06796592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 01117184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00099520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-05-11 02:27 - 2014-04-18 05:36 - 15376384 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-05-11 02:27 - 2014-04-18 05:23 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-05-11 02:27 - 2014-04-18 05:22 - 28685824 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-05-11 02:27 - 2014-04-18 05:19 - 24107520 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-05-11 02:27 - 2014-04-18 05:17 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-05-11 02:27 - 2014-04-18 05:17 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-05-11 02:27 - 2014-04-18 05:13 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-05-11 02:27 - 2014-04-18 05:13 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-05-11 02:27 - 2014-04-18 05:12 - 27907584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-05-11 02:27 - 2014-04-18 05:12 - 05442048 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-05-11 02:27 - 2014-04-18 04:58 - 04358656 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-05-11 02:27 - 2014-04-18 04:51 - 23409152 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-05-11 02:27 - 2014-04-18 04:45 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-05-11 02:27 - 2014-04-18 04:45 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-05-11 02:27 - 2014-04-18 04:42 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-05-11 02:27 - 2014-04-18 04:33 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-05-11 02:27 - 2014-04-18 04:33 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-05-11 02:27 - 2014-04-18 04:30 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-05-11 02:27 - 2014-04-18 04:30 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-05-11 02:27 - 2014-04-18 04:29 - 00586240 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-05-11 02:27 - 2014-04-18 04:29 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-05-11 02:27 - 2014-04-18 04:28 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-05-11 02:27 - 2014-04-18 04:28 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-05-11 02:27 - 2014-04-18 04:21 - 00806912 _____ (AMD) C:\Windows\system32\coinst_14.100.dll 2014-05-11 02:27 - 2014-04-18 04:17 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-05-11 02:27 - 2014-04-18 04:09 - 01177600 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-05-11 02:27 - 2014-04-18 04:09 - 00848896 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00638976 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-05-11 02:27 - 2014-04-18 04:07 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-05-11 02:27 - 2014-04-18 04:04 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-05-11 02:27 - 2014-04-10 20:58 - 00082128 _____ () C:\Windows\system32\ativce02.dat 2014-05-11 02:27 - 2014-04-01 01:06 - 00234804 _____ () C:\Windows\system32\ativvaxy_cik.dat 2014-05-11 02:27 - 2014-04-01 01:04 - 00233008 _____ () C:\Windows\system32\ativvaxy_cik_nd.dat 2014-05-11 02:27 - 2014-02-06 18:45 - 00134192 _____ () C:\Windows\system32\ativce03.dat 2014-05-11 02:27 - 2014-01-16 20:00 - 00273712 _____ () C:\Windows\system32\ativvaxy_vi_nd.dat 2014-05-11 02:27 - 2014-01-16 19:59 - 00275124 _____ () C:\Windows\system32\ativvaxy_vi.dat 2014-05-11 02:27 - 2014-01-16 11:34 - 00723841 _____ () C:\Windows\system32\atiicdxx.dat 2014-05-11 02:27 - 2013-07-05 13:13 - 00532720 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-05-11 02:27 - 2013-07-05 13:13 - 00532720 _____ () C:\Windows\system32\atiapfxx.blb 2014-05-11 02:27 - 2013-07-05 13:10 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-05-11 02:27 - 2013-04-10 18:34 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe 2014-05-11 02:27 - 2013-04-10 18:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Program Files\Realtek 2014-05-11 02:12 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-05-11 02:12 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-05-11 02:12 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-05-11 02:12 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-05-11 02:12 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-05-11 02:12 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-05-11 02:12 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-05-11 02:12 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-05-11 02:12 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-05-11 02:12 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-05-11 02:11 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-05-11 02:11 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-05-11 02:11 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-05-11 02:11 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-05-11 02:11 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-05-11 02:11 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-05-11 02:11 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-05-11 02:11 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-05-11 02:11 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-05-11 02:11 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-05-11 02:11 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-05-11 02:11 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-05-11 02:11 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-05-11 02:11 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-05-11 02:11 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-05-11 02:11 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-05-11 02:10 - 2014-05-11 02:10 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-05-11 02:10 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-05-11 02:10 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-05-11 02:10 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-05-11 02:10 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-05-11 02:10 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-05-11 02:10 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-05-11 02:09 - 2014-05-11 02:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-05-11 02:09 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-05-11 02:09 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-05-11 02:08 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-05-11 02:08 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-05-11 02:08 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-05-11 02:08 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-05-11 02:08 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-05-11 02:07 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-05-11 02:06 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-05-11 02:06 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-05-11 02:06 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-05-11 02:06 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-05-11 02:06 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-05-11 02:06 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-05-11 02:06 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-05-11 02:06 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-05-11 02:06 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-05-11 01:35 - 2014-05-11 01:35 - 00000998 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-05-11 01:33 - 2014-05-11 01:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-05-11 01:33 - 2014-05-11 01:33 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-05-10 23:45 - 2014-05-10 23:45 - 00001438 _____ () C:\Users\Don Corleone\Desktop\Razer Synapse 2.0 und Razer Surround 7.1.lnk 2014-05-10 23:42 - 2014-05-10 23:42 - 00000000 ____D () C:\ProgramData\RzMaelstromVAD_1.1.52.1675 2014-05-10 23:39 - 2014-05-10 23:39 - 00002089 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-10 23:14 - 2012-05-15 07:13 - 00144896 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-05-10 23:14 - 2012-05-15 06:20 - 00104448 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-05-10 23:12 - 2014-05-10 23:12 - 00000000 ____D () C:\Intel 2014-05-10 22:38 - 2014-05-10 22:38 - 00001171 _____ () C:\Users\Don Corleone\Desktop\Driver Genius.lnk 2014-05-10 22:38 - 2014-05-10 22:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Genius 2014-05-10 21:11 - 2014-05-10 21:11 - 00000000 ____D () C:\Users\Don Corleone\SystemRequirementsLab 2014-05-10 13:49 - 2014-05-10 13:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-08 20:33 - 2014-05-08 20:33 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neues Textdokument (2).txt 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\Program Files (x86)\vLite 2014-05-08 12:10 - 2014-05-08 12:13 - 00000000 ____D () C:\Users\Don Corleone\Documents\New Unity Project 2014-05-06 19:51 - 2014-05-06 19:51 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Tritton 2014-05-06 19:48 - 2014-05-06 19:48 - 00000000 ____D () C:\Program Files\Tritton 2014-05-03 21:02 - 2014-05-03 21:02 - 00000000 ____D () C:\Users\Don Corleone\Documents\Activision 2014-05-03 19:57 - 2014-05-03 19:57 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-03 19:57 - 2014-05-03 19:57 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-02 23:45 - 2014-05-10 23:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-02 23:44 - 2014-05-10 23:41 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-02 13:36 - 2014-05-02 13:36 - 00117223 _____ () C:\Users\Don Corleone\Documents\Unbenannt (2).wma 2014-05-02 13:35 - 2014-05-02 13:35 - 00076813 _____ () C:\Users\Don Corleone\Documents\Unbenannt.wma 2014-05-01 01:50 - 2014-03-01 07:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-05-01 01:50 - 2014-03-01 06:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-01 01:50 - 2014-03-01 06:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-01 01:50 - 2014-03-01 06:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-05-01 01:50 - 2014-03-01 06:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-01 01:50 - 2014-03-01 06:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-01 01:50 - 2014-03-01 06:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-01 01:50 - 2014-03-01 06:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-01 01:50 - 2014-03-01 06:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-05-01 01:50 - 2014-03-01 06:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-05-01 01:50 - 2014-03-01 06:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-05-01 01:50 - 2014-03-01 06:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-01 01:50 - 2014-03-01 06:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-01 01:50 - 2014-03-01 05:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-01 01:50 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-01 01:50 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-05-01 01:50 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-01 01:50 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-01 01:50 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-01 01:50 - 2014-03-01 05:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-01 01:50 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-01 01:50 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-05-01 01:50 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-05-01 01:50 - 2014-03-01 05:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-01 01:50 - 2014-03-01 05:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-01 01:50 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-01 01:50 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-01 01:50 - 2014-03-01 05:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-01 01:50 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-01 01:50 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-05-01 01:50 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-01 01:50 - 2014-03-01 04:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-01 01:50 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-01 01:50 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-01 01:50 - 2014-03-01 04:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-01 01:50 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-05-01 01:49 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-05-01 01:49 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-05-01 01:49 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-05-01 01:49 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-05-01 01:48 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-05-01 01:48 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-05-01 01:48 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-05-01 01:48 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-05-01 01:48 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-05-01 01:48 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-05-01 01:48 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-05-01 01:46 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-05-01 01:46 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-05-01 01:46 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-05-01 01:46 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-05-01 01:46 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-05-01 01:46 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-05-01 01:46 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-05-01 01:46 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-05-01 01:46 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-05-01 01:43 - 2014-05-01 01:48 - 00004238 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log 2014-04-24 07:39 - 2014-04-24 07:39 - 00000000 ____D () C:\Windows\ERUNT 2014-04-24 02:38 - 2014-04-24 02:38 - 00004511 _____ () C:\STF88CF.tmp ==================== One Month Modified Files and Folders ======= 2014-05-23 19:21 - 2014-05-23 19:20 - 00022652 _____ () C:\Users\Don Corleone\Downloads\FRST.txt 2014-05-23 19:20 - 2014-05-23 19:20 - 00000000 ____D () C:\FRST 2014-05-23 19:18 - 2014-05-23 19:18 - 02067456 _____ (Farbar) C:\Users\Don Corleone\Downloads\FRST64.exe 2014-05-23 19:07 - 2012-12-06 23:55 - 30007680 _____ () C:\Windows\WindowsUpdate.log 2014-05-23 19:03 - 2014-05-11 02:34 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Raptr 2014-05-23 18:51 - 2013-01-26 03:04 - 00001148 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA.job 2014-05-23 17:25 - 2014-05-23 17:21 - 00000000 ____D () C:\Users\Don Corleone\Documents\HospitalTycoon 2014-05-23 17:21 - 2014-05-19 16:33 - 00200192 _____ () C:\Windows\DirectX.log 2014-05-23 17:20 - 2014-05-23 17:20 - 00000794 _____ () C:\Users\Don Corleone\Desktop\Hospital Tycoon.lnk 2014-05-23 17:20 - 2014-05-23 17:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Codemasters 2014-05-23 16:47 - 2012-12-11 23:28 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-05-23 16:42 - 2014-05-23 16:41 - 47208309 _____ () C:\Users\Don Corleone\Downloads\3dgamemaker.zip 2014-05-23 16:34 - 2014-05-23 15:36 - 14151680 _____ () C:\Users\Don Corleone\AppData\Roaming\Sandra.mdb 2014-05-23 15:10 - 2009-07-14 06:45 - 00023520 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-23 15:10 - 2009-07-14 06:45 - 00023520 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-23 15:02 - 2014-05-17 21:24 - 00000896 _____ () C:\Windows\setupact.log 2014-05-23 15:02 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-23 14:51 - 2014-05-23 14:51 - 00000540 _____ () C:\Windows\WMFDist64.log 2014-05-23 14:48 - 2014-05-23 14:48 - 00000845 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP2.lnk 2014-05-23 14:48 - 2014-05-23 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2014-05-23 14:48 - 2013-02-11 11:32 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Windows Live 2014-05-23 14:46 - 2014-05-23 14:43 - 00000000 ____D () C:\Users\Don Corleone\Downloads\Systemprogramme 2014-05-23 14:45 - 2014-05-23 14:43 - 69069552 _____ (SiSoftware ) C:\Users\Don Corleone\Downloads\san2025.exe 2014-05-23 14:39 - 2014-05-23 14:39 - 00000017 _____ () C:\Users\Don Corleone\AppData\Local\resmon.resmoncfg 2014-05-23 14:13 - 2014-05-23 14:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepSilver 2014-05-23 14:13 - 2013-06-05 17:41 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-05-23 13:49 - 2013-01-23 04:16 - 00003982 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F848FC5F-70B1-4207-B3CC-1E729BEFD9A0} 2014-05-22 19:56 - 2014-05-22 19:56 - 00003035 _____ () C:\Users\Don Corleone\Desktop\Stadtbahn Simulator Düsseldorf.lnk 2014-05-22 19:56 - 2014-05-22 19:56 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stadtbahn Simulator Düsseldorf 2014-05-22 17:21 - 2014-05-22 17:21 - 00000000 ____D () C:\Users\Don Corleone\Documents\Atari 2014-05-22 17:16 - 2014-05-22 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari 2014-05-22 15:59 - 2014-03-06 03:03 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\vlc 2014-05-22 12:46 - 2014-05-17 21:24 - 00005998 _____ () C:\Windows\PFRO.log 2014-05-22 07:07 - 2014-05-22 07:07 - 00000000 ____D () C:\Users\Don Corleone\Documents\Stronghold 3 2014-05-22 06:58 - 2014-05-22 06:58 - 00000927 _____ () C:\Users\Public\Desktop\Stronghold 3 Gold.lnk 2014-05-22 06:58 - 2012-12-14 23:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios 2014-05-22 06:44 - 2009-07-14 19:58 - 00736716 _____ () C:\Windows\system32\perfh007.dat 2014-05-22 06:44 - 2009-07-14 19:58 - 00160462 _____ () C:\Windows\system32\perfc007.dat 2014-05-22 06:44 - 2009-07-14 07:13 - 01709418 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-22 06:42 - 2013-01-23 04:12 - 00003160 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-05-22 06:41 - 2014-05-22 06:41 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-05-22 06:30 - 2014-05-22 06:30 - 00000000 ____D () C:\Users\Don Corleone\Documents\DIE SIEDLER - Aufstieg eines Königreichs 2014-05-22 04:51 - 2013-01-26 03:04 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core.job 2014-05-21 22:38 - 2014-03-02 06:42 - 00000000 ____D () C:\Program Files (x86)\Raptr 2014-05-21 22:37 - 2014-03-31 07:25 - 00004174 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-05-21 07:13 - 2014-05-21 07:13 - 00004096 _____ () C:\Windows\d3dx.dat 2014-05-21 07:13 - 2014-05-21 07:13 - 00000000 ____D () C:\Users\Public\Documents\Deutschland Spielt 2014-05-19 22:04 - 2014-05-19 22:00 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller.exe 2014-05-19 18:24 - 2014-05-19 18:24 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap.bmp 2014-05-19 17:42 - 2014-05-19 17:42 - 00000823 _____ () C:\Users\Don Corleone\Desktop\Uplay.lnk 2014-05-19 17:42 - 2012-12-07 22:27 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Ubisoft Game Launcher 2014-05-19 17:41 - 2014-05-19 17:40 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller_4.5.0.exe 2014-05-19 17:14 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-19 17:04 - 2014-03-02 04:15 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-05-19 17:03 - 2014-05-19 17:03 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection(1).msi 2014-05-17 21:24 - 2014-05-17 21:24 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-17 21:23 - 2014-04-12 23:28 - 00000000 ____D () C:\AdwCleaner 2014-05-17 21:23 - 2013-01-26 03:15 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-17 21:23 - 2012-12-17 17:47 - 00000969 _____ () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-17 21:23 - 2012-12-07 00:58 - 00001025 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-17 21:22 - 2014-05-17 21:22 - 01325827 _____ () C:\Users\Don Corleone\Downloads\adwcleaner_3.208.exe 2014-05-17 21:07 - 2014-03-02 03:33 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\CrashDumps 2014-05-17 10:08 - 2014-05-17 10:08 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Alte Firefox-Daten 2014-05-17 09:18 - 2014-05-17 09:18 - 23792584 _____ (Foofind Labs, S.L. ) C:\Users\Don Corleone\Downloads\foofind_download_manager_redist.exe 2014-05-17 09:18 - 2014-05-17 09:18 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Foofind Download Manager 2014-05-17 09:17 - 2014-05-17 09:17 - 00166112 _____ () C:\Users\Don Corleone\Desktop\Foofind-Download-Manager_0.3-20140421.exe 2014-05-17 09:15 - 2012-12-07 00:01 - 00000000 ___RD () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-17 04:24 - 2014-02-18 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX 2014-05-17 04:24 - 2012-12-13 01:18 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-05-17 04:24 - 2012-12-13 01:16 - 00000000 ____D () C:\ProgramData\DivX 2014-05-17 04:21 - 2014-05-17 04:21 - 01001280 _____ (DivX, LLC) C:\Users\Don Corleone\Desktop\DivXInstaller.exe 2014-05-17 00:54 - 2009-07-14 07:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-16 01:22 - 2014-03-02 14:45 - 00000000 ____D () C:\Windows\rescache 2014-05-15 15:45 - 2014-03-31 07:25 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2014-05-15 15:45 - 2014-03-31 07:25 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-05-15 15:45 - 2014-03-31 07:25 - 00085328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-05-15 15:40 - 2009-07-14 06:45 - 00439144 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-15 05:23 - 2014-05-15 05:23 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 05:19 - 2014-02-07 21:37 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-14 13:20 - 2012-12-07 02:19 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-11 02:40 - 2014-05-11 02:40 - 00062044 _____ () C:\Windows\SysWOW64\CCCInstall_201405110240294523.log 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\ATI 2014-05-11 02:40 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-05-11 02:40 - 2012-12-07 03:30 - 00000000 ____D () C:\ProgramData\AMD 2014-05-11 02:40 - 2012-12-07 01:47 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\ATI 2014-05-11 02:40 - 2012-12-07 01:47 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\ATI 2014-05-11 02:39 - 2014-05-11 02:30 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-05-11 02:35 - 2014-05-11 02:35 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2014-05-11 02:31 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files\ATI 2014-05-11 02:31 - 2013-07-10 02:21 - 00000000 ____D () C:\ProgramData\Package Cache 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Program Files\Realtek 2014-05-11 02:10 - 2014-05-11 02:10 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-05-11 02:09 - 2014-05-11 02:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-05-11 02:04 - 2012-12-07 00:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-11 01:35 - 2014-05-11 01:35 - 00000998 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-05-11 01:33 - 2014-05-11 01:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-05-11 01:33 - 2014-05-11 01:33 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1400161518694 2014-05-11 01:33 - 2014-03-31 07:25 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1400161518694 2014-05-11 01:33 - 2014-03-31 07:25 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-05-11 01:33 - 2014-03-31 07:24 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-05-11 01:33 - 2014-03-31 07:24 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-05-11 00:02 - 2012-12-07 01:08 - 00113952 _____ () C:\Users\Don Corleone\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-10 23:45 - 2014-05-10 23:45 - 00001438 _____ () C:\Users\Don Corleone\Desktop\Razer Synapse 2.0 und Razer Surround 7.1.lnk 2014-05-10 23:42 - 2014-05-10 23:42 - 00000000 ____D () C:\ProgramData\RzMaelstromVAD_1.1.52.1675 2014-05-10 23:41 - 2014-05-02 23:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-10 23:41 - 2014-05-02 23:44 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-10 23:41 - 2013-02-12 23:37 - 00000000 ____D () C:\Windows\pss 2014-05-10 23:39 - 2014-05-10 23:39 - 00002089 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-10 23:39 - 2013-01-19 07:50 - 00000000 ____D () C:\ProgramData\Razer 2014-05-10 23:39 - 2012-12-18 20:17 - 00000000 ___RD () C:\Users\Don Corleone\Desktop\Spiele 2014-05-10 23:38 - 2013-06-27 21:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Razer 2014-05-10 23:14 - 2012-12-07 01:50 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-10 23:12 - 2014-05-10 23:12 - 00000000 ____D () C:\Intel 2014-05-10 23:12 - 2012-12-07 00:36 - 00000000 ____D () C:\Program Files\Intel 2014-05-10 22:39 - 2009-07-14 04:34 - 00001369 _____ () C:\Windows\system32\Drivers\etc\hosts.old 2014-05-10 21:19 - 2014-03-27 08:43 - 00000000 ____D () C:\Users\Don Corleone\Desktop\von chip 2014-05-10 21:11 - 2014-05-10 21:11 - 00000000 ____D () C:\Users\Don Corleone\SystemRequirementsLab 2014-05-10 21:11 - 2012-12-07 00:01 - 00000000 ____D () C:\Users\Don Corleone 2014-05-10 13:49 - 2014-05-10 13:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-09 08:14 - 2014-05-15 05:10 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-09 08:11 - 2014-05-15 05:10 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-08 18:27 - 2013-03-24 15:59 - 00000000 ____D () C:\Program Files (x86)\nLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\Program Files (x86)\vLite 2014-05-08 12:13 - 2014-05-08 12:10 - 00000000 ____D () C:\Users\Don Corleone\Documents\New Unity Project 2014-05-08 12:13 - 2013-10-24 21:04 - 00000000 ____D () C:\ProgramData\Unity 2014-05-08 09:14 - 2014-05-15 05:21 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-08 08:37 - 2014-05-15 05:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-08 07:52 - 2014-05-15 05:21 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-08 07:27 - 2014-05-15 05:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-08 06:57 - 2014-05-15 05:21 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-08 06:04 - 2014-05-15 05:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-06 19:51 - 2014-05-06 19:51 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Tritton 2014-05-06 19:48 - 2014-05-06 19:48 - 00000000 ____D () C:\Program Files\Tritton 2014-05-05 22:34 - 2013-04-16 17:21 - 00000000 ____D () C:\ProgramData\Steam 2014-05-04 17:12 - 2012-12-16 17:49 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-03 21:23 - 2013-08-01 23:33 - 00003347 _____ () C:\Windows\Cm106.ini.imi 2014-05-03 21:02 - 2014-05-03 21:02 - 00000000 ____D () C:\Users\Don Corleone\Documents\Activision 2014-05-03 21:02 - 2013-02-08 12:11 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Activision 2014-05-03 19:57 - 2014-05-03 19:57 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-03 19:57 - 2014-05-03 19:57 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-03 19:53 - 2012-12-07 02:22 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Adobe 2014-05-03 19:45 - 2014-04-08 15:44 - 00000663 _____ () C:\Users\Don Corleone\AppData\Roaming\MPQEditor.ini 2014-05-03 19:44 - 2012-12-18 20:17 - 00000000 ___RD () C:\Users\Don Corleone\Desktop\Programme 2014-05-03 19:36 - 2012-12-07 22:34 - 00000000 ____D () C:\ProgramData\Ubisoft 2014-05-03 19:20 - 2013-01-07 22:31 - 00000000 ____D () C:\ProgramData\Solidshield 2014-05-02 23:58 - 2014-03-02 13:21 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection.msi 2014-05-02 13:36 - 2014-05-02 13:36 - 00117223 _____ () C:\Users\Don Corleone\Documents\Unbenannt (2).wma 2014-05-02 13:35 - 2014-05-02 13:35 - 00076813 _____ () C:\Users\Don Corleone\Documents\Unbenannt.wma 2014-05-01 14:18 - 2013-05-20 04:52 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\StarTrekPC 2014-05-01 01:48 - 2014-05-01 01:43 - 00004238 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log 2014-05-01 01:43 - 2014-03-27 03:22 - 00000000 ____D () C:\Program Files (x86)\Java 2014-04-27 22:29 - 2013-04-08 19:48 - 00000000 ____D () C:\ProgramData\SecTaskMan 2014-04-24 07:39 - 2014-04-24 07:39 - 00000000 ____D () C:\Windows\ERUNT 2014-04-24 07:05 - 2013-07-10 02:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0 2014-04-24 07:03 - 2013-07-10 02:09 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-04-24 04:11 - 2012-12-15 04:17 - 00000000 ____D () C:\Users\Don Corleone\Documents\My Games 2014-04-24 02:38 - 2014-04-24 02:38 - 00004511 _____ () C:\STF88CF.tmp 2014-04-24 01:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-04-23 05:46 - 2013-05-29 21:39 - 00000000 ____D () C:\Windows\Minidump Some content of TEMP: ==================== C:\Users\Don Corleone\AppData\Local\Temp\20140517091718.754.exe C:\Users\Don Corleone\AppData\Local\Temp\BackupSetup.exe C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole2931698619205979779.dll C:\Users\Don Corleone\AppData\Local\Temp\Quarantine.exe C:\Users\Don Corleone\AppData\Local\Temp\ubi7984.tmp.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit testsigning: ==> Check for possible unsigned rootkit driver <===== ATTENTION! LastRegBack: 2014-05-19 19:28 ==================== End Of Log ============================ Danke für eure Hilfe |
23.05.2014, 22:05 | #2 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen)Hallo und willkommen an Board, Chaikobar Mein Name ist Machiavelli und werde bei Deinem Malware Problemen behilflich sein. Falls Du Dich im abgesicherten Modus befindest, würde ich Dir raten, alle Anweisungen von mir auszudrucken, um besseren Überblick auf die Gesamtsituation zu bekommen. Ich bin hier im Malwareteam und daher ist es mir möglich, Dir zu helfen. Damit eine Bereinigung ermöglicht werden kann, musst Du ein paar Regeln/Tipps beachten:
Das Addition Log fehlt. (das von FRST zudem produziert wurde). Es sollte sich da befinden: C:\Users\Don Corleone\Downloads |
23.05.2014, 22:43 | #3 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Sorry hab ich vergessen
__________________Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-05-2014 Ran by Don Corleone at 2014-05-23 19:21:52 Running from C:\Users\Don Corleone\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 1.3M HD WebCam (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.3.6.01 - SunplusIT) 3D-Fahrschule (HKLM-x32\...\3D-Fahrschule) (Version: - ) 720+ User Interface (HKLM\...\{AD3320DC-2703-40EA-B0F6-1705C1A62A73}) (Version: 1.2.5 - Tritton) ACP Application (HKLM\...\{A2F0A6C6-350D-3C9C-DF7A-DE18C0606243}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.206 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Age of Wonders III (HKLM-x32\...\Steam App 226840) (Version: - Triumph Studios) AIDA64 Business Edition v3.20 (HKLM-x32\...\AIDA64 Business Edition_is1) (Version: 3.20 - FinalWire Ltd.) AKFQuiz (HKLM-x32\...\akfquiz) (Version: 4.4.1 - AKFoerster) AMD Accelerated Video Transcoding (HKLM-x32\...\{C7322AB9-5726-5538-1466-F0C4104DDB5F}) (Version: 13.20.100.31206 - Advanced Micro Devices, Inc.) AMD Accelerated Video Transcoding (Version: 13.10.100.30523 - Advanced Micro Devices, Inc.) Hidden AMD Accelerated Video Transcoding (Version: 13.30.100.40417 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0417.2226.38446 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{3FAEEEBE-48F4-84C1-2B49-96AE73E67E3E}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Catalyst Install Manager (HKLM\...\{9C8341F4-5BCC-9B8D-FB38-05DE3EA5DC38}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.80523.1654 - Advanced Micro Devices, Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.81206.1620 - Advanced Micro Devices, Inc.) Hidden AMD Steady Video Plug-In (HKLM\...\{723AEA0A-E9CF-44F7-AFE4-0617E8D4755A}) (Version: 2.06.0000 - AMD) AMD Steady Video Plug-In (HKLM\...\{833F5E6D-6E01-11D1-978E-6DFBCEF72570}) (Version: 2.06.0000 - AMD) AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) Hidden AMD Wireless Display v3.0 (Version: 1.0.0.15 - Advanced Micro Devices, Inc.) Hidden Any Video Converter 3.5.5 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) ArtMoney SE v7.41 (HKLM-x32\...\ArtMoney SE_is1) (Version: 7.41 - System SoftLab) Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.00 - Ubisoft) Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.00 - Ubisoft) Assassin's Creed II (HKLM-x32\...\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}) (Version: 1.01 - Ubisoft) Aufstieg des Hexenkönigs™ (HKLM-x32\...\{B931FB80-537A-4600-00AD-AC5DEDB6C25B}) (Version: - ) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2018 - Avast Software) BFME2 MOD SDK (HKLM-x32\...\{75569CDC-0C64-45C6-962E-C4A49F3C56DF}) (Version: 1.0.0 - Electronic Arts) Black & White® 2 (HKLM-x32\...\{D9E52CD1-9DF1-4A8A-9BDC-1E5E53982F2B}) (Version: 1.00.0000 - Lionhead Studios) Call of Duty(R) - World at War(TM) (HKLM-x32\...\InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}) (Version: 1.7 - Activision) Call of Duty(R) - World at War(TM) (x32 Version: 1.0 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.1 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.1 Patch (x32 Version: 1.1 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.2 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.2 Patch (x32 Version: 1.2 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.4 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.4 Patch (x32 Version: 1.4 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.4.1 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.4.1 Patch (x32 Version: 1.4.1 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.5 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.5 Patch (x32 Version: 1.5 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden CameraHelperMsi (x32 Version: 13.31.1038.0 - Logitech) Hidden Camtasia Studio 8 (HKLM-x32\...\{8F6F7194-0734-4CDA-8C04-6B766F2241A6}) (Version: 8.0.4.1060 - TechSmith Corporation) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.1219.1521.27485 - Ihr Firmenname) Hidden Catalyst Control Center (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0523.1654.28486 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0223.2239.40626 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2011.0524.2352.41027 - ATI) Hidden Catalyst Control Center Localization All (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden ccc-utility (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) Celtx (2.9.7) (HKLM-x32\...\Celtx (2.9.7)) (Version: 2.9.7 (de) - Greyfirst) com! Update Pack Builder 5.0.7 (HKLM-x32\...\com! Update Pack Builder_is1) (Version: - com! - Das Computer Magazin) Command & Conquer™ Alarmstufe Rot 3 Der Aufstand (HKLM-x32\...\{DDE59617-F59A-473B-BC4E-C2B81F6CD38D}) (Version: 1.0.1.0 - Electronic Arts) Common RTP 1.0 (HKLM-x32\...\RPGAdvocates_RTP_1.0) (Version: - ) Core Temp 1.0 RC5 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) CyberLink PowerDVD 11 (HKLM-x32\...\InstallShield_{F232C87C-6E92-4775-8210-DFE90B7777D9}) (Version: 11.0.2211.53 - CyberLink Corp.) CyberLink PowerDVD 11 (x32 Version: 11.0.2211.53 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Der VerkehrsGigant-Gold Edition (HKLM-x32\...\Der VerkehrsGigant-Gold Edition) (Version: - ) DH Driver Cleaner Professional Edition (HKLM-x32\...\Driver Cleaner Pro) (Version: Version 1.5 - Ruud Ketelaars) Die Schlacht um Mittelerde(tm) (HKLM-x32\...\{3F290582-3F4E-4B96-009C-E0BABAA40C42}) (Version: - ) Die Schlacht um Mittelerde™ II (HKLM-x32\...\{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}) (Version: - ) DIE SIEDLER - Aufstieg eines Königreichs (HKLM-x32\...\{D3F80A98-05AB-4D8C-9272-766CCFA6A48D}) (Version: 1.00.0000 - Ubisoft) Die Siedler 7 (HKLM-x32\...\{9C916142-C18C-429D-BFED-40094A7E0BEB}) (Version: 1.12.1396 - Ubisoft) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.3.22 - DivX, LLC) Dragon NaturallySpeaking 11 (HKLM-x32\...\{EFFA53BC-8C04-2E21-3D90-A13B1697B0CA}) (Version: 11.50.100 - Nuance Communications Inc.) Driver Fusion (HKLM-x32\...\{100C8F3B-82D6-4B14-BB7A-5E8C3FF810C8}_is1) (Version: 1.4.0 - Treexy) Duplicate Cleaner Free 3.0.1 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 3.0.1 - DigitalVolcano) Empire at War Forces of Corruption Mappack 7.00 (HKLM-x32\...\Empire at War Forces of Corruption Mappack) (Version: 7.00 - Petroglyph Games Inc.) erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden ETDWare PS/2-X64 11.6.4.001_WHQL (HKLM\...\Elantech) (Version: 11.6.4.001 - ELAN Microelectronic Corp.) Excelsior Installer 2.2 (HKLM-x32\...\Excelsior_0) (Version: 2.2 - Excelsior) eXe -- eLearning XHTML editor (HKLM-x32\...\exe) (Version: - eXe Project) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}) (Version: 2.1.27.0 - MAGIX AG) FOCMapEditor (HKLM-x32\...\{1E869B1A-FE19-4519-B9AE-EF383A7C00E4}) (Version: 1.0.0 - Petroglyph) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Game of Thrones Version 1.4.2.0 (HKLM-x32\...\AGOT_is1) (Version: 1.4.2.0 - Cyanide) GanttProject (HKLM-x32\...\GanttProject) (Version: - ) GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team) Google Chrome (HKCU\...\Google Chrome) (Version: 33.0.1750.117 - Google Inc.) Google Earth (HKLM-x32\...\{3E8A20E1-223F-11E2-9116-B8AC6F98CCE3}) (Version: 7.0.1.8244 - Google) Gothic 3 (HKLM-x32\...\{13F59927-CFBE-44D1-8417-7203AD4F1795}) (Version: 1.0.0 - JoWooD) Guild 2 Patch (HKLM-x32\...\{E9E09EAA-0FF8-42A1-ACAB-67F2A691E50F}) (Version: 1.0.0 - JoWood) Harry Potter und der Halbblut-Prinz™ (HKLM-x32\...\{FD1B1980-8CAB-4474-89F8-1245AF657AD1}) (Version: 1.0.0.0 - Electronic Arts) Hitman Absolution (HKLM-x32\...\Hitman Absolution_is1) (Version: - ) Hospital Tycoon (HKLM-x32\...\HospitalTycoon) (Version: - ) HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden Intel(R) Chipset Device Software (Version: 10.0.13 - Intel Corporation) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.0.1428 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.5.0.1066 - Intel Corporation) Hidden Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version: - Intel Corporation) Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.18.68.55 - Huawei Technologies Co.,Ltd) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle) Java 7 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417051FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Kingdoms of Amalur - Reckoning (HKLM-x32\...\Kingdoms of Amalur - Reckoning_is1) (Version: - ) KUDOS RS Gaming Mouse (HKLM-x32\...\SPEEDLINK KUDOS) (Version: - ) Lenovo LeTools (HKLM-x32\...\{4FB26144-F808-47B2-883C-18A480662810}) (Version: 2.0.320 - Lenovo) Lenovo Mobile Device Drivers (HKLM-x32\...\{8FE68BC1-26DE-446E-A270-2A608C7553E9}) (Version: 3.3.10 - Lenovo) Logitech Vid HD (HKLM-x32\...\Logitech Vid) (Version: 7.2 (7248) - Logitech Inc..) Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.) LWS Facebook (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Gallery (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Help_main (x32 Version: 13.31.1044.0 - Logitech) Hidden LWS Launcher (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Motion Detection (x32 Version: 13.30.1395.0 - Logitech) Hidden LWS Pictures And Video (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Twitter (x32 Version: 13.30.1346.0 - Logitech) Hidden LWS Video Mask Maker (x32 Version: 13.30.1379.0 - Logitech) Hidden LWS VideoEffects (Version: 13.30.1379.0 - Logitech) Hidden LWS Webcam Software (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS WLM Plugin (x32 Version: 1.30.1201.0 - Logitech) Hidden LWS YouTube Plugin (x32 Version: 13.31.1038.0 - Logitech) Hidden Majesty 2 Collection (HKLM-x32\...\Majesty 2 Collection_is1) (Version: - ) Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) Managed DirectX (0901) (x32 Version: 4.09.00.0901 - Microsoft) Hidden Mass Effect 2 Deluxe Edition (HKLM-x32\...\{A36A5251-2379-429B-9785-EEF2A5F8DBCB}_is1) (Version: v1.02 - The Most Electrifying Man) Mass Effect™ 3 (HKLM-x32\...\{6A9D1594-7791-48f5-9CAA-DE9BCB968320}) (Version: 1.01.0.0 - Electronic Arts) Max Payne 2 (HKLM-x32\...\{EFE1AB94-5466-4B6E-BE31-FF4C115FD25D}) (Version: 1.01.102 - ) MEDUSA NX USB 5.1 Gaming Headset (HKLM\...\C-Media CM106 Like Sound Driver) (Version: - ) MegaTrainer eXperience V1.1.8.9 (HKLM-x32\...\MegaTrainer eXperience_is1) (Version: - ) MegaTrainer XL V1.5.8.0 (HKLM-x32\...\MegaTrainer XL_is1) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7324.0 - Microsoft Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Fix it Center (HKLM\...\{B7588D45-AFDC-4C93-9E2E-A100F3554B64}) (Version: 1.0.0100 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 Language Pack - DEU (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20125.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM-x32\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (x32 Version: 3.5.8080.0 - Microsoft Corporation) Hidden Microsoft SQL Server Compact 3.5 SP2 x64 DEU (HKLM\...\{C3EAE456-7E7A-451F-80EF-F34C7A13C558}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (Version: 3.5.8080.0 - Microsoft Corporation) Hidden Microsoft Visual C++ Compilers 2010 Standard - enu - x86 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{7CBA9009-7EA4-338B-893D-9607CD829ADF}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU (HKLM\...\{3C983A67-DFB2-3D3D-AD9E-CA1A5A09FD18}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.50330 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.50325 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Windows Media Video 9 VCM (HKLM-x32\...\WMV9_VCM) (Version: - ) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mortal Kombat Komplete Edition (HKLM-x32\...