|
Alles rund um Windows: Pc langsam und Sound knistertWindows 7 Hilfe zu allen Windows-Betriebssystemen: Windows XP, Windows Vista, Windows 7, Windows 8(.1) und Windows 10 / Windows 11- als auch zu sämtlicher Windows-Software. Alles zu Windows 10 ist auch gerne willkommen. Bitte benenne etwaige Fehler oder Bluescreens unter Windows mit dem Wortlaut der Fehlermeldung und Fehlercode. Erste Schritte für Hilfe unter Windows. |
12.07.2015, 00:06 | #1 |
| Problem: Pc langsam und Sound knistert Ich bedanke mich im Vorfeld bereits für die Hilfe =) Seit einigen Tagen läuft mein Rechner langsamer und jeglicher Sound wird durch ein knistern verunreinigt. Ich habe bereits auf neue Treiber prüfen lassen, Windows upgedatet, neue Treiber installiert und so weiter... . Das langsame hierbei ist, dass beispielsweise Teamspeak einige Minuten zum starten benötigt, nur um dann keine Rückmeldung mehr zu geben.(Windows selber läuft schnell) Habe mich durchgegooglet, jedoch half nichts, auch kann ich ein Problem am Headset (Logitech G35) ausschließen, da ich dieses erst neu gekauft hatte und es bisher gut funktioniert hatte. Zur Hardware: Prozessor: AMD FX-8350 Octa-Core 4.00 GHz Mainboard: ASROCK 970 Extreme3 Grafikkarte: AMD Radeon HD 7900 Arbeitsspeicher: 16GB Danke für jede Antwort, MfG Takato |
12.07.2015, 21:23 | #2 |
/// the machine /// TB-Ausbilder | Pc langsam und Sound knistert Anleitung / Hilfe Hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
13.07.2015, 00:31 | #3 |
| Pc langsam und Sound knistert DetailsCode:
ATTFilter # AdwCleaner v4.208 - Bericht erstellt 12/07/2015 um 01:09:24 # Aktualisiert 09/07/2015 von Xplode # Datenbank : 2015-07-11.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64) # Benutzername : DustinGamer - DUSTINGAMER-PC # Gestarted von : C:\Users\DustinGamer\Downloads\adwcleaner_4.208.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\DustinGamer\AppData\Roaming\RHEng Ordner Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdjknjpbnhdoabbngpmfekaecnpajba Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hcdjknjpbnhdoabbngpmfekaecnpajba_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_hcdjknjpbnhdoabbngpmfekaecnpajba_0.localstorage-journal Datei Gelöscht : C:\Users\DustinGamer\AppData\Roaming\Mozilla\Firefox\Profiles\ccywtshb.default\user.js Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_animeshow.tv_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_animeshow.tv_0.localstorage-journal Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_de.anisearch.com_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_de.anisearch.com_0.localstorage-journal Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_painttool-sai.en.softonic.com_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_painttool-sai.en.softonic.com_0.localstorage-journal Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_primeshare.tv_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_primeshare.tv_0.localstorage-journal Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_tangorin.com_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_tangorin.com_0.localstorage-journal Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.movshare.net_0.localstorage Datei Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.movshare.net_0.localstorage-journal ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467 Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>;*.local ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17840 -\\ Mozilla Firefox v27.0.1 (de) -\\ Google Chrome v43.0.2357.132 ************************* AdwCleaner[R0].txt - [3933 Bytes] - [27/12/2013 15:34:32] AdwCleaner[R1].txt - [6890 Bytes] - [16/07/2014 16:01:30] AdwCleaner[R2].txt - [4176 Bytes] - [12/07/2015 01:08:02] AdwCleaner[S0].txt - [3899 Bytes] - [27/12/2013 15:35:38] AdwCleaner[S1].txt - [4907 Bytes] - [16/07/2014 16:02:20] AdwCleaner[S2].txt - [4042 Bytes] - [12/07/2015 01:09:24] ########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [4101 Bytes] ########## [CODE]Additional FRST Logfile: Code:
ATTFilter scan result of Farbar Recovery Scan Tool (x64) Version:12-07-2015 Ran by DustinGamer at 2015-07-13 01:27:54 Running from C:\Users\DustinGamer\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2242473079-4026403813-3816058736-500 - Administrator - Disabled) DustinGamer (S-1-5-21-2242473079-4026403813-3816058736-1000 - Administrator - Enabled) => C:\Users\DustinGamer Gast (S-1-5-21-2242473079-4026403813-3816058736-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2242473079-4026403813-3816058736-1006 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1.377 - Adobe Systems Incorporated) Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.191 - Adobe Systems Incorporated) Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Akamai) (Version: - Akamai Technologies, Inc) AMD Catalyst Install Manager (HKLM\...\{14D58A97-B60E-A858-34D8-95469C02F7EC}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Andy OS (HKLM-x32\...\Andy OS) (Version: 0.43 - Andy OS, Inc) Apple Application Support (32-Bit) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ARK: Survival Evolved (HKLM-x32\...\Steam App 346110) (Version: - Studio Wildcard) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) ArmA3Sync 1.3.50 (HKLM-x32\...\{F097E7D7-D093-4394-9EED-43AFCCD12B7A}_is1) (Version: 1.3.49 - The [S.o.E] team) ASRock App Charger v1.0.5 (HKLM\...\ASRock App Charger_is1) (Version: - ASRock Inc.) ASRock eXtreme Tuner v0.1.122 (HKLM-x32\...\ASRock eXtreme Tuner_is1) (Version: - ) ASRock InstantBoot v1.29 (HKLM-x32\...\ASRock InstantBoot_is1) (Version: - ) AwesomiumSetup (HKLM-x32\...\{19EF99D1-7EE6-4B5E-ABEE-0B3825F703B0}) (Version: 1.00.0000 - SIX Networks GmbH) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.4.0 - EA Digital Illusions CE AB) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) BF3 Settings Editor (HKLM\...\{5866DD36-8055-475B-A5C3-82C04091D14E}) (Version: 2.3 - Realmware) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Counter-Strike 1.6 (HKLM-x32\...\Counter-Strike 1.6) (Version: - ) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) Curse (HKLM-x32\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 6.0.0.0 - Curse) DARK SOULS™ II (HKLM-x32\...\Steam App 236430) (Version: - FromSoftware, Inc) DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Don't Starve Together Beta (HKLM-x32\...\Steam App 322330) (Version: - Klei Entertainment) Dungeon Defenders (HKLM-x32\...\Steam App 65800) (Version: - Trendy Entertainment) DVD Architect Studio 5.0 (HKLM-x32\...\{04DF4A51-DE2A-11E0-9AB5-F04DA23A5C58}) (Version: 5.0.156 - Sony) Dxtory version 2.0.122 (HKLM-x32\...\Dxtory2.0_is1) (Version: 2.0.122 - Dxtory Software) Etron USB3.0 Host Controller (x32 Version: 0.104 - Etron Technology) Hidden Facebook Messenger 2.1.4814.0 (HKLM-x32\...\{7204BDEE-1A48-4D95-A964-44A9250B439E}) (Version: 2.1.4814.0 - Facebook) FastStone Image Viewer 4.8 (HKLM-x32\...\FastStone Image Viewer) (Version: 4.8 - FastStone Soft) FINAL FANTASY XIII (HKLM-x32\...\Steam App 292120) (Version: - SQUARE ENIX) Fragen-Lern-CD 4.3 (HKLM-x32\...