\Mortal Kombat Komplete Edition_is1) (Version: - Warner Bros. Interactive Entertainment) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSM2MSI_gstudio (HKLM-x32\...\{C53F001E-5912-4E76-AC49-9AC20B36B1A2}) (Version: 2.0 - Pantaray) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Multi-Targeting Pack for Microsoft .NET Framework 4.0.3 (KB2600213) (HKLM-x32\...\Multi-Targeting Pack for Microsoft .NET Framework 4.0.3) (Version: 4.0.551 - Microsoft Corporation) Multi-Targeting Pack for Microsoft .NET Framework 4.0.3 (KB2600213) (x32 Version: 4.0.551 - Microsoft Corporation) Hidden nLite 1.4.9.1 (HKLM-x32\...\nLite_is1) (Version: 1.4.9.1 - Dino Nuhagic (nuhi)) Nullsoft Install System (HKLM-x32\...\NSIS) (Version: 2.46 - ) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Oracle VM VirtualBox 4.3.8 (HKLM\...\{5D328A41-BFF8-4B78-B45E-5BEE1D133EF5}) (Version: 4.3.8 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.1.10.2728 - Electronic Arts, Inc.) Packard Bell Power Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3000 - Packard Bell) Packard Bell Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3502 - Packard Bell) Paint Shop Pro 7 (HKLM-x32\...\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}) (Version: 7.0.0.0000 - Jasc Software Inc) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden PianoFX STUDIO 4.0 (HKLM-x32\...\PianoFX STUDIO 4.0_is1) (Version: 4.0 - Tanseon Systems) Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.16 - Qualcomm Atheros Communications Inc.) Qualcomm Atheros Fast Reconnect (HKLM-x32\...\{0CA2063D-D43F-41F2-A8AC-A3C4A4C722D2}) (Version: 1.0 - QualComm Atheros) Raptr (HKLM-x32\...\Raptr) (Version: - ) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.42.0 - Razer Inc.) Razer Megalodon Firmware Updater (HKLM-x32\...\{C67A3F9D-E55D-4288-B4EC-1B9863EFB288}) (Version: 2.12.02 - Razer USA Ltd.) Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.03 - Razer Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30123 - Realtek Semiconductor Corp.) Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.30150 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.26.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.26.0 - Renesas Electronics Corporation) Hidden Restaurant Empire II (HKLM-x32\...\Restaurant Empire II) (Version: 1.00 - Kalypso Media) Restaurant Empire II Patch 1.001 (HKLM-x32\...\Restaurant Empire II Patch 1.001) (Version: 1.001 - Kalypso Media) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) RGSS-RTP Standard (HKLM-x32\...\RGSS-RTP Standard_is1) (Version: 1.04 - Enterbrain) Risen 2 Dark Waters (HKLM-x32\...\Risen 2 Dark Waters_is1) (Version: - ) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.34.0 - SAMSUNG Electronics Co., Ltd.) Security Task Manager 1.8g (HKLM-x32\...\Security Task Manager) (Version: 1.8g - Neuber Software) SimCity Complete Edition v1.0 (HKLM-x32\...\{35244795-E3E3-43B5-964F-59D2C24566E6}_is1) (Version: v1.0 - RAF) SimCity Version 10.0.0.0 (HKLM-x32\...\SimCity_is1) (Version: 10.0.0.0 - Maxis) SiSoftware Sandra Lite 2014.SP2 (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2396}_is1) (Version: 20.28.2014.5 - SiSoftware) Space Colony (HKLM-x32\...\{CBC861A4-693B-6E23-B148-662CD45C97EF}) (Version: 1.1 - ) Spellforce 2 Gold (HKLM-x32\...\{746F49C9-3789-4F8E-AF3A-3A4B42ACFAF8}) (Version: 1.00.0000 - JoWooD Productions Software AG) SpellForce 2 Patch (x32 Version: 1.0.0 - JoWood) Hidden Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) Stadtbahn Simulator Düsseldorf (HKLM-x32\...\{83CD9117-D772-437B-8B18-6D00BCFE9E01}) (Version: 1.0.0 - Rondomedia) Star Trek (HKLM-x32\...\Steam App 203250) (Version: - Digital Extremes) Star Trek Online (HKLM-x32\...\Star Trek Online) (Version: - Cryptic Studios) Star Wars Battlefront II (HKLM-x32\...\{3D374523-CFDE-461A-827E-2A102E2AB365}) (Version: 1.0 - LucasArts) Star Wars Empire at War (HKLM-x32\...\{99AE7207-8612-4DBA-A8F8-BAE5C633390D}) (Version: 1.0 - LucasArts) Star Wars Empire at War Forces of Corruption (HKLM-x32\...\{6592FDEC-2C1A-413A-9985-25FEC2F0848D}) (Version: 1.0 - LucasArts) Star Wars Jedi Knight Jedi Academy (HKLM-x32\...\{0D994CC5-819F-4657-84DD-397B8FE1EA80}) (Version: - ) StarCraft II (HKLM-x32\...\StarCraft II) (Version: 1.0.0.16117 - Blizzard Entertainment) StarCraft II Heart of the Swarm (c) Blizzard version 1 (HKLM-x32\...\U3RhckNyYWZ0IElJ_is1) (Version: 1 - ) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold (HKLM-x32\...\{C917BA70-28A3-4C74-B163-41FD8C8E1A5A}) (Version: 1.20.0000 - Firefly Studios) Stronghold 2 (HKLM-x32\...\{16D2C649-CBA8-44EE-B730-12584667D487}) (Version: 1.40.1000 - Firefly Studios) Stronghold 3 Gold (HKLM-x32\...\Stronghold 3 Gold_is1) (Version: - ) Stronghold Crusader Extreme HD (HKLM-x32\...\GOGPACKSTRONGHOLDCRUSADERHD_is1) (Version: 2.0.0.6 - GOG.com) Stronghold Legends (HKLM-x32\...\{66A405D2-BA14-4594-BF36-B3B544F0754E}) (Version: 1.20.0000 - Firefly Studios) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.6.0 - Synaptics Incorporated) Syndicate (HKLM-x32\...\{140E3DE7-A949-4267-841C-28E1F41857D4}_is1) (Version: 1.0 - RAF) System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC) System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC) The Amazing Spider-Man 2 (HKLM-x32\...\VGhlQW1hemluZ1NwaWRlck1hbjI=_is1) (Version: 1 - ) The Last Remnant (HKLM-x32\...\The Last Remnant_is1) (Version: - ) The Lord of the Rings: War in the North (HKLM-x32\...\Steam App 32800) (Version: - Snowblind) The Movies(TM) (x32 Version: 1.0 - Activision) Hidden The Movies(TM) Stunts & Spezialeffekte (HKLM-x32\...\InstallShield_{0556F885-2415-4666-B53E-33727E46AEA1}) (Version: 1.2 - Activision) The Movies(TM) Stunts & Spezialeffekte (x32 Version: 1.0 - Ihr Firmenname) Hidden Tom Clancy's Rainbow Six 3: Athena Sword 1.10.016 (HKLM-x32\...\{664FF9A8-7E44-4E17-AD40-D10E15504C49}) (Version: 1.10.016 - ) Tom Clancy's Rainbow Six 3: Raven Shield 1.60.412 (HKLM-x32\...\{AF131494-F5D8-45C5-938C-D5F020CF1B0D}) (Version: 1.60.412 - ) Tron: Evolution (HKLM-x32\...\{9CCB3527-C033-415C-88B6-27173B5E3592}) (Version: 1.00.0000 - Disney Interactive Studios) Tycoon City - New York (HKLM-x32\...\{A5101403-2C42-40E0-8D9E-5E49E7C3B89E}) (Version: 1.00.000 - ) Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.0.82.0 - Intel) Unity (HKLM-x32\...\Unity) (Version: - Unity Technologies ApS) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Uplay (HKLM-x32\...\Uplay) (Version: 4.5 - Ubisoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Video Web Camera (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.3501.00 - CyberLink Corp.) Video Web Camera (x32 Version: 1.5.3501.00 - CyberLink Corp.) Hidden VirtualDJ Home FREE (HKLM-x32\...\{A6AC699F-8315-40CA-8F70-E917494978AB}) (Version: 7.4 - Atomix Productions) Visual C++ 9.0 Runtime for Dragon NaturallySpeaking 64bit (x64) (HKLM\...\{4A5A427F-BA39-4BF0-7777-9A47FBE60C9F}) (Version: 11.0.0 - Nuance Communications Inc.) VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) vLite (HKLM-x32\...\vLite_is1) (Version: 1.2 - Dino Nuhagic (nuhi)) War of the Immortals (HKLM-x32\...\Steam App 209710) (Version: - Perfect World Shanghai) Win7codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 3.9.2 - Shark007) Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) X3 Reunion (HKLM-x32\...\{0B744987-A39E-45E5-B930-11EDBDFE3003}) (Version: 12 - DeepSilver) x64 Components v3.9.2 (HKLM\...\x64 Components_is1) (Version: 3.9.2 - Shark007) ==================== Restore Points ========================= 23-05-2014 12:13:17 Installiert X3 Reunion 23-05-2014 12:47:05 SiSoftware Sandra Lite 23-05-2014 15:20:20 DirectX wurde installiert ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-09-03 17:19 - 00000833 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0939A652-F769-4FFB-8CD0-E91F3FA50BC6} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {282E1A66-1994-43C0-8B33-F2A7A3800724} - System32\Tasks\DivX-Online-Aktualisierungsprogramm => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2014-01-10] () Task: {3909D706-A484-49BC-86EA-0834DAAE367F} - System32\Tasks\DriverEasy Scheduled Scan => D:\Programme\DriverEasy\DriverEasy.exe Task: {593B9F4F-EA70-4B9E-8A7C-FD8E337E8A44} - System32\Tasks\Restart UxSms to fix Aero lag => net Task: {84C1CA4A-1C56-4E7F-A4A0-82315A9918FD} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe Task: {89A298DE-A98B-4403-ABB8-BED27F1454FC} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation) Task: {B49638CB-767E-4E6D-837E-DBE9BB305ED7} - \LyricsContainer Update No Task File <==== ATTENTION Task: {C046E6C6-8A0C-40A9-876C-7DFB53CB24D0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: {C84E6929-23CA-47EC-AC07-2591788791F4} - System32\Tasks\avast! Emergency Update => D:\Programme\AVAST Software\Avast\AvastEmUpdate.exe [2014-05-11] (AVAST Software) Task: {CDB55844-5BF9-4972-94DE-7D0240659E9B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: {FFEC1BA3-3D60-4699-A9D3-142C982EA7BB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: C:\Windows\Tasks\DriverEasy Scheduled Scan.job => D:\Programme\DriverEasy\DriverEasy.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core.job => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA.job => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-01-23 02:52 - 2011-08-24 03:13 - 00083240 _____ () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe 2013-02-06 07:14 - 2011-09-05 07:13 - 00112128 _____ () C:\Windows\System32\ExcelsiorEIT\EitComLauncherInst.dll 2011-03-14 17:27 - 2011-03-14 17:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2013-10-29 21:13 - 2011-06-17 13:04 - 00224096 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe 2012-12-07 02:44 - 2011-04-15 11:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-10-29 22:25 - 2011-06-17 13:04 - 01434464 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\LiveUpd.exe 2014-01-10 07:26 - 2014-01-10 07:26 - 01861968 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2013-07-21 13:33 - 2013-03-01 17:45 - 00856016 _____ () C:\Program Files\Core Temp\Core Temp.exe 2014-05-23 16:46 - 2014-05-23 16:46 - 00040448 ____N () C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole2931698619205979779.dll 2014-05-23 16:46 - 2014-05-23 16:46 - 00566439 _____ () D:\Programme\JDownloader 2\JDownloader v2.0\tmp\7zip\SevenZipJBinding-FKPz9\libgcc_s_sjlj-1.dll 2014-05-23 16:46 - 2014-05-23 16:46 - 04078962 _____ () D:\Programme\JDownloader 2\JDownloader v2.0\tmp\7zip\SevenZipJBinding-FKPz9\lib7-Zip-JBinding.dll 2014-05-22 17:15 - 2014-05-22 17:15 - 02254848 _____ () D:\Programme\AVAST Software\Avast\defs\14052200\algo.dll 2014-05-23 19:04 - 2014-05-23 19:04 - 02255872 _____ () D:\Programme\AVAST Software\Avast\defs\14052300\algo.dll 2013-01-23 02:52 - 2011-08-26 06:57 - 00260096 _____ () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\sqlite3.dll 2013-10-29 21:13 - 2009-01-10 12:32 - 00011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll 2013-10-29 21:13 - 2009-06-22 20:42 - 00043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll 2013-10-29 21:13 - 2010-05-05 10:47 - 02415104 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll 2013-10-29 21:13 - 2010-02-10 16:10 - 01148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll 2013-10-29 21:13 - 2010-02-10 16:43 - 09515520 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtGui4.dll 2013-10-29 22:25 - 2012-10-08 03:41 - 00082944 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qgif4.dll 2013-10-29 22:25 - 2012-10-08 03:41 - 00081920 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qico4.dll 2014-03-31 07:24 - 2014-03-31 07:24 - 19336120 _____ () D:\Programme\AVAST Software\Avast\libcef.dll 2014-01-10 07:28 - 2014-01-10 07:28 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00124928 _____ () C:\Program Files (x86)\Raptr\_elementtree.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd 2012-02-06 22:28 - 2012-02-06 22:28 - 00031744 _____ () C:\Program Files (x86)\Raptr\Crypto.Cipher.AES.pyd 2012-02-06 22:28 - 2012-02-06 22:28 - 00010752 _____ () C:\Program Files (x86)\Raptr\Crypto.Random.OSRNG.winrandom.pyd 2012-02-06 22:28 - 2012-02-06 22:28 - 00011264 _____ () C:\Program Files (x86)\Raptr\Crypto.Util._counter.pyd 2011-05-10 21:01 - 2011-05-10 21:01 - 00030208 _____ () C:\Program Files (x86)\Raptr\simplejson._speedups.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00016384 _____ () C:\Program Files (x86)\Raptr\win32trace.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd 2013-11-21 02:05 - 2013-11-21 02:05 - 00256000 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd 2012-10-27 09:53 - 2012-10-27 09:53 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll 2010-11-23 01:06 - 2010-11-23 01:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll 2014-03-02 00:48 - 2013-05-16 11:55 - 00113496 _____ () D:\Programme\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-03-02 00:48 - 2013-05-16 11:55 - 00416600 _____ () D:\Programme\Spybot - Search & Destroy 2\DEC150.bpl 2014-03-02 00:48 - 2012-08-23 11:38 - 00574840 _____ () D:\Programme\Spybot - Search & Destroy 2\sqlite3.dll 2014-03-02 00:48 - 2013-05-16 11:55 - 00161112 _____ () D:\Programme\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-03-02 00:48 - 2012-04-03 18:06 - 00565640 _____ () D:\Programme\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2013-05-29 21:29 - 2013-03-20 15:45 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-05-10 13:49 - 2014-05-10 13:49 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-05-03 19:57 - 2014-05-03 19:57 - 16351920 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\Temp:7FFED16F ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\Services: OpenVPNService => 3 MSCONFIG\Services: RzMaelstromVADStreamingService => 2 MSCONFIG\Services: SDScannerService => 2 MSCONFIG\Services: SDUpdateService => 2 MSCONFIG\Services: SDWSCService => 2 MSCONFIG\startupfolder: C:^Users^Don Corleone^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Produktregistrierung.lnk => C:\Windows\pss\Logitech . Produktregistrierung.lnk.Startup MSCONFIG\startupfolder: C:^Users^Don Corleone^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tritton 720+.lnk => C:\Windows\pss\Tritton 720+.lnk.Startup MSCONFIG\startupreg: Acer ePower Management => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe MSCONFIG\startupreg: Ad-Aware Browsing Protection => "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Advanced SystemCare 6 => "D:\Programme\Advanced SystemCare 6\ASCTray.exe" /AutoStart MSCONFIG\startupreg: Cm106Sound => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cm106.dll,CMICtrlWnd MSCONFIG\startupreg: Creative SB Monitoring Utility Launcher => RunDll32 SBAVMonL.dll,SBAVMonitorLauncher MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe MSCONFIG\startupreg: Google Update => "C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: HydraVisionDesktopManager => "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" MSCONFIG\startupreg: IntelTBRunOnce => MSCONFIG\startupreg: ISUSPM => "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler MSCONFIG\startupreg: LManager => C:\Program Files (x86)\Launch Manager\LManager.exe MSCONFIG\startupreg: Logitech Vid => "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode MSCONFIG\startupreg: LWS => D:\Programme\Logitech Web Cam\LWS\Webcam Software\LWS.exe -hide MSCONFIG\startupreg: Malwarebytes Anti-Malware (cleanup) => rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript MSCONFIG\startupreg: NUSB3MON => MSCONFIG\startupreg: PowerDVD12DMREngine => MSCONFIG\startupreg: Razer Synapse => "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" MSCONFIG\startupreg: RemoteControl11 => d:\programme\powerdvd11 ultra\powerdvd11\pdvd11serv.exe MSCONFIG\startupreg: RocketDock => "D:\Programme\RocketDock\RocketDock.exe" MSCONFIG\startupreg: SandboxieControl => "D:\Programme\Windows Sandbox\SbieCtrl.exe" MSCONFIG\startupreg: SDTray => "D:\Programme\Spybot - Search & Destroy 2\SDTray.exe" MSCONFIG\startupreg: SPEEDLINK KUDOS => "c:\program files (x86)\speedlink\kudos rs gaming mouse\gaming mouse.exe" /hide MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe MSCONFIG\startupreg: WebCake Desktop => C:\Users\Don Corleone\AppData\Roaming\Betcat\WebCakeDesktop.exe ==================== Faulty Device Manager Devices ============= Name: lirsgt Description: lirsgt Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: lirsgt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (05/23/2014 02:51:02 PM) (Source: WindowsMedia) (EventID: 4373) (User: ) Description: WindowsFür diesen Befehl ist nicht genügend Speicher verfügbar. Berichts-ID: Error: (05/22/2014 01:59:55 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm Explorer.EXE, Version 6.1.7601.17567 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 9a4 Startzeit: 01cf7534570147fc Endzeit: 60000 Anwendungspfad: C:\Windows\Explorer.EXE Berichts-ID: d3d88644-e143-11e3-9bd3-dc0ea10ddbd3 Error: (05/17/2014 09:37:16 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.18444 - Fehler beim Initialisieren der Profilerstellungs-API-Anfügeinfrastruktur. Dieser Prozess ermöglicht einem Profiler das Anfügen nicht. HRESULT: 0x80004005. Prozess-ID (dezimal): 4596. Meldungs-ID: [0x2509]. Error: (05/17/2014 09:31:59 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.18444 - Fehler beim Initialisieren der Profilerstellungs-API-Anfügeinfrastruktur. Dieser Prozess ermöglicht einem Profiler das Anfügen nicht. HRESULT: 0x80004005. Prozess-ID (dezimal): 1544. Meldungs-ID: [0x2509]. Error: (05/17/2014 09:31:22 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.18444 - Fehler beim Initialisieren der Profilerstellungs-API-Anfügeinfrastruktur. Dieser Prozess ermöglicht einem Profiler das Anfügen nicht. HRESULT: 0x80004005. Prozess-ID (dezimal): 2820. Meldungs-ID: [0x2509]. Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) System errors: ============= Error: (05/23/2014 03:04:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: hwinterface Error: (05/23/2014 03:04:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Updating Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/23/2014 03:04:17 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Updating Service erreicht. Error: (05/23/2014 03:03:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/23/2014 03:03:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (05/23/2014 03:03:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "lirsgt" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (05/23/2014 03:03:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Internet Manager. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/23/2014 03:03:13 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. OUC erreicht. Error: (05/23/2014 03:02:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "atksgt" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (05/23/2014 03:02:38 PM) (Source: APPHOSTSVC) (EventID: 9010) (User: ) Description: Fehler im Anwendungshost-Hilfsdienst beim Zugriff auf das Verlaufsstammverzeichnis "C:\inetpub\history". Das Verzeichnis ist nicht vorhanden, oder die Berechtigungen für das Verzeichnis lassen den Zugriff des Verzeichnisdiensts auf das Verzeichnis nicht zu. Das Konfigurationsverlaufsfeature wird deaktiviert und erneut aktiviert, nachdem das Problem behoben wurde. Stellen Sie zum Beheben des Problems sicher, dass das Verzeichnis vorhanden ist und dass die Gruppe "Administratoren" über Lese- und Schreibzugriff auf das Verzeichnis verfügt. Das Datenfeld enthält die Fehlernummer. Microsoft Office Sessions: ========================= Error: (05/23/2014 02:51:02 PM) (Source: WindowsMedia) (EventID: 4373) (User: ) Description: WindowsFür diesen Befehl ist nicht genügend Speicher verfügbar. Error: (05/22/2014 01:59:55 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Explorer.EXE6.1.7601.175679a401cf7534570147fc60000C:\Windows\Explorer.EXEd3d88644-e143-11e3-9bd3-dc0ea10ddbd3 Error: (05/17/2014 09:37:16 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.18444 - Fehler beim Initialisieren der Profilerstellungs-API-Anfügeinfrastruktur. Dieser Prozess ermöglicht einem Profiler das Anfügen nicht. HRESULT: 0x80004005. Prozess-ID (dezimal): 4596. Meldungs-ID: [0x2509]. Error: (05/17/2014 09:31:59 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.18444 - Fehler beim Initialisieren der Profilerstellungs-API-Anfügeinfrastruktur. Dieser Prozess ermöglicht einem Profiler das Anfügen nicht. HRESULT: 0x80004005. Prozess-ID (dezimal): 1544. Meldungs-ID: [0x2509]. Error: (05/17/2014 09:31:22 PM) (Source: .NET Runtime) (EventID: 1022) (User: ) Description: .NET Runtime version 4.0.30319.18444 - Fehler beim Initialisieren der Profilerstellungs-API-Anfügeinfrastruktur. Dieser Prozess ermöglicht einem Profiler das Anfügen nicht. HRESULT: 0x80004005. Prozess-ID (dezimal): 2820. Meldungs-ID: [0x2509]. Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 7010) (User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 3058) (User: ) Description: Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 3028) (User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (05/17/2014 09:29:09 PM) (Source: Windows Search Service) (EventID: 3029) (User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Search.TripoliIndexer CodeIntegrity Errors: =================================== Date: 2014-05-23 15:03:13.682 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 15:03:13.619 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 15:02:39.061 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 15:02:38.981 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 14:31:58.885 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 14:31:58.822 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 14:31:28.917 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 14:31:28.839 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 13:46:18.409 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-23 13:46:18.362 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 47% Total physical RAM: 5995.86 MB Available physical RAM: 3120.23 MB Total Pagefile: 18282.04 MB Available Pagefile: 14953.31 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:48.83 GB) (Free:2.95 GB) NTFS Drive d: () (Fixed) (Total:527.24 GB) (Free:25.14 GB) NTFS Drive f: (Elements) (Fixed) (Total:931.48 GB) (Free:853.88 GB) NTFS Drive g: (CDROM) (CDROM) (Total:0.71 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: E81DA6E3) Partition 1: (Not Active) - (Size=20 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=49 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=527 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 931 GB) (Disk ID: E6C3A94C) Partition 1: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Die hälfte aller Einträge können nicht gestartet oder initialisiert werden aber trotzdem herzlichsten Dank das sie versuchen mir zu helfen. Ich hoffe das problem kann auch ohne Neuinstallation behoben werden PS. Ich sollte auch dazu sagen das ich modifizierte Grafiktreiber nehme von Leshcats weil der Notebook Hersteller sich weigert über catalyst 11.9 hinaus Treiber zu veröffentlichen weil die angeblich keine signifikante Verbesserungen bringen obwohl meine games da was anderes beweisen |
24.05.2014, 10:24 | #4 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2 Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 3 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4 Bitte starte FRST erneut, setze den Haken auch bei Addition.txt und drücke auf Scan. Bitte poste mir die Inhalte der Logs von Adwarecleaner, MBAM, JRT und FRST hier in den Thread. |
24.05.2014, 21:53 | #5 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Ich habe alle Schritte befolgt, MBAM hat 8 Dateien und Einträge gefunden die jetzt in Quarantäne sind. wäre es möglich das die -Viren?- nicht nur ein Fehler im System verursachen sondern auch wichtige Systemkomponenten dauerhaft zerstören bzw. irreparabel? Das würde ja dann bedeuten das ich eine Neuinstallation von Windows nicht vermeiden kann |
25.05.2014, 16:16 | #6 | |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen)Zitat:
Bitte die Logs in Code Tags posten. Zur Not auf mehrere Posts aufteilen. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
|
25.05.2014, 22:07 | #7 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Adware Cleaner Log-File Code:
ATTFilter # AdwCleaner v3.210 - Bericht erstellt am 24/05/2014 um 16:41:57 # Aktualisiert 19/05/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Don Corleone - DONCORLEONE-PC # Gestartet von : C:\Users\Don Corleone\Desktop\adwcleaner_3.210.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16521 -\\ Mozilla Firefox v29.0.1 (de) [ Datei : C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250\prefs.js ] -\\ Google Chrome v [ Datei : C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [7540 octets] - [12/04/2014 23:28:53] AdwCleaner[R1].txt - [2680 octets] - [24/04/2014 07:32:59] AdwCleaner[R2].txt - [6358 octets] - [17/05/2014 21:22:14] AdwCleaner[R3].txt - [1334 octets] - [24/05/2014 16:40:40] AdwCleaner[S0].txt - [7399 octets] - [12/04/2014 23:35:22] AdwCleaner[S1].txt - [2432 octets] - [24/04/2014 08:47:31] AdwCleaner[S2].txt - [5435 octets] - [17/05/2014 21:23:43] AdwCleaner[S3].txt - [1255 octets] - [24/05/2014 16:41:57] ########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1315 octets] ########## Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 24.05.2014 Suchlauf-Zeit: 16:50:05 Logdatei: MBAM-Log.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.05.24.04 Rootkit Datenbank: v2014.05.21.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Don Corleone Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 357998 Verstrichene Zeit: 14 Min, 17 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 3 PUP.Optional.Tarma.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{EE66F03D-E065-66F3-9920-37811D273AFF}, In Quarantäne, [6bc91540b5c691a57c62c580c040ab55], PUP.Optional.Tarma.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{C5C85724-615D-2E38-2966-F552511FC3D5}, In Quarantäne, [0c28520398e3e0563da165e0b8488779], PUP.Optional.Tarma.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\fed57268-80f9-48ed-9370-7748e7badae2, In Quarantäne, [f143ef6686f5a0965589182d52ae2ad6], Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 1 PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[5ada391c75062c0a1d67be983ec660a0] Ordner: 0 (No malicious items detected) Dateien: 5 PUP.Optional.Tarma.A, C:\ProgramData\InstallMate\{50D3FE05-AE5E-4E39-ACD2-E67C8B30DCF3}\Setup.exe, In Quarantäne, [6bc91540b5c691a57c62c580c040ab55], PUP.Optional.Tarma.A, C:\ProgramData\InstallMate\{CB1A1D77-846C-4B90-A97B-CC4E10F93F81}\Setup.exe, In Quarantäne, [0c28520398e3e0563da165e0b8488779], PUP.Optional.Tarma.A, C:\ProgramData\InstallMate\{FC44BFEB-2799-492C-ABC7-6FBB27A79D1D}\Setup.exe, In Quarantäne, [f143ef6686f5a0965589182d52ae2ad6], PUP.Optional.OneInstaller, C:\Users\Don Corleone\Desktop\Foofind-Download-Manager_0.3-20140421.exe, In Quarantäne, [0d27dd78344792a488fc1e4ae31e926e], PUP.Optional.OpenCandy, C:\Users\Don Corleone\Downloads\DTLite4491-0356.exe, In Quarantäne, [df557dd8ed8e0b2b4b1ddb9f7a8a5da3], Physische Sektoren: 0 (No malicious items detected) (end) Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Home Premium x64 Ran by Don Corleone on 24.05.2014 at 22:00:09,32 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-18\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_USERS\S-1-5-21-1672272528-3360620030-3742580433-1000\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\\Start Page Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\drivergenius" Successfully deleted: [Folder] "C:\Users\Don Corleone\appdata\locallow\boost_interprocess" Successfully deleted: [Folder] "C:\ProgramData\Microsoft\Windows\Start Menu\Programs\driver genius" ~~~ FireFox Emptied folder: C:\Users\Don Corleone\AppData\Roaming\mozilla\firefox\profiles\sps3luce.default-1400314111250\minidumps [2 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 24.05.2014 at 22:08:12,47 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 24-05-2014 1 Ran by Don Corleone (administrator) on DONCORLEONE-PC on 24-05-2014 22:16:22 Running from C:\Users\Don Corleone\Desktop Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe (SANDBOXIE L.T.D) D:\Programme\Windows Sandbox\SbieSvc.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) D:\Programme\AVAST Software\Avast\AvastSvc.exe () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe (CyberLink) D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe (CyberLink) D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe (Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe (AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe () C:\ProgramData\Internet Manager\OnlineUpdate\LiveUpd.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVAST Software) D:\Programme\AVAST Software\Avast\AvastUI.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Atheros) C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Safer-Networking Ltd.) D:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Microsoft Corporation) C:\Windows\System32\UI0Detect.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767200 2014-04-17] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [AvastUI.exe] => D:\Programme\AVAST Software\Avast\AvastUI.exe [3873704 2014-05-11] (AVAST Software) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2014-04-03] (DivX, LLC) HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2014-01-10] () Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55360 2014-05-15] (Raptr, Inc) HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [1967616 2014-04-17] (AMD) HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\Policies\Explorer: [NoAutoTrayNotify] 0 HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf16-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf25-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bfb2-405f-11e3-8a38-dc0ea10ddbd3} - F:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {a391a184-e16a-11e3-b674-dc0ea10ddbd3} - G:\raf-risen_hd_ce.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {e48290c6-4099-11e2-8d62-dc0ea10ddbd3} - G:\CTT-Startmenu.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xE207433E9241CF01 BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programme\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - D:\Programme\ARC Client\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.22.0.cab Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{2A812DA1-111F-4EDA-AE7C-93F4568EE599}: [NameServer]10.74.210.210 10.74.210.211 Tcpip\..\Interfaces\{4291DCC6-2FBC-4719-A60E-52E6D90A8716}: [NameServer]10.74.210.210 10.74.210.211 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_206.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - D:\Programme\ARC Client\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - D:\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - D:\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Don Corleone\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-18] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - D:\Programme\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - D:\Programme\AVAST Software\Avast\WebRep\FF [2014-03-31] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR Plugin: (Shockwave Flash) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Plus Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll No File CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Plugin: (Google Update) - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (Uplay PC) - D:\Programme\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft) CHR Extension: (Google Drive) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-01-26] CHR Extension: (YouTube) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-01-26] CHR Extension: (Google-Suche) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-01-26] CHR Extension: (YTBookMaarK) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbgaldchpdlibgibolafkiheflddbicf [2014-02-17] CHR Extension: (avast! Online Security) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-03-31] CHR Extension: (Google Wallet) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-29] CHR Extension: (Google Mail) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-01-26] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - D:\Programme\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-11] ==================== Services (Whitelisted) ================= S3 ArcService; D:\Programme\ARC Client\Arc\ArcService.exe [88400 2014-02-24] (Perfect World Entertainment Inc) R2 avast! Antivirus; D:\Programme\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-11] (AVAST Software) R2 CLHNServiceForPowerDVD; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [83240 2011-08-24] () R2 CyberLink PowerDVD 11.0 Monitor Service; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [75048 2011-09-02] (CyberLink) R2 CyberLink PowerDVD 11.0 Service; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [292136 2011-09-02] (CyberLink) R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [868224 2010-10-29] (Acer Incorporated) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2011-06-17] () S2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated) S3 MatSvc; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [343856 2011-06-13] (Microsoft Corporation) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [4249088 2014-03-06] (A-Volute) R2 SbieSvc; D:\Programme\Windows Sandbox\SbieSvc.exe [123664 2012-12-16] (SANDBOXIE L.T.D) S2 SDScannerService; D:\Programme\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) S2 SDUpdateService; D:\Programme\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; D:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S3 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation) R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [15888 2013-02-11] (Intel(R) Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe [57344 2011-08-10] (Atheros) S3 SandraAgentSrv; F:\Programme\SiSoftware Sandra Lite 2014.SP2\RpcAgentSrv.exe [X] ==================== Drivers (Whitelisted) ==================== R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-11] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-11] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-11] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-11] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-15] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-15] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-15] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-11] () S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [211456 2013-06-05] () S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-22] (Disc Soft Ltd) S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [41032 2013-05-23] (ThreatTrack Security) R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-02-13] (GFI Software) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [238080 2012-04-23] (Huawei Technologies Co., Ltd.) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-03-22] (Intel Corporation) R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [25448 2013-01-07] (Intel Corporation) S3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2013-04-09] ( ) S3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1989504 2013-04-09] (Creative Technology Ltd.) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-03] (Qualcomm Atheros Co., Ltd.) S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [35328 2013-06-05] () S2 lirsgt; C:\Windows\SysWOW64\DRIVERS\lirsgt.sys [18048 2013-06-05] () R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-03-20] (Intel Corporation) R2 ntk_PowerDVD; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys [75248 2011-08-24] (Cyberlink Corp.) R3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [40696 2014-03-06] (Windows (R) Win 7 DDK provider) R3 SbieDrv; D:\Programme\Windows Sandbox\SbieDrv.sys [202632 2012-12-16] (SANDBOXIE L.T.D) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [44344 2013-04-09] (Synaptics Incorporated) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2609784 2013-04-09] (Sunplus Technology) S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1307648 2011-03-31] (C-Media Electronics Inc) S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [113952 2014-02-25] (Oracle Corporation) S3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [10368 2012-12-07] () R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\NavFilter\000.fcl [148976 2011-09-02] (CyberLink Corp.) S3 SANDRA; \??\F:\Programme\SiSoftware Sandra Lite 2014.SP2\WNt500x64\Sandra.sys [X] S3 TVICPORT; \??\C:\Windows\system32\DRIVERS\TVICPORT.SYS [X] S3 XFDriver64; \??\C:\Program Files (x86)\Xfire2\XFDriver64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-24 22:16 - 2014-05-24 22:16 - 00000000 ____D () C:\Users\Don Corleone\Desktop\FRST-OlderVersion 2014-05-24 21:55 - 2014-05-24 22:10 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Report 2014-05-24 21:52 - 2014-05-24 21:52 - 04320054 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap (2).bmp 2014-05-24 16:51 - 2014-05-24 16:51 - 01016261 _____ (Thisisu) C:\Users\Don Corleone\Desktop\JRT.exe 2014-05-24 16:39 - 2014-05-24 21:56 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-24 16:39 - 2014-05-24 16:39 - 01326389 _____ () C:\Users\Don Corleone\Desktop\adwcleaner_3.210.exe 2014-05-24 16:39 - 2014-05-24 16:39 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-24 16:39 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-24 16:39 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-24 16:29 - 2014-05-24 16:30 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Don Corleone\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-24 16:27 - 2014-05-24 16:31 - 100273008 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\directx_Jun2010redist.exe 2014-05-24 16:27 - 2014-05-24 16:27 - 00292184 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\dxwebsetup.exe 2014-05-23 23:55 - 2014-05-23 23:55 - 03434761 _____ () C:\Users\Don Corleone\Downloads\tweaking.com_windows_repair_aio.zip 2014-05-23 23:23 - 2014-05-23 23:23 - 01003160 _____ (EFSoftware) C:\Users\Don Corleone\Downloads\EF_Process_Manager_6.50_64.exe 2014-05-23 19:36 - 2014-05-23 19:36 - 00380416 _____ () C:\Users\Don Corleone\Downloads\gjb83f0t.exe 2014-05-23 19:21 - 2014-05-23 19:29 - 00069771 _____ () C:\Users\Don Corleone\Desktop\Addition.txt 2014-05-23 19:20 - 2014-05-24 22:16 - 00021601 _____ () C:\Users\Don Corleone\Desktop\FRST.txt 2014-05-23 19:20 - 2014-05-24 22:16 - 00000000 ____D () C:\FRST 2014-05-23 19:18 - 2014-05-24 22:16 - 02066432 _____ (Farbar) C:\Users\Don Corleone\Desktop\FRST64.exe 2014-05-23 17:21 - 2014-05-23 17:25 - 00000000 ____D () C:\Users\Don Corleone\Documents\HospitalTycoon 2014-05-23 17:20 - 2014-05-23 17:20 - 00000794 _____ () C:\Users\Don Corleone\Desktop\Hospital Tycoon.lnk 2014-05-23 17:20 - 2014-05-23 17:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Codemasters 2014-05-23 16:41 - 2014-05-23 16:42 - 47208309 _____ () C:\Users\Don Corleone\Downloads\3dgamemaker.zip 2014-05-23 15:36 - 2014-05-23 16:34 - 14151680 _____ () C:\Users\Don Corleone\AppData\Roaming\Sandra.mdb 2014-05-23 14:51 - 2014-05-23 14:51 - 00000540 _____ () C:\Windows\WMFDist64.log 2014-05-23 14:48 - 2014-05-23 14:48 - 00000845 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP2.lnk 2014-05-23 14:48 - 2014-05-23 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2014-05-23 14:43 - 2014-05-23 14:46 - 00000000 ____D () C:\Users\Don Corleone\Downloads\Systemprogramme 2014-05-23 14:43 - 2014-05-23 14:45 - 69069552 _____ (SiSoftware ) C:\Users\Don Corleone\Downloads\san2025.exe 2014-05-23 14:39 - 2014-05-23 14:39 - 00000017 _____ () C:\Users\Don Corleone\AppData\Local\resmon.resmoncfg 2014-05-23 14:13 - 2014-05-23 14:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepSilver 2014-05-22 19:56 - 2014-05-22 19:56 - 00003035 _____ () C:\Users\Don Corleone\Desktop\Stadtbahn Simulator Düsseldorf.lnk 2014-05-22 19:56 - 2014-05-22 19:56 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stadtbahn Simulator Düsseldorf 2014-05-22 17:21 - 2014-05-22 17:21 - 00000000 ____D () C:\Users\Don Corleone\Documents\Atari 2014-05-22 17:16 - 2014-05-22 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari 2014-05-22 07:07 - 2014-05-22 07:07 - 00000000 ____D () C:\Users\Don Corleone\Documents\Stronghold 3 2014-05-22 06:58 - 2014-05-22 06:58 - 00000927 _____ () C:\Users\Public\Desktop\Stronghold 3 Gold.lnk 2014-05-22 06:44 - 2014-05-22 06:44 - 00000791 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk 2014-05-22 06:41 - 2014-05-22 06:41 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-05-22 06:30 - 2014-05-22 06:30 - 00000000 ____D () C:\Users\Don Corleone\Documents\DIE SIEDLER - Aufstieg eines Königreichs 2014-05-22 01:45 - 2014-05-22 01:50 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Game Dev Tycoon - Steam 2014-05-22 01:29 - 2014-05-22 01:29 - 11803391 _____ () C:\Users\Don Corleone\Desktop\The Godfather - Main Title (The Godfather Waltz) - HQ - Nino Rota (480p).mp4 2014-05-22 01:27 - 2014-05-22 01:27 - 11945569 _____ () C:\Users\Don Corleone\Desktop\The Godfather Love Theme (480p).mp4 2014-05-21 07:13 - 2014-05-21 07:13 - 00004096 _____ () C:\Windows\d3dx.dat 2014-05-21 07:13 - 2014-05-21 07:13 - 00000000 ____D () C:\Users\Public\Documents\Deutschland Spielt 2014-05-21 04:44 - 2014-05-21 04:44 - 00000000 ____D () C:\Users\Don Corleone\Downloads\AC2_THEME 2014-05-21 04:43 - 2014-05-21 04:44 - 02923720 _____ () C:\Users\Don Corleone\Downloads\AC2_THEME.ZIP 2014-05-19 22:00 - 2014-05-19 22:04 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller.exe 2014-05-19 18:24 - 2014-05-19 18:24 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap.bmp 2014-05-19 17:42 - 2014-05-19 17:42 - 00000823 _____ () C:\Users\Don Corleone\Desktop\Uplay.lnk 2014-05-19 17:40 - 2014-05-19 17:41 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller_4.5.0.exe 2014-05-19 17:03 - 2014-05-19 17:03 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection(1).msi 2014-05-19 16:33 - 2014-05-24 16:36 - 00232432 _____ () C:\Windows\DirectX.log 2014-05-17 21:24 - 2014-05-24 21:54 - 00007822 _____ () C:\Windows\PFRO.log 2014-05-17 21:24 - 2014-05-24 21:54 - 00001120 _____ () C:\Windows\setupact.log 2014-05-17 21:24 - 2014-05-17 21:24 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-17 21:22 - 2014-05-17 21:22 - 01325827 _____ () C:\Users\Don Corleone\Downloads\adwcleaner_3.208.exe 2014-05-17 21:22 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-05-17 10:08 - 2014-05-17 10:08 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Alte Firefox-Daten 2014-05-17 09:18 - 2014-05-17 09:18 - 23792584 _____ (Foofind Labs, S.L. ) C:\Users\Don Corleone\Downloads\foofind_download_manager_redist.exe 2014-05-17 09:18 - 2014-05-17 09:18 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Foofind Download Manager 2014-05-17 04:21 - 2014-05-17 04:21 - 01001280 _____ (DivX, LLC) C:\Users\Don Corleone\Desktop\DivXInstaller.exe 2014-05-15 05:23 - 2014-05-15 05:23 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 05:21 - 2014-05-08 09:14 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-15 05:21 - 2014-05-08 08:37 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-15 05:21 - 2014-05-08 07:52 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-15 05:21 - 2014-05-08 07:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-15 05:21 - 2014-05-08 06:57 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-15 05:21 - 2014-05-08 06:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-15 05:10 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-15 05:10 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-15 05:10 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-15 05:10 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-15 05:09 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-15 05:09 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-15 05:09 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-15 05:09 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-15 05:09 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-15 05:09 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-15 05:09 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-15 05:09 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-15 05:09 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-15 05:09 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-15 05:09 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-15 05:09 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-15 05:09 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-11 02:40 - 2014-05-11 02:40 - 00062044 _____ () C:\Windows\SysWOW64\CCCInstall_201405110240294523.log 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\ATI 2014-05-11 02:35 - 2014-05-11 02:35 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2014-05-11 02:34 - 2014-05-24 21:55 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Raptr 2014-05-11 02:31 - 2014-05-11 02:40 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-05-11 02:31 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files\ATI 2014-05-11 02:30 - 2014-05-11 02:39 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-05-11 02:27 - 2014-04-18 05:43 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 08866928 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 08010968 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 07520200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 06799688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 06796592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 01117184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00099520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-05-11 02:27 - 2014-04-18 05:36 - 15376384 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-05-11 02:27 - 2014-04-18 05:23 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-05-11 02:27 - 2014-04-18 05:22 - 28685824 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-05-11 02:27 - 2014-04-18 05:19 - 24107520 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-05-11 02:27 - 2014-04-18 05:17 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-05-11 02:27 - 2014-04-18 05:17 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-05-11 02:27 - 2014-04-18 05:13 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-05-11 02:27 - 2014-04-18 05:13 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-05-11 02:27 - 2014-04-18 05:12 - 27907584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-05-11 02:27 - 2014-04-18 05:12 - 05442048 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-05-11 02:27 - 2014-04-18 04:58 - 04358656 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-05-11 02:27 - 2014-04-18 04:51 - 23409152 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-05-11 02:27 - 2014-04-18 04:45 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-05-11 02:27 - 2014-04-18 04:45 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-05-11 02:27 - 2014-04-18 04:42 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-05-11 02:27 - 2014-04-18 04:33 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-05-11 02:27 - 2014-04-18 04:33 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-05-11 02:27 - 2014-04-18 04:30 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-05-11 02:27 - 2014-04-18 04:30 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-05-11 02:27 - 2014-04-18 04:29 - 00586240 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-05-11 02:27 - 2014-04-18 04:29 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-05-11 02:27 - 2014-04-18 04:28 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-05-11 02:27 - 2014-04-18 04:28 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-05-11 02:27 - 2014-04-18 04:21 - 00806912 _____ (AMD) C:\Windows\system32\coinst_14.100.dll 2014-05-11 02:27 - 2014-04-18 04:17 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-05-11 02:27 - 2014-04-18 04:09 - 01177600 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-05-11 02:27 - 2014-04-18 04:09 - 00848896 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00638976 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-05-11 02:27 - 2014-04-18 04:07 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-05-11 02:27 - 2014-04-18 04:04 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-05-11 02:27 - 2014-04-10 20:58 - 00082128 _____ () C:\Windows\system32\ativce02.dat 2014-05-11 02:27 - 2014-04-01 01:06 - 00234804 _____ () C:\Windows\system32\ativvaxy_cik.dat 2014-05-11 02:27 - 2014-04-01 01:04 - 00233008 _____ () C:\Windows\system32\ativvaxy_cik_nd.dat 2014-05-11 02:27 - 2014-02-06 18:45 - 00134192 _____ () C:\Windows\system32\ativce03.dat 2014-05-11 02:27 - 2014-01-16 20:00 - 00273712 _____ () C:\Windows\system32\ativvaxy_vi_nd.dat 2014-05-11 02:27 - 2014-01-16 19:59 - 00275124 _____ () C:\Windows\system32\ativvaxy_vi.dat 2014-05-11 02:27 - 2014-01-16 11:34 - 00723841 _____ () C:\Windows\system32\atiicdxx.dat 2014-05-11 02:27 - 2013-07-05 13:13 - 00532720 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-05-11 02:27 - 2013-07-05 13:13 - 00532720 _____ () C:\Windows\system32\atiapfxx.blb 2014-05-11 02:27 - 2013-07-05 13:10 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-05-11 02:27 - 2013-04-10 18:34 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe 2014-05-11 02:27 - 2013-04-10 18:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Program Files\Realtek 2014-05-11 02:12 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-05-11 02:12 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-05-11 02:12 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-05-11 02:12 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-05-11 02:12 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-05-11 02:12 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-05-11 02:12 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-05-11 02:12 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-05-11 02:12 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-05-11 02:12 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-05-11 02:11 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-05-11 02:11 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-05-11 02:11 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-05-11 02:11 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-05-11 02:11 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-05-11 02:11 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-05-11 02:11 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-05-11 02:11 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-05-11 02:11 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-05-11 02:11 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-05-11 02:11 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-05-11 02:11 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-05-11 02:11 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-05-11 02:11 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-05-11 02:11 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-05-11 02:11 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-05-11 02:10 - 2014-05-11 02:10 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-05-11 02:10 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-05-11 02:10 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-05-11 02:10 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-05-11 02:10 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-05-11 02:10 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-05-11 02:10 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-05-11 02:09 - 2014-05-11 02:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-05-11 02:09 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-05-11 02:09 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-05-11 02:08 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-05-11 02:08 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-05-11 02:08 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-05-11 02:08 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-05-11 02:08 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-05-11 02:07 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-05-11 02:06 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-05-11 02:06 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-05-11 02:06 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-05-11 02:06 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-05-11 02:06 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-05-11 02:06 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-05-11 02:06 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-05-11 02:06 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-05-11 02:06 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-05-11 01:35 - 2014-05-11 01:35 - 00000998 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-05-11 01:33 - 2014-05-11 01:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-05-11 01:33 - 2014-05-11 01:33 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-05-10 23:45 - 2014-05-10 23:45 - 00001438 _____ () C:\Users\Don Corleone\Desktop\Razer Synapse 2.0 und Razer Surround 7.1.lnk 2014-05-10 23:42 - 2014-05-10 23:42 - 00000000 ____D () C:\ProgramData\RzMaelstromVAD_1.1.52.1675 2014-05-10 23:39 - 2014-05-10 23:39 - 00002089 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-10 23:14 - 2012-05-15 07:13 - 00144896 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-05-10 23:14 - 2012-05-15 06:20 - 00104448 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-05-10 23:12 - 2014-05-10 23:12 - 00000000 ____D () C:\Intel 2014-05-10 22:38 - 2014-05-10 22:38 - 00001171 _____ () C:\Users\Don Corleone\Desktop\Driver Genius.lnk 2014-05-10 21:11 - 2014-05-10 21:11 - 00000000 ____D () C:\Users\Don Corleone\SystemRequirementsLab 2014-05-10 13:49 - 2014-05-10 13:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-08 20:33 - 2014-05-08 20:33 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neues Textdokument (2).txt 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\Program Files (x86)\vLite 2014-05-08 12:10 - 2014-05-08 12:13 - 00000000 ____D () C:\Users\Don Corleone\Documents\New Unity Project 2014-05-06 19:51 - 2014-05-06 19:51 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Tritton 2014-05-06 19:48 - 2014-05-06 19:48 - 00000000 ____D () C:\Program Files\Tritton 2014-05-03 21:02 - 2014-05-03 21:02 - 00000000 ____D () C:\Users\Don Corleone\Documents\Activision 2014-05-03 19:57 - 2014-05-03 19:57 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-03 19:57 - 2014-05-03 19:57 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-02 23:45 - 2014-05-10 23:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-02 23:44 - 2014-05-10 23:41 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-02 13:36 - 2014-05-02 13:36 - 00117223 _____ () C:\Users\Don Corleone\Documents\Unbenannt (2).wma 2014-05-02 13:35 - 2014-05-02 13:35 - 00076813 _____ () C:\Users\Don Corleone\Documents\Unbenannt.wma 2014-05-01 01:50 - 2014-03-01 07:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-05-01 01:50 - 2014-03-01 06:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-01 01:50 - 2014-03-01 06:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-01 01:50 - 2014-03-01 06:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-05-01 01:50 - 2014-03-01 06:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-01 01:50 - 2014-03-01 06:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-01 01:50 - 2014-03-01 06:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-01 01:50 - 2014-03-01 06:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-01 01:50 - 2014-03-01 06:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-05-01 01:50 - 2014-03-01 06:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-05-01 01:50 - 2014-03-01 06:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-05-01 01:50 - 2014-03-01 06:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-01 01:50 - 2014-03-01 06:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-01 01:50 - 2014-03-01 05:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-01 01:50 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-01 01:50 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-05-01 01:50 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-01 01:50 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-01 01:50 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-01 01:50 - 2014-03-01 05:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-01 01:50 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-01 01:50 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-05-01 01:50 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-05-01 01:50 - 2014-03-01 05:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-01 01:50 - 2014-03-01 05:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-01 01:50 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-01 01:50 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-01 01:50 - 2014-03-01 05:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-01 01:50 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-01 01:50 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-05-01 01:50 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-01 01:50 - 2014-03-01 04:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-01 01:50 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-01 01:50 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-01 01:50 - 2014-03-01 04:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-01 01:50 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-05-01 01:49 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-05-01 01:49 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-05-01 01:49 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-05-01 01:49 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-05-01 01:48 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-05-01 01:48 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-05-01 01:48 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-05-01 01:48 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-05-01 01:48 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-05-01 01:48 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-05-01 01:48 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-05-01 01:46 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-05-01 01:46 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-05-01 01:46 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-05-01 01:46 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-05-01 01:46 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-05-01 01:46 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-05-01 01:46 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-05-01 01:46 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-05-01 01:46 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-05-01 01:43 - 2014-05-01 01:48 - 00004238 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log 2014-04-24 07:39 - 2014-04-24 07:39 - 00000000 ____D () C:\Windows\ERUNT 2014-04-24 02:38 - 2014-04-24 02:38 - 00004511 _____ () C:\STF88CF.tmp ==================== One Month Modified Files and Folders ======= 2014-05-24 22:16 - 2014-05-24 22:16 - 00000000 ____D () C:\Users\Don Corleone\Desktop\FRST-OlderVersion 2014-05-24 22:16 - 2014-05-23 19:20 - 00021601 _____ () C:\Users\Don Corleone\Desktop\FRST.txt 2014-05-24 22:16 - 2014-05-23 19:20 - 00000000 ____D () C:\FRST 2014-05-24 22:16 - 2014-05-23 19:18 - 02066432 _____ (Farbar) C:\Users\Don Corleone\Desktop\FRST64.exe 2014-05-24 22:10 - 2014-05-24 21:55 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Report 2014-05-24 22:04 - 2012-12-06 23:55 - 31684285 _____ () C:\Windows\WindowsUpdate.log 2014-05-24 22:03 - 2009-07-14 06:45 - 00023520 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-24 22:03 - 2009-07-14 06:45 - 00023520 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-24 21:56 - 2014-05-24 16:39 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-24 21:55 - 2014-05-11 02:34 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Raptr 2014-05-24 21:54 - 2014-05-17 21:24 - 00007822 _____ () C:\Windows\PFRO.log 2014-05-24 21:54 - 2014-05-17 21:24 - 00001120 _____ () C:\Windows\setupact.log 2014-05-24 21:54 - 2013-05-01 05:36 - 00000000 ____D () C:\Windows\DEA314C409294250BC9298E4C105F28D.TMP 2014-05-24 21:54 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-24 21:52 - 2014-05-24 21:52 - 04320054 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap (2).bmp 2014-05-24 21:51 - 2013-01-26 03:04 - 00001148 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA.job 2014-05-24 16:51 - 2014-05-24 16:51 - 01016261 _____ (Thisisu) C:\Users\Don Corleone\Desktop\JRT.exe 2014-05-24 16:42 - 2014-04-12 23:28 - 00000000 ____D () C:\AdwCleaner 2014-05-24 16:39 - 2014-05-24 16:39 - 01326389 _____ () C:\Users\Don Corleone\Desktop\adwcleaner_3.210.exe 2014-05-24 16:39 - 2014-05-24 16:39 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-01-28 13:57 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-24 16:37 - 2013-01-12 03:36 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-05-24 16:36 - 2014-05-19 16:33 - 00232432 _____ () C:\Windows\DirectX.log 2014-05-24 16:31 - 2014-05-24 16:27 - 100273008 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\directx_Jun2010redist.exe 2014-05-24 16:30 - 2014-05-24 16:29 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Don Corleone\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-24 16:27 - 2014-05-24 16:27 - 00292184 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\dxwebsetup.exe 2014-05-24 15:01 - 2014-03-06 03:03 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\vlc 2014-05-24 14:38 - 2013-01-23 04:16 - 00003982 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F848FC5F-70B1-4207-B3CC-1E729BEFD9A0} 2014-05-24 14:34 - 2014-03-31 07:25 - 00004174 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-05-23 23:55 - 2014-05-23 23:55 - 03434761 _____ () C:\Users\Don Corleone\Downloads\tweaking.com_windows_repair_aio.zip 2014-05-23 23:23 - 2014-05-23 23:23 - 01003160 _____ (EFSoftware) C:\Users\Don Corleone\Downloads\EF_Process_Manager_6.50_64.exe 2014-05-23 19:37 - 2014-03-02 03:33 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\CrashDumps 2014-05-23 19:36 - 2014-05-23 19:36 - 00380416 _____ () C:\Users\Don Corleone\Downloads\gjb83f0t.exe 2014-05-23 19:29 - 2014-05-23 19:21 - 00069771 _____ () C:\Users\Don Corleone\Desktop\Addition.txt 2014-05-23 17:25 - 2014-05-23 17:21 - 00000000 ____D () C:\Users\Don Corleone\Documents\HospitalTycoon 2014-05-23 17:20 - 2014-05-23 17:20 - 00000794 _____ () C:\Users\Don Corleone\Desktop\Hospital Tycoon.lnk 2014-05-23 17:20 - 2014-05-23 17:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Codemasters 2014-05-23 16:47 - 2012-12-11 23:28 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-05-23 16:42 - 2014-05-23 16:41 - 47208309 _____ () C:\Users\Don Corleone\Downloads\3dgamemaker.zip 2014-05-23 16:34 - 2014-05-23 15:36 - 14151680 _____ () C:\Users\Don Corleone\AppData\Roaming\Sandra.mdb 2014-05-23 14:51 - 2014-05-23 14:51 - 00000540 _____ () C:\Windows\WMFDist64.log 2014-05-23 14:48 - 2014-05-23 14:48 - 00000845 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP2.lnk 2014-05-23 14:48 - 2014-05-23 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2014-05-23 14:48 - 2013-02-11 11:32 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Windows Live 2014-05-23 14:46 - 2014-05-23 14:43 - 00000000 ____D () C:\Users\Don Corleone\Downloads\Systemprogramme 2014-05-23 14:45 - 2014-05-23 14:43 - 69069552 _____ (SiSoftware ) C:\Users\Don Corleone\Downloads\san2025.exe 2014-05-23 14:39 - 2014-05-23 14:39 - 00000017 _____ () C:\Users\Don Corleone\AppData\Local\resmon.resmoncfg 2014-05-23 14:13 - 2014-05-23 14:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepSilver 2014-05-23 14:13 - 2013-06-05 17:41 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-05-22 19:56 - 2014-05-22 19:56 - 00003035 _____ () C:\Users\Don Corleone\Desktop\Stadtbahn Simulator Düsseldorf.lnk 2014-05-22 19:56 - 2014-05-22 19:56 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stadtbahn Simulator Düsseldorf 2014-05-22 17:21 - 2014-05-22 17:21 - 00000000 ____D () C:\Users\Don Corleone\Documents\Atari 2014-05-22 17:16 - 2014-05-22 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari 2014-05-22 07:07 - 2014-05-22 07:07 - 00000000 ____D () C:\Users\Don Corleone\Documents\Stronghold 3 2014-05-22 06:58 - 2014-05-22 06:58 - 00000927 _____ () C:\Users\Public\Desktop\Stronghold 3 Gold.lnk 2014-05-22 06:58 - 2012-12-14 23:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios 2014-05-22 06:44 - 2009-07-14 19:58 - 00736716 _____ () C:\Windows\system32\perfh007.dat 2014-05-22 06:44 - 2009-07-14 19:58 - 00160462 _____ () C:\Windows\system32\perfc007.dat 2014-05-22 06:44 - 2009-07-14 07:13 - 01709418 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-22 06:42 - 2013-01-23 04:12 - 00003160 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-05-22 06:41 - 2014-05-22 06:41 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-05-22 06:30 - 2014-05-22 06:30 - 00000000 ____D () C:\Users\Don Corleone\Documents\DIE SIEDLER - Aufstieg eines Königreichs 2014-05-22 04:51 - 2013-01-26 03:04 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core.job 2014-05-22 01:50 - 2014-05-22 01:45 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Game Dev Tycoon - Steam 2014-05-21 22:38 - 2014-03-02 06:42 - 00000000 ____D () C:\Program Files (x86)\Raptr 2014-05-21 07:13 - 2014-05-21 07:13 - 00004096 _____ () C:\Windows\d3dx.dat 2014-05-21 07:13 - 2014-05-21 07:13 - 00000000 ____D () C:\Users\Public\Documents\Deutschland Spielt 2014-05-21 04:44 - 2014-05-21 04:44 - 00000000 ____D () C:\Users\Don Corleone\Downloads\AC2_THEME 2014-05-21 04:44 - 2014-05-21 04:43 - 02923720 _____ () C:\Users\Don Corleone\Downloads\AC2_THEME.ZIP 2014-05-19 22:04 - 2014-05-19 22:00 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller.exe 2014-05-19 18:24 - 2014-05-19 18:24 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap.bmp 2014-05-19 17:42 - 2014-05-19 17:42 - 00000823 _____ () C:\Users\Don Corleone\Desktop\Uplay.lnk 2014-05-19 17:42 - 2012-12-07 22:27 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Ubisoft Game Launcher 2014-05-19 17:41 - 2014-05-19 17:40 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller_4.5.0.exe 2014-05-19 17:14 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-19 17:04 - 2014-03-02 04:15 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-05-19 17:03 - 2014-05-19 17:03 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection(1).msi 2014-05-17 21:24 - 2014-05-17 21:24 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-17 21:23 - 2013-01-26 03:15 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-17 21:23 - 2012-12-17 17:47 - 00000969 _____ () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-17 21:23 - 2012-12-07 00:58 - 00001025 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-17 21:22 - 2014-05-17 21:22 - 01325827 _____ () C:\Users\Don Corleone\Downloads\adwcleaner_3.208.exe 2014-05-17 10:08 - 2014-05-17 10:08 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Alte Firefox-Daten 2014-05-17 09:18 - 2014-05-17 09:18 - 23792584 _____ (Foofind Labs, S.L. ) C:\Users\Don Corleone\Downloads\foofind_download_manager_redist.exe 2014-05-17 09:18 - 2014-05-17 09:18 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Foofind Download Manager 2014-05-17 09:15 - 2012-12-07 00:01 - 00000000 ___RD () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-17 04:24 - 2014-02-18 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX 2014-05-17 04:24 - 2012-12-13 01:18 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-05-17 04:24 - 2012-12-13 01:16 - 00000000 ____D () C:\ProgramData\DivX 2014-05-17 04:21 - 2014-05-17 04:21 - 01001280 _____ (DivX, LLC) C:\Users\Don Corleone\Desktop\DivXInstaller.exe 2014-05-17 00:54 - 2009-07-14 07:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-16 01:22 - 2014-03-02 14:45 - 00000000 ____D () C:\Windows\rescache 2014-05-15 15:45 - 2014-03-31 07:25 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2014-05-15 15:45 - 2014-03-31 07:25 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-05-15 15:45 - 2014-03-31 07:25 - 00085328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-05-15 15:43 - 2012-12-07 00:01 - 00000000 ___RD () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-15 15:40 - 2009-07-14 06:45 - 00439144 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-15 05:23 - 2014-05-15 05:23 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 05:19 - 2014-02-07 21:37 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-14 13:20 - 2012-12-07 02:19 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-12 07:26 - 2014-05-24 16:39 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-12 07:26 - 2014-05-24 16:39 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-12 07:25 - 2014-05-24 16:39 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-11 02:40 - 2014-05-11 02:40 - 00062044 _____ () C:\Windows\SysWOW64\CCCInstall_201405110240294523.log 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\ATI 2014-05-11 02:40 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-05-11 02:40 - 2012-12-07 03:30 - 00000000 ____D () C:\ProgramData\AMD 2014-05-11 02:40 - 2012-12-07 01:47 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\ATI 2014-05-11 02:40 - 2012-12-07 01:47 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\ATI 2014-05-11 02:39 - 2014-05-11 02:30 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-05-11 02:35 - 2014-05-11 02:35 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2014-05-11 02:31 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files\ATI 2014-05-11 02:31 - 2013-07-10 02:21 - 00000000 ____D () C:\ProgramData\Package Cache 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Program Files\Realtek 2014-05-11 02:10 - 2014-05-11 02:10 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-05-11 02:09 - 2014-05-11 02:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-05-11 02:04 - 2012-12-07 00:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-11 01:35 - 2014-05-11 01:35 - 00000998 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-05-11 01:33 - 2014-05-11 01:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-05-11 01:33 - 2014-05-11 01:33 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1400161518694 2014-05-11 01:33 - 2014-03-31 07:25 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1400161518694 2014-05-11 01:33 - 2014-03-31 07:25 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-05-11 01:33 - 2014-03-31 07:24 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-05-11 01:33 - 2014-03-31 07:24 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-05-11 00:02 - 2012-12-07 01:08 - 00113952 _____ () C:\Users\Don Corleone\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-10 23:45 - 2014-05-10 23:45 - 00001438 _____ () C:\Users\Don Corleone\Desktop\Razer Synapse 2.0 und Razer Surround 7.1.lnk 2014-05-10 23:42 - 2014-05-10 23:42 - 00000000 ____D () C:\ProgramData\RzMaelstromVAD_1.1.52.1675 2014-05-10 23:41 - 2014-05-02 23:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-10 23:41 - 2014-05-02 23:44 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-10 23:41 - 2013-02-12 23:37 - 00000000 ____D () C:\Windows\pss 2014-05-10 23:39 - 2014-05-10 23:39 - 00002089 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-10 23:39 - 2013-01-19 07:50 - 00000000 ____D () C:\ProgramData\Razer 2014-05-10 23:39 - 2012-12-18 20:17 - 00000000 ___RD () C:\Users\Don Corleone\Desktop\Spiele 2014-05-10 23:38 - 2013-06-27 21:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Razer 2014-05-10 23:14 - 2012-12-07 01:50 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-10 23:12 - 2014-05-10 23:12 - 00000000 ____D () C:\Intel 2014-05-10 23:12 - 2012-12-07 00:36 - 00000000 ____D () C:\Program Files\Intel 2014-05-10 22:39 - 2009-07-14 04:34 - 00001369 _____ () C:\Windows\system32\Drivers\etc\hosts.old 2014-05-10 21:19 - 2014-03-27 08:43 - 00000000 ____D () C:\Users\Don Corleone\Desktop\von chip 2014-05-10 21:11 - 2014-05-10 21:11 - 00000000 ____D () C:\Users\Don Corleone\SystemRequirementsLab 2014-05-10 21:11 - 2012-12-07 00:01 - 00000000 ____D () C:\Users\Don Corleone 2014-05-10 13:49 - 2014-05-10 13:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-09 08:14 - 2014-05-15 05:10 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-09 08:11 - 2014-05-15 05:10 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-08 18:27 - 2013-03-24 15:59 - 00000000 ____D () C:\Program Files (x86)\nLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\Program Files (x86)\vLite 2014-05-08 12:13 - 2014-05-08 12:10 - 00000000 ____D () C:\Users\Don Corleone\Documents\New Unity Project 2014-05-08 12:13 - 2013-10-24 21:04 - 00000000 ____D () C:\ProgramData\Unity 2014-05-08 09:14 - 2014-05-15 05:21 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-08 08:37 - 2014-05-15 05:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-08 07:52 - 2014-05-15 05:21 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-08 07:27 - 2014-05-15 05:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-08 06:57 - 2014-05-15 05:21 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-08 06:04 - 2014-05-15 05:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-06 19:51 - 2014-05-06 19:51 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Tritton 2014-05-06 19:48 - 2014-05-06 19:48 - 00000000 ____D () C:\Program Files\Tritton 2014-05-05 22:34 - 2013-04-16 17:21 - 00000000 ____D () C:\ProgramData\Steam 2014-05-04 17:12 - 2012-12-16 17:49 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-03 21:23 - 2013-08-01 23:33 - 00003347 _____ () C:\Windows\Cm106.ini.imi 2014-05-03 21:02 - 2014-05-03 21:02 - 00000000 ____D () C:\Users\Don Corleone\Documents\Activision 2014-05-03 21:02 - 2013-02-08 12:11 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Activision 2014-05-03 19:57 - 2014-05-03 19:57 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-03 19:57 - 2014-05-03 19:57 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-03 19:53 - 2012-12-07 02:22 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Adobe 2014-05-03 19:45 - 2014-04-08 15:44 - 00000663 _____ () C:\Users\Don Corleone\AppData\Roaming\MPQEditor.ini 2014-05-03 19:45 - 2014-04-08 15:43 - 00000000 ____D () C:\Program Files (x86)\SC2Allin1 2014-05-03 19:44 - 2012-12-18 20:17 - 00000000 ___RD () C:\Users\Don Corleone\Desktop\Programme 2014-05-03 19:36 - 2012-12-07 22:34 - 00000000 ____D () C:\ProgramData\Ubisoft 2014-05-03 19:20 - 2013-01-07 22:31 - 00000000 ____D () C:\ProgramData\Solidshield 2014-05-02 23:58 - 2014-03-02 13:21 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection.msi 2014-05-02 13:36 - 2014-05-02 13:36 - 00117223 _____ () C:\Users\Don Corleone\Documents\Unbenannt (2).wma 2014-05-02 13:35 - 2014-05-02 13:35 - 00076813 _____ () C:\Users\Don Corleone\Documents\Unbenannt.wma 2014-05-01 14:18 - 2013-05-20 04:52 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\StarTrekPC 2014-05-01 01:48 - 2014-05-01 01:43 - 00004238 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log 2014-05-01 01:43 - 2014-03-27 03:22 - 00000000 ____D () C:\Program Files (x86)\Java 2014-04-27 22:29 - 2013-04-08 19:48 - 00000000 ____D () C:\ProgramData\SecTaskMan 2014-04-24 07:39 - 2014-04-24 07:39 - 00000000 ____D () C:\Windows\ERUNT 2014-04-24 07:05 - 2013-07-10 02:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0 2014-04-24 07:03 - 2013-07-10 02:09 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-04-24 04:11 - 2012-12-15 04:17 - 00000000 ____D () C:\Users\Don Corleone\Documents\My Games 2014-04-24 02:38 - 2014-04-24 02:38 - 00004511 _____ () C:\STF88CF.tmp 2014-04-24 01:57 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF Some content of TEMP: ==================== C:\Users\Don Corleone\AppData\Local\Temp\20140517091718.754.exe C:\Users\Don Corleone\AppData\Local\Temp\BackupSetup.exe C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole9012939027421670543.dll C:\Users\Don Corleone\AppData\Local\Temp\Quarantine.exe C:\Users\Don Corleone\AppData\Local\Temp\ubi7984.tmp.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit testsigning: ==> Check for possible unsigned rootkit driver <===== ATTENTION! LastRegBack: 2014-05-19 19:28 ==================== End Of Log ============================ |
25.05.2014, 22:11 | #8 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen)Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-05-2014 1 Ran by Don Corleone at 2014-05-24 22:17:08 Running from C:\Users\Don Corleone\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Disabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 1.3M HD WebCam (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.3.6.01 - SunplusIT) 3D-Fahrschule (HKLM-x32\...\3D-Fahrschule) (Version: - ) 720+ User Interface (HKLM\...\{AD3320DC-2703-40EA-B0F6-1705C1A62A73}) (Version: 1.2.5 - Tritton) ACP Application (HKLM\...\{A2F0A6C6-350D-3C9C-DF7A-DE18C0606243}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.206 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Age of Wonders III (HKLM-x32\...\Steam App 226840) (Version: - Triumph Studios) AIDA64 Business Edition v3.20 (HKLM-x32\...\AIDA64 Business Edition_is1) (Version: 3.20 - FinalWire Ltd.) AKFQuiz (HKLM-x32\...\akfquiz) (Version: 4.4.1 - AKFoerster) AMD Accelerated Video Transcoding (HKLM-x32\...\{C7322AB9-5726-5538-1466-F0C4104DDB5F}) (Version: 13.20.100.31206 - Advanced Micro Devices, Inc.) AMD Accelerated Video Transcoding (Version: 13.10.100.30523 - Advanced Micro Devices, Inc.) Hidden AMD Accelerated Video Transcoding (Version: 13.30.100.40417 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0417.2226.38446 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{3FAEEEBE-48F4-84C1-2B49-96AE73E67E3E}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Catalyst Install Manager (HKLM\...\{9C8341F4-5BCC-9B8D-FB38-05DE3EA5DC38}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.80523.1654 - Advanced Micro Devices, Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.81206.1620 - Advanced Micro Devices, Inc.) Hidden AMD Steady Video Plug-In (HKLM\...\{723AEA0A-E9CF-44F7-AFE4-0617E8D4755A}) (Version: 2.06.0000 - AMD) AMD Steady Video Plug-In (HKLM\...\{833F5E6D-6E01-11D1-978E-6DFBCEF72570}) (Version: 2.06.0000 - AMD) AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) Hidden AMD Wireless Display v3.0 (Version: 1.0.0.15 - Advanced Micro Devices, Inc.) Hidden Any Video Converter 3.5.5 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) ArtMoney SE v7.41 (HKLM-x32\...\ArtMoney SE_is1) (Version: 7.41 - System SoftLab) Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.00 - Ubisoft) Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.00 - Ubisoft) Assassin's Creed II (HKLM-x32\...\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}) (Version: 1.01 - Ubisoft) Aufstieg des Hexenkönigs™ (HKLM-x32\...\{B931FB80-537A-4600-00AD-AC5DEDB6C25B}) (Version: - ) Avast License by ZeNiX [2012-06-29] (HKLM-x32\...\Avast_2050_ZeNiX [2012-06-29]_is1) (Version: - ) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2018 - Avast Software) BFME2 MOD SDK (HKLM-x32\...\{75569CDC-0C64-45C6-962E-C4A49F3C56DF}) (Version: 1.0.0 - Electronic Arts) Black & White® 2 (HKLM-x32\...\{D9E52CD1-9DF1-4A8A-9BDC-1E5E53982F2B}) (Version: 1.00.0000 - Lionhead Studios) Call of Duty(R) - World at War(TM) (HKLM-x32\...\InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}) (Version: 1.7 - Activision) Call of Duty(R) - World at War(TM) (x32 Version: 1.0 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.1 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.1 Patch (x32 Version: 1.1 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.2 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.2 Patch (x32 Version: 1.2 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.4 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.4 Patch (x32 Version: 1.4 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.4.1 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.4.1 Patch (x32 Version: 1.4.1 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.5 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.5 Patch (x32 Version: 1.5 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden CameraHelperMsi (x32 Version: 13.31.1038.0 - Logitech) Hidden Camtasia Studio 8 (HKLM-x32\...\{8F6F7194-0734-4CDA-8C04-6B766F2241A6}) (Version: 8.0.4.1060 - TechSmith Corporation) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.1219.1521.27485 - Ihr Firmenname) Hidden Catalyst Control Center (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0523.1654.28486 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0223.2239.40626 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2011.0524.2352.41027 - ATI) Hidden Catalyst Control Center Localization All (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden ccc-utility (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) Celtx (2.9.7) (HKLM-x32\...\Celtx (2.9.7)) (Version: 2.9.7 (de) - Greyfirst) Cheat Engine 6.2 (HKLM-x32\...\Cheat Engine 6.2_is1) (Version: - Dark Byte) com! Update Pack Builder 5.0.7 (HKLM-x32\...\com! Update Pack Builder_is1) (Version: - com! - Das Computer Magazin) Command & Conquer™ Alarmstufe Rot 3 Der Aufstand (HKLM-x32\...\{DDE59617-F59A-473B-BC4E-C2B81F6CD38D}) (Version: 1.0.1.0 - Electronic Arts) Common RTP 1.0 (HKLM-x32\...\RPGAdvocates_RTP_1.0) (Version: - ) Core Temp 1.0 RC5 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) CyberLink PowerDVD 11 (HKLM-x32\...\InstallShield_{F232C87C-6E92-4775-8210-DFE90B7777D9}) (Version: 11.0.2211.53 - CyberLink Corp.) CyberLink PowerDVD 11 (x32 Version: 11.0.2211.53 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Der VerkehrsGigant-Gold Edition (HKLM-x32\...\Der VerkehrsGigant-Gold Edition) (Version: - ) DH Driver Cleaner Professional Edition (HKLM-x32\...\Driver Cleaner Pro) (Version: Version 1.5 - Ruud Ketelaars) Die Schlacht um Mittelerde(tm) (HKLM-x32\...\{3F290582-3F4E-4B96-009C-E0BABAA40C42}) (Version: - ) Die Schlacht um Mittelerde™ II (HKLM-x32\...\{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}) (Version: - ) DIE SIEDLER - Aufstieg eines Königreichs (HKLM-x32\...\{D3F80A98-05AB-4D8C-9272-766CCFA6A48D}) (Version: 1.00.0000 - Ubisoft) Die Siedler 7 (HKLM-x32\...\{9C916142-C18C-429D-BFED-40094A7E0BEB}) (Version: 1.12.1396 - Ubisoft) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.3.22 - DivX, LLC) Dragon NaturallySpeaking 11 (HKLM-x32\...\{EFFA53BC-8C04-2E21-3D90-A13B1697B0CA}) (Version: 11.50.100 - Nuance Communications Inc.) Driver Fusion (HKLM-x32\...\{100C8F3B-82D6-4B14-BB7A-5E8C3FF810C8}_is1) (Version: 1.4.0 - Treexy) Duplicate Cleaner Free 3.0.1 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 3.0.1 - DigitalVolcano) Empire at War Forces of Corruption Mappack 7.00 (HKLM-x32\...\Empire at War Forces of Corruption Mappack) (Version: 7.00 - Petroglyph Games Inc.) erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden ETDWare PS/2-X64 11.6.4.001_WHQL (HKLM\...\Elantech) (Version: 11.6.4.001 - ELAN Microelectronic Corp.) Excelsior Installer 2.2 (HKLM-x32\...\Excelsior_0) (Version: 2.2 - Excelsior) eXe -- eLearning XHTML editor (HKLM-x32\...\exe) (Version: - eXe Project) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}) (Version: 2.1.27.0 - MAGIX AG) FOCMapEditor (HKLM-x32\...\{1E869B1A-FE19-4519-B9AE-EF383A7C00E4}) (Version: 1.0.0 - Petroglyph) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Game of Thrones Version 1.4.2.0 (HKLM-x32\...\AGOT_is1) (Version: 1.4.2.0 - Cyanide) GanttProject (HKLM-x32\...\GanttProject) (Version: - ) GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team) Google Chrome (HKCU\...\Google Chrome) (Version: 33.0.1750.117 - Google Inc.) Google Earth (HKLM-x32\...\{3E8A20E1-223F-11E2-9116-B8AC6F98CCE3}) (Version: 7.0.1.8244 - Google) Gothic 3 (HKLM-x32\...\{13F59927-CFBE-44D1-8417-7203AD4F1795}) (Version: 1.0.0 - JoWooD) Guild 2 Patch (HKLM-x32\...\{E9E09EAA-0FF8-42A1-ACAB-67F2A691E50F}) (Version: 1.0.0 - JoWood) Harry Potter und der Halbblut-Prinz™ (HKLM-x32\...\{FD1B1980-8CAB-4474-89F8-1245AF657AD1}) (Version: 1.0.0.0 - Electronic Arts) Hitman Absolution (HKLM-x32\...\Hitman Absolution_is1) (Version: - ) Hitman Absolution DLC-Pack 1.00 (HKLM-x32\...\Hitman Absolution DLC-Pack 1.00) (Version: - ) Hospital Tycoon (HKLM-x32\...\HospitalTycoon) (Version: - ) HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden Intel(R) Chipset Device Software (Version: 10.0.13 - Intel Corporation) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.0.1428 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.5.0.1066 - Intel Corporation) Hidden Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version: - Intel Corporation) Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.18.68.55 - Huawei Technologies Co.,Ltd) James Cameron's AVATAR(tm): DAS SPIEL (HKLM-x32\...\{7E19B002-4CA3-4C9F-BA92-91D101B97219}) (Version: 1.01.00 - Ubisoft) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle) Java 7 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417051FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Just Cause Complete Edition (HKLM-x32\...\{1A185E0C-32BB-4285-B53C-4B70D3F7ADF4}_is1) (Version: v1.0 - Grosses_K) Kingdoms of Amalur - Reckoning (HKLM-x32\...\Kingdoms of Amalur - Reckoning_is1) (Version: - ) KUDOS RS Gaming Mouse (HKLM-x32\...\SPEEDLINK KUDOS) (Version: - ) Lenovo LeTools (HKLM-x32\...\{4FB26144-F808-47B2-883C-18A480662810}) (Version: 2.0.320 - Lenovo) Lenovo Mobile Device Drivers (HKLM-x32\...\{8FE68BC1-26DE-446E-A270-2A608C7553E9}) (Version: 3.3.10 - Lenovo) Logitech Vid HD (HKLM-x32\...\Logitech Vid) (Version: 7.2 (7248) - Logitech Inc..) Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.) LWS Facebook (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Gallery (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Help_main (x32 Version: 13.31.1044.0 - Logitech) Hidden LWS Launcher (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Motion Detection (x32 Version: 13.30.1395.0 - Logitech) Hidden LWS Pictures And Video (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Twitter (x32 Version: 13.30.1346.0 - Logitech) Hidden LWS Video Mask Maker (x32 Version: 13.30.1379.0 - Logitech) Hidden LWS VideoEffects (Version: 13.30.1379.0 - Logitech) Hidden LWS Webcam Software (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS WLM Plugin (x32 Version: 1.30.1201.0 - Logitech) Hidden LWS YouTube Plugin (x32 Version: 13.31.1038.0 - Logitech) Hidden Majesty 2 Collection (HKLM-x32\...\Majesty 2 Collection_is1) (Version: - ) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Managed DirectX (0901) (x32 Version: 4.09.00.0901 - Microsoft) Hidden Mass Effect 2 Deluxe Edition (HKLM-x32\...\{A36A5251-2379-429B-9785-EEF2A5F8DBCB}_is1) (Version: v1.02 - The Most Electrifying Man) Mass Effect™ 3 (HKLM-x32\...\{6A9D1594-7791-48f5-9CAA-DE9BCB968320}) (Version: 1.01.0.0 - Electronic Arts) Max Payne 2 (HKLM-x32\...\{EFE1AB94-5466-4B6E-BE31-FF4C115FD25D}) (Version: 1.01.102 - ) MEDUSA NX USB 5.1 Gaming Headset (HKLM\...\C-Media CM106 Like Sound Driver) (Version: - ) MegaTrainer eXperience V1.1.8.9 (HKLM-x32\...\MegaTrainer eXperience_is1) (Version: - ) MegaTrainer XL V1.5.8.0 (HKLM-x32\...\MegaTrainer XL_is1) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7324.0 - Microsoft Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Fix it Center (HKLM\...\{B7588D45-AFDC-4C93-9E2E-A100F3554B64}) (Version: 1.0.0100 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 Language Pack - DEU (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20125.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM-x32\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (x32 Version: 3.5.8080.0 - Microsoft Corporation) Hidden Microsoft SQL Server Compact 3.5 SP2 x64 DEU (HKLM\...\{C3EAE456-7E7A-451F-80EF-F34C7A13C558}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (Version: 3.5.8080.0 - Microsoft Corporation) Hidden Microsoft Visual C++ Compilers 2010 Standard - enu - x86 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{86CE1746-9EFF-3C9C-8755-81EA8903AC34}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{7CBA9009-7EA4-338B-893D-9607CD829ADF}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU (HKLM\...\{3C983A67-DFB2-3D3D-AD9E-CA1A5A09FD18}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.50330 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.50325 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Windows Media Video 9 VCM (HKLM-x32\...\WMV9_VCM) (Version: - ) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mortal Kombat Komplete Edition (HKLM-x32\...\Mortal Kombat Komplete Edition_is1) (Version: - Warner Bros. Interactive Entertainment) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSM2MSI_gstudio (HKLM-x32\...\{C53F001E-5912-4E76-AC49-9AC20B36B1A2}) (Version: 2.0 - Pantaray) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Multi-Targeting Pack for Microsoft .NET Framework 4.0.3 (KB2600213) (HKLM-x32\...\Multi-Targeting Pack for Microsoft .NET Framework 4.0.3) (Version: 4.0.551 - Microsoft Corporation) Multi-Targeting Pack for Microsoft .NET Framework 4.0.3 (KB2600213) (x32 Version: 4.0.551 - Microsoft Corporation) Hidden nLite 1.4.9.1 (HKLM-x32\...\nLite_is1) (Version: 1.4.9.1 - Dino Nuhagic (nuhi)) Nullsoft Install System (HKLM-x32\...\NSIS) (Version: 2.46 - ) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Oracle VM VirtualBox 4.3.8 (HKLM\...\{5D328A41-BFF8-4B78-B45E-5BEE1D133EF5}) (Version: 4.3.8 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.1.10.2728 - Electronic Arts, Inc.) Packard Bell Power Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3000 - Packard Bell) Packard Bell Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3502 - Packard Bell) Paint Shop Pro 7 (HKLM-x32\...\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}) (Version: 7.0.0.0000 - Jasc Software Inc) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden PianoFX STUDIO 4.0 (HKLM-x32\...\PianoFX STUDIO 4.0_is1) (Version: 4.0 - Tanseon Systems) Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.16 - Qualcomm Atheros Communications Inc.) Qualcomm Atheros Fast Reconnect (HKLM-x32\...\{0CA2063D-D43F-41F2-A8AC-A3C4A4C722D2}) (Version: 1.0 - QualComm Atheros) Raptr (HKLM-x32\...\Raptr) (Version: - ) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.42.0 - Razer Inc.) Razer Megalodon Firmware Updater (HKLM-x32\...\{C67A3F9D-E55D-4288-B4EC-1B9863EFB288}) (Version: 2.12.02 - Razer USA Ltd.) Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.03 - Razer Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30123 - Realtek Semiconductor Corp.) Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.30150 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.26.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.26.0 - Renesas Electronics Corporation) Hidden Restaurant Empire II (HKLM-x32\...\Restaurant Empire II) (Version: 1.00 - Kalypso Media) Restaurant Empire II Patch 1.001 (HKLM-x32\...\Restaurant Empire II Patch 1.001) (Version: 1.001 - Kalypso Media) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) RGSS-RTP Standard (HKLM-x32\...\RGSS-RTP Standard_is1) (Version: 1.04 - Enterbrain) Risen 2 Dark Waters (HKLM-x32\...\Risen 2 Dark Waters_is1) (Version: - ) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.34.0 - SAMSUNG Electronics Co., Ltd.) Security Task Manager 1.8g (HKLM-x32\...\Security Task Manager) (Version: 1.8g - Neuber Software) SiSoftware Sandra Lite 2014.SP2 (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2396}_is1) (Version: 20.28.2014.5 - SiSoftware) Space Colony (HKLM-x32\...\{CBC861A4-693B-6E23-B148-662CD45C97EF}) (Version: 1.1 - ) Spellforce 2 Gold (HKLM-x32\...\{746F49C9-3789-4F8E-AF3A-3A4B42ACFAF8}) (Version: 1.00.0000 - JoWooD Productions Software AG) SpellForce 2 Patch (x32 Version: 1.0.0 - JoWood) Hidden Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) Stadtbahn Simulator Düsseldorf (HKLM-x32\...\{83CD9117-D772-437B-8B18-6D00BCFE9E01}) (Version: 1.0.0 - Rondomedia) Star Trek (HKLM-x32\...\Steam App 203250) (Version: - Digital Extremes) Star Trek Online (HKLM-x32\...\Star Trek Online) (Version: - Cryptic Studios) Star Wars Battlefront II (HKLM-x32\...\{3D374523-CFDE-461A-827E-2A102E2AB365}) (Version: 1.0 - LucasArts) Star Wars Empire at War (HKLM-x32\...\{99AE7207-8612-4DBA-A8F8-BAE5C633390D}) (Version: 1.0 - LucasArts) Star Wars Empire at War Forces of Corruption (HKLM-x32\...\{6592FDEC-2C1A-413A-9985-25FEC2F0848D}) (Version: 1.0 - LucasArts) Star Wars Jedi Knight Jedi Academy (HKLM-x32\...\{0D994CC5-819F-4657-84DD-397B8FE1EA80}) (Version: - ) StarCraft II (HKLM-x32\...\StarCraft II) (Version: 1.0.0.16117 - Blizzard Entertainment) StarCraft II Heart of the Swarm (c) Blizzard version 1 (HKLM-x32\...\U3RhckNyYWZ0IElJ_is1) (Version: 1 - ) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Steamless Counter Strike Source Pack (HKLM-x32\...\Steamless Counter Strike Source Pack) (Version: 1.0 - Steamless) Stronghold (HKLM-x32\...\{C917BA70-28A3-4C74-B163-41FD8C8E1A5A}) (Version: 1.20.0000 - Firefly Studios) Stronghold 2 (HKLM-x32\...\{16D2C649-CBA8-44EE-B730-12584667D487}) (Version: 1.40.1000 - Firefly Studios) Stronghold 3 Gold (HKLM-x32\...\Stronghold 3 Gold_is1) (Version: - ) Stronghold Crusader Extreme HD (HKLM-x32\...\GOGPACKSTRONGHOLDCRUSADERHD_is1) (Version: 2.0.0.6 - GOG.com) Stronghold Legends (HKLM-x32\...\{66A405D2-BA14-4594-BF36-B3B544F0754E}) (Version: 1.20.0000 - Firefly Studios) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.6.0 - Synaptics Incorporated) Syndicate (HKLM-x32\...\{140E3DE7-A949-4267-841C-28E1F41857D4}_is1) (Version: 1.0 - RAF) System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC) System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC) The Amazing Spider-Man 2 (HKLM-x32\...\VGhlQW1hemluZ1NwaWRlck1hbjI=_is1) (Version: 1 - ) The Last Remnant (HKLM-x32\...\The Last Remnant_is1) (Version: - ) The Lord of the Rings: War in the North (HKLM-x32\...\Steam App 32800) (Version: - Snowblind) The Movies(TM) (x32 Version: 1.0 - Activision) Hidden The Movies(TM) Stunts & Spezialeffekte (HKLM-x32\...\InstallShield_{0556F885-2415-4666-B53E-33727E46AEA1}) (Version: 1.2 - Activision) The Movies(TM) Stunts & Spezialeffekte (x32 Version: 1.0 - Ihr Firmenname) Hidden Tom Clancy's Rainbow Six 3: Athena Sword 1.10.016 (HKLM-x32\...\{664FF9A8-7E44-4E17-AD40-D10E15504C49}) (Version: 1.10.016 - ) Tom Clancy's Rainbow Six 3: Raven Shield 1.60.412 (HKLM-x32\...\{AF131494-F5D8-45C5-938C-D5F020CF1B0D}) (Version: 1.60.412 - ) Tron: Evolution (HKLM-x32\...\{9CCB3527-C033-415C-88B6-27173B5E3592}) (Version: 1.00.0000 - Disney Interactive Studios) Tycoon City - New York (HKLM-x32\...\{A5101403-2C42-40E0-8D9E-5E49E7C3B89E}) (Version: 1.00.000 - ) Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.0.82.0 - Intel) Unity (HKLM-x32\...\Unity) (Version: - Unity Technologies ApS) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Uplay (HKLM-x32\...\Uplay) (Version: 4.5 - Ubisoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Video Web Camera (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.3501.00 - CyberLink Corp.) Video Web Camera (x32 Version: 1.5.3501.00 - CyberLink Corp.) Hidden VirtualDJ Home FREE (HKLM-x32\...\{A6AC699F-8315-40CA-8F70-E917494978AB}) (Version: 7.4 - Atomix Productions) Visual C++ 9.0 Runtime for Dragon NaturallySpeaking 64bit (x64) (HKLM\...\{4A5A427F-BA39-4BF0-7777-9A47FBE60C9F}) (Version: 11.0.0 - Nuance Communications Inc.) VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) vLite (HKLM-x32\...\vLite_is1) (Version: 1.2 - Dino Nuhagic (nuhi)) War of the Immortals (HKLM-x32\...\Steam App 209710) (Version: - Perfect World Shanghai) Win7codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 3.9.2 - Shark007) Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) X3 Reunion (HKLM-x32\...\{0B744987-A39E-45E5-B930-11EDBDFE3003}) (Version: 12 - DeepSilver) x64 Components v3.9.2 (HKLM\...\x64 Components_is1) (Version: 3.9.2 - Shark007) ==================== Restore Points ========================= 23-05-2014 12:47:05 SiSoftware Sandra Lite 23-05-2014 15:20:20 DirectX wurde installiert 24-05-2014 12:56:32 DirectX wurde installiert 24-05-2014 13:32:28 DirectX wurde installiert 24-05-2014 14:36:18 DirectX wurde installiert ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-09-03 17:19 - 00000833 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0939A652-F769-4FFB-8CD0-E91F3FA50BC6} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {282E1A66-1994-43C0-8B33-F2A7A3800724} - System32\Tasks\DivX-Online-Aktualisierungsprogramm => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2014-01-10] () Task: {3909D706-A484-49BC-86EA-0834DAAE367F} - System32\Tasks\DriverEasy Scheduled Scan => D:\Programme\DriverEasy\DriverEasy.exe Task: {593B9F4F-EA70-4B9E-8A7C-FD8E337E8A44} - System32\Tasks\Restart UxSms to fix Aero lag => net Task: {84C1CA4A-1C56-4E7F-A4A0-82315A9918FD} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe Task: {89A298DE-A98B-4403-ABB8-BED27F1454FC} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation) Task: {B49638CB-767E-4E6D-837E-DBE9BB305ED7} - \LyricsContainer Update No Task File <==== ATTENTION Task: {C046E6C6-8A0C-40A9-876C-7DFB53CB24D0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: {C84E6929-23CA-47EC-AC07-2591788791F4} - System32\Tasks\avast! Emergency Update => D:\Programme\AVAST Software\Avast\AvastEmUpdate.exe [2014-05-11] (AVAST Software) Task: {CDB55844-5BF9-4972-94DE-7D0240659E9B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: {FFEC1BA3-3D60-4699-A9D3-142C982EA7BB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: C:\Windows\Tasks\DriverEasy Scheduled Scan.job => D:\Programme\DriverEasy\DriverEasy.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core.job => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA.job => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-01-23 02:52 - 2011-08-24 03:13 - 00083240 _____ () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe 2011-03-14 17:27 - 2011-03-14 17:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2013-10-29 21:13 - 2011-06-17 13:04 - 00224096 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe 2012-12-07 02:44 - 2011-04-15 11:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-10-29 22:25 - 2011-06-17 13:04 - 01434464 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\LiveUpd.exe 2014-01-10 07:26 - 2014-01-10 07:26 - 01861968 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2014-05-24 14:34 - 2014-05-24 14:34 - 02255872 _____ () D:\Programme\AVAST Software\Avast\defs\14052400\algo.dll 2013-01-23 02:52 - 2011-08-26 06:57 - 00260096 _____ () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\sqlite3.dll 2013-10-29 21:13 - 2009-01-10 12:32 - 00011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll 2013-10-29 21:13 - 2009-06-22 20:42 - 00043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll 2013-10-29 21:13 - 2010-05-05 10:47 - 02415104 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll 2013-10-29 21:13 - 2010-02-10 16:10 - 01148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll 2013-10-29 21:13 - 2010-02-10 16:43 - 09515520 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtGui4.dll 2013-10-29 22:25 - 2012-10-08 03:41 - 00082944 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qgif4.dll 2013-10-29 22:25 - 2012-10-08 03:41 - 00081920 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qico4.dll 2014-03-31 07:24 - 2014-03-31 07:24 - 19336120 _____ () D:\Programme\AVAST Software\Avast\libcef.dll 2014-01-10 07:28 - 2014-01-10 07:28 - 00100688 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00124928 _____ () C:\Program Files (x86)\Raptr\_elementtree.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd 2012-02-06 22:28 - 2012-02-06 22:28 - 00031744 _____ () C:\Program Files (x86)\Raptr\Crypto.Cipher.AES.pyd 2012-02-06 22:28 - 2012-02-06 22:28 - 00010752 _____ () C:\Program Files (x86)\Raptr\Crypto.Random.OSRNG.winrandom.pyd 2012-02-06 22:28 - 2012-02-06 22:28 - 00011264 _____ () C:\Program Files (x86)\Raptr\Crypto.Util._counter.pyd 2011-05-10 21:01 - 2011-05-10 21:01 - 00030208 _____ () C:\Program Files (x86)\Raptr\simplejson._speedups.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00016384 _____ () C:\Program Files (x86)\Raptr\win32trace.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd 2013-11-21 02:05 - 2013-11-21 02:05 - 00256000 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd 2012-10-27 09:53 - 2012-10-27 09:53 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll 2010-11-23 01:06 - 2010-11-23 01:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll 2014-03-02 00:48 - 2013-05-16 11:55 - 00113496 _____ () D:\Programme\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-03-02 00:48 - 2013-05-16 11:55 - 00416600 _____ () D:\Programme\Spybot - Search & Destroy 2\DEC150.bpl 2013-05-29 21:29 - 2013-03-20 15:45 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\ProgramData\Temp:7FFED16F ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\Services: OpenVPNService => 3 MSCONFIG\Services: RzMaelstromVADStreamingService => 2 MSCONFIG\Services: SDScannerService => 2 MSCONFIG\Services: SDUpdateService => 2 MSCONFIG\Services: SDWSCService => 2 MSCONFIG\startupfolder: C:^Users^Don Corleone^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Produktregistrierung.lnk => C:\Windows\pss\Logitech . Produktregistrierung.lnk.Startup MSCONFIG\startupfolder: C:^Users^Don Corleone^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tritton 720+.lnk => C:\Windows\pss\Tritton 720+.lnk.Startup MSCONFIG\startupreg: Acer ePower Management => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe MSCONFIG\startupreg: Ad-Aware Browsing Protection => "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Advanced SystemCare 6 => "D:\Programme\Advanced SystemCare 6\ASCTray.exe" /AutoStart MSCONFIG\startupreg: Cm106Sound => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cm106.dll,CMICtrlWnd MSCONFIG\startupreg: Creative SB Monitoring Utility Launcher => RunDll32 SBAVMonL.dll,SBAVMonitorLauncher MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe MSCONFIG\startupreg: Google Update => "C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: Hoolapp Android => MSCONFIG\startupreg: HydraVisionDesktopManager => "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" MSCONFIG\startupreg: IntelTBRunOnce => MSCONFIG\startupreg: ISUSPM => "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler MSCONFIG\startupreg: LManager => C:\Program Files (x86)\Launch Manager\LManager.exe MSCONFIG\startupreg: Logitech Vid => "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode MSCONFIG\startupreg: LWS => D:\Programme\Logitech Web Cam\LWS\Webcam Software\LWS.exe -hide MSCONFIG\startupreg: Malwarebytes Anti-Malware (cleanup) => rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript MSCONFIG\startupreg: NUSB3MON => MSCONFIG\startupreg: PowerDVD12DMREngine => MSCONFIG\startupreg: Razer Synapse => "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" MSCONFIG\startupreg: RemoteControl11 => d:\programme\powerdvd11 ultra\powerdvd11\pdvd11serv.exe MSCONFIG\startupreg: RocketDock => "D:\Programme\RocketDock\RocketDock.exe" MSCONFIG\startupreg: SandboxieControl => "D:\Programme\Windows Sandbox\SbieCtrl.exe" MSCONFIG\startupreg: SDTray => "D:\Programme\Spybot - Search & Destroy 2\SDTray.exe" MSCONFIG\startupreg: SPEEDLINK KUDOS => "c:\program files (x86)\speedlink\kudos rs gaming mouse\gaming mouse.exe" /hide MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe MSCONFIG\startupreg: WebCake Desktop => C:\Users\Don Corleone\AppData\Roaming\Betcat\WebCakeDesktop.exe ==================== Faulty Device Manager Devices ============= Name: lirsgt Description: lirsgt Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: lirsgt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-05-24 21:54:59.568 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 21:54:59.521 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 21:54:31.316 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 21:54:31.232 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 16:44:05.783 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 16:44:05.720 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 16:43:36.101 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 16:43:36.011 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 14:34:39.365 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-24 14:34:39.287 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 29% Total physical RAM: 5995.86 MB Available physical RAM: 4201.71 MB Total Pagefile: 18282.04 MB Available Pagefile: 16313.55 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:48.83 GB) (Free:2.58 GB) NTFS Drive d: () (Fixed) (Total:527.24 GB) (Free:66.05 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: E81DA6E3) Partition 1: (Not Active) - (Size=20 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=49 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=527 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Es ist selten das sich jemand die Zeit dafür nimmt, es ist auch sehr umständlich und kostet viel Zeit das gibts es heutzutage leider nur noch sehr selten Aher hier nochmal ein großes DANKE |
26.05.2014, 14:01 | #9 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Schritt 1: FRST Fix Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf16-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf25-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bfb2-405f-11e3-8a38-dc0ea10ddbd3} - F:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {a391a184-e16a-11e3-b674-dc0ea10ddbd3} - G:\raf-risen_hd_ce.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {e48290c6-4099-11e2-8d62-dc0ea10ddbd3} - G:\CTT-Startmenu.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll No File C:\Users\Don Corleone\AppData\Local\Temp\20140517091718.754.exe C:\Users\Don Corleone\AppData\Local\Temp\BackupSetup.exe C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole9012939027421670543.dll C:\Users\Don Corleone\AppData\Local\Temp\Quarantine.exe C:\Users\Don Corleone\AppData\Local\Temp\ubi7984.tmp.exe Task: {B49638CB-767E-4E6D-837E-DBE9BB305ED7} - \LyricsContainer Update No Task File <==== ATTENTION AlternateDataStreams: C:\ProgramData\Temp:7FFED16F Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Schritt 2: FRST Scan Bitte starte FRST erneut, setze den Haken auch bei Addition.txt und drücke auf Scan. Schritt 3: TFC Lade dir TFC (TempFileCleaner von Oldtimer) herunter und speichere es auf den Desktop.
Schritt 4: TDSSKiller Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Schritt 5: Frage Wie läuft Dein PC? |
28.05.2014, 12:30 | #10 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Sorry das ich erst so spät schreibe ich konnte Firefox und den Taskmanager nicht mehr öffnen irgendwie scheint es jetzt nach einem Neustart wieder zu gehen FRST Fixlog.exe Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 25-05-2014 02 Ran by Don Corleone at 2014-05-28 13:26:58 Run:1 Running from C:\Users\Don Corleone\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf16-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bf25-405f-11e3-8a38-dc0ea10ddbd3} - G:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {5e31bfb2-405f-11e3-8a38-dc0ea10ddbd3} - F:\AutoRun.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {a391a184-e16a-11e3-b674-dc0ea10ddbd3} - G:\raf-risen_hd_ce.exe HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\MountPoints2: {e48290c6-4099-11e2-8d62-dc0ea10ddbd3} - G:\CTT-Startmenu.exe GroupPolicy: Group Policy on Chrome detected <======= ATTENTION Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File FF Plugin: @videolan.org/vlc,version=2.0.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll No File C:\Users\Don Corleone\AppData\Local\Temp\20140517091718.754.exe C:\Users\Don Corleone\AppData\Local\Temp\BackupSetup.exe C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole9012939027421670543.dll C:\Users\Don Corleone\AppData\Local\Temp\Quarantine.exe C:\Users\Don Corleone\AppData\Local\Temp\ubi7984.tmp.exe Task: {B49638CB-767E-4E6D-837E-DBE9BB305ED7} - \LyricsContainer Update No Task File <==== ATTENTION AlternateDataStreams: C:\ProgramData\Temp:7FFED16F ***************** HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => Value deleted successfully. HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5e31bf16-405f-11e3-8a38-dc0ea10ddbd3} => Key deleted successfully. HKCR\CLSID\{5e31bf16-405f-11e3-8a38-dc0ea10ddbd3} => Key not found. HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5e31bf25-405f-11e3-8a38-dc0ea10ddbd3} => Key deleted successfully. HKCR\CLSID\{5e31bf25-405f-11e3-8a38-dc0ea10ddbd3} => Key not found. HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5e31bfb2-405f-11e3-8a38-dc0ea10ddbd3} => Key deleted successfully. HKCR\CLSID\{5e31bfb2-405f-11e3-8a38-dc0ea10ddbd3} => Key not found. HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{a391a184-e16a-11e3-b674-dc0ea10ddbd3} => Key deleted successfully. HKCR\CLSID\{a391a184-e16a-11e3-b674-dc0ea10ddbd3} => Key not found. HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{e48290c6-4099-11e2-8d62-dc0ea10ddbd3} => Key deleted successfully. HKCR\CLSID\{e48290c6-4099-11e2-8d62-dc0ea10ddbd3} => Key not found. C:\Windows\system32\GroupPolicy\Machine => Moved successfully. C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully. HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => Value deleted successfully. HKCR\CLSID\{318A227B-5E9F-45bd-8999-7F8F10CA4CF5} => Key not found. HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.4 => Key deleted successfully. "C:\Program Files\VideoLAN\VLC\npvlc.dll" => not found. C:\Users\Don Corleone\AppData\Local\Temp\20140517091718.754.exe => Moved successfully. C:\Users\Don Corleone\AppData\Local\Temp\BackupSetup.exe => Moved successfully. "C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole9012939027421670543.dll" => File/Directory not found. C:\Users\Don Corleone\AppData\Local\Temp\Quarantine.exe => Moved successfully. C:\Users\Don Corleone\AppData\Local\Temp\ubi7984.tmp.exe => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B49638CB-767E-4E6D-837E-DBE9BB305ED7} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B49638CB-767E-4E6D-837E-DBE9BB305ED7} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LyricsContainer Update => Key deleted successfully. C:\ProgramData\Temp => ":7FFED16F" ADS removed successfully. The system needed a reboot. ==== End of Fixlog ==== FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-05-2014 02 Ran by Don Corleone (administrator) on DONCORLEONE-PC on 28-05-2014 13:52:19 Running from C:\Users\Don Corleone\Desktop Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe (AMD) C:\Windows\System32\atieclxx.exe (SANDBOXIE L.T.D) D:\Programme\Windows Sandbox\SbieSvc.exe (AVAST Software) D:\Programme\AVAST Software\Avast\AvastSvc.exe () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe (CyberLink) D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe (CyberLink) D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe (Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe (MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe (Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe () C:\ProgramData\Internet Manager\OnlineUpdate\LiveUpd.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Atheros) C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Safer-Networking Ltd.) D:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\Windows\System32\UI0Detect.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (AVAST Software) D:\Programme\AVAST Software\Avast\avastui.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM-x32\...\Run: [AvastUI.exe] => D:\Programme\AVAST Software\Avast\AvastUI.exe [3888648 2014-05-27] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-1672272528-3360620030-3742580433-1000\...\Policies\Explorer: [NoAutoTrayNotify] 0 ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xE207433E9241CF01 BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programme\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: ArcPluginIEBHO Class - {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} - D:\Programme\ARC Client\Arc\Plugins\ArcPluginIE.dll (Perfect World Entertainment Inc) BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Programme\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) DPF: HKLM-x32 {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.22.0.cab Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 Tcpip\..\Interfaces\{2A812DA1-111F-4EDA-AE7C-93F4568EE599}: [NameServer]10.74.210.210 10.74.210.211 Tcpip\..\Interfaces\{4291DCC6-2FBC-4719-A60E-52E6D90A8716}: [NameServer]10.74.210.210 10.74.210.211 FireFox: ======== FF ProfilePath: C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250 FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin - D:\Programme\ARC Client\Arc\Plugins\npArcPluginFF.dll (Perfect World Entertainment Inc) FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - D:\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - D:\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Don Corleone\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-05-25] FF Extension: Video WithOut Flash - C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250\Extensions\vwof@drev.com.xpi [2014-05-25] FF Extension: Adblock Plus - C:\Users\Don Corleone\AppData\Roaming\Mozilla\Firefox\Profiles\sps3luce.default-1400314111250\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-18] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - D:\Programme\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - D:\Programme\AVAST Software\Avast\WebRep\FF [2014-03-31] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR Plugin: (Shockwave Flash) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\Application\33.0.1750.117\pdf.dll () CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (DivX VOD Helper Plug-in) - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) CHR Plugin: (DivX Plus Web Player) - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll No File CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Java(TM) Platform SE 7 U9) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File CHR Plugin: (Google Update) - C:\Users\Don Corleone\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_146.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.90.5) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (Uplay PC) - D:\Programme\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft) CHR Extension: (Google Drive) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-01-26] CHR Extension: (YouTube) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-01-26] CHR Extension: (Google-Suche) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-01-26] CHR Extension: (YTBookMaarK) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbgaldchpdlibgibolafkiheflddbicf [2014-02-17] CHR Extension: (avast! Online Security) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-03-31] CHR Extension: (Google Wallet) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-10-29] CHR Extension: (Google Mail) - C:\Users\Don Corleone\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-01-26] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - D:\Programme\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-05-11] ==================== Services (Whitelisted) ================= S3 ArcService; D:\Programme\ARC Client\Arc\ArcService.exe [88400 2014-02-24] (Perfect World Entertainment Inc) R2 avast! Antivirus; D:\Programme\AVAST Software\Avast\AvastSvc.exe [50344 2014-05-11] (AVAST Software) R2 CLHNServiceForPowerDVD; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [83240 2011-08-24] () R2 CyberLink PowerDVD 11.0 Monitor Service; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [75048 2011-09-02] (CyberLink) R2 CyberLink PowerDVD 11.0 Service; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [292136 2011-09-02] (CyberLink) R2 ePowerSvc; C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [868224 2010-10-29] (Acer Incorporated) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2011-06-17] () R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [255376 2012-04-05] (Acer Incorporated) S3 MatSvc; C:\Program Files\Microsoft Fix it Center\Matsvc.exe [343856 2011-06-13] (Microsoft Corporation) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2014-02-25] (Razer Inc.) R2 RzMaelstromVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe [4249088 2014-03-06] (A-Volute) S3 SandraAgentSrv; F:\Programme\SiSoftware Sandra Lite 2014.SP2\RpcAgentSrv.exe [72344 2008-04-08] (SiSoftware) R2 SbieSvc; D:\Programme\Windows Sandbox\SbieSvc.exe [123664 2012-12-16] (SANDBOXIE L.T.D) S2 SDScannerService; D:\Programme\Spybot - Search & Destroy 2\SDFSSvc.exe [3921880 2013-10-15] (Safer-Networking Ltd.) S2 SDUpdateService; D:\Programme\Spybot - Search & Destroy 2\SDUpdSvc.exe [1042272 2013-09-20] (Safer-Networking Ltd.) R2 SDWSCService; D:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe [171416 2013-09-13] (Safer-Networking Ltd.) S3 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-20] (Microsoft Corporation) R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe [15888 2013-02-11] (Intel(R) Corporation) R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe [57344 2011-08-10] (Atheros) ==================== Drivers (Whitelisted) ==================== R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-05-11] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-05-11] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-05-11] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-05-11] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1039096 2014-05-15] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [423240 2014-05-15] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [85328 2014-05-15] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [208416 2014-05-11] () S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [211456 2013-06-05] () S3 cpudrv64; C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys [17864 2011-06-02] () R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-05-22] (Disc Soft Ltd) S3 gfiark; C:\Windows\System32\drivers\gfiark.sys [41032 2013-05-23] (ThreatTrack Security) R0 gfibto; C:\Windows\System32\drivers\gfibto.sys [14456 2013-02-13] (GFI Software) S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [238080 2012-04-23] (Huawei Technologies Co., Ltd.) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-03-22] (Intel Corporation) R2 iocbios2; C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [25448 2013-01-07] (Intel Corporation) S3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2013-04-09] ( ) S3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1989504 2013-04-09] (Creative Technology Ltd.) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [128200 2013-04-03] (Qualcomm Atheros Co., Ltd.) S2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [35328 2013-06-05] () S2 lirsgt; C:\Windows\SysWOW64\DRIVERS\lirsgt.sys [18048 2013-06-05] () R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-03-20] (Intel Corporation) R2 ntk_PowerDVD; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys [75248 2011-08-24] (Cyberlink Corp.) R3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [40696 2014-03-06] (Windows (R) Win 7 DDK provider) S3 SANDRA; F:\Programme\SiSoftware Sandra Lite 2014.SP2\WNt500x64\Sandra.sys [23112 2009-08-07] (SiSoftware) R3 SbieDrv; D:\Programme\Windows Sandbox\SbieDrv.sys [202632 2012-12-16] (SANDBOXIE L.T.D) S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [44344 2013-04-09] (Synaptics Incorporated) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [2609784 2013-04-09] (Sunplus Technology) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 USBMULCD; C:\Windows\System32\drivers\CM10664.sys [1307648 2011-03-31] (C-Media Electronics Inc) S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [113952 2014-02-25] (Oracle Corporation) S3 whfltr2k; C:\Windows\System32\DRIVERS\whfltr2k.sys [10368 2012-12-07] () R2 {329F96B6-DF1E-4328-BFDA-39EA953C1312}; D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\NavFilter\000.fcl [148976 2011-09-02] (CyberLink Corp.) S3 ALSysIO; \??\C:\Users\DONCOR~1\AppData\Local\Temp\ALSysIO64.sys [X] S3 TVICPORT; \??\C:\Windows\system32\DRIVERS\TVICPORT.SYS [X] S3 XFDriver64; \??\C:\Program Files (x86)\Xfire2\XFDriver64.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-28 13:52 - 2014-05-28 13:52 - 00019271 _____ () C:\Users\Don Corleone\Desktop\FRST.txt 2014-05-27 16:42 - 2014-05-27 16:43 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Roccat Konfigurationsprogramme 2014-05-27 16:31 - 2014-05-27 16:32 - 00000306 _____ () C:\debug-Stone.txt 2014-05-27 16:31 - 2014-05-27 16:31 - 00000000 ____D () C:\ProgramData\ROCCAT 2014-05-27 16:30 - 2014-05-27 16:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT 2014-05-27 16:30 - 2014-05-27 16:40 - 00000000 ____D () C:\Program Files (x86)\ROCCAT 2014-05-27 16:30 - 2014-05-27 16:30 - 04635536 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_Talk_V2.3.rar 2014-05-27 16:26 - 2014-05-27 16:27 - 20318616 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_Isku_FX_DRV1.08_FW1.05.zip 2014-05-27 16:24 - 2014-05-27 16:25 - 25305708 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_KoneXTD_DRV1.17_FW1.17.zip 2014-05-27 16:24 - 2014-05-27 16:24 - 30450473 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_Kone_XTD_Optical_DRV1.05_FW1.11_BETA.zip 2014-05-26 21:02 - 2014-05-26 21:02 - 00000737 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-05-26 21:02 - 2014-05-26 21:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2014-05-26 21:02 - 2014-05-16 14:04 - 00254240 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-05-26 21:02 - 2014-05-16 14:03 - 00128288 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-05-26 20:55 - 2014-05-26 20:55 - 10441011 _____ () C:\Users\Don Corleone\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.3.12-93733.vbox-extpack 2014-05-26 20:53 - 2014-05-26 20:57 - 109574432 _____ (Oracle Corporation) C:\Users\Don Corleone\Downloads\VirtualBox-4.3.12-93733-Win.exe 2014-05-26 19:16 - 2014-05-26 19:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microprose 2014-05-26 19:10 - 2014-05-26 19:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-05-26 19:10 - 2014-05-26 19:10 - 00000000 ____D () C:\Program Files\7-Zip 2014-05-26 19:09 - 2014-05-26 19:09 - 01376768 _____ () C:\Users\Don Corleone\Desktop\7z920-x64.msi 2014-05-25 00:57 - 2014-05-28 12:59 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-25 00:57 - 2014-05-25 00:57 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-24 22:16 - 2014-05-28 13:26 - 00000000 ____D () C:\Users\Don Corleone\Desktop\FRST-OlderVersion 2014-05-24 21:55 - 2014-05-24 22:33 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Report 2014-05-24 21:52 - 2014-05-24 21:52 - 04320054 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap (2).bmp 2014-05-24 16:51 - 2014-05-24 16:51 - 01016261 _____ (Thisisu) C:\Users\Don Corleone\Desktop\JRT.exe 2014-05-24 16:39 - 2014-05-28 13:21 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-24 16:39 - 2014-05-24 16:39 - 01326389 _____ () C:\Users\Don Corleone\Desktop\adwcleaner_3.210.exe 2014-05-24 16:39 - 2014-05-24 16:39 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-24 16:39 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-24 16:39 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-24 16:29 - 2014-05-24 16:30 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Don Corleone\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-24 16:27 - 2014-05-24 16:31 - 100273008 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\directx_Jun2010redist.exe 2014-05-24 16:27 - 2014-05-24 16:27 - 00292184 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\dxwebsetup.exe 2014-05-23 23:55 - 2014-05-23 23:55 - 03434761 _____ () C:\Users\Don Corleone\Downloads\tweaking.com_windows_repair_aio.zip 2014-05-23 23:23 - 2014-05-23 23:23 - 01003160 _____ (EFSoftware) C:\Users\Don Corleone\Downloads\EF_Process_Manager_6.50_64.exe 2014-05-23 19:36 - 2014-05-23 19:36 - 00380416 _____ () C:\Users\Don Corleone\Downloads\gjb83f0t.exe 2014-05-23 19:20 - 2014-05-28 13:52 - 00000000 ____D () C:\FRST 2014-05-23 19:18 - 2014-05-28 13:26 - 02066944 _____ (Farbar) C:\Users\Don Corleone\Desktop\FRST64.exe 2014-05-23 17:20 - 2014-05-23 17:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Codemasters 2014-05-23 15:36 - 2014-05-23 16:34 - 14151680 _____ () C:\Users\Don Corleone\AppData\Roaming\Sandra.mdb 2014-05-23 14:51 - 2014-05-23 14:51 - 00000540 _____ () C:\Windows\WMFDist64.log 2014-05-23 14:48 - 2014-05-23 14:48 - 00000845 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP2.lnk 2014-05-23 14:48 - 2014-05-23 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2014-05-23 14:43 - 2014-05-23 14:46 - 00000000 ____D () C:\Users\Don Corleone\Downloads\Systemprogramme 2014-05-23 14:43 - 2014-05-23 14:45 - 69069552 _____ (SiSoftware ) C:\Users\Don Corleone\Downloads\san2025.exe 2014-05-23 14:39 - 2014-05-23 14:39 - 00000017 _____ () C:\Users\Don Corleone\AppData\Local\resmon.resmoncfg 2014-05-23 14:13 - 2014-05-23 14:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepSilver 2014-05-22 17:16 - 2014-05-22 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari 2014-05-22 07:07 - 2014-05-22 07:07 - 00000000 ____D () C:\Users\Don Corleone\Documents\Stronghold 3 2014-05-22 06:58 - 2014-05-22 06:58 - 00000927 _____ () C:\Users\Public\Desktop\Stronghold 3 Gold.lnk 2014-05-22 06:41 - 2014-05-22 06:41 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-05-22 06:30 - 2014-05-22 06:30 - 00000000 ____D () C:\Users\Don Corleone\Documents\DIE SIEDLER - Aufstieg eines Königreichs 2014-05-21 07:13 - 2014-05-21 07:13 - 00004096 _____ () C:\Windows\d3dx.dat 2014-05-21 07:13 - 2014-05-21 07:13 - 00000000 ____D () C:\Users\Public\Documents\Deutschland Spielt 2014-05-19 22:00 - 2014-05-19 22:04 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller.exe 2014-05-19 18:24 - 2014-05-19 18:24 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap.bmp 2014-05-19 17:42 - 2014-05-19 17:42 - 00000823 _____ () C:\Users\Don Corleone\Desktop\Uplay.lnk 2014-05-19 17:40 - 2014-05-19 17:41 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller_4.5.0.exe 2014-05-19 17:03 - 2014-05-19 17:03 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection(1).msi 2014-05-19 16:33 - 2014-05-25 13:40 - 00251019 _____ () C:\Windows\DirectX.log 2014-05-17 21:24 - 2014-05-28 13:37 - 00001636 _____ () C:\Windows\setupact.log 2014-05-17 21:24 - 2014-05-25 11:02 - 00008172 _____ () C:\Windows\PFRO.log 2014-05-17 21:24 - 2014-05-17 21:24 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-17 21:22 - 2014-05-17 21:22 - 01325827 _____ () C:\Users\Don Corleone\Downloads\adwcleaner_3.208.exe 2014-05-17 21:22 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll 2014-05-17 10:08 - 2014-05-17 10:08 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Alte Firefox-Daten 2014-05-17 09:18 - 2014-05-17 09:18 - 23792584 _____ (Foofind Labs, S.L. ) C:\Users\Don Corleone\Downloads\foofind_download_manager_redist.exe 2014-05-17 09:18 - 2014-05-17 09:18 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Foofind Download Manager 2014-05-17 04:21 - 2014-05-17 04:21 - 01001280 _____ (DivX, LLC) C:\Users\Don Corleone\Desktop\DivXInstaller.exe 2014-05-16 14:03 - 2014-05-16 14:03 - 00156448 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys 2014-05-16 14:03 - 2014-05-16 14:03 - 00141600 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp.sys 2014-05-16 14:01 - 2014-05-16 14:01 - 00204064 _____ (Oracle Corporation) C:\Windows\system32\VBoxNetFltNobj.dll 2014-05-15 05:23 - 2014-05-15 05:23 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 05:21 - 2014-05-08 09:14 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-15 05:21 - 2014-05-08 08:37 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-15 05:21 - 2014-05-08 07:52 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-15 05:21 - 2014-05-08 07:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-15 05:21 - 2014-05-08 06:57 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-15 05:21 - 2014-05-08 06:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-15 05:10 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-15 05:10 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-15 05:10 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-05-15 05:10 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-05-15 05:09 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-05-15 05:09 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-05-15 05:09 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-05-15 05:09 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-05-15 05:09 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-05-15 05:09 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-05-15 05:09 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-05-15 05:09 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-05-15 05:09 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-05-15 05:09 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-05-15 05:09 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-05-15 05:09 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-05-15 05:09 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-05-15 05:09 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-05-15 05:09 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-05-15 05:09 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-05-15 05:09 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-05-11 02:40 - 2014-05-11 02:40 - 00062044 _____ () C:\Windows\SysWOW64\CCCInstall_201405110240294523.log 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\ATI 2014-05-11 02:35 - 2014-05-11 02:35 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2014-05-11 02:34 - 2014-05-28 12:58 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Raptr 2014-05-11 02:31 - 2014-05-11 02:40 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-05-11 02:31 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files\ATI 2014-05-11 02:30 - 2014-05-11 02:39 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-05-11 02:27 - 2014-04-18 05:43 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2014-05-11 02:27 - 2014-04-18 05:43 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 08866928 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 08010968 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 07520200 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 06799688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 06796592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 01117184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00117584 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2014-05-11 02:27 - 2014-04-18 05:42 - 00099520 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2014-05-11 02:27 - 2014-04-18 05:36 - 15376384 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2014-05-11 02:27 - 2014-04-18 05:23 - 00231424 _____ () C:\Windows\system32\clinfo.exe 2014-05-11 02:27 - 2014-04-18 05:22 - 28685824 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2014-05-11 02:27 - 2014-04-18 05:22 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2014-05-11 02:27 - 2014-04-18 05:19 - 24107520 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2014-05-11 02:27 - 2014-04-18 05:17 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-05-11 02:27 - 2014-04-18 05:17 - 00058880 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-05-11 02:27 - 2014-04-18 05:13 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2014-05-11 02:27 - 2014-04-18 05:13 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2014-05-11 02:27 - 2014-04-18 05:12 - 27907584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2014-05-11 02:27 - 2014-04-18 05:12 - 05442048 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2014-05-11 02:27 - 2014-04-18 04:58 - 04358656 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2014-05-11 02:27 - 2014-04-18 04:51 - 23409152 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2014-05-11 02:27 - 2014-04-18 04:46 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2014-05-11 02:27 - 2014-04-18 04:45 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2014-05-11 02:27 - 2014-04-18 04:45 - 00085504 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2014-05-11 02:27 - 2014-04-18 04:42 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2014-05-11 02:27 - 2014-04-18 04:33 - 00048128 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2014-05-11 02:27 - 2014-04-18 04:33 - 00037888 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2014-05-11 02:27 - 2014-04-18 04:30 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2014-05-11 02:27 - 2014-04-18 04:30 - 00031232 _____ (AMD) C:\Windows\system32\atimuixx.dll 2014-05-11 02:27 - 2014-04-18 04:29 - 00586240 _____ (AMD) C:\Windows\system32\atieclxx.exe 2014-05-11 02:27 - 2014-04-18 04:29 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2014-05-11 02:27 - 2014-04-18 04:28 - 03437632 _____ () C:\Windows\system32\atiumd6a.cap 2014-05-11 02:27 - 2014-04-18 04:28 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2014-05-11 02:27 - 2014-04-18 04:21 - 00806912 _____ (AMD) C:\Windows\system32\coinst_14.100.dll 2014-05-11 02:27 - 2014-04-18 04:17 - 03471376 _____ () C:\Windows\SysWOW64\atiumdva.cap 2014-05-11 02:27 - 2014-04-18 04:09 - 01177600 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2014-05-11 02:27 - 2014-04-18 04:09 - 00848896 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00638976 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2014-05-11 02:27 - 2014-04-18 04:07 - 00146944 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00133632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2014-05-11 02:27 - 2014-04-18 04:07 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2014-05-11 02:27 - 2014-04-18 04:04 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2014-05-11 02:27 - 2014-04-10 20:58 - 00082128 _____ () C:\Windows\system32\ativce02.dat 2014-05-11 02:27 - 2014-04-01 01:06 - 00234804 _____ () C:\Windows\system32\ativvaxy_cik.dat 2014-05-11 02:27 - 2014-04-01 01:04 - 00233008 _____ () C:\Windows\system32\ativvaxy_cik_nd.dat 2014-05-11 02:27 - 2014-02-06 18:45 - 00134192 _____ () C:\Windows\system32\ativce03.dat 2014-05-11 02:27 - 2014-01-16 20:00 - 00273712 _____ () C:\Windows\system32\ativvaxy_vi_nd.dat 2014-05-11 02:27 - 2014-01-16 19:59 - 00275124 _____ () C:\Windows\system32\ativvaxy_vi.dat 2014-05-11 02:27 - 2014-01-16 11:34 - 00723841 _____ () C:\Windows\system32\atiicdxx.dat 2014-05-11 02:27 - 2013-07-05 13:13 - 00532720 _____ () C:\Windows\SysWOW64\atiapfxx.blb 2014-05-11 02:27 - 2013-07-05 13:13 - 00532720 _____ () C:\Windows\system32\atiapfxx.blb 2014-05-11 02:27 - 2013-07-05 13:10 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2014-05-11 02:27 - 2013-04-10 18:34 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe 2014-05-11 02:27 - 2013-04-10 18:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Program Files\Realtek 2014-05-11 02:12 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-05-11 02:12 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-05-11 02:12 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-05-11 02:12 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-05-11 02:12 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-05-11 02:12 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-05-11 02:12 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-05-11 02:12 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-05-11 02:12 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-05-11 02:12 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-05-11 02:12 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-05-11 02:12 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-05-11 02:12 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-05-11 02:11 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-05-11 02:11 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-05-11 02:11 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-05-11 02:11 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-05-11 02:11 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-05-11 02:11 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-05-11 02:11 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-05-11 02:11 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-05-11 02:11 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-05-11 02:11 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-05-11 02:11 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-05-11 02:11 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-05-11 02:11 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-05-11 02:11 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-05-11 02:11 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-05-11 02:11 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-05-11 02:11 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-05-11 02:11 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-05-11 02:10 - 2014-05-11 02:10 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-05-11 02:10 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-05-11 02:10 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-05-11 02:10 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-05-11 02:10 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-05-11 02:10 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-05-11 02:10 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-05-11 02:09 - 2014-05-11 02:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-05-11 02:09 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-05-11 02:09 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-05-11 02:09 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-05-11 02:08 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-05-11 02:08 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-05-11 02:08 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-05-11 02:08 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-05-11 02:08 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-05-11 02:07 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-05-11 02:07 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-05-11 02:07 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-05-11 02:06 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-05-11 02:06 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-05-11 02:06 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-05-11 02:06 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-05-11 02:06 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-05-11 02:06 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-05-11 02:06 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll 2014-05-11 02:06 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-05-11 02:06 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-05-11 01:35 - 2014-05-11 01:35 - 00000998 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-05-11 01:33 - 2014-05-11 01:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-05-11 01:33 - 2014-05-11 01:33 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-05-10 23:45 - 2014-05-10 23:45 - 00001438 _____ () C:\Users\Don Corleone\Desktop\Razer Synapse 2.0 und Razer Surround 7.1.lnk 2014-05-10 23:42 - 2014-05-10 23:42 - 00000000 ____D () C:\ProgramData\RzMaelstromVAD_1.1.52.1675 2014-05-10 23:39 - 2014-05-10 23:39 - 00002089 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-10 23:14 - 2012-05-15 07:13 - 00144896 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-05-10 23:14 - 2012-05-15 06:20 - 00104448 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-05-10 23:12 - 2014-05-10 23:12 - 00000000 ____D () C:\Intel 2014-05-10 22:38 - 2014-05-10 22:38 - 00001171 _____ () C:\Users\Don Corleone\Desktop\Driver Genius.lnk 2014-05-10 21:11 - 2014-05-10 21:11 - 00000000 ____D () C:\Users\Don Corleone\SystemRequirementsLab 2014-05-10 13:49 - 2014-05-10 13:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\Program Files (x86)\vLite 2014-05-08 12:10 - 2014-05-08 12:13 - 00000000 ____D () C:\Users\Don Corleone\Documents\New Unity Project 2014-05-06 19:51 - 2014-05-06 19:51 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Tritton 2014-05-06 19:48 - 2014-05-06 19:48 - 00000000 ____D () C:\Program Files\Tritton 2014-05-03 19:57 - 2014-05-25 00:57 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-03 19:57 - 2014-05-25 00:57 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-02 23:45 - 2014-05-10 23:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-02 23:44 - 2014-05-10 23:41 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-02 13:36 - 2014-05-02 13:36 - 00117223 _____ () C:\Users\Don Corleone\Documents\Unbenannt (2).wma 2014-05-02 13:35 - 2014-05-02 13:35 - 00076813 _____ () C:\Users\Don Corleone\Documents\Unbenannt.wma 2014-05-01 01:50 - 2014-03-01 07:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-05-01 01:50 - 2014-03-01 06:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-05-01 01:50 - 2014-03-01 06:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-05-01 01:50 - 2014-03-01 06:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-05-01 01:50 - 2014-03-01 06:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-05-01 01:50 - 2014-03-01 06:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-05-01 01:50 - 2014-03-01 06:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-05-01 01:50 - 2014-03-01 06:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-05-01 01:50 - 2014-03-01 06:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-05-01 01:50 - 2014-03-01 06:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-05-01 01:50 - 2014-03-01 06:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-05-01 01:50 - 2014-03-01 06:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-05-01 01:50 - 2014-03-01 06:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-05-01 01:50 - 2014-03-01 05:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-05-01 01:50 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-05-01 01:50 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-05-01 01:50 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-05-01 01:50 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-05-01 01:50 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-05-01 01:50 - 2014-03-01 05:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-05-01 01:50 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-05-01 01:50 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-05-01 01:50 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-05-01 01:50 - 2014-03-01 05:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-05-01 01:50 - 2014-03-01 05:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-05-01 01:50 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-05-01 01:50 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-05-01 01:50 - 2014-03-01 05:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-05-01 01:50 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-05-01 01:50 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-05-01 01:50 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-05-01 01:50 - 2014-03-01 04:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-05-01 01:50 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-05-01 01:50 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-05-01 01:50 - 2014-03-01 04:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-05-01 01:50 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-05-01 01:49 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-05-01 01:49 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-05-01 01:49 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-05-01 01:49 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-05-01 01:48 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-05-01 01:48 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-05-01 01:48 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-05-01 01:48 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-05-01 01:48 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-05-01 01:48 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-05-01 01:48 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-05-01 01:46 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-05-01 01:46 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-05-01 01:46 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-05-01 01:46 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-05-01 01:46 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-05-01 01:46 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-05-01 01:46 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-05-01 01:46 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-05-01 01:46 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-05-01 01:46 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-05-01 01:43 - 2014-05-01 01:48 - 00004238 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log ==================== One Month Modified Files and Folders ======= 2014-05-28 13:52 - 2014-05-28 13:52 - 00019271 _____ () C:\Users\Don Corleone\Desktop\FRST.txt 2014-05-28 13:52 - 2014-05-23 19:20 - 00000000 ____D () C:\FRST 2014-05-28 13:51 - 2013-01-26 03:04 - 00001148 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA.job 2014-05-28 13:46 - 2012-12-06 23:55 - 24042729 _____ () C:\Windows\WindowsUpdate.log 2014-05-28 13:46 - 2009-07-14 06:45 - 00023520 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-05-28 13:46 - 2009-07-14 06:45 - 00023520 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-05-28 13:38 - 2014-02-17 18:16 - 00000008 __RSH () C:\ProgramData\ntuser.pol 2014-05-28 13:37 - 2014-05-17 21:24 - 00001636 _____ () C:\Windows\setupact.log 2014-05-28 13:37 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-05-28 13:26 - 2014-05-24 22:16 - 00000000 ____D () C:\Users\Don Corleone\Desktop\FRST-OlderVersion 2014-05-28 13:26 - 2014-05-23 19:18 - 02066944 _____ (Farbar) C:\Users\Don Corleone\Desktop\FRST64.exe 2014-05-28 13:26 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy 2014-05-28 13:21 - 2014-05-24 16:39 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-05-28 13:16 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-28 13:15 - 2013-06-05 17:41 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-05-28 13:14 - 2013-02-12 23:37 - 00000000 ____D () C:\Windows\pss 2014-05-28 13:14 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-28 12:59 - 2014-05-25 00:57 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-05-28 12:58 - 2014-05-11 02:34 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Raptr 2014-05-28 12:57 - 2014-03-31 07:25 - 00004174 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-05-28 01:09 - 2014-03-06 03:03 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\vlc 2014-05-27 16:43 - 2014-05-27 16:42 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Roccat Konfigurationsprogramme 2014-05-27 16:41 - 2013-01-23 04:16 - 00003982 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{F848FC5F-70B1-4207-B3CC-1E729BEFD9A0} 2014-05-27 16:40 - 2014-05-27 16:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT 2014-05-27 16:40 - 2014-05-27 16:30 - 00000000 ____D () C:\Program Files (x86)\ROCCAT 2014-05-27 16:32 - 2014-05-27 16:31 - 00000306 _____ () C:\debug-Stone.txt 2014-05-27 16:31 - 2014-05-27 16:31 - 00000000 ____D () C:\ProgramData\ROCCAT 2014-05-27 16:30 - 2014-05-27 16:30 - 04635536 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_Talk_V2.3.rar 2014-05-27 16:27 - 2014-05-27 16:26 - 20318616 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_Isku_FX_DRV1.08_FW1.05.zip 2014-05-27 16:25 - 2014-05-27 16:24 - 25305708 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_KoneXTD_DRV1.17_FW1.17.zip 2014-05-27 16:24 - 2014-05-27 16:24 - 30450473 _____ () C:\Users\Don Corleone\Desktop\ROCCAT_Kone_XTD_Optical_DRV1.05_FW1.11_BETA.zip 2014-05-27 04:51 - 2013-01-26 03:04 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core.job 2014-05-26 21:29 - 2013-04-29 02:01 - 00000000 ____D () C:\Users\Don Corleone\.VirtualBox 2014-05-26 21:02 - 2014-05-26 21:02 - 00000737 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-05-26 21:02 - 2014-05-26 21:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2014-05-26 20:57 - 2014-05-26 20:53 - 109574432 _____ (Oracle Corporation) C:\Users\Don Corleone\Downloads\VirtualBox-4.3.12-93733-Win.exe 2014-05-26 20:55 - 2014-05-26 20:55 - 10441011 _____ () C:\Users\Don Corleone\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.3.12-93733.vbox-extpack 2014-05-26 20:52 - 2014-03-02 03:33 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\CrashDumps 2014-05-26 19:16 - 2014-05-26 19:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microprose 2014-05-26 19:10 - 2014-05-26 19:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-05-26 19:10 - 2014-05-26 19:10 - 00000000 ____D () C:\Program Files\7-Zip 2014-05-26 19:09 - 2014-05-26 19:09 - 01376768 _____ () C:\Users\Don Corleone\Desktop\7z920-x64.msi 2014-05-25 13:40 - 2014-05-19 16:33 - 00251019 _____ () C:\Windows\DirectX.log 2014-05-25 13:38 - 2013-05-11 21:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deep Silver 2014-05-25 13:25 - 2012-12-11 23:28 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-05-25 11:02 - 2014-05-17 21:24 - 00008172 _____ () C:\Windows\PFRO.log 2014-05-25 00:59 - 2012-12-07 02:22 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Adobe 2014-05-25 00:57 - 2014-05-25 00:57 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-05-25 00:57 - 2014-05-03 19:57 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-05-25 00:57 - 2014-05-03 19:57 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-24 22:33 - 2014-05-24 21:55 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Report 2014-05-24 21:54 - 2013-05-01 05:36 - 00000000 ____D () C:\Windows\DEA314C409294250BC9298E4C105F28D.TMP 2014-05-24 21:52 - 2014-05-24 21:52 - 04320054 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap (2).bmp 2014-05-24 16:51 - 2014-05-24 16:51 - 01016261 _____ (Thisisu) C:\Users\Don Corleone\Desktop\JRT.exe 2014-05-24 16:42 - 2014-04-12 23:28 - 00000000 ____D () C:\AdwCleaner 2014-05-24 16:39 - 2014-05-24 16:39 - 01326389 _____ () C:\Users\Don Corleone\Desktop\adwcleaner_3.210.exe 2014-05-24 16:39 - 2014-05-24 16:39 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-05-24 16:39 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-24 16:39 - 2014-01-28 13:57 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-24 16:37 - 2013-01-12 03:36 - 00000000 ____D () C:\Windows\SysWOW64\directx 2014-05-24 16:31 - 2014-05-24 16:27 - 100273008 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\directx_Jun2010redist.exe 2014-05-24 16:30 - 2014-05-24 16:29 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Don Corleone\Downloads\mbam-setup-2.0.2.1012.exe 2014-05-24 16:27 - 2014-05-24 16:27 - 00292184 _____ (Microsoft Corporation) C:\Users\Don Corleone\Downloads\dxwebsetup.exe 2014-05-23 23:55 - 2014-05-23 23:55 - 03434761 _____ () C:\Users\Don Corleone\Downloads\tweaking.com_windows_repair_aio.zip 2014-05-23 23:23 - 2014-05-23 23:23 - 01003160 _____ (EFSoftware) C:\Users\Don Corleone\Downloads\EF_Process_Manager_6.50_64.exe 2014-05-23 19:36 - 2014-05-23 19:36 - 00380416 _____ () C:\Users\Don Corleone\Downloads\gjb83f0t.exe 2014-05-23 17:20 - 2014-05-23 17:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Codemasters 2014-05-23 16:34 - 2014-05-23 15:36 - 14151680 _____ () C:\Users\Don Corleone\AppData\Roaming\Sandra.mdb 2014-05-23 14:51 - 2014-05-23 14:51 - 00000540 _____ () C:\Windows\WMFDist64.log 2014-05-23 14:48 - 2014-05-23 14:48 - 00000845 _____ () C:\Users\Public\Desktop\SiSoftware Sandra Lite 2014.SP2.lnk 2014-05-23 14:48 - 2014-05-23 14:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware 2014-05-23 14:48 - 2013-02-11 11:32 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Windows Live 2014-05-23 14:46 - 2014-05-23 14:43 - 00000000 ____D () C:\Users\Don Corleone\Downloads\Systemprogramme 2014-05-23 14:45 - 2014-05-23 14:43 - 69069552 _____ (SiSoftware ) C:\Users\Don Corleone\Downloads\san2025.exe 2014-05-23 14:39 - 2014-05-23 14:39 - 00000017 _____ () C:\Users\Don Corleone\AppData\Local\resmon.resmoncfg 2014-05-23 14:13 - 2014-05-23 14:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeepSilver 2014-05-22 07:07 - 2014-05-22 07:07 - 00000000 ____D () C:\Users\Don Corleone\Documents\Stronghold 3 2014-05-22 06:58 - 2014-05-22 06:58 - 00000927 _____ () C:\Users\Public\Desktop\Stronghold 3 Gold.lnk 2014-05-22 06:58 - 2012-12-14 23:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios 2014-05-22 06:44 - 2009-07-14 19:58 - 00736716 _____ () C:\Windows\system32\perfh007.dat 2014-05-22 06:44 - 2009-07-14 19:58 - 00160462 _____ () C:\Windows\system32\perfc007.dat 2014-05-22 06:44 - 2009-07-14 07:13 - 01709418 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-05-22 06:42 - 2013-01-23 04:12 - 00003160 _____ () C:\Windows\System32\Tasks\SidebarExecute 2014-05-22 06:41 - 2014-05-22 06:41 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2014-05-22 06:30 - 2014-05-22 06:30 - 00000000 ____D () C:\Users\Don Corleone\Documents\DIE SIEDLER - Aufstieg eines Königreichs 2014-05-21 22:38 - 2014-03-02 06:42 - 00000000 ____D () C:\Program Files (x86)\Raptr 2014-05-21 07:13 - 2014-05-21 07:13 - 00004096 _____ () C:\Windows\d3dx.dat 2014-05-21 07:13 - 2014-05-21 07:13 - 00000000 ____D () C:\Users\Public\Documents\Deutschland Spielt 2014-05-19 22:04 - 2014-05-19 22:00 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller.exe 2014-05-19 18:24 - 2014-05-19 18:24 - 00000000 _____ () C:\Users\Don Corleone\Desktop\Neue Bitmap.bmp 2014-05-19 17:42 - 2014-05-19 17:42 - 00000823 _____ () C:\Users\Don Corleone\Desktop\Uplay.lnk 2014-05-19 17:42 - 2012-12-07 22:27 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Ubisoft Game Launcher 2014-05-19 17:41 - 2014-05-19 17:40 - 61252232 _____ (Ubisoft) C:\Users\Don Corleone\Downloads\UplayInstaller_4.5.0.exe 2014-05-19 17:04 - 2014-03-02 04:15 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab 2014-05-19 17:03 - 2014-05-19 17:03 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection(1).msi 2014-05-17 21:24 - 2014-05-17 21:24 - 00000000 _____ () C:\Windows\setuperr.log 2014-05-17 21:23 - 2013-01-26 03:15 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-17 21:23 - 2012-12-17 17:47 - 00000969 _____ () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-17 21:23 - 2012-12-07 00:58 - 00001025 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-05-17 21:22 - 2014-05-17 21:22 - 01325827 _____ () C:\Users\Don Corleone\Downloads\adwcleaner_3.208.exe 2014-05-17 10:08 - 2014-05-17 10:08 - 00000000 ____D () C:\Users\Don Corleone\Desktop\Alte Firefox-Daten 2014-05-17 09:18 - 2014-05-17 09:18 - 23792584 _____ (Foofind Labs, S.L. ) C:\Users\Don Corleone\Downloads\foofind_download_manager_redist.exe 2014-05-17 09:18 - 2014-05-17 09:18 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Foofind Download Manager 2014-05-17 09:15 - 2012-12-07 00:01 - 00000000 ___RD () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-17 09:09 - 2014-05-17 09:09 - 00000000 ____D () C:\Users\Don Corleone\Desktop\ost 2014-05-17 04:24 - 2014-02-18 22:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX 2014-05-17 04:24 - 2012-12-13 01:18 - 00000000 ____D () C:\Program Files (x86)\DivX 2014-05-17 04:24 - 2012-12-13 01:16 - 00000000 ____D () C:\ProgramData\DivX 2014-05-17 04:21 - 2014-05-17 04:21 - 01001280 _____ (DivX, LLC) C:\Users\Don Corleone\Desktop\DivXInstaller.exe 2014-05-17 00:54 - 2009-07-14 07:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-05-16 14:04 - 2014-05-26 21:02 - 00254240 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-05-16 14:03 - 2014-05-26 21:02 - 00128288 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-05-16 14:03 - 2014-05-16 14:03 - 00156448 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys 2014-05-16 14:03 - 2014-05-16 14:03 - 00141600 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp.sys 2014-05-16 14:01 - 2014-05-16 14:01 - 00204064 _____ (Oracle Corporation) C:\Windows\system32\VBoxNetFltNobj.dll 2014-05-16 01:22 - 2014-03-02 14:45 - 00000000 ____D () C:\Windows\rescache 2014-05-15 15:45 - 2014-03-31 07:25 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2014-05-15 15:45 - 2014-03-31 07:25 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2014-05-15 15:45 - 2014-03-31 07:25 - 00085328 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys 2014-05-15 15:43 - 2012-12-07 00:01 - 00000000 ___RD () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-15 15:40 - 2009-07-14 06:45 - 00439144 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-05-15 05:23 - 2014-05-15 05:23 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-05-15 05:19 - 2014-02-07 21:37 - 00000000 ____D () C:\Windows\system32\MRT 2014-05-14 13:20 - 2012-12-07 02:19 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-05-12 07:26 - 2014-05-24 16:39 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-05-12 07:26 - 2014-05-24 16:39 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-05-12 07:25 - 2014-05-24 16:39 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-05-11 02:40 - 2014-05-11 02:40 - 00062044 _____ () C:\Windows\SysWOW64\CCCInstall_201405110240294523.log 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2014-05-11 02:40 - 2014-05-11 02:40 - 00000000 ____D () C:\ProgramData\ATI 2014-05-11 02:40 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-05-11 02:40 - 2012-12-07 03:30 - 00000000 ____D () C:\ProgramData\AMD 2014-05-11 02:40 - 2012-12-07 01:47 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\ATI 2014-05-11 02:40 - 2012-12-07 01:47 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\ATI 2014-05-11 02:39 - 2014-05-11 02:30 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-05-11 02:35 - 2014-05-11 02:35 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2014-05-11 02:31 - 2014-05-11 02:31 - 00000000 ____D () C:\Program Files\ATI 2014-05-11 02:31 - 2013-07-10 02:21 - 00000000 ____D () C:\ProgramData\Package Cache 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-05-11 02:13 - 2014-05-11 02:13 - 00000000 ____D () C:\Program Files\Realtek 2014-05-11 02:10 - 2014-05-11 02:10 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-05-11 02:09 - 2014-05-11 02:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-05-11 02:04 - 2012-12-07 00:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-11 01:35 - 2014-05-11 01:35 - 00000998 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk 2014-05-11 01:33 - 2014-05-11 01:33 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-05-11 01:33 - 2014-05-11 01:33 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 01039096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.1400161518694 2014-05-11 01:33 - 2014-03-31 07:25 - 00423240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.1400161518694 2014-05-11 01:33 - 2014-03-31 07:25 - 00208416 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 00079184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2014-05-11 01:33 - 2014-03-31 07:25 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2014-05-11 01:33 - 2014-03-31 07:24 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2014-05-11 01:33 - 2014-03-31 07:24 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2014-05-11 00:02 - 2012-12-07 01:08 - 00113952 _____ () C:\Users\Don Corleone\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-10 23:45 - 2014-05-10 23:45 - 00001438 _____ () C:\Users\Don Corleone\Desktop\Razer Synapse 2.0 und Razer Surround 7.1.lnk 2014-05-10 23:42 - 2014-05-10 23:42 - 00000000 ____D () C:\ProgramData\RzMaelstromVAD_1.1.52.1675 2014-05-10 23:41 - 2014-05-02 23:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2014-05-10 23:41 - 2014-05-02 23:44 - 00000000 ____D () C:\Program Files (x86)\Razer 2014-05-10 23:39 - 2014-05-10 23:39 - 00002089 _____ () C:\Users\Public\Desktop\Razer Game Booster.lnk 2014-05-10 23:39 - 2013-01-19 07:50 - 00000000 ____D () C:\ProgramData\Razer 2014-05-10 23:39 - 2012-12-18 20:17 - 00000000 ___RD () C:\Users\Don Corleone\Desktop\Spiele 2014-05-10 23:38 - 2013-06-27 21:20 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Razer 2014-05-10 23:14 - 2012-12-07 01:50 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-10 23:12 - 2014-05-10 23:12 - 00000000 ____D () C:\Intel 2014-05-10 23:12 - 2012-12-07 00:36 - 00000000 ____D () C:\Program Files\Intel 2014-05-10 22:39 - 2009-07-14 04:34 - 00001369 _____ () C:\Windows\system32\Drivers\etc\hosts.old 2014-05-10 22:38 - 2014-05-10 22:38 - 00001171 _____ () C:\Users\Don Corleone\Desktop\Driver Genius.lnk 2014-05-10 21:19 - 2014-03-27 08:43 - 00000000 ____D () C:\Users\Don Corleone\Desktop\von chip 2014-05-10 21:11 - 2014-05-10 21:11 - 00000000 ____D () C:\Users\Don Corleone\SystemRequirementsLab 2014-05-10 21:11 - 2012-12-07 00:01 - 00000000 ____D () C:\Users\Don Corleone 2014-05-10 13:49 - 2014-05-10 13:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-09 08:14 - 2014-05-15 05:10 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-05-09 08:11 - 2014-05-15 05:10 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-05-08 18:27 - 2013-03-24 15:59 - 00000000 ____D () C:\Program Files (x86)\nLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vLite 2014-05-08 18:26 - 2014-05-08 18:26 - 00000000 ____D () C:\Program Files (x86)\vLite 2014-05-08 12:13 - 2014-05-08 12:10 - 00000000 ____D () C:\Users\Don Corleone\Documents\New Unity Project 2014-05-08 12:13 - 2013-10-24 21:04 - 00000000 ____D () C:\ProgramData\Unity 2014-05-08 09:14 - 2014-05-15 05:21 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-05-08 08:37 - 2014-05-15 05:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-05-08 07:52 - 2014-05-15 05:21 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-05-08 07:27 - 2014-05-15 05:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-05-08 06:57 - 2014-05-15 05:21 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-05-08 06:04 - 2014-05-15 05:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-05-06 19:51 - 2014-05-06 19:51 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Tritton 2014-05-06 19:48 - 2014-05-06 19:48 - 00000000 ____D () C:\Program Files\Tritton 2014-05-05 22:34 - 2013-04-16 17:21 - 00000000 ____D () C:\ProgramData\Steam 2014-05-04 17:12 - 2012-12-16 17:49 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-05-03 21:23 - 2013-08-01 23:33 - 00003347 _____ () C:\Windows\Cm106.ini.imi 2014-05-03 21:02 - 2014-05-03 21:02 - 00000000 ____D () C:\Users\Don Corleone\Documents\Activision 2014-05-03 21:02 - 2013-02-08 12:11 - 00000000 ____D () C:\Users\Don Corleone\AppData\Local\Activision 2014-05-03 19:45 - 2014-04-08 15:44 - 00000663 _____ () C:\Users\Don Corleone\AppData\Roaming\MPQEditor.ini 2014-05-03 19:45 - 2014-04-08 15:43 - 00000000 ____D () C:\Program Files (x86)\SC2Allin1 2014-05-03 19:44 - 2012-12-18 20:17 - 00000000 ___RD () C:\Users\Don Corleone\Desktop\Programme 2014-05-03 19:36 - 2012-12-07 22:34 - 00000000 ____D () C:\ProgramData\Ubisoft 2014-05-03 19:20 - 2013-01-07 22:31 - 00000000 ____D () C:\ProgramData\Solidshield 2014-05-02 23:58 - 2014-03-02 13:21 - 00626688 _____ () C:\Users\Don Corleone\Downloads\Detection.msi 2014-05-02 13:36 - 2014-05-02 13:36 - 00117223 _____ () C:\Users\Don Corleone\Documents\Unbenannt (2).wma 2014-05-02 13:35 - 2014-05-02 13:35 - 00076813 _____ () C:\Users\Don Corleone\Documents\Unbenannt.wma 2014-05-01 14:18 - 2013-05-20 04:52 - 00000000 ____D () C:\Users\Don Corleone\AppData\Roaming\StarTrekPC 2014-05-01 01:48 - 2014-05-01 01:43 - 00004238 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log 2014-05-01 01:43 - 2014-03-27 03:22 - 00000000 ____D () C:\Program Files (x86)\Java Some content of TEMP: ==================== C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole1295142160822236584.dll C:\Users\Don Corleone\AppData\Local\Temp\proxy_vole8357354060676779179.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit testsigning: ==> Check for possible unsigned rootkit driver <===== ATTENTION! LastRegBack: 2014-05-19 19:28 ==================== End Of Log ============================ Geändert von Chaikobar (28.05.2014 um 13:13 Uhr) Grund: FRST Scan Log hinzugefügt |
28.05.2014, 13:11 | #11 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Ich warte auf die anderen Logs.
__________________ Proud member of Unite |
28.05.2014, 13:14 | #12 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Additions.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-05-2014 02 Ran by Don Corleone at 2014-05-28 13:52:59 Running from C:\Users\Don Corleone\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Disabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== 1.3M HD WebCam (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.3.6.01 - SunplusIT) 3D-Fahrschule (HKLM-x32\...\3D-Fahrschule) (Version: - ) 720+ User Interface (HKLM\...\{AD3320DC-2703-40EA-B0F6-1705C1A62A73}) (Version: 1.2.5 - Tritton) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) ACP Application (HKLM\...\{A2F0A6C6-350D-3C9C-DF7A-DE18C0606243}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Age of Wonders III (HKLM-x32\...\Steam App 226840) (Version: - Triumph Studios) AIDA64 Business Edition v3.20 (HKLM-x32\...\AIDA64 Business Edition_is1) (Version: 3.20 - FinalWire Ltd.) AKFQuiz (HKLM-x32\...\akfquiz) (Version: 4.4.1 - AKFoerster) AMD Accelerated Video Transcoding (HKLM-x32\...\{C7322AB9-5726-5538-1466-F0C4104DDB5F}) (Version: 13.20.100.31206 - Advanced Micro Devices, Inc.) AMD Accelerated Video Transcoding (Version: 13.10.100.30523 - Advanced Micro Devices, Inc.) Hidden AMD Accelerated Video Transcoding (Version: 13.30.100.40417 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.0417.2226.38446 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{3FAEEEBE-48F4-84C1-2B49-96AE73E67E3E}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Catalyst Install Manager (HKLM\...\{9C8341F4-5BCC-9B8D-FB38-05DE3EA5DC38}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.80523.1654 - Advanced Micro Devices, Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.81206.1620 - Advanced Micro Devices, Inc.) Hidden AMD Steady Video Plug-In (HKLM\...\{723AEA0A-E9CF-44F7-AFE4-0617E8D4755A}) (Version: 2.06.0000 - AMD) AMD Steady Video Plug-In (HKLM\...\{833F5E6D-6E01-11D1-978E-6DFBCEF72570}) (Version: 2.06.0000 - AMD) AMD Wireless Display v3.0 (Version: 1.0.0.14 - Advanced Micro Devices, Inc.) Hidden AMD Wireless Display v3.0 (Version: 1.0.0.15 - Advanced Micro Devices, Inc.) Hidden Any Video Converter 3.5.5 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) ArtMoney SE v7.41 (HKLM-x32\...\ArtMoney SE_is1) (Version: 7.41 - System SoftLab) Assassin's Creed (HKLM-x32\...\{8CFA9151-6404-409A-AF22-4632D04582FD}) (Version: 1.00 - Ubisoft) Assassin's Creed Brotherhood (HKLM-x32\...\{BE4BA698-8533-4F77-9559-C7F3F78C0B05}) (Version: 1.00 - Ubisoft) Assassin's Creed II (HKLM-x32\...\{8570BEE8-0CA3-4977-9AB1-80ED93F0513C}) (Version: 1.01 - Ubisoft) Aufstieg des Hexenkönigs™ (HKLM-x32\...\{B931FB80-537A-4600-00AD-AC5DEDB6C25B}) (Version: - ) avast! Free Antivirus (HKLM-x32\...\Avast) (Version: 9.0.2018 - Avast Software) BFME2 MOD SDK (HKLM-x32\...\{75569CDC-0C64-45C6-962E-C4A49F3C56DF}) (Version: 1.0.0 - Electronic Arts) Black & White® 2 (HKLM-x32\...\{D9E52CD1-9DF1-4A8A-9BDC-1E5E53982F2B}) (Version: 1.00.0000 - Lionhead Studios) Call of Duty(R) - World at War(TM) (HKLM-x32\...\InstallShield_{D80A6A73-E58A-4673-AFF5-F12D7110661F}) (Version: 1.7 - Activision) Call of Duty(R) - World at War(TM) (x32 Version: 1.0 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.1 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.1 Patch (x32 Version: 1.1 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.2 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.2 Patch (x32 Version: 1.2 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.4 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.4 Patch (x32 Version: 1.4 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.4.1 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.4.1 Patch (x32 Version: 1.4.1 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.5 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.5 Patch (x32 Version: 1.5 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) - World at War(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) - World at War(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision) Call of Duty(R) 4 - Modern Warfare(TM) (x32 Version: 1.00.0000 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (x32 Version: 1.6 - Activision) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: - ) Hidden Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (x32 Version: 1.7 - Activision) Hidden CameraHelperMsi (x32 Version: 13.31.1038.0 - Logitech) Hidden Camtasia Studio 8 (HKLM-x32\...\{8F6F7194-0734-4CDA-8C04-6B766F2241A6}) (Version: 8.0.4.1060 - TechSmith Corporation) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.1219.1521.27485 - Ihr Firmenname) Hidden Catalyst Control Center (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0523.1654.28486 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0223.2239.40626 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2011.0524.2352.41027 - ATI) Hidden Catalyst Control Center Localization All (x32 Version: 2012.1219.1521.27485 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2013.1206.1602.28764 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.1219.1520.27485 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.0417.2225.38446 - Advanced Micro Devices, Inc.) Hidden ccc-utility (x32 Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2013.1206.1603.28764 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.0417.2226.38446 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform) Celtx (2.9.7) (HKLM-x32\...\Celtx (2.9.7)) (Version: 2.9.7 (de) - Greyfirst) Cheat Engine 6.2 (HKLM-x32\...\Cheat Engine 6.2_is1) (Version: - Dark Byte) com! Update Pack Builder 5.0.7 (HKLM-x32\...\com! Update Pack Builder_is1) (Version: - com! - Das Computer Magazin) Command & Conquer™ Alarmstufe Rot 3 Der Aufstand (HKLM-x32\...\{DDE59617-F59A-473B-BC4E-C2B81F6CD38D}) (Version: 1.0.1.0 - Electronic Arts) Common RTP 1.0 (HKLM-x32\...\RPGAdvocates_RTP_1.0) (Version: - ) Core Temp 1.0 RC5 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.0 - Alcpu) CyberLink PowerDVD 11 (HKLM-x32\...\InstallShield_{F232C87C-6E92-4775-8210-DFE90B7777D9}) (Version: 11.0.2211.53 - CyberLink Corp.) CyberLink PowerDVD 11 (x32 Version: 11.0.2211.53 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Der VerkehrsGigant-Gold Edition (HKLM-x32\...\Der VerkehrsGigant-Gold Edition) (Version: - ) DH Driver Cleaner Professional Edition (HKLM-x32\...\Driver Cleaner Pro) (Version: Version 1.5 - Ruud Ketelaars) Die Schlacht um Mittelerde(tm) (HKLM-x32\...\{3F290582-3F4E-4B96-009C-E0BABAA40C42}) (Version: - ) Die Schlacht um Mittelerde™ II (HKLM-x32\...\{2A9F95AB-65A3-432c-8631-B8BC5BF7477A}) (Version: - ) DIE SIEDLER - Aufstieg eines Königreichs (HKLM-x32\...\{D3F80A98-05AB-4D8C-9272-766CCFA6A48D}) (Version: 1.00.0000 - Ubisoft) Die Siedler 7 (HKLM-x32\...\{9C916142-C18C-429D-BFED-40094A7E0BEB}) (Version: 1.12.1396 - Ubisoft) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.3.22 - DivX, LLC) Dragon NaturallySpeaking 11 (HKLM-x32\...\{EFFA53BC-8C04-2E21-3D90-A13B1697B0CA}) (Version: 11.50.100 - Nuance Communications Inc.) Driver Fusion (HKLM-x32\...\{100C8F3B-82D6-4B14-BB7A-5E8C3FF810C8}_is1) (Version: 1.4.0 - Treexy) Duplicate Cleaner Free 3.0.1 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 3.0.1 - DigitalVolcano) Empire at War Forces of Corruption Mappack 7.00 (HKLM-x32\...\Empire at War Forces of Corruption Mappack) (Version: 7.00 - Petroglyph Games Inc.) erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden ETDWare PS/2-X64 11.6.4.001_WHQL (HKLM\...\Elantech) (Version: 11.6.4.001 - ELAN Microelectronic Corp.) Excelsior Installer 2.2 (HKLM-x32\...\Excelsior_0) (Version: 2.2 - Excelsior) eXe -- eLearning XHTML editor (HKLM-x32\...\exe) (Version: - eXe Project) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{34EB6245-C8D0-4D8A-B8D8-EEBFF7A91485}) (Version: 2.1.27.0 - MAGIX AG) FOCMapEditor (HKLM-x32\...\{1E869B1A-FE19-4519-B9AE-EF383A7C00E4}) (Version: 1.0.0 - Petroglyph) Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Game of Thrones Version 1.4.2.0 (HKLM-x32\...\AGOT_is1) (Version: 1.4.2.0 - Cyanide) GanttProject (HKLM-x32\...\GanttProject) (Version: - ) GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team) Google Chrome (HKCU\...\Google Chrome) (Version: 33.0.1750.117 - Google Inc.) Google Earth (HKLM-x32\...\{3E8A20E1-223F-11E2-9116-B8AC6F98CCE3}) (Version: 7.0.1.8244 - Google) Gothic 3 (HKLM-x32\...\{13F59927-CFBE-44D1-8417-7203AD4F1795}) (Version: 1.0.0 - JoWooD) Guild 2 Patch (HKLM-x32\...\{E9E09EAA-0FF8-42A1-ACAB-67F2A691E50F}) (Version: 1.0.0 - JoWood) Harry Potter und der Halbblut-Prinz™ (HKLM-x32\...\{FD1B1980-8CAB-4474-89F8-1245AF657AD1}) (Version: 1.0.0.0 - Electronic Arts) Hitman Absolution (HKLM-x32\...\Hitman Absolution_is1) (Version: - ) Hitman Absolution DLC-Pack 1.00 (HKLM-x32\...\Hitman Absolution DLC-Pack 1.00) (Version: - ) Hospital Tycoon (HKLM-x32\...\HospitalTycoon) (Version: - ) HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden IndustrieGigant 2 (HKLM-x32\...\{8D914DD2-F3CE-44E4-9498-E7EED093281C}_is1) (Version: - UIG GmbH) Intel(R) Chipset Device Software (Version: 10.0.13 - Intel Corporation) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.0.1428 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.3517 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.5.0.1066 - Intel Corporation) Intel(R) Rapid Storage Technology (Version: 12.5.0.1066 - Intel Corporation) Hidden Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.13 - Intel(R) Corporation) Hidden Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\3FD0C489-0F02-481a-A3E1-9754CD396761) (Version: - Intel Corporation) Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.18.68.55 - Huawei Technologies Co.,Ltd) James Cameron's AVATAR(tm): DAS SPIEL (HKLM-x32\...\{7E19B002-4CA3-4C9F-BA92-91D101B97219}) (Version: 1.01.00 - Ubisoft) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle) Java 7 Update 51 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417051FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Just Cause Complete Edition (HKLM-x32\...\{1A185E0C-32BB-4285-B53C-4B70D3F7ADF4}_is1) (Version: v1.0 - Grosses_K) Kingdoms of Amalur - Reckoning (HKLM-x32\...\Kingdoms of Amalur - Reckoning_is1) (Version: - ) KUDOS RS Gaming Mouse (HKLM-x32\...\SPEEDLINK KUDOS) (Version: - ) Lenovo LeTools (HKLM-x32\...\{4FB26144-F808-47B2-883C-18A480662810}) (Version: 2.0.320 - Lenovo) Lenovo Mobile Device Drivers (HKLM-x32\...\{8FE68BC1-26DE-446E-A270-2A608C7553E9}) (Version: 3.3.10 - Lenovo) Logitech Vid HD (HKLM-x32\...\Logitech Vid) (Version: 7.2 (7248) - Logitech Inc..) Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.) LWS Facebook (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Gallery (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Help_main (x32 Version: 13.31.1044.0 - Logitech) Hidden LWS Launcher (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Motion Detection (x32 Version: 13.30.1395.0 - Logitech) Hidden LWS Pictures And Video (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS Twitter (x32 Version: 13.30.1346.0 - Logitech) Hidden LWS Video Mask Maker (x32 Version: 13.30.1379.0 - Logitech) Hidden LWS VideoEffects (Version: 13.30.1379.0 - Logitech) Hidden LWS Webcam Software (x32 Version: 13.31.1038.0 - Logitech) Hidden LWS WLM Plugin (x32 Version: 1.30.1201.0 - Logitech) Hidden LWS YouTube Plugin (x32 Version: 13.31.1038.0 - Logitech) Hidden MAGIX Music Maker MX Premium Download-Version (HKLM-x32\...\MAGIX_MSI_mm18dlx) (Version: 18.0.0.42 - MAGIX AG) MAGIX Music Maker MX Premium Download-Version (x32 Version: 18.0.0.42 - MAGIX AG) Hidden MAGIX Screenshare (HKLM-x32\...\{0A89364A-98BC-42AD-87DD-25BFE7C39EAC}) (Version: 4.3.6.1987 - MAGIX AG) MAGIX Speed burnR (MSI) (HKLM-x32\...\{6327A158-4E59-4E01-8E41-F325D3D4BAA0}) (Version: 7.0.2.6 - MAGIX AG) Majesty 2 Collection (HKLM-x32\...\Majesty 2 Collection_is1) (Version: - ) Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Managed DirectX (0901) (x32 Version: 4.09.00.0901 - Microsoft) Hidden Mass Effect 2 Deluxe Edition (HKLM-x32\...\{A36A5251-2379-429B-9785-EEF2A5F8DBCB}_is1) (Version: v1.02) Mass Effect™ 3 (HKLM-x32\...\{6A9D1594-7791-48f5-9CAA-DE9BCB968320}) (Version: 1.01.0.0 - Electronic Arts) Max Payne 2 (HKLM-x32\...\{EFE1AB94-5466-4B6E-BE31-FF4C115FD25D}) (Version: 1.01.102 - ) MEDUSA NX USB 5.1 Gaming Headset (HKLM\...\C-Media CM106 Like Sound Driver) (Version: - ) MegaTrainer eXperience V1.1.8.9 (HKLM-x32\...\MegaTrainer eXperience_is1) (Version: - ) MegaTrainer XL V1.5.8.0 (HKLM-x32\...\MegaTrainer XL_is1) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}) (Version: - ) Microsoft .NET Framework 1.1 SP1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Compatibility Toolkit 5.6 (HKLM-x32\...\{0F5AEBB0-43F3-4571-ACE7-A7942E8AA179}) (Version: 5.6.7324.0 - Microsoft Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.30730.0 - Microsoft Corporation) Microsoft Fix it Center (HKLM\...\{B7588D45-AFDC-4C93-9E2E-A100F3554B64}) (Version: 1.0.0100 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{F2508213-9989-4E85-A078-72BE483917EF}) (Version: 3.5.88.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 Language Pack - DEU (Version: 1.1.40219 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.20125.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM-x32\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (x32 Version: 3.5.8080.0 - Microsoft Corporation) Hidden Microsoft SQL Server Compact 3.5 SP2 x64 DEU (HKLM\...\{C3EAE456-7E7A-451F-80EF-F34C7A13C558}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (Version: 3.5.8080.0 - Microsoft Corporation) Hidden Microsoft Visual C++ Compilers 2010 Standard - enu - x86 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable - KB2467175 (HKLM-x32\...\{a0fe116e-9a8a-466f-aee0-625cb7c207e3}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{86CE1746-9EFF-3C9C-8755-81EA8903AC34}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{7CBA9009-7EA4-338B-893D-9607CD829ADF}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610 (Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610 (x32 Version: 11.0.60610 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU (HKLM\...\{3C983A67-DFB2-3D3D-AD9E-CA1A5A09FD18}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (x32 Version: 10.0.40219 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.50330 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.50325 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50325 - Microsoft Corporation) Microsoft Windows Media Video 9 VCM (HKLM-x32\...\WMV9_VCM) (Version: - ) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Mortal Kombat Komplete Edition (HKLM-x32\...\Mortal Kombat Komplete Edition_is1) (Version: - Warner Bros. Interactive Entertainment) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSM2MSI_gstudio (HKLM-x32\...\{C53F001E-5912-4E76-AC49-9AC20B36B1A2}) (Version: 2.0 - Pantaray) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) Multi-Targeting Pack for Microsoft .NET Framework 4.0.3 (KB2600213) (HKLM-x32\...\Multi-Targeting Pack for Microsoft .NET Framework 4.0.3) (Version: 4.0.551 - Microsoft Corporation) Multi-Targeting Pack for Microsoft .NET Framework 4.0.3 (KB2600213) (x32 Version: 4.0.551 - Microsoft Corporation) Hidden nLite 1.4.9.1 (HKLM-x32\...\nLite_is1) (Version: 1.4.9.1 - Dino Nuhagic (nuhi)) Nullsoft Install System (HKLM-x32\...\NSIS) (Version: 2.46 - ) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Oracle VM VirtualBox 4.3.12 (HKLM\...\{B5121457-0126-4E62-BCBF-6DC7C73D9E4A}) (Version: 4.3.12 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.1.10.2728 - Electronic Arts, Inc.) Packard Bell Power Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3000 - Packard Bell) Packard Bell Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3502 - Packard Bell) Paint Shop Pro 7 (HKLM-x32\...\{D6DE02C7-1F47-11D4-9515-00105AE4B89A}) (Version: 7.0.0.0000 - Jasc Software Inc) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden PianoFX STUDIO 4.0 (HKLM-x32\...\PianoFX STUDIO 4.0_is1) (Version: 4.0 - Tanseon Systems) Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.16 - Qualcomm Atheros Communications Inc.) Qualcomm Atheros Fast Reconnect (HKLM-x32\...\{0CA2063D-D43F-41F2-A8AC-A3C4A4C722D2}) (Version: 1.0 - QualComm Atheros) Raptr (HKLM-x32\...\Raptr) (Version: - ) Razer Game Booster (HKLM-x32\...\Razer Game Booster_is1) (Version: 4.2.42.0 - Razer Inc.) Razer Megalodon Firmware Updater (HKLM-x32\...\{C67A3F9D-E55D-4288-B4EC-1B9863EFB288}) (Version: 2.12.02 - Razer USA Ltd.) Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.03 - Razer Inc.) Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.02 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30123 - Realtek Semiconductor Corp.) Realtek USB Card Reader (HKLM-x32\...\{1E496A68-4943-424E-829D-5C3C85B7B8F2}) (Version: 6.2.9200.30150 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.26.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.26.0 - Renesas Electronics Corporation) Hidden Restaurant Empire II (HKLM-x32\...\Restaurant Empire II) (Version: 1.00 - Kalypso Media) Restaurant Empire II Patch 1.001 (HKLM-x32\...\Restaurant Empire II Patch 1.001) (Version: 1.001 - Kalypso Media) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) RGSS-RTP Standard (HKLM-x32\...\RGSS-RTP Standard_is1) (Version: 1.04 - Enterbrain) Risen 2 Dark Waters (HKLM-x32\...\Risen 2 Dark Waters_is1) (Version: - ) Risiko II (HKLM-x32\...\{0EE11800-A1BD-11D3-BFEB-005004AF2D32}) (Version: - ) ROCCAT Isku FX Keyboard Driver (HKLM-x32\...\{DC69933C-E7B0-455D-8E54-FAC1EEF046FF}) (Version: - Roccat GmbH) ROCCAT Kone XTD Mouse Driver (HKLM-x32\...\{7133137D-DF48-4522-AD88-13C82B7D0A63}) (Version: - Roccat GmbH) Roccat Talk (HKLM-x32\...\{605D671E-1D1E-4840-84D9-BFACE17F160D}) (Version: 1.00.0004 - Roccat GmbH) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.2.14014_6 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.34.0 - SAMSUNG Electronics Co., Ltd.) Security Task Manager 1.8g (HKLM-x32\...\Security Task Manager) (Version: 1.8g - Neuber Software) SiSoftware Sandra Lite 2014.SP2 (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2396}_is1) (Version: 20.28.2014.5 - SiSoftware) Space Colony (HKLM-x32\...\{CBC861A4-693B-6E23-B148-662CD45C97EF}) (Version: 1.1 - ) Spellforce 2 Gold (HKLM-x32\...\{746F49C9-3789-4F8E-AF3A-3A4B42ACFAF8}) (Version: 1.00.0000 - JoWooD Productions Software AG) SpellForce 2 Patch (x32 Version: 1.0.0 - JoWood) Hidden Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.2.25 - Safer-Networking Ltd.) Stadtbahn Simulator Düsseldorf (HKLM-x32\...\{83CD9117-D772-437B-8B18-6D00BCFE9E01}) (Version: 1.0.0 - Rondomedia) Star Trek (HKLM-x32\...\Steam App 203250) (Version: - Digital Extremes) Star Trek Online (HKLM-x32\...\Star Trek Online) (Version: - Cryptic Studios) Star Wars Battlefront II (HKLM-x32\...\{3D374523-CFDE-461A-827E-2A102E2AB365}) (Version: 1.0 - LucasArts) Star Wars Empire at War (HKLM-x32\...\{99AE7207-8612-4DBA-A8F8-BAE5C633390D}) (Version: 1.0 - LucasArts) Star Wars Empire at War Forces of Corruption (HKLM-x32\...\{6592FDEC-2C1A-413A-9985-25FEC2F0848D}) (Version: 1.0 - LucasArts) Star Wars Jedi Knight Jedi Academy (HKLM-x32\...\{0D994CC5-819F-4657-84DD-397B8FE1EA80}) (Version: - ) StarCraft II (HKLM-x32\...\StarCraft II) (Version: 1.0.0.16117 - Blizzard Entertainment) StarCraft II Heart of the Swarm (c) Blizzard version 1 (HKLM-x32\...\U3RhckNyYWZ0IElJ_is1) (Version: 1 - ) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold (HKLM-x32\...\{C917BA70-28A3-4C74-B163-41FD8C8E1A5A}) (Version: 1.20.0000 - Firefly Studios) Stronghold 2 (HKLM-x32\...\{16D2C649-CBA8-44EE-B730-12584667D487}) (Version: 1.40.1000 - Firefly Studios) Stronghold 3 Gold (HKLM-x32\...\Stronghold 3 Gold_is1) (Version: - ) Stronghold Crusader Extreme HD (HKLM-x32\...\GOGPACKSTRONGHOLDCRUSADERHD_is1) (Version: 2.0.0.6 - GOG.com) Stronghold Legends (HKLM-x32\...\{66A405D2-BA14-4594-BF36-B3B544F0754E}) (Version: 1.20.0000 - Firefly Studios) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.6.0 - Synaptics Incorporated) Syndicate (HKLM-x32\...\{140E3DE7-A949-4267-841C-28E1F41857D4}_is1) (Version: 1.0 - RAF) System Requirements Lab Detection (HKLM-x32\...\{A407FC22-36BF-4C82-A516-59D94BC505A9}) (Version: 1.0.5.0 - Husdawg, LLC) System Requirements Lab for Intel (HKLM-x32\...\{1EBDF6D2-CEA0-484C-A23E-2DDAD7FD0DD0}) (Version: 4.5.22.0 - Husdawg, LLC) The Amazing Spider-Man 2 (HKLM-x32\...\VGhlQW1hemluZ1NwaWRlck1hbjI=_is1) (Version: 1 - ) The Last Remnant (HKLM-x32\...\The Last Remnant_is1) (Version: - ) The Lord of the Rings: War in the North (HKLM-x32\...\Steam App 32800) (Version: - Snowblind) The Movies(TM) (x32 Version: 1.0 - Activision) Hidden The Movies(TM) Stunts & Spezialeffekte (HKLM-x32\...\InstallShield_{0556F885-2415-4666-B53E-33727E46AEA1}) (Version: 1.2 - Activision) The Movies(TM) Stunts & Spezialeffekte (x32 Version: 1.0 - Ihr Firmenname) Hidden Tom Clancy's Rainbow Six 3: Athena Sword 1.10.016 (HKLM-x32\...\{664FF9A8-7E44-4E17-AD40-D10E15504C49}) (Version: 1.10.016 - ) Tom Clancy's Rainbow Six 3: Raven Shield 1.60.412 (HKLM-x32\...\{AF131494-F5D8-45C5-938C-D5F020CF1B0D}) (Version: 1.60.412 - ) Tron: Evolution (HKLM-x32\...\{9CCB3527-C033-415C-88B6-27173B5E3592}) (Version: 1.00.0000 - Disney Interactive Studios) Tycoon City - New York (HKLM-x32\...\{A5101403-2C42-40E0-8D9E-5E49E7C3B89E}) (Version: 1.00.000 - ) Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.0.82.0 - Intel) Unity (HKLM-x32\...\Unity) (Version: - Unity Technologies ApS) Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Uplay (HKLM-x32\...\Uplay) (Version: 4.5 - Ubisoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Video Web Camera (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.3501.00 - CyberLink Corp.) Video Web Camera (x32 Version: 1.5.3501.00 - CyberLink Corp.) Hidden VirtualDJ Home FREE (HKLM-x32\...\{A6AC699F-8315-40CA-8F70-E917494978AB}) (Version: 7.4 - Atomix Productions) Visual C++ 9.0 Runtime for Dragon NaturallySpeaking 64bit (x64) (HKLM\...\{4A5A427F-BA39-4BF0-7777-9A47FBE60C9F}) (Version: 11.0.0 - Nuance Communications Inc.) VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) vLite (HKLM-x32\...\vLite_is1) (Version: 1.2 - Dino Nuhagic (nuhi)) War of the Immortals (HKLM-x32\...\Steam App 209710) (Version: - Perfect World Shanghai) Win7codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 3.9.2 - Shark007) Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) X3 Reunion (HKLM-x32\...\{0B744987-A39E-45E5-B930-11EDBDFE3003}) (Version: 12 - DeepSilver) x64 Components v3.9.2 (HKLM\...\x64 Components_is1) (Version: 3.9.2 - Shark007) ==================== Restore Points ========================= 27-05-2014 14:38:58 Installed Roccat Talk. ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-09-03 17:19 - 00000833 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0939A652-F769-4FFB-8CD0-E91F3FA50BC6} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation) Task: {282E1A66-1994-43C0-8B33-F2A7A3800724} - System32\Tasks\DivX-Online-Aktualisierungsprogramm => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2014-01-10] () Task: {3909D706-A484-49BC-86EA-0834DAAE367F} - System32\Tasks\DriverEasy Scheduled Scan => D:\Programme\DriverEasy\DriverEasy.exe Task: {593B9F4F-EA70-4B9E-8A7C-FD8E337E8A44} - System32\Tasks\Restart UxSms to fix Aero lag => net Task: {84C1CA4A-1C56-4E7F-A4A0-82315A9918FD} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\AD-AWA~1\AdAwareLauncher.exe Task: {89A298DE-A98B-4403-ABB8-BED27F1454FC} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-20] (Microsoft Corporation) Task: {C046E6C6-8A0C-40A9-876C-7DFB53CB24D0} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: {C84E6929-23CA-47EC-AC07-2591788791F4} - System32\Tasks\avast! Emergency Update => D:\Programme\AVAST Software\Avast\AvastEmUpdate.exe [2014-05-11] (AVAST Software) Task: {CDB55844-5BF9-4972-94DE-7D0240659E9B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: {D9A19E1D-2521-45A2-B0A0-34FC239827BA} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-05-25] (Adobe Systems Incorporated) Task: {FFEC1BA3-3D60-4699-A9D3-142C982EA7BB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DriverEasy Scheduled Scan.job => D:\Programme\DriverEasy\DriverEasy.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000Core.job => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1672272528-3360620030-3742580433-1000UA.job => C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2013-01-23 02:52 - 2011-08-24 03:13 - 00083240 _____ () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe 2011-03-14 17:27 - 2011-03-14 17:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe 2013-10-29 21:13 - 2011-06-17 13:04 - 00224096 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe 2013-10-29 22:25 - 2011-06-17 13:04 - 01434464 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\LiveUpd.exe 2014-05-28 12:57 - 2014-05-28 12:57 - 02259456 _____ () D:\Programme\AVAST Software\Avast\defs\14052800\algo.dll 2013-01-23 02:52 - 2011-08-26 06:57 - 00260096 _____ () D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\sqlite3.dll 2013-10-29 21:13 - 2009-01-10 12:32 - 00011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll 2013-10-29 21:13 - 2009-06-22 20:42 - 00043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll 2013-10-29 21:13 - 2010-05-05 10:47 - 02415104 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll 2013-10-29 21:13 - 2010-02-10 16:10 - 01148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll 2013-10-29 21:13 - 2010-02-10 16:43 - 09515520 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtGui4.dll 2013-10-29 22:25 - 2012-10-08 03:41 - 00082944 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qgif4.dll 2013-10-29 22:25 - 2012-10-08 03:41 - 00081920 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qico4.dll 2014-03-02 00:48 - 2013-05-16 11:55 - 00113496 _____ () D:\Programme\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-03-02 00:48 - 2013-05-16 11:55 - 00416600 _____ () D:\Programme\Spybot - Search & Destroy 2\DEC150.bpl 2013-05-29 21:29 - 2013-03-20 15:45 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-03-31 07:24 - 2014-03-31 07:24 - 19336120 _____ () D:\Programme\AVAST Software\Avast\libcef.dll 2014-05-10 13:49 - 2014-05-10 13:49 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== MSCONFIG\Services: OpenVPNService => 3 MSCONFIG\Services: RzMaelstromVADStreamingService => 2 MSCONFIG\Services: SDScannerService => 2 MSCONFIG\Services: SDUpdateService => 2 MSCONFIG\Services: SDWSCService => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Roccat Talk.lnk => C:\Windows\pss\Roccat Talk.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Don Corleone^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Produktregistrierung.lnk => C:\Windows\pss\Logitech . Produktregistrierung.lnk.Startup MSCONFIG\startupfolder: C:^Users^Don Corleone^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Tritton 720+.lnk => C:\Windows\pss\Tritton 720+.lnk.Startup MSCONFIG\startupreg: Acer ePower Management => C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe MSCONFIG\startupreg: Ad-Aware Browsing Protection => "C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Advanced SystemCare 6 => "D:\Programme\Advanced SystemCare 6\ASCTray.exe" /AutoStart MSCONFIG\startupreg: Cm106Sound => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cm106.dll,CMICtrlWnd MSCONFIG\startupreg: Creative SB Monitoring Utility Launcher => RunDll32 SBAVMonL.dll,SBAVMonitorLauncher MSCONFIG\startupreg: DivXMediaServer => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe MSCONFIG\startupreg: Google Update => "C:\Users\Don Corleone\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: Hoolapp Android => MSCONFIG\startupreg: HotKeysCmds => "C:\Windows\system32\hkcmd.exe" MSCONFIG\startupreg: HydraVisionDesktopManager => "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" MSCONFIG\startupreg: IAStorIcon => "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" "C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60 MSCONFIG\startupreg: IgfxTray => "C:\Windows\system32\igfxtray.exe" MSCONFIG\startupreg: IntelTBRunOnce => MSCONFIG\startupreg: ISUSPM => "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler MSCONFIG\startupreg: LManager => C:\Program Files (x86)\Launch Manager\LManager.exe MSCONFIG\startupreg: Logitech Vid => "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode MSCONFIG\startupreg: LWS => D:\Programme\Logitech Web Cam\LWS\Webcam Software\LWS.exe -hide MSCONFIG\startupreg: Malwarebytes Anti-Malware (cleanup) => rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript MSCONFIG\startupreg: NUSB3MON => MSCONFIG\startupreg: Persistence => "C:\Windows\system32\igfxpers.exe" MSCONFIG\startupreg: PowerDVD12DMREngine => MSCONFIG\startupreg: Raptr => C:\PROGRA~2\Raptr\raptrstub.exe --startup MSCONFIG\startupreg: Razer Synapse => "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" MSCONFIG\startupreg: RemoteControl11 => d:\programme\powerdvd11 ultra\powerdvd11\pdvd11serv.exe MSCONFIG\startupreg: RoccatIskuFX => "C:\Program Files (x86)\ROCCAT\Isku FX Keyboard\IskuFXMonitor.exe" MSCONFIG\startupreg: RoccatKoneXTD => "C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE" MSCONFIG\startupreg: RocketDock => "D:\Programme\RocketDock\RocketDock.exe" MSCONFIG\startupreg: SandboxieControl => "D:\Programme\Windows Sandbox\SbieCtrl.exe" MSCONFIG\startupreg: SDTray => "D:\Programme\Spybot - Search & Destroy 2\SDTray.exe" MSCONFIG\startupreg: SPEEDLINK KUDOS => "c:\program files (x86)\speedlink\kudos rs gaming mouse\gaming mouse.exe" /hide MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe MSCONFIG\startupreg: WebCake Desktop => C:\Users\Don Corleone\AppData\Roaming\Betcat\WebCakeDesktop.exe ==================== Faulty Device Manager Devices ============= Name: lirsgt Description: lirsgt Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: lirsgt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (05/27/2014 11:20:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: swfoc.exe, Version: 1.0.0.0, Zeitstempel: 0x4575fb3b Name des fehlerhaften Moduls: swfoc.exe, Version: 1.0.0.0, Zeitstempel: 0x4575fb3b Ausnahmecode: 0xc0000005 Fehleroffset: 0x000fbcf4 ID des fehlerhaften Prozesses: 0xfcc Startzeit der fehlerhaften Anwendung: 0xswfoc.exe0 Pfad der fehlerhaften Anwendung: swfoc.exe1 Pfad des fehlerhaften Moduls: swfoc.exe2 Berichtskennung: swfoc.exe3 Error: (05/26/2014 08:52:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: VirtualBox.exe, Version: 4.3.8.0, Zeitstempel: 0x530cd30d Name des fehlerhaften Moduls: atio6axx.dll, Version: 6.14.10.12874, Zeitstempel: 0x53508a1b Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000d18827 ID des fehlerhaften Prozesses: 0x1820 Startzeit der fehlerhaften Anwendung: 0xVirtualBox.exe0 Pfad der fehlerhaften Anwendung: VirtualBox.exe1 Pfad des fehlerhaften Moduls: VirtualBox.exe2 Berichtskennung: VirtualBox.exe3 Error: (05/25/2014 01:41:03 PM) (Source: MsiInstaller) (EventID: 1013) (User: DonCorleone-PC) Description: Produkt: NVIDIA PhysX -- Installation terminated System errors: ============= Error: (05/28/2014 01:39:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/28/2014 01:39:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (05/28/2014 01:39:02 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: hwinterface Error: (05/28/2014 01:39:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Updating Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/28/2014 01:39:02 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Updating Service erreicht. Error: (05/28/2014 01:38:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/28/2014 01:38:31 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (05/28/2014 01:38:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "lirsgt" wurde aufgrund folgenden Fehlers nicht gestartet: %%577 Error: (05/28/2014 01:38:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Internet Manager. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/28/2014 01:38:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Internet Manager. OUC erreicht. Microsoft Office Sessions: ========================= Error: (05/27/2014 11:20:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: swfoc.exe1.0.0.04575fb3bswfoc.exe1.0.0.04575fb3bc0000005000fbcf4fcc01cf79d39fe4be82D:\Spiele\Star Wars Empire at War\Forces of Corruption\swfoc.exeD:\Spiele\Star Wars Empire at War\Forces of Corruption\swfoc.exec3a8beee-e5e4-11e3-a934-dc0ea10ddbd3 Error: (05/26/2014 08:52:54 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: VirtualBox.exe4.3.8.0530cd30datio6axx.dll6.14.10.1287453508a1bc00000050000000000d18827182001cf791333a64833D:\Programme\Virtual Box 4\VirtualBox.exeC:\Windows\system32\atio6axx.dllf170c848-e506-11e3-85e0-dc0ea10ddbd3 Error: (05/25/2014 01:41:03 PM) (Source: MsiInstaller) (EventID: 1013) (User: DonCorleone-PC) Description: Produkt: NVIDIA PhysX -- Installation terminated(NULL)(NULL)(NULL)(NULL)(NULL) CodeIntegrity Errors: =================================== Date: 2014-05-28 13:38:01.049 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-28 13:38:01.002 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-28 13:37:33.967 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-28 13:37:33.873 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-28 12:56:36.651 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-28 12:56:36.589 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-28 12:56:13.517 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-28 12:56:13.454 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\atksgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-27 23:25:57.179 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-05-27 23:25:57.132 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\lirsgt.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 24% Total physical RAM: 8043.86 MB Available physical RAM: 6105.41 MB Total Pagefile: 24330.04 MB Available Pagefile: 22338.35 MB Total Virtual: 8192 MB Available Virtual: 8191.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:48.83 GB) (Free:1.01 GB) NTFS Drive d: () (Fixed) (Total:527.24 GB) (Free:63.41 GB) NTFS Drive f: (Elements) (Fixed) (Total:931.48 GB) (Free:763.07 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: E81DA6E3) Partition 1: (Not Active) - (Size=20 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=49 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=527 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 931 GB) (Disk ID: E6C3A94C) Partition 1: (Not Active) - (Size=931 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
28.05.2014, 13:32 | #13 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Tdss Killer Log Code:
ATTFilter 14:21:29.0614 0x11d8 TDSS rootkit removing tool 3.0.0.35 May 23 2014 07:32:03 14:21:34.0881 0x11d8 ============================================================ 14:21:34.0881 0x11d8 Current date / time: 2014/05/28 14:21:34.0881 14:21:34.0881 0x11d8 SystemInfo: 14:21:34.0881 0x11d8 14:21:34.0881 0x11d8 OS Version: 6.1.7601 ServicePack: 1.0 14:21:34.0881 0x11d8 Product type: Workstation 14:21:34.0881 0x11d8 ComputerName: DONCORLEONE-PC 14:21:34.0881 0x11d8 UserName: Don Corleone 14:21:34.0881 0x11d8 Windows directory: C:\Windows 14:21:34.0881 0x11d8 System windows directory: C:\Windows 14:21:34.0881 0x11d8 Running under WOW64 14:21:34.0881 0x11d8 Processor architecture: Intel x64 14:21:34.0881 0x11d8 Number of processors: 4 14:21:34.0881 0x11d8 Page size: 0x1000 14:21:34.0881 0x11d8 Boot type: Normal boot 14:21:34.0881 0x11d8 ============================================================ 14:21:37.0081 0x11d8 KLMD registered as C:\Windows\system32\drivers\81331779.sys 14:21:37.0161 0x11d8 System UUID: {F3353C9C-EE58-8154-3513-407463703EBA} 14:21:37.0711 0x11d8 Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:21:37.0711 0x11d8 Drive \Device\Harddisk1\DR1 - Size: 0xE8DED00000 (931.48 Gb), SectorSize: 0x200, Cylinders: 0x1DAFD, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W' 14:21:37.0711 0x11d8 ============================================================ 14:21:37.0711 0x11d8 \Device\Harddisk0\DR0: 14:21:37.0711 0x11d8 MBR partitions: 14:21:37.0711 0x11d8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2800800, BlocksNum 0x32000 14:21:37.0711 0x11d8 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2832800, BlocksNum 0x61A8000 14:21:37.0711 0x11d8 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x89DA800, BlocksNum 0x41E7D000 14:21:37.0711 0x11d8 \Device\Harddisk1\DR1: 14:21:37.0711 0x11d8 MBR partitions: 14:21:37.0711 0x11d8 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x746F6000 14:21:37.0711 0x11d8 ============================================================ 14:21:37.0751 0x11d8 C: <-> \Device\Harddisk0\DR0\Partition2 14:21:37.0794 0x11d8 D: <-> \Device\Harddisk0\DR0\Partition3 14:21:38.0335 0x11d8 F: <-> \Device\Harddisk1\DR1\Partition1 14:21:38.0335 0x11d8 ============================================================ 14:21:38.0335 0x11d8 Initialize success 14:21:38.0335 0x11d8 ============================================================ 14:22:20.0154 0x0464 ============================================================ 14:22:20.0154 0x0464 Scan started 14:22:20.0154 0x0464 Mode: Manual; SigCheck; TDLFS; 14:22:20.0154 0x0464 ============================================================ 14:22:20.0154 0x0464 KSN ping started 14:22:22.0919 0x0464 KSN ping finished: true 14:22:23.0578 0x0464 ================ Scan system memory ======================== 14:22:23.0578 0x0464 System memory - ok 14:22:23.0578 0x0464 ================ Scan services ============================= 14:22:23.0778 0x0464 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 14:22:23.0848 0x0464 1394ohci - ok 14:22:23.0879 0x0464 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 14:22:23.0906 0x0464 ACPI - ok 14:22:23.0926 0x0464 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 14:22:23.0976 0x0464 AcpiPmi - ok 14:22:24.0026 0x0464 [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 14:22:24.0046 0x0464 AdobeARMservice - ok 14:22:24.0206 0x0464 [ 09E7C37DF4A911C8A9AA8BF88ACD10AA, E881E0BBDCED58F28E0BA8DC27372EDFFFF2C57EE31CD13A032FDC9F7C831B5A ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 14:22:24.0216 0x0464 AdobeFlashPlayerUpdateSvc - ok 14:22:24.0256 0x0464 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 14:22:24.0276 0x0464 adp94xx - ok 14:22:24.0296 0x0464 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 14:22:24.0316 0x0464 adpahci - ok 14:22:24.0346 0x0464 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 14:22:24.0366 0x0464 adpu320 - ok 14:22:24.0396 0x0464 [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 14:22:24.0436 0x0464 AeLookupSvc - ok 14:22:24.0476 0x0464 [ 79059559E89D06E8B80CE2944BE20228, 6E041D2FED2D0C3D8E16E56CB61D3245F9144EA92F5BDC9A4AA30598D1C8E6EE ] AFD C:\Windows\system32\drivers\afd.sys 14:22:24.0528 0x0464 AFD - ok 14:22:24.0555 0x0464 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 14:22:24.0575 0x0464 agp440 - ok 14:22:24.0585 0x0464 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 14:22:24.0625 0x0464 ALG - ok 14:22:24.0645 0x0464 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 14:22:24.0655 0x0464 aliide - ok 14:22:24.0755 0x0464 ALSysIO - ok 14:22:24.0795 0x0464 [ E7BDC2E7D885A65031C6B93D5A80B019, B37B05CA81A200A0C303946A21901ED382468761AB8BB8F7F310700A060E813F ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 14:22:24.0845 0x0464 AMD External Events Utility - ok 14:22:24.0855 0x0464 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 14:22:24.0865 0x0464 amdide - ok 14:22:24.0885 0x0464 [ 6A2EEB0C4133B20773BB3DD0B7B377B4, E4CB35C6937C70A145A13E5AE5B34A271B49101DA623171ACBFDA8601E5A70EA ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys 14:22:24.0895 0x0464 amdiox64 - ok 14:22:24.0935 0x0464 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 14:22:24.0985 0x0464 AmdK8 - ok 14:22:25.0428 0x0464 [ 342156AF1FED5ED3A5D3FBB3D87F48E8, 119C85492EDCA82731E23A261DE39A72783713B01B89D8FA2F47400EB03C7C57 ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys 14:22:25.0830 0x0464 amdkmdag - ok 14:22:25.0897 0x0464 [ 9DCA2AFEABF1D109FB2C229491C9F293, F020F4FDD29897C656287A2D01D51B4AE45AA604E4291BCE05FB7D994242EC04 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 14:22:25.0957 0x0464 amdkmdap - ok 14:22:25.0987 0x0464 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 14:22:26.0037 0x0464 AmdPPM - ok 14:22:26.0077 0x0464 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 14:22:26.0087 0x0464 amdsata - ok 14:22:26.0107 0x0464 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 14:22:26.0127 0x0464 amdsbs - ok 14:22:26.0147 0x0464 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 14:22:26.0157 0x0464 amdxata - ok 14:22:26.0207 0x0464 [ 59D01FA91962C9C1E9B4022B2D3B46DB, 3A111588538B77F010B5C900FB8425DDE55A08DBAC308CA7FB7BD9FCCCDEC69F ] AppHostSvc C:\Windows\system32\inetsrv\apphostsvc.dll 14:22:26.0227 0x0464 AppHostSvc - ok 14:22:26.0267 0x0464 [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID C:\Windows\system32\drivers\appid.sys 14:22:26.0317 0x0464 AppID - ok 14:22:26.0337 0x0464 [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc C:\Windows\System32\appidsvc.dll 14:22:26.0387 0x0464 AppIDSvc - ok 14:22:26.0417 0x0464 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll 14:22:26.0447 0x0464 Appinfo - ok 14:22:26.0478 0x0464 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 14:22:26.0496 0x0464 arc - ok 14:22:26.0516 0x0464 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 14:22:26.0536 0x0464 arcsas - ok 14:22:26.0726 0x0464 [ 1709720692AC7D1D67AFBD7EF66E7BE9, 89116C7F66BEEB089FB16496ABBED6E04D129F59E9A8AB56CDB485B1551E80B9 ] ArcService D:\Programme\ARC Client\Arc\ArcService.exe 14:22:26.0736 0x0464 ArcService - ok 14:22:26.0856 0x0464 [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:22:26.0866 0x0464 aspnet_state - ok 14:22:26.0926 0x0464 [ 340B0467E98A8C92697D73034DB4BCB7, 342572B566747A05DA5391CFC027A6703AECCE29C3D288428884D8641A35D0F5 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys 14:22:26.0936 0x0464 aswHwid - ok 14:22:26.0966 0x0464 [ ED5B09937D559FFA53FC988D20031E98, EC9E50C9BC2184AE93944EA3115A25BADF5FFB91D11776498EBC9A0D60029A84 ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys 14:22:26.0976 0x0464 aswMonFlt - ok 14:22:26.0996 0x0464 [ 33C77DCB0AEC76E26BD6352A1A5281BB, CEA7BB3407C1F900DE5CB09F42AF7734811F86B7DE0085FADC7AAE8178D59665 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys 14:22:27.0006 0x0464 aswRdr - ok 14:22:27.0016 0x0464 [ BF5B9E9E97CED45208E498D9FA73688F, BCB2CC516EAD040573D80599C2306ECB26FCCB16A97B940327CD3A3CE9077877 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys 14:22:27.0026 0x0464 aswRvrt - ok 14:22:27.0086 0x0464 [ F88CE00A7736C349ED1414D7ECDC9BED, 8C0783CE32968874065C2F46088B34F9C872F26C98AB8E8BA895D84CCB25E534 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys 14:22:27.0122 0x0464 aswSnx - ok 14:22:27.0189 0x0464 [ 3AE912B08E2A1ABB2B63F3C56BED95C2, BE99BA3A74427444FEE5D47D70BDBA631DBBF50D80B0483C0675F87119926765 ] aswSP C:\Windows\system32\drivers\aswSP.sys 14:22:27.0209 0x0464 aswSP - ok 14:22:27.0229 0x0464 [ A7115ED31675BB823CFA9FE571C25676, DEEBB3920934DCDDD488DCFCB1E6F4C7EFDD3C79F31E41D59E292C3CF9400E95 ] aswStm C:\Windows\system32\drivers\aswStm.sys 14:22:27.0249 0x0464 aswStm - ok 14:22:27.0279 0x0464 [ 47CBD3F64E412FFAFD93404580A3C7B9, F9B02E232416BAFC21BCBCDC0A3D9E5E855BFAF11F29ED2C4C469692E6688278 ] aswVmm C:\Windows\system32\drivers\aswVmm.sys 14:22:27.0369 0x0464 aswVmm - ok 14:22:27.0399 0x0464 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 14:22:27.0469 0x0464 AsyncMac - ok 14:22:27.0509 0x0464 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 14:22:27.0519 0x0464 atapi - ok 14:22:27.0759 0x0464 [ 16567AB05CD34F46D0DCBB129CA143C2, 4C76D866C8A897C43E8D5EA6119FE6470024995CA99C898A3A190603DC60E5EC ] athr C:\Windows\system32\DRIVERS\athrx.sys 14:22:27.0892 0x0464 athr - ok 14:22:27.0942 0x0464 [ E083E85426BA8C02F2FBF166B814583F, C36E94B0182F144E8C87C72529D901C2384B533C9D7CB947F2FD6A4DACFA1CDD ] atksgt C:\Windows\system32\DRIVERS\atksgt.sys 14:22:27.0982 0x0464 atksgt - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:30.0782 0x0464 Detect skipped due to KSN trusted 14:22:30.0782 0x0464 atksgt - ok 14:22:30.0862 0x0464 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 14:22:30.0952 0x0464 AudioEndpointBuilder - ok 14:22:30.0972 0x0464 [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv C:\Windows\System32\Audiosrv.dll 14:22:31.0018 0x0464 AudioSrv - ok 14:22:31.0241 0x0464 [ 37D17AE2936867F88EB3C4CBCBC6B8A1, E1F4D288CE1E5482A5594C8F9EEDE1E8134466F5E0C7DA32D88985497CD8588B ] avast! Antivirus D:\Programme\AVAST Software\Avast\AvastSvc.exe 14:22:31.0251 0x0464 avast! Antivirus - ok 14:22:31.0281 0x0464 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 14:22:31.0321 0x0464 AxInstSV - ok 14:22:31.0361 0x0464 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 14:22:31.0411 0x0464 b06bdrv - ok 14:22:31.0451 0x0464 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 14:22:31.0491 0x0464 b57nd60a - ok 14:22:31.0521 0x0464 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 14:22:31.0541 0x0464 BDESVC - ok 14:22:31.0561 0x0464 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 14:22:31.0611 0x0464 Beep - ok 14:22:31.0651 0x0464 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 14:22:31.0740 0x0464 BFE - ok 14:22:31.0900 0x0464 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 14:22:32.0000 0x0464 BITS - ok 14:22:32.0030 0x0464 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 14:22:32.0050 0x0464 blbdrive - ok 14:22:32.0080 0x0464 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 14:22:32.0110 0x0464 bowser - ok 14:22:32.0120 0x0464 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 14:22:32.0140 0x0464 BrFiltLo - ok 14:22:32.0160 0x0464 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 14:22:32.0200 0x0464 BrFiltUp - ok 14:22:32.0240 0x0464 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 14:22:32.0290 0x0464 Browser - ok 14:22:32.0315 0x0464 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 14:22:32.0368 0x0464 Brserid - ok 14:22:32.0388 0x0464 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 14:22:32.0418 0x0464 BrSerWdm - ok 14:22:32.0428 0x0464 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 14:22:32.0458 0x0464 BrUsbMdm - ok 14:22:32.0498 0x0464 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 14:22:32.0528 0x0464 BrUsbSer - ok 14:22:32.0538 0x0464 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 14:22:32.0578 0x0464 BTHMODEM - ok 14:22:32.0618 0x0464 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 14:22:32.0658 0x0464 bthserv - ok 14:22:32.0668 0x0464 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 14:22:32.0728 0x0464 cdfs - ok 14:22:32.0848 0x0464 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 14:22:32.0878 0x0464 cdrom - ok 14:22:32.0918 0x0464 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 14:22:32.0964 0x0464 CertPropSvc - ok 14:22:32.0995 0x0464 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 14:22:33.0007 0x0464 circlass - ok 14:22:33.0037 0x0464 [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\Windows\system32\CLFS.sys 14:22:33.0057 0x0464 CLFS - ok 14:22:33.0217 0x0464 [ DB26C2BA2AC0AB6BE1CFA59F61CE22DA, 11677ECD65B71AB2A691F736353D9E5BA1FDBF0AE6971F2AA88DB7130EDF0F7D ] CLHNServiceForPowerDVD D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe 14:22:33.0227 0x0464 CLHNServiceForPowerDVD - ok 14:22:33.0287 0x0464 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:22:33.0307 0x0464 clr_optimization_v2.0.50727_32 - ok 14:22:33.0337 0x0464 [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:22:33.0357 0x0464 clr_optimization_v2.0.50727_64 - ok 14:22:33.0417 0x0464 [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:22:33.0437 0x0464 clr_optimization_v4.0.30319_32 - ok 14:22:33.0457 0x0464 [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:22:33.0467 0x0464 clr_optimization_v4.0.30319_64 - ok 14:22:33.0487 0x0464 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 14:22:33.0517 0x0464 CmBatt - ok 14:22:33.0537 0x0464 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 14:22:33.0547 0x0464 cmdide - ok 14:22:33.0587 0x0464 [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG C:\Windows\system32\Drivers\cng.sys 14:22:33.0613 0x0464 CNG - ok 14:22:33.0628 0x0464 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 14:22:33.0646 0x0464 Compbatt - ok 14:22:33.0666 0x0464 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 14:22:33.0696 0x0464 CompositeBus - ok 14:22:33.0706 0x0464 COMSysApp - ok 14:22:33.0806 0x0464 [ 9DFA0D835CA97E2E99C03419185B57EE, 247E6FD2EF2C9904D114D270E65577B180477AA8211D4EC2AE4AE558A12FB0C7 ] cphs C:\Windows\SysWow64\IntelCpHeciSvc.exe 14:22:33.0826 0x0464 cphs - ok 14:22:33.0926 0x0464 [ 3CA734CE373E5675FBC15CA2C45228E5, A6C6E9FABDE5EA18D266DB71C0CC6B51D682116D1898CCB4E9BA730F15C44B32 ] cpudrv64 C:\Program Files (x86)\SystemRequirementsLab\cpudrv64.sys 14:22:33.0936 0x0464 cpudrv64 - ok 14:22:33.0976 0x0464 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 14:22:33.0986 0x0464 crcdisk - ok 14:22:34.0016 0x0464 [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc C:\Windows\system32\cryptsvc.dll 14:22:34.0046 0x0464 CryptSvc - ok 14:22:34.0126 0x0464 [ E27D60E5A51EEDF9A57F5B69A9A6457D, 048F76996D80A6F61265CFC7D028F72EAAE09FBD9AE0F8A66DCCBE67AB81E78F ] CyberLink PowerDVD 11.0 Monitor Service D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe 14:22:34.0146 0x0464 CyberLink PowerDVD 11.0 Monitor Service - ok 14:22:34.0166 0x0464 [ 857943A77B06AC056771A3B12CD318DD, 206CB15E3ADC105F6AF774FCAAF0746515A1A8A25F1E3221D3966F6D115C6281 ] CyberLink PowerDVD 11.0 Service D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe 14:22:34.0186 0x0464 CyberLink PowerDVD 11.0 Service - ok 14:22:34.0236 0x0464 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 14:22:34.0295 0x0464 DcomLaunch - ok 14:22:34.0335 0x0464 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 14:22:34.0375 0x0464 defragsvc - ok 14:22:34.0405 0x0464 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 14:22:34.0455 0x0464 DfsC - ok 14:22:34.0505 0x0464 [ 73BDD44A6088916964945886F9025409, 8E2ECC9AAEF3C6EBA2E61D25F657FDFCC72AB517CC4FD5FFF992E1F9EB942662 ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys 14:22:34.0515 0x0464 dg_ssudbus - ok 14:22:34.0555 0x0464 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 14:22:34.0595 0x0464 Dhcp - ok 14:22:34.0625 0x0464 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 14:22:34.0665 0x0464 discache - ok 14:22:34.0685 0x0464 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\DRIVERS\disk.sys 14:22:34.0695 0x0464 Disk - ok 14:22:34.0725 0x0464 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 14:22:34.0765 0x0464 Dnscache - ok 14:22:34.0795 0x0464 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 14:22:34.0845 0x0464 dot3svc - ok 14:22:34.0875 0x0464 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 14:22:34.0910 0x0464 DPS - ok 14:22:34.0984 0x0464 [ FBB015880AD6B8366E0D061EA42CC091, A3232978F568F45136B5BC6CCEACD275BC9347026434F3657F983BF45180646E ] DragonSvc C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe 14:22:34.0994 0x0464 DragonSvc - ok 14:22:35.0024 0x0464 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 14:22:35.0054 0x0464 drmkaud - ok 14:22:35.0114 0x0464 [ 33F90B202E9DD9B7D489EB59310FDC34, 6ECF6669433E090E9CF6B1875AF18D2C06F8CDB3901D58BF89C3E2202574ABBD ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys 14:22:35.0124 0x0464 dtsoftbus01 - ok 14:22:35.0184 0x0464 [ 88612F1CE3BF42256913BF6E61C70D52, 7CF190F83FA8F15C33008EB381D3E345CEF37CBC046227DED26B36799EF4D9A7 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 14:22:35.0214 0x0464 DXGKrnl - ok 14:22:35.0264 0x0464 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 14:22:35.0294 0x0464 EapHost - ok 14:22:35.0414 0x0464 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 14:22:35.0559 0x0464 ebdrv - ok 14:22:35.0602 0x0464 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] EFS C:\Windows\System32\lsass.exe 14:22:35.0622 0x0464 EFS - ok 14:22:35.0702 0x0464 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 14:22:35.0752 0x0464 ehRecvr - ok 14:22:35.0792 0x0464 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 14:22:35.0822 0x0464 ehSched - ok 14:22:35.0862 0x0464 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 14:22:35.0912 0x0464 elxstor - ok 14:22:36.0012 0x0464 [ 8E12D885D17EC5FA4F52D2C6E953E285, A39F9FF88A6401030FCDE47E4504A297FB590751C74627181EC42F1E298CED8E ] ePowerSvc C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe 14:22:36.0062 0x0464 ePowerSvc - ok 14:22:36.0092 0x0464 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 14:22:36.0122 0x0464 ErrDev - ok 14:22:36.0152 0x0464 [ 2D055FAB756A79F5221ADF56EAE4CB3B, ED8D2CA2EDBD23C794C1B183DD2622A8273E5767D2417FF923A569D07C85773D ] ETD C:\Windows\system32\DRIVERS\ETD.sys 14:22:36.0172 0x0464 ETD - ok 14:22:36.0228 0x0464 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 14:22:36.0281 0x0464 EventSystem - ok 14:22:36.0321 0x0464 [ 86F7951BBCEE4A86E79A97306BD14318, 84B52A0392DA53ED71A2C4D483DD93DDF552BF8AC764C7BD47BE0EB58C7C8219 ] ew_hwusbdev C:\Windows\system32\DRIVERS\ew_hwusbdev.sys 14:22:36.0361 0x0464 ew_hwusbdev - ok 14:22:36.0391 0x0464 [ 55E0EDA185869F7EA67EA97FD0655B39, D4A51E383102AA48F022EFCA08FAC389336A22C1DF60E17815117EFA60716964 ] ew_usbenumfilter C:\Windows\system32\DRIVERS\ew_usbenumfilter.sys 14:22:36.0411 0x0464 ew_usbenumfilter - ok 14:22:36.0421 0x0464 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 14:22:36.0481 0x0464 exfat - ok 14:22:36.0511 0x0464 Fabs - ok 14:22:36.0541 0x0464 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 14:22:36.0581 0x0464 fastfat - ok 14:22:36.0641 0x0464 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 14:22:36.0691 0x0464 Fax - ok 14:22:36.0711 0x0464 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys 14:22:36.0721 0x0464 fdc - ok 14:22:36.0751 0x0464 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 14:22:36.0791 0x0464 fdPHost - ok 14:22:36.0811 0x0464 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 14:22:36.0851 0x0464 FDResPub - ok 14:22:36.0861 0x0464 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 14:22:36.0877 0x0464 FileInfo - ok 14:22:36.0894 0x0464 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 14:22:36.0924 0x0464 Filetrace - ok 14:22:37.0054 0x0464 [ FFF1130F7C9FA01D093A1EDFC5CCE8FC, 159EAA1893D871C309A063829CB3BC51A019FBCA1E075 14:22:39.0990 0x0464 Detect skipped due to KSN trusted 14:22:40.0030 0x0464 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 14:22:40.0060 0x0464 flpydisk - ok 14:22:40.0100 0x0464 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 14:22:40.0120 0x0464 FltMgr - ok 14:22:40.0178 0x0464 [ 5B92E2B067F64DC53698EB84966B3F0D, BC3B99BD9F8FB2AFFC03E535DD95AED1EC641E67550393006756B6B492CA096F ] FontCache C:\Windows\system32\FntCache.dll 14:22:40.0258 0x0464 FontCache - ok 14:22:40.0328 0x0464 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:22:40.0338 0x0464 FontCache3.0.0.0 - ok 14:22:40.0358 0x0464 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 14:22:40.0368 0x0464 FsDepends - ok 14:22:40.0388 0x0464 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 14:22:40.0398 0x0464 Fs_Rec - ok 14:22:40.0428 0x0464 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 14:22:40.0448 0x0464 fvevol - ok 14:22:40.0458 0x0464 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 14:22:40.0468 0x0464 gagp30kx - ok 14:22:40.0518 0x0464 [ 4EA5458FCA8518344686C543749365B1, 52D4D2392C80A4C57C74B09FE04E9DFF6CB01521F03132EB7523BE52B8BF7A50 ] gfiark C:\Windows\system32\drivers\gfiark.sys 14:22:40.0538 0x0464 gfiark - ok 14:22:40.0558 0x0464 [ 14908F4F9005C29DE8F5587E271390EE, 43DDFA99F52467F91019DB858989F111EBE48A2BED8D43EA2C15D1FD3C104489 ] gfibto C:\Windows\system32\drivers\gfibto.sys 14:22:40.0568 0x0464 gfibto - ok 14:22:40.0618 0x0464 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 14:22:40.0698 0x0464 gpsvc - ok 14:22:40.0728 0x0464 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 14:22:40.0748 0x0464 hcw85cir - ok 14:22:40.0788 0x0464 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 14:22:40.0830 0x0464 HdAudAddService - ok 14:22:40.0847 0x0464 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 14:22:40.0867 0x0464 HDAudBus - ok 14:22:40.0877 0x0464 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 14:22:40.0907 0x0464 HidBatt - ok 14:22:40.0927 0x0464 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 14:22:40.0937 0x0464 HidBth - ok 14:22:40.0957 0x0464 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 14:22:40.0977 0x0464 HidIr - ok 14:22:41.0007 0x0464 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 14:22:41.0057 0x0464 hidserv - ok 14:22:41.0087 0x0464 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 14:22:41.0107 0x0464 HidUsb - ok 14:22:41.0137 0x0464 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 14:22:41.0187 0x0464 hkmsvc - ok 14:22:41.0217 0x0464 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 14:22:41.0237 0x0464 HomeGroupListener - ok 14:22:41.0267 0x0464 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 14:22:41.0307 0x0464 HomeGroupProvider - ok 14:22:41.0347 0x0464 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 14:22:41.0357 0x0464 HpSAMD - ok 14:22:41.0407 0x0464 [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP C:\Windows\system32\drivers\HTTP.sys 14:22:41.0478 0x0464 HTTP - ok 14:22:41.0536 0x0464 [ 3B33B06D9A60CC8869CC280DAA36E414, 3C706F4B39A7E1800A2164FE808A179BD1A058C606468855692EA74CA46F9AE9 ] huawei_cdcacm C:\Windows\system32\DRIVERS\ew_jucdcacm.sys 14:22:41.0566 0x0464 huawei_cdcacm - ok 14:22:41.0586 0x0464 [ 871DE49EFF65CEABF15415F93148DF5A, 8FD66237135BB2A405CA6F0BDFE9163161123F5AEE89A37A8C4ABFF1C9E20A91 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys 14:22:41.0606 0x0464 huawei_enumerator - ok 14:22:41.0636 0x0464 [ 1EC67C791D2D3EAE203B5F2CBFFE867C, CD2D0731D1AB3A67ACFD328923FF8E219D85DFC2E4D5D4468316F6F0D95B29D9 ] huawei_ext_ctrl C:\Windows\system32\DRIVERS\ew_juextctrl.sys 14:22:41.0666 0x0464 huawei_ext_ctrl - ok 14:22:41.0706 0x0464 [ 6DF7633CD4665BC6A1B3572751B8D260, EB4885CA56BA0BF7E05F0D68B85BE879D91D69281EA856A19CA764C53E85B87C ] huawei_wwanecm C:\Windows\system32\DRIVERS\ew_juwwanecm.sys 14:22:41.0736 0x0464 huawei_wwanecm - ok 14:22:41.0846 0x0464 [ E90DA42B87D684DEBFB73B38A718A006, BB18C63C1982F5CB99C9B65D2B801E8C1909AD7CD0171326DC0015D6B781B451 ] HWDeviceService64.exe C:\ProgramData\DatacardService\HWDeviceService64.exe 14:22:41.0866 0x0464 HWDeviceService64.exe - ok 14:22:41.0866 0x0464 hwinterface - ok 14:22:41.0886 0x0464 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 14:22:41.0896 0x0464 hwpolicy - ok 14:22:41.0926 0x0464 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 14:22:41.0946 0x0464 i8042prt - ok 14:22:41.0996 0x0464 [ F7CE9BE72EDAC499B713ECA6DAE5D26F, AF158C8ADF0815C406435AB051C8D8DD0ECBDBA8644CB75D7611980D70662193 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 14:22:42.0096 0x0464 iaStor - ok 14:22:42.0190 0x0464 [ B9E489CC1EA3284FEED33799DC70612D, 0DD714A3A37C391B38F4EEEB3F85C3C3C056F4AAB4A5EFA63835AD967BC25B51 ] iaStorA C:\Windows\system32\DRIVERS\iaStorA.sys 14:22:42.0210 0x0464 iaStorA - ok 14:22:42.0360 0x0464 [ 3AEE4C821114AC707699A28988F27ABB, 033A25A19E2A649DA059AE3BCACB8605C00D4F10D356C5E3167B84C01B9359A9 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 14:22:42.0370 0x0464 IAStorDataMgrSvc - ok 14:22:42.0400 0x0464 [ CC096E5C9BAABEB8EF12CDFAFFD888CF, 9D61736CB83DE04FC44FB25122AB6D09951C915E577E1A18188D4D5F35EACD76 ] iaStorF C:\Windows\system32\DRIVERS\iaStorF.sys 14:22:42.0410 0x0464 iaStorF - ok 14:22:42.0450 0x0464 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 14:22:42.0470 0x0464 iaStorV - ok 14:22:42.0530 0x0464 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe 14:22:42.0540 0x0464 ICCS - ok 14:22:42.0560 0x0464 [ 55004F2386405B28471E09C2373ED0E0, 4B706A725EC17650CCFE0D0D944FC187B4C943D8241B847F2B8C65A3A1145885 ] ICCWDT C:\Windows\system32\DRIVERS\ICCWDT.sys 14:22:42.0580 0x0464 ICCWDT - ok 14:22:42.0650 0x0464 [ 1CF03C69B49ACB70C722DF92755C0C8C, C227850C133F29BB9DED91A26A22AE077FD69629CEF35B67D305F016C4BDAA81 ] IDriverT C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe 14:22:42.0650 0x0464 IDriverT - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:45.0350 0x0464 Detect skipped due to KSN trusted 14:22:45.0350 0x0464 IDriverT - ok 14:22:45.0439 0x0464 [ 5988FC40F8DB5B0739CD1E3A5D0D78BD, 2B9512324DBA4A97F6AC34E8067EE08E3B6874CD60F6CB4209AFC22A34D2BE99 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:22:45.0489 0x0464 idsvc - ok 14:22:45.0509 0x0464 IEEtwCollectorService - ok 14:22:45.0689 0x0464 [ 0143C860F0D09B8465AE803FDDB47BE9, C11B079AC7338981BA844BF62B96FDC4FD83018E9F67CCA9ADE426978FCF2562 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 14:22:45.0919 0x0464 igfx - ok 14:22:45.0959 0x0464 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 14:22:45.0979 0x0464 iirsp - ok 14:22:46.0024 0x0464 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 14:22:46.0098 0x0464 IKEEXT - ok 14:22:46.0238 0x0464 [ FA2B7507CD49908B2260949E52F8B9FE, 0EA0B3B25A3B668CA18313E34138DADA5C9835E476A1BFC56588B946DF0A92E0 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 14:22:46.0318 0x0464 IntcAzAudAddService - ok 14:22:46.0368 0x0464 [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys 14:22:46.0398 0x0464 IntcDAud - ok 14:22:46.0468 0x0464 [ DDA8E5AD97231AB50B81FED04C28F64C, 5C9E8F7CC45A9AE7FF12A02641562E271D84894DFA7C50218AC2AAA298251B60 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 14:22:46.0518 0x0464 Intel(R) Capability Licensing Service Interface - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:49.0213 0x0464 Detect skipped due to KSN trusted 14:22:49.0223 0x0464 Intel(R) Capability Licensing Service Interface - ok 14:22:49.0284 0x0464 [ 86FE509640D77FB0998FC8B1FF5523C6, 13E895DEB9B84379251699D7E52C5E3FD888994425DE01B6C4634F9E959D5584 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 14:22:49.0332 0x0464 Intel(R) Capability Licensing Service TCP IP Interface - ok 14:22:49.0362 0x0464 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 14:22:49.0372 0x0464 intelide - ok 14:22:49.0562 0x0464 [ 4C006843479737B63E043290E92E1B10, F06E5438AEF9FF94B4F32F79A4350CE1505966AAC7755F34E58F22437A4EA7BA ] intelkmd C:\Windows\system32\DRIVERS\igdpmd64.sys 14:22:49.0742 0x0464 intelkmd - ok 14:22:49.0782 0x0464 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 14:22:49.0812 0x0464 intelppm - ok 14:22:49.0902 0x0464 [ 837B6D439C16DB39C30FB8EEBC806A57, 0F3C059965263738AB63FD1CD864FA4D272576FF7A0E58C40F287C2058E3D6B4 ] Internet Manager. RunOuc C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe 14:22:49.0917 0x0464 Internet Manager. RunOuc - ok 14:22:49.0990 0x0464 [ 94E0CB0750C3E09E34257A4BEA582EED, BE6B3F1AEA73AADFCF36BB950D1F6DE1D988280114483615A92DDA1A74D72F76 ] iocbios2 C:\Program Files (x86)\Intel\Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys 14:22:50.0000 0x0464 iocbios2 - ok 14:22:50.0030 0x0464 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 14:22:50.0070 0x0464 IPBusEnum - ok 14:22:50.0090 0x0464 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:22:50.0150 0x0464 IpFilterDriver - ok 14:22:50.0200 0x0464 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 14:22:50.0250 0x0464 iphlpsvc - ok 14:22:50.0280 0x0464 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 14:22:50.0310 0x0464 IPMIDRV - ok 14:22:50.0350 0x0464 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 14:22:50.0380 0x0464 IPNAT - ok 14:22:50.0390 0x0464 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 14:22:50.0410 0x0464 IRENUM - ok 14:22:50.0430 0x0464 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 14:22:50.0440 0x0464 isapnp - ok 14:22:50.0470 0x0464 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 14:22:50.0490 0x0464 iScsiPrt - ok 14:22:50.0510 0x0464 [ 75779002A6084C1A011E195E421A9C75, 03D84CE7E50EEA1DFB298F4CE3669F478920ECEB33513FE2DC16C8BF90DF3830 ] iusb3hcs C:\Windows\system32\DRIVERS\iusb3hcs.sys 14:22:50.0520 0x0464 iusb3hcs - ok 14:22:50.0540 0x0464 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 14:22:50.0550 0x0464 kbdclass - ok 14:22:50.0582 0x0464 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 14:22:50.0582 0x0464 kbdhid - ok 14:22:50.0609 0x0464 [ E63EF8C3271D014F14E2469CE75FECB4, 3A8DFA4B446AFDC35F01FD5218D0BEBC510A1E3DE9976210F00D19767D0F9069 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys 14:22:50.0619 0x0464 kbfiltr - ok 14:22:50.0639 0x0464 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] KeyIso C:\Windows\system32\lsass.exe 14:22:50.0649 0x0464 KeyIso - ok 14:22:50.0729 0x0464 [ FD70D1B66177E5A9873C09BC4546BF68, FA8DF0D8D8E9AD0798F68A079D75FBB1FB54D36E120B55789257A2E9D6A7036C ] ksaud C:\Windows\system32\drivers\ksaud.sys 14:22:50.0829 0x0464 ksaud - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:53.0489 0x0464 Detect skipped due to KSN trusted 14:22:53.0489 0x0464 ksaud - ok 14:22:53.0539 0x0464 [ 353009DEDF918B2A51414F330CF72DEC, BF157D6E329F26E02FA16271B751B421396040DBB1D7BF9B2E0A21BC569672E2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 14:22:53.0559 0x0464 KSecDD - ok 14:22:53.0579 0x0464 [ 1C2D8E18AA8FD50CD04C15CC27F7F5AB, 4BA3B0F9F01BD47D66091D3AD86B69A523981D61DFB4D677F2CD39405B2DA989 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 14:22:53.0589 0x0464 KSecPkg - ok 14:22:53.0619 0x0464 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 14:22:53.0669 0x0464 ksthunk - ok 14:22:53.0709 0x0464 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 14:22:53.0769 0x0464 KtmRm - ok 14:22:53.0799 0x0464 [ 2A31385BB1A085FAAA6F1AA74976ED51, 6AFB4DE263658534DB352C48B0E76BFB0728E365D8F1F8AF0680C5CB5CA870E7 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys 14:22:53.0814 0x0464 L1C - ok 14:22:53.0858 0x0464 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll 14:22:53.0908 0x0464 LanmanServer - ok 14:22:53.0938 0x0464 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 14:22:53.0978 0x0464 LanmanWorkstation - ok 14:22:54.0008 0x0464 [ B658B7076B1ACAA5876524595630F183, 3B800B81D0966C2B988857847F35FCA5BB446B368063B10094FB4483A1508B8E ] lirsgt C:\Windows\system32\DRIVERS\lirsgt.sys 14:22:54.0018 0x0464 lirsgt - detected UnsignedFile.Multi.Generic ( 1 ) 14:22:56.0692 0x0464 Detect skipped due to KSN trusted 14:22:56.0702 0x0464 lirsgt - ok 14:22:56.0772 0x0464 [ 93B73DED2BC688F140C6AE2FBAD45789, B6859BC5D309B99BCCDC3717108B714497AAE9C5B26CE5B201344A41FC4CFF9D ] Live Updater Service C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe 14:22:56.0792 0x0464 Live Updater Service - ok 14:22:56.0792 0x0464 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 14:22:56.0852 0x0464 lltdio - ok 14:22:56.0882 0x0464 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 14:22:56.0932 0x0464 lltdsvc - ok 14:22:56.0952 0x0464 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 14:22:57.0002 0x0464 lmhosts - ok 14:22:57.0067 0x0464 [ 60471C88EB4906DB0C2026B3290EE4B6, D51752E4149A5BA578BF9F8DA83443BFF0719BAA34D91BD938DAC831BC0BA6DC ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 14:22:57.0085 0x0464 LMS - ok 14:22:57.0125 0x0464 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 14:22:57.0145 0x0464 LSI_FC - ok 14:22:57.0165 0x0464 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 14:22:57.0175 0x0464 LSI_SAS - ok 14:22:57.0185 0x0464 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 14:22:57.0195 0x0464 LSI_SAS2 - ok 14:22:57.0215 0x0464 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 14:22:57.0225 0x0464 LSI_SCSI - ok 14:22:57.0245 0x0464 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 14:22:57.0285 0x0464 luafv - ok 14:22:57.0325 0x0464 [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys 14:22:57.0335 0x0464 LVRS64 - ok 14:22:57.0515 0x0464 [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64 C:\Windows\system32\DRIVERS\lvuvc64.sys 14:22:57.0685 0x0464 LVUVC64 - ok 14:22:57.0764 0x0464 [ EC470D91EF06A59397EDC18D48899CC5, AE9A4CF198485D75617B0535119B196CC7843B968579963F8AC372F0C8DA29C1 ] MatSvc C:\Program Files\Microsoft Fix it Center\Matsvc.exe 14:22:57.0784 0x0464 MatSvc - ok 14:22:57.0824 0x0464 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 14:22:57.0834 0x0464 Mcx2Svc - ok 14:22:57.0854 0x0464 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 14:22:57.0864 0x0464 megasas - ok 14:22:57.0894 0x0464 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 14:22:57.0914 0x0464 MegaSR - ok 14:22:57.0944 0x0464 [ 6FE7B681F1840366B2E4E8B15BE8E2CB, D60DB52345FB17160C1761AE5BF6C8CF56B350FC626A40C985CA2AE5C88B2F50 ] MEIx64 C:\Windows\system32\DRIVERS\TeeDriverx64.sys 14:22:57.0954 0x0464 MEIx64 - ok 14:22:57.0974 0x0464 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 14:22:58.0014 0x0464 MMCSS - ok 14:22:58.0024 0x0464 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 14:22:58.0064 0x0464 Modem - ok 14:22:58.0084 0x0464 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 14:22:58.0114 0x0464 monitor - ok 14:22:58.0144 0x0464 [ 65ED1932BCFE5003389D65F6C3EF51C8, FB3E99DF2D064D3718C8655490EA35E90DD73CABB698D8043E9D670206FBB241 ] MotioninJoyXFilter C:\Windows\system32\DRIVERS\MijXfilt.sys 14:22:58.0154 0x0464 MotioninJoyXFilter - ok 14:22:58.0184 0x0464 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 14:22:58.0194 0x0464 mouclass - ok 14:22:58.0204 0x0464 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 14:22:58.0234 0x0464 mouhid - ok 14:22:58.0264 0x0464 [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 14:22:58.0284 0x0464 mountmgr - ok 14:22:58.0334 0x0464 [ E1B6FCAE82474FC071155263E2841D54, 341E2CEB1A86586730130311C4FAF86851151D5F08EF915A5F89B6C4094AE1F4 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 14:22:58.0344 0x0464 MozillaMaintenance - ok 14:22:58.0369 0x0464 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 14:22:58.0385 0x0464 mpio - ok 14:22:58.0422 0x0464 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 14:22:58.0452 0x0464 mpsdrv - ok 14:22:58.0512 0x0464 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 14:22:58.0592 0x0464 MpsSvc - ok 14:22:58.0632 0x0464 [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 14:22:58.0662 0x0464 MRxDAV - ok 14:22:58.0712 0x0464 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 14:22:58.0732 0x0464 mrxsmb - ok 14:22:58.0772 0x0464 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:22:58.0802 0x0464 mrxsmb10 - ok 14:22:58.0822 0x0464 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:22:58.0842 0x0464 mrxsmb20 - ok 14:22:58.0872 0x0464 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 14:22:58.0882 0x0464 msahci - ok 14:22:58.0912 0x0464 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 14:22:58.0932 0x0464 msdsm - ok 14:22:58.0942 0x0464 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 14:22:58.0972 0x0464 MSDTC - ok 14:22:59.0018 0x0464 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 14:22:59.0071 0x0464 Msfs - ok 14:22:59.0091 0x0464 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 14:22:59.0121 0x0464 mshidkmdf - ok 14:22:59.0151 0x0464 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 14:22:59.0161 0x0464 msisadrv - ok 14:22:59.0201 0x0464 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 14:22:59.0251 0x0464 MSiSCSI - ok 14:22:59.0251 0x0464 msiserver - ok 14:22:59.0271 0x0464 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 14:22:59.0301 0x0464 MSKSSRV - ok 14:22:59.0311 0x0464 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 14:22:59.0351 0x0464 MSPCLOCK - ok 14:22:59.0361 0x0464 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 14:22:59.0411 0x0464 MSPQM - ok 14:22:59.0451 0x0464 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 14:22:59.0461 0x0464 MsRPC - ok 14:22:59.0491 0x0464 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 14:22:59.0501 0x0464 mssmbios - ok 14:22:59.0511 0x0464 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 14:22:59.0541 0x0464 MSTEE - ok 14:22:59.0561 0x0464 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 14:22:59.0591 0x0464 MTConfig - ok 14:22:59.0601 0x0464 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 14:22:59.0611 0x0464 Mup - ok 14:22:59.0651 0x0464 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 14:22:59.0720 0x0464 napagent - ok 14:22:59.0760 0x0464 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 14:22:59.0800 0x0464 NativeWifiP - ok 14:22:59.0860 0x0464 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys 14:22:59.0910 0x0464 NDIS - ok 14:22:59.0930 0x0464 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 14:22:59.0980 0x0464 NdisCap - ok 14:23:00.0000 0x0464 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 14:23:00.0050 0x0464 NdisTapi - ok 14:23:00.0090 0x0464 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 14:23:00.0140 0x0464 Ndisuio - ok 14:23:00.0170 0x0464 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 14:23:00.0220 0x0464 NdisWan - ok 14:23:00.0250 0x0464 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 14:23:00.0300 0x0464 NDProxy - ok 14:23:00.0331 0x0464 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 14:23:00.0369 0x0464 NetBIOS - ok 14:23:00.0399 0x0464 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 14:23:00.0439 0x0464 NetBT - ok 14:23:00.0459 0x0464 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] Netlogon C:\Windows\system32\lsass.exe 14:23:00.0469 0x0464 Netlogon - ok 14:23:00.0499 0x0464 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 14:23:00.0549 0x0464 Netman - ok 14:23:00.0619 0x0464 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:00.0629 0x0464 NetMsmqActivator - ok 14:23:00.0649 0x0464 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:00.0659 0x0464 NetPipeActivator - ok 14:23:00.0689 0x0464 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 14:23:00.0729 0x0464 netprofm - ok 14:23:00.0739 0x0464 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:00.0749 0x0464 NetTcpActivator - ok 14:23:00.0759 0x0464 [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:00.0769 0x0464 NetTcpPortSharing - ok 14:23:00.0799 0x0464 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 14:23:00.0809 0x0464 nfrd960 - ok 14:23:00.0849 0x0464 [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc C:\Windows\System32\nlasvc.dll 14:23:00.0879 0x0464 NlaSvc - ok 14:23:00.0899 0x0464 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 14:23:00.0949 0x0464 Npfs - ok 14:23:00.0964 0x0464 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 14:23:01.0018 0x0464 nsi - ok 14:23:01.0028 0x0464 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 14:23:01.0068 0x0464 nsiproxy - ok 14:23:01.0158 0x0464 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 14:23:01.0228 0x0464 Ntfs - ok 14:23:01.0288 0x0464 [ 7420B2E1F65642129B6E23BD42F752AA, 8BFC6B2070912B3F9A63BFCCD3C631937E4070CD76C4A82DBB2CE6F4CED7D3B4 ] ntk_PowerDVD D:\Programme\PowerDVD11 Ultra\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys 14:23:01.0298 0x0464 ntk_PowerDVD - ok 14:23:01.0338 0x0464 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 14:23:01.0388 0x0464 Null - ok 14:23:01.0418 0x0464 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 14:23:01.0438 0x0464 nvraid - ok 14:23:01.0468 0x0464 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 14:23:01.0488 0x0464 nvstor - ok 14:23:01.0508 0x0464 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 14:23:01.0518 0x0464 nv_agp - ok 14:23:01.0548 0x0464 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 14:23:01.0578 0x0464 ohci1394 - ok 14:23:01.0613 0x0464 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 14:23:01.0646 0x0464 p2pimsvc - ok 14:23:01.0676 0x0464 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 14:23:01.0756 0x0464 p2psvc - ok 14:23:01.0816 0x0464 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys 14:23:01.0856 0x0464 Parport - ok 14:23:01.0876 0x0464 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 14:23:01.0896 0x0464 partmgr - ok 14:23:01.0916 0x0464 [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc C:\Windows\System32\pcasvc.dll 14:23:01.0946 0x0464 PcaSvc - ok 14:23:01.0966 0x0464 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 14:23:01.0986 0x0464 pci - ok 14:23:02.0016 0x0464 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 14:23:02.0026 0x0464 pciide - ok 14:23:02.0046 0x0464 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 14:23:02.0066 0x0464 pcmcia - ok 14:23:02.0086 0x0464 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 14:23:02.0106 0x0464 pcw - ok 14:23:02.0136 0x0464 [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 14:23:02.0216 0x0464 PEAUTH - ok 14:23:02.0335 0x0464 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 14:23:02.0355 0x0464 PerfHost - ok 14:23:02.0435 0x0464 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 14:23:02.0535 0x0464 pla - ok 14:23:02.0595 0x0464 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 14:23:02.0625 0x0464 PlugPlay - ok 14:23:02.0655 0x0464 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 14:23:02.0675 0x0464 PNRPAutoReg - ok 14:23:02.0695 0x0464 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 14:23:02.0715 0x0464 PNRPsvc - ok 14:23:02.0765 0x0464 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 14:23:02.0815 0x0464 PolicyAgent - ok 14:23:02.0845 0x0464 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 14:23:02.0885 0x0464 Power - ok 14:23:02.0905 0x0464 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 14:23:02.0936 0x0464 PptpMiniport - ok 14:23:02.0974 0x0464 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys 14:23:02.0994 0x0464 Processor - ok 14:23:03.0034 0x0464 [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc C:\Windows\system32\profsvc.dll 14:23:03.0074 0x0464 ProfSvc - ok 14:23:03.0104 0x0464 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] ProtectedStorage C:\Windows\system32\lsass.exe 14:23:03.0114 0x0464 ProtectedStorage - ok 14:23:03.0154 0x0464 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 14:23:03.0214 0x0464 Psched - ok 14:23:03.0294 0x0464 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 14:23:03.0364 0x0464 ql2300 - ok 14:23:03.0384 0x0464 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 14:23:03.0404 0x0464 ql40xx - ok 14:23:03.0444 0x0464 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 14:23:03.0464 0x0464 QWAVE - ok 14:23:03.0484 0x0464 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 14:23:03.0504 0x0464 QWAVEdrv - ok 14:23:03.0524 0x0464 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 14:23:03.0554 0x0464 RasAcd - ok 14:23:03.0585 0x0464 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 14:23:03.0633 0x0464 RasAgileVpn - ok 14:23:03.0653 0x0464 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 14:23:03.0713 0x0464 RasAuto - ok 14:23:03.0743 0x0464 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 14:23:03.0793 0x0464 Rasl2tp - ok 14:23:03.0823 0x0464 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 14:23:03.0883 0x0464 RasMan - ok 14:23:03.0913 0x0464 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 14:23:03.0953 0x0464 RasPppoe - ok 14:23:03.0963 0x0464 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 14:23:04.0023 0x0464 RasSstp - ok 14:23:04.0073 0x0464 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 14:23:04.0123 0x0464 rdbss - ok 14:23:04.0133 0x0464 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 14:23:04.0163 0x0464 rdpbus - ok 14:23:04.0183 0x0464 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 14:23:04.0218 0x0464 RDPCDD - ok 14:23:04.0234 0x0464 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 14:23:04.0292 0x0464 RDPENCDD - ok 14:23:04.0312 0x0464 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 14:23:04.0342 0x0464 RDPREFMP - ok 14:23:04.0372 0x0464 [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 14:23:04.0392 0x0464 RdpVideoMiniport - ok 14:23:04.0422 0x0464 [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 14:23:04.0452 0x0464 RDPWD - ok 14:23:04.0482 0x0464 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 14:23:04.0492 0x0464 rdyboost - ok 14:23:04.0532 0x0464 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 14:23:04.0572 0x0464 RemoteAccess - ok 14:23:04.0602 0x0464 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 14:23:04.0652 0x0464 RemoteRegistry - ok 14:23:04.0662 0x0464 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 14:23:04.0702 0x0464 RpcEptMapper - ok 14:23:04.0732 0x0464 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 14:23:04.0752 0x0464 RpcLocator - ok 14:23:04.0792 0x0464 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 14:23:04.0842 0x0464 RpcSs - ok 14:23:04.0862 0x0464 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 14:23:04.0920 0x0464 rspndr - ok 14:23:04.0960 0x0464 [ 670CDE4A221C721A681A3066C1F74C75, 191ED710E494EF1093FD0CDDC9676E9682B9A2AD809E3A60D35C97166A0E818E ] RSUSBSTOR C:\Windows\system32\Drivers\RtsUStor.sys 14:23:04.0970 0x0464 RSUSBSTOR - ok 14:23:05.0120 0x0464 [ E4E034F79D88B34C5B4BA28BAE2259F7, A48E0ACFE75F92793E1961D108242A0B6B890ED8541757B7BF7EAAC1D6E963C1 ] RzKLService C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe 14:23:05.0130 0x0464 RzKLService - ok 14:23:05.0160 0x0464 [ 38B86FD7D19C80C8E78466BF7DAF6EFD, 3E3DC47B659A4BE27702D89C655CD8D10329FFBE6342022FC0868ED648CBA545 ] RZMAELSTROMVADService C:\Windows\system32\drivers\RzMaelstromVAD.sys 14:23:05.0170 0x0464 RZMAELSTROMVADService - ok 14:23:05.0410 0x0464 [ ABF8B6065FA2B048B07F7A8B70BD5B37, 58EC92D89B3AA0C90B54834D355A60930621813D535EF6A5F4D98D13E3322F71 ] RzMaelstromVADStreamingService C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzMaelstromVADStreamingService.exe 14:23:05.0526 0x0464 RzMaelstromVADStreamingService - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:08.0404 0x0464 Detect skipped due to KSN trusted 14:23:08.0404 0x0464 RzMaelstromVADStreamingService - ok 14:23:08.0444 0x0464 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] SamSs C:\Windows\system32\lsass.exe 14:23:08.0464 0x0464 SamSs - ok 14:23:08.0504 0x0464 SANDRA - ok 14:23:08.0534 0x0464 SandraAgentSrv - ok 14:23:08.0624 0x0464 [ CCBF62280DAF6D94A4C73E391CDAC68C, FA8B03C3A5FC46C7451C798203800AAF77F957C32A2F659CC4077D349687A376 ] SbieDrv D:\Programme\Windows Sandbox\SbieDrv.sys 14:23:08.0634 0x0464 SbieDrv - ok 14:23:08.0664 0x0464 [ 8A1F63C6EC01C56C9EC4C681E593FE34, 960D96333EF97D481C5CCDCADAEF8A7B537AECFA06B023AB0C81B828203D2A35 ] SbieSvc D:\Programme\Windows Sandbox\SbieSvc.exe 14:23:08.0674 0x0464 SbieSvc - ok 14:23:08.0714 0x0464 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 14:23:08.0724 0x0464 sbp2port - ok 14:23:08.0754 0x0464 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 14:23:08.0790 0x0464 SCardSvr - ok 14:23:08.0833 0x0464 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 14:23:08.0863 0x0464 scfilter - ok 14:23:08.0933 0x0464 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll 14:23:09.0033 0x0464 Schedule - ok 14:23:09.0063 0x0464 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 14:23:09.0093 0x0464 SCPolicySvc - ok 14:23:09.0133 0x0464 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 14:23:09.0173 0x0464 SDRSVC - ok 14:23:09.0433 0x0464 [ 98EF79CC2B07398AC525F9EA1AE0366F, D0D5D69696ED339F363024AF3271867F4C55572C67FD0F2AA27D24B37982E39A ] SDScannerService D:\Programme\Spybot - Search & Destroy 2\SDFSSvc.exe 14:23:09.0526 0x0464 SDScannerService - ok 14:23:09.0616 0x0464 [ 14BF6B3AB327D519ED007CDDC56F6900, 4E5DC4AF45347C885E0E87F205EE1F95BB4713A0B581CD7317FBEEE2A9628982 ] SDUpdateService D:\Programme\Spybot - Search & Destroy 2\SDUpdSvc.exe 14:23:09.0646 0x0464 SDUpdateService - ok 14:23:09.0696 0x0464 [ 820EBE67AB99F033FDE25B2692157991, A9E86FE6EFD3CFD4EA1A26121C706335A6791CC6F81EE98AE2BE7EA566ECFEBB ] SDWSCService D:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe 14:23:09.0706 0x0464 SDWSCService - ok 14:23:09.0746 0x0464 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 14:23:09.0796 0x0464 secdrv - ok 14:23:09.0826 0x0464 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll 14:23:09.0886 0x0464 seclogon - ok 14:23:09.0926 0x0464 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 14:23:09.0966 0x0464 SENS - ok 14:23:09.0986 0x0464 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 14:23:10.0016 0x0464 SensrSvc - ok 14:23:10.0036 0x0464 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 14:23:10.0066 0x0464 Serenum - ok 14:23:10.0102 0x0464 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 14:23:10.0118 0x0464 Serial - ok 14:23:10.0155 0x0464 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 14:23:10.0175 0x0464 sermouse - ok 14:23:10.0225 0x0464 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 14:23:10.0265 0x0464 SessionEnv - ok 14:23:10.0295 0x0464 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 14:23:10.0325 0x0464 sffdisk - ok 14:23:10.0335 0x0464 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 14:23:10.0365 0x0464 sffp_mmc - ok 14:23:10.0375 0x0464 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 14:23:10.0385 0x0464 sffp_sd - ok 14:23:10.0405 0x0464 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 14:23:10.0415 0x0464 sfloppy - ok 14:23:10.0485 0x0464 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 14:23:10.0535 0x0464 SharedAccess - ok 14:23:10.0585 0x0464 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 14:23:10.0635 0x0464 ShellHWDetection - ok 14:23:10.0645 0x0464 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 14:23:10.0665 0x0464 SiSRaid2 - ok 14:23:10.0685 0x0464 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 14:23:10.0695 0x0464 SiSRaid4 - ok 14:23:10.0725 0x0464 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 14:23:10.0751 0x0464 Smb - ok 14:23:10.0794 0x0464 [ E11C9E13E92DA6747363924CFFCBD7EF, 6B8DE94F8CAA2C64A7369F9081C6C3FB991AA84FF611CE7C6929474B9753DCDA ] SmbDrvI C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys 14:23:10.0804 0x0464 SmbDrvI - ok 14:23:10.0844 0x0464 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 14:23:10.0874 0x0464 SNMPTRAP - ok 14:23:10.0894 0x0464 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 14:23:10.0904 0x0464 spldr - ok 14:23:10.0954 0x0464 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 14:23:11.0004 0x0464 Spooler - ok 14:23:11.0144 0x0464 [ 53952A2A89985D1A3486F9FC661BA538, 181F0195F3DD6E0ECB0976A3BA8C2BDD9D8542D4BFFB856995E990E73D6CFCA6 ] sppsvc C:\Windows\system32\sppsvc.exe 14:23:11.0314 0x0464 sppsvc - ok 14:23:11.0354 0x0464 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 14:23:11.0400 0x0464 sppuinotify - ok 14:23:11.0513 0x0464 [ 6D977A6412FD2804BD8F0AE045544E9E, 782879DC2076CA88678A49DD84B39802EF693E6ED3E5F4600C2F975F93EAF826 ] SPUVCbv C:\Windows\system32\Drivers\SPUVCbv_x64.sys 14:23:11.0593 0x0464 SPUVCbv - ok 14:23:11.0633 0x0464 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 14:23:11.0673 0x0464 srv - ok 14:23:11.0693 0x0464 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 14:23:11.0743 0x0464 srv2 - ok 14:23:11.0763 0x0464 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 14:23:11.0813 0x0464 srvnet - ok 14:23:11.0843 0x0464 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 14:23:11.0893 0x0464 SSDPSRV - ok 14:23:11.0923 0x0464 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 14:23:11.0973 0x0464 SstpSvc - ok 14:23:12.0023 0x0464 [ 5252D7BC56E5E0ED715AEA8FE173A455, 1408B3E98B35A449434718777EE70595F0D306197A428279C6281D2F1953F259 ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys 14:23:12.0033 0x0464 ssudmdm - ok 14:23:12.0112 0x0464 [ 3F0826F632F66906CB3ED62202A6BAD7, CA21B038DD1A1BED7293A8DEEBE19D43D1C12378ED5C6B82D36900CD4FFF23B7 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 14:23:12.0142 0x0464 Steam Client Service - ok 14:23:12.0162 0x0464 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 14:23:12.0172 0x0464 stexstor - ok 14:23:12.0232 0x0464 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 14:23:12.0292 0x0464 stisvc - ok 14:23:12.0332 0x0464 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 14:23:12.0342 0x0464 swenum - ok 14:23:12.0392 0x0464 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 14:23:12.0462 0x0464 swprv - ok 14:23:12.0542 0x0464 [ EF51B22706DB03F0857FADE127C804EC, F3A97B8D94E96ACF93448CDF33DED97B076C3D8FFE42E9EAD088EE662306277B ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 14:23:12.0612 0x0464 SynTP - ok 14:23:12.0697 0x0464 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll 14:23:12.0800 0x0464 SysMain - ok 14:23:12.0830 0x0464 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 14:23:12.0880 0x0464 TabletInputService - ok 14:23:12.0910 0x0464 [ D0B07EED9DDEC5C69521C689B7BF455F, A9F1C76FBF833E25A8470116A9BB7F7121A86138B31B54C098F1E22C11109044 ] tap0901 C:\Windows\system32\DRIVERS\tap0901.sys 14:23:12.0930 0x0464 tap0901 - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:15.0710 0x0464 Detect skipped due to KSN trusted 14:23:15.0710 0x0464 tap0901 - ok 14:23:15.0770 0x0464 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 14:23:15.0810 0x0464 TapiSrv - ok 14:23:15.0840 0x0464 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 14:23:15.0870 0x0464 TBS - ok 14:23:15.0950 0x0464 [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] Tcpip C:\Windows\system32\drivers\tcpip.sys 14:23:16.0039 0x0464 Tcpip - ok 14:23:16.0109 0x0464 [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 14:23:16.0149 0x0464 TCPIP6 - ok 14:23:16.0189 0x0464 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 14:23:16.0219 0x0464 tcpipreg - ok 14:23:16.0249 0x0464 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 14:23:16.0269 0x0464 TDPIPE - ok 14:23:16.0299 0x0464 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 14:23:16.0309 0x0464 TDTCP - ok 14:23:16.0339 0x0464 [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 14:23:16.0399 0x0464 tdx - ok 14:23:16.0429 0x0464 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 14:23:16.0439 0x0464 TermDD - ok 14:23:16.0489 0x0464 [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService C:\Windows\System32\termsrv.dll 14:23:16.0549 0x0464 TermService - ok 14:23:16.0579 0x0464 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 14:23:16.0614 0x0464 Themes - ok 14:23:16.0648 0x0464 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 14:23:16.0678 0x0464 THREADORDER - ok 14:23:16.0688 0x0464 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 14:23:16.0758 0x0464 TrkWks - ok 14:23:16.0818 0x0464 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 14:23:16.0868 0x0464 TrustedInstaller - ok 14:23:16.0898 0x0464 [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 14:23:16.0928 0x0464 tssecsrv - ok 14:23:16.0968 0x0464 [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 14:23:16.0988 0x0464 TsUsbFlt - ok 14:23:17.0018 0x0464 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 14:23:17.0058 0x0464 tunnel - ok 14:23:17.0078 0x0464 [ 48743B69EA47C020A792D8649F753F44, 58BFF60271F62F5CB02A1181F44E94C230DF4A6EC5C072A476B2BED13239A70C ] TurboB C:\Windows\system32\DRIVERS\TurboB.sys 14:23:17.0088 0x0464 TurboB - ok 14:23:17.0148 0x0464 [ 759F59E3EA3802FF23F93DCDB6FE9171, DB5A6C1EDA10380C14A8C318D6C65ED691C36F726A6A20DB3038D8F55F1B76D8 ] TurboBoost C:\Program Files\Intel\TurboBoost\TurboBoost.exe 14:23:17.0158 0x0464 TurboBoost - ok 14:23:17.0158 0x0464 TVICPORT - ok 14:23:17.0188 0x0464 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 14:23:17.0198 0x0464 uagp35 - ok 14:23:17.0238 0x0464 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 14:23:17.0279 0x0464 udfs - ok 14:23:17.0316 0x0464 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 14:23:17.0346 0x0464 UI0Detect - ok 14:23:17.0376 0x0464 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 14:23:17.0386 0x0464 uliagpkx - ok 14:23:17.0426 0x0464 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\drivers\umbus.sys 14:23:17.0456 0x0464 umbus - ok 14:23:17.0466 0x0464 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 14:23:17.0496 0x0464 UmPass - ok 14:23:17.0586 0x0464 [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe 14:23:17.0606 0x0464 UMVPFSrv - ok 14:23:17.0646 0x0464 [ 9DC07E73A4ABB9ACF692113B36A5009F, CA7176FC219515D58DCFA66EC61880ECE5617275C9B83701BB74D8B60E733D34 ] UnlockerDriver5 C:\Program Files\Unlocker\UnlockerDriver5.sys 14:23:17.0656 0x0464 UnlockerDriver5 - ok 14:23:17.0696 0x0464 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 14:23:17.0766 0x0464 upnphost - ok 14:23:17.0796 0x0464 [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 14:23:17.0826 0x0464 usbaudio - ok 14:23:17.0856 0x0464 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 14:23:17.0876 0x0464 usbccgp - ok 14:23:17.0896 0x0464 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 14:23:17.0928 0x0464 usbcir - ok 14:23:17.0955 0x0464 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\drivers\usbehci.sys 14:23:17.0965 0x0464 usbehci - ok 14:23:17.0995 0x0464 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 14:23:18.0015 0x0464 usbhub - ok 14:23:18.0095 0x0464 [ F9B3054339A71F16430F6585EBC8BE96, F3EA2CE52504CEC03DBD274C40F2A01BFD52960D52454B4CB0614BC203FD0DB7 ] USBMULCD C:\Windows\system32\drivers\CM10664.sys 14:23:18.0195 0x0464 USBMULCD - ok 14:23:18.0215 0x0464 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\drivers\usbohci.sys 14:23:18.0245 0x0464 usbohci - ok 14:23:18.0275 0x0464 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 14:23:18.0305 0x0464 usbprint - ok 14:23:18.0335 0x0464 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 14:23:18.0375 0x0464 USBSTOR - ok 14:23:18.0385 0x0464 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 14:23:18.0395 0x0464 usbuhci - ok 14:23:18.0425 0x0464 [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys 14:23:18.0445 0x0464 usbvideo - ok 14:23:18.0475 0x0464 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 14:23:18.0505 0x0464 UxSms - ok 14:23:18.0525 0x0464 [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] VaultSvc C:\Windows\system32\lsass.exe 14:23:18.0535 0x0464 VaultSvc - ok 14:23:18.0576 0x0464 [ CDA796F41C2B64CEEC143B3A86904CFB, 8D9CACB74608C145A75424F4169E447A9EFA0EC3DD1412F097B56F86C0FC8E6E ] VBoxDrv C:\Windows\system32\DRIVERS\VBoxDrv.sys 14:23:18.0594 0x0464 VBoxDrv - ok 14:23:18.0614 0x0464 [ 8CD776EB77695524CCE594AAC3A71569, AEF6F9B0E5F67E87819EB0E9FA5220EEF247A160A2BF8511CEDC8D12A9D4D941 ] VBoxNetAdp C:\Windows\system32\DRIVERS\VBoxNetAdp.sys 14:23:18.0624 0x0464 VBoxNetAdp - ok 14:23:18.0654 0x0464 [ 39D80811EB7E87CD7F682A3124693CBA, C90A08CCE322FB01F5D8E7CE269CFC5B91E7A30FC4BCCEE047C636D651E5A59A ] VBoxNetFlt C:\Windows\system32\DRIVERS\VBoxNetFlt.sys 14:23:18.0664 0x0464 VBoxNetFlt - ok 14:23:18.0684 0x0464 [ 35D6103D76CCEEE72EB8F77032755BDB, 4D2ADDC9A023B388DFCBD65159293EE529BEAA77E43BB25B845A9CB043DEDEA2 ] VBoxUSB C:\Windows\system32\Drivers\VBoxUSB.sys 14:23:18.0694 0x0464 VBoxUSB - ok 14:23:18.0734 0x0464 [ 248C6ADD9467AF319D1882A5E8B12966, EE23FB426C6408354A1D212978528F5ECA8ADBB7441C5734F5675D7306235163 ] VBoxUSBMon C:\Windows\system32\DRIVERS\VBoxUSBMon.sys 14:23:18.0744 0x0464 VBoxUSBMon - ok 14:23:18.0764 0x0464 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 14:23:18.0774 0x0464 vdrvroot - ok 14:23:18.0824 0x0464 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 14:23:18.0904 0x0464 vds - ok 14:23:18.0924 0x0464 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 14:23:18.0934 0x0464 vga - ok 14:23:18.0964 0x0464 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 14:23:19.0014 0x0464 VgaSave - ok 14:23:19.0044 0x0464 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 14:23:19.0064 0x0464 vhdmp - ok 14:23:19.0094 0x0464 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 14:23:19.0104 0x0464 viaide - ok 14:23:19.0134 0x0464 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 14:23:19.0144 0x0464 volmgr - ok 14:23:19.0194 0x0464 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 14:23:19.0214 0x0464 volmgrx - ok 14:23:19.0230 0x0464 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 14:23:19.0245 0x0464 volsnap - ok 14:23:19.0273 0x0464 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 14:23:19.0283 0x0464 vsmraid - ok 14:23:19.0373 0x0464 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 14:23:19.0473 0x0464 VSS - ok 14:23:19.0493 0x0464 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 14:23:19.0523 0x0464 vwifibus - ok 14:23:19.0543 0x0464 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 14:23:19.0573 0x0464 vwififlt - ok 14:23:19.0603 0x0464 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 14:23:19.0633 0x0464 vwifimp - ok 14:23:19.0683 0x0464 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 14:23:19.0733 0x0464 W32Time - ok 14:23:19.0803 0x0464 [ B32009DB1972E7F2C227499289C4384A, D491CD90ACE895EC60A5A2F995EAE39F8ED662B71BC548C3FF5BBDBC60054788 ] W3SVC C:\Windows\system32\inetsrv\iisw3adm.dll 14:23:19.0843 0x0464 W3SVC - ok 14:23:19.0863 0x0464 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 14:23:19.0894 0x0464 WacomPen - ok 14:23:19.0932 0x0464 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 14:23:19.0972 0x0464 WANARP - ok 14:23:19.0982 0x0464 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 14:23:20.0012 0x0464 Wanarpv6 - ok 14:23:20.0032 0x0464 [ B32009DB1972E7F2C227499289C4384A, D491CD90ACE895EC60A5A2F995EAE39F8ED662B71BC548C3FF5BBDBC60054788 ] WAS C:\Windows\system32\inetsrv\iisw3adm.dll 14:23:20.0052 0x0464 WAS - ok 14:23:20.0132 0x0464 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 14:23:20.0212 0x0464 wbengine - ok 14:23:20.0252 0x0464 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 14:23:20.0282 0x0464 WbioSrvc - ok 14:23:20.0322 0x0464 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 14:23:20.0362 0x0464 wcncsvc - ok 14:23:20.0382 0x0464 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 14:23:20.0412 0x0464 WcsPlugInService - ok 14:23:20.0452 0x0464 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\DRIVERS\wd.sys 14:23:20.0462 0x0464 Wd - ok 14:23:20.0512 0x0464 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 14:23:20.0560 0x0464 Wdf01000 - ok 14:23:20.0570 0x0464 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\Windows\system32\wdi.dll 14:23:20.0610 0x0464 WdiServiceHost - ok 14:23:20.0620 0x0464 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\Windows\system32\wdi.dll 14:23:20.0640 0x0464 WdiSystemHost - ok 14:23:20.0670 0x0464 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll 14:23:20.0700 0x0464 WebClient - ok 14:23:20.0720 0x0464 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 14:23:20.0780 0x0464 Wecsvc - ok 14:23:20.0800 0x0464 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 14:23:20.0840 0x0464 wercplsupport - ok 14:23:20.0850 0x0464 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 14:23:20.0880 0x0464 WerSvc - ok 14:23:20.0910 0x0464 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 14:23:20.0940 0x0464 WfpLwf - ok 14:23:20.0990 0x0464 [ 2C3E71FF4F6E859AE3833BA206B00614, 60CA297905E357F1596EBEC695629AA34FD5D80C6C6291E89F5B4BC8591ECA64 ] whfltr2k C:\Windows\system32\DRIVERS\whfltr2k.sys 14:23:21.0020 0x0464 whfltr2k - ok 14:23:21.0060 0x0464 [ 52DED146E4797E6CCF94799E8E22BB2A, 57A29260D81AA3AD3F8C29E9CFA7CE3970D7A8BF673ADD9B256EE76C7DEC080E ] WimFltr C:\Windows\system32\DRIVERS\wimfltr.sys 14:23:21.0070 0x0464 WimFltr - ok 14:23:21.0090 0x0464 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 14:23:21.0100 0x0464 WIMMount - ok 14:23:21.0120 0x0464 WinDefend - ok 14:23:21.0140 0x0464 WinHttpAutoProxySvc - ok 14:23:21.0209 0x0464 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 14:23:21.0239 0x0464 Winmgmt - ok 14:23:21.0339 0x0464 [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM C:\Windows\system32\WsmSvc.dll 14:23:21.0449 0x0464 WinRM - ok 14:23:21.0519 0x0464 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 14:23:21.0539 0x0464 WinUsb - ok 14:23:21.0579 0x0464 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 14:23:21.0649 0x0464 Wlansvc - ok 14:23:21.0809 0x0464 [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 14:23:21.0898 0x0464 wlidsvc - ok 14:23:21.0928 0x0464 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 14:23:21.0948 0x0464 WmiAcpi - ok 14:23:21.0998 0x0464 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 14:23:22.0028 0x0464 wmiApSrv - ok 14:23:22.0058 0x0464 WMPNetworkSvc - ok 14:23:22.0088 0x0464 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 14:23:22.0118 0x0464 WPCSvc - ok 14:23:22.0158 0x0464 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 14:23:22.0178 0x0464 WPDBusEnum - ok 14:23:22.0218 0x0464 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 14:23:22.0258 0x0464 ws2ifsl - ok 14:23:22.0278 0x0464 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 14:23:22.0298 0x0464 wscsvc - ok 14:23:22.0308 0x0464 WSearch - ok 14:23:22.0418 0x0464 [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv C:\Windows\system32\wuaueng.dll 14:23:22.0517 0x0464 wuauserv - ok 14:23:22.0547 0x0464 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 14:23:22.0567 0x0464 WudfPf - ok 14:23:22.0587 0x0464 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 14:23:22.0617 0x0464 WUDFRd - ok 14:23:22.0647 0x0464 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 14:23:22.0667 0x0464 wudfsvc - ok 14:23:22.0707 0x0464 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 14:23:22.0727 0x0464 WwanSvc - ok 14:23:22.0727 0x0464 XFDriver64 - ok 14:23:22.0817 0x0464 [ F8351AF62358FAC4E4189CEFEE0034FD, 876CBC7104DC688745774840D7215112E89B5A17E6C5A3111C36C42D6A8E82F0 ] XTU3SERVICE C:\Program Files (x86)\Intel\Extreme Tuning Utility\XtuService.exe 14:23:22.0817 0x0464 XTU3SERVICE - ok 14:23:22.0867 0x0464 [ 9176C0822FAA649E45121875BE32F5D2, B7A7A906A7BB0F760ED241F998C647D728C4DB5D8778AFE585DF38331165803F ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys 14:23:22.0877 0x0464 xusb21 - ok 14:23:22.0937 0x0464 [ 6DB01688FDBF299F426EEB01DDEC684A, B183578E52662CAC6253E418B25BA1B9E4FF825485531C8749A130358D98A856 ] ZAtheros Wlan Agent C:\Program Files (x86)\Qualcomm Atheros Fast Reconnect\Ath_WlanAgent.exe 14:23:22.0957 0x0464 ZAtheros Wlan Agent - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:25.0764 0x0464 Detect skipped due to KSN trusted 14:23:25.0764 0x0464 ZAtheros Wlan Agent - ok 14:23:25.0935 0x0464 [ 1870A74EE2901CA09FFBFE79A5EE0E94, EB79E50A8BC345AC727877D047CF3E669E61354659D6B84416683B29F22E6350 ] {329F96B6-DF1E-4328-BFDA-39EA953C1312} D:\Programme\PowerDVD11 Ultra\PowerDVD11\Common\NavFilter\000.fcl 14:23:25.0955 0x0464 {329F96B6-DF1E-4328-BFDA-39EA953C1312} - ok 14:23:25.0965 0x0464 ================ Scan global =============================== 14:23:26.0025 0x0464 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll 14:23:26.0065 0x0464 [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll 14:23:26.0085 0x0464 [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll 14:23:26.0115 0x0464 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 14:23:26.0155 0x0464 [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe 14:23:26.0155 0x0464 [ Global ] - ok 14:23:26.0155 0x0464 ================ Scan MBR ================================== 14:23:26.0175 0x0464 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 14:23:26.0594 0x0464 \Device\Harddisk0\DR0 - ok 14:23:26.0604 0x0464 ================ Scan VBR ================================== 14:23:26.0604 0x0464 [ 307355C56E8169DA800572BA7498E1A4 ] \Device\Harddisk0\DR0\Partition1 14:23:26.0604 0x0464 \Device\Harddisk0\DR0\Partition1 - ok 14:23:26.0604 0x0464 [ 766F9043354F29587FDF2A85081B2A89 ] \Device\Harddisk0\DR0\Partition2 14:23:26.0604 0x0464 \Device\Harddisk0\DR0\Partition2 - ok 14:23:26.0604 0x0464 [ FB36F5D09C3C621A317059CD1FA25AF1 ] \Device\Harddisk0\DR0\Partition3 14:23:26.0614 0x0464 \Device\Harddisk0\DR0\Partition3 - ok 14:23:26.0614 0x0464 Waiting for KSN requests completion. In queue: 147 14:23:27.0623 0x0464 Waiting for KSN requests completion. In queue: 147 14:23:28.0630 0x0464 Waiting for KSN requests completion. In queue: 147 14:23:29.0678 0x0464 AV detected via SS2: avast! Antivirus, D:\Programme\AVAST Software\Avast\VisthAux.exe ( 9.0.2018.391 ), 0x41000 ( enabled : updated ) 14:23:29.0688 0x0464 Win FW state via NFP2: enabled 14:23:32.0433 0x0464 ============================================================ 14:23:32.0433 0x0464 Scan finished 14:23:32.0433 0x0464 ============================================================ 14:23:32.0433 0x0444 Detected object count: 0 14:23:32.0433 0x0444 Actual detected object count: 0 Der Explorer Absturz in der Systemsteuerung habe ich nicht mehr über das automatische Minimieren der Programme kann ich leider noch nichts sagen ich werde mal eine längere Gamingsession versuchen und dann sofort mitteilen ob das Problem noch auftritt |
28.05.2014, 13:40 | #14 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) OK ESET Online Scanner
__________________ Proud member of Unite |
28.05.2014, 19:13 | #15 |
| Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) Hab gerade festgestellt das der Explorer immernoch abstürzt wenn ich versuche über die Systemsteuerung zu de-installieren aber auch nur wenn ich schnell die liste runter Scroll solange er die Programme noch sucht bzw. lädt wenn ich warte bis alle Programme geladen wurden passiert das nicht mehr. ESET Log Code:
ATTFilter C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\DpInterface32.dll.vir Variante von Win32/Thinknice.B evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Program Files (x86)\SupTab\SupTab.dll.vir Variante von Win32/Thinknice.B evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\ProgramData\IePluginService\PluginService.exe.vir Variante von Win32/ELEX.AD evtl. unerwünschte Anwendung C:\AdwCleaner\Quarantine\C\Users\Don Corleone\AppData\Roaming\SupTab\SupTab.dll.vir Variante von Win32/Thinknice.B evtl. unerwünschte Anwendung C:\FRST\Quarantine\C\Users\Don Corleone\AppData\Local\Temp\20140517091718.754.exe.xBAD Variante von Win32/InstallCore.BY evtl. unerwünschte Anwendung C:\ProgramData\InstallMate\{FC44BFEB-2799-492C-ABC7-6FBB27A79D1D}\Custom.dll Win32/InstalleRex.M evtl. unerwünschte Anwendung C:\ProgramData\IObit\ASCDownloader\ASCSetup.exe Variante von Win32/Toolbar.Widgi.B evtl. unerwünschte Anwendung C:\Users\All Users\InstallMate\{FC44BFEB-2799-492C-ABC7-6FBB27A79D1D}\Custom.dll Win32/InstalleRex.M evtl. unerwünschte Anwendung C:\Users\All Users\IObit\ASCDownloader\ASCSetup.exe Variante von Win32/Toolbar.Widgi.B evtl. unerwünschte Anwendung C:\Users\Don Corleone\Desktop\von chip\Logon_Screen_2.56.exe Win32/DownWare.W evtl. unerwünschte Anwendung C:\Users\Don Corleone\Downloads\Systemprogramme\disk-defrag-setup-4.5.5.0.exe Win32/MyPCBackup.A evtl. unerwünschte Anwendung Habe jetzt mal 20 Minuten gezockt ... und das selbe wieder, durfte wieder den Desktop betrachten Versteh ich nicht hab doch unmengen an Möglichkeiten probiert, was kann das sein Geändert von Chaikobar (28.05.2014 um 19:58 Uhr) Grund: Beitrag editiert: falsche Zeitangabe |
Themen zu Windows 7 wirft mich auf den Desktop in unregelmäßigen Abständen (überwiegend bei Spielen aufgefallen) |
administrator, amd radeon, auf desktop geworfen, explorer.exe, focus, homepage, installation, microsoft, microsoft fix it, mozilla, programm minimiert sich, programme, pup.optional.oneinstaller, pup.optional.opencandy, pup.optional.qone8, pup.optional.tarma.a, revo uninstaller, services.exe, svchost.exe, systemsteuerung, uplay, win32/downware.w, win32/elex.ad, win32/installcore.by, win32/installerex.m, win32/mypcbackup.a, win32/thinknice.b, win32/toolbar.widgi.b, windows 7 |