\de.3m5.wendel.flcd.FLCDB.FC622282278C06838B5CD08883589F2C8AB9EEDC.1) (Version: 4.3.5 - Wendel-Verlag GmbH) Fragen-Lern-CD 4.3 (x32 Version: 4.3.5 - Wendel-Verlag GmbH) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Free YouTube to MP3 Converter version 3.12.55.219 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.55.219 - DVDVideoSoft Ltd.) Freemake Video Converter Version 4.0.3 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.0.3 - Ellora Assets Corporation) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Garry) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.132 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar North) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.) Java 7 Update 71 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417071FF}) (Version: 7.0.710 - Oracle) Kerbal Space Program (HKLM-x32\...\Steam App 220200) (Version: - ) Lagarith Lossless Codec (1.3.27) (HKLM-x32\...\{F59AC46C-10C3-4023-882C-4212A92283B3}_is1) (Version: - ) League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games) Life is Feudal: Your Own (HKLM-x32\...\Steam App 290080) (Version: - Bitbox Ltd.) Logitech G35 (HKLM\...\{27607A94-33AC-4AA7-AACE-95AF6ACA3E30}) (Version: 1.1.178 - Logitech) LOLReplay (HKLM-x32\...\LOLReplay) (Version: 0.8.5.2 - www.leaguereplays.com) Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Firefox 27.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 de)) (Version: 27.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla) My Game Long Name (HKLM\...\UDK-4e6ebc1d-aade-4d3f-b455-af327be98485) (Version: - Epic Games, Inc.) Net4Players Launcher Version 0.1 (HKLM-x32\...\{686082EC-BFF8-4C79-AA64-372A05B0662F}_is1) (Version: 0.1 - Net4Players Gaming Organization) Next Car Game Sneak Peek 2.0 (HKLM-x32\...\Steam App 272860) (Version: - Bugbear) Next Car Game: Wreckfest (HKLM-x32\...\Steam App 228380) (Version: - Bugbear) Nosgoth (HKLM-x32\...\Steam App 200110) (Version: 140819.91216 - Square Enix Ltd) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Oracle VM VirtualBox 4.3.20 (HKLM\...\{86401870-7AB7-4A8D-8AD6-12B27DF2E6E3}) (Version: 4.3.20 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.1.12.73 - Electronic Arts, Inc.) osu! (HKLM-x32\...\{02adcbd5-05f7-4cba-a949-2408f18a48e2}) (Version: latest - ppy Pty Ltd) Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games) Play withSIX Windows client (HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\PlaywithSIX) (Version: 1.67.1229.1 - SIX Networks GmbH) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Raptr (HKLM-x32\...\Raptr) (Version: - ) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.19.25502 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6378 - Realtek Semiconductor Corp.) ROCCAT Isku Keyboard Driver (HKLM-x32\...\{4ABAF918-A6BD-43D8-AE0B-5292034B14CB}) (Version: - Roccat GmbH) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.5.8 - Rockstar Games) Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Splashtop Connect IE (HKLM-x32\...\{F9F5EF72-18CF-4DCF-A721-EC86B94DAC46}) (Version: 1.1.12.1 - Splashtop Inc.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Supraball (HKLM-x32\...\Supraball) (Version: - Supra Games Gbr) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.15.1 - TeamSpeak Systems GmbH) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.27339 - TeamViewer) The Binding of Isaac: Rebirth (HKLM-x32\...\Steam App 250900) (Version: - Nicalis, Inc.) THX TruStudio (HKLM-x32\...\{AFB907F5-C0E6-4753-8284-DE955EF86AC2}) (Version: 1.00.01 - Creative Technology Limited) Tunngle beta (HKLM-x32\...\Tunngle beta_is1) (Version: - Tunngle.net GmbH) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Unity (HKLM-x32\...\Unity) (Version: 5.0.0f4 - Unity Technologies ApS) Vegas Movie Studio HD Platinum 11.0 (HKLM-x32\...\{CE806AF0-F384-11E0-9EE7-F04DA23A5C58}) (Version: 11.0.256 - Sony) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Wacom Tablett (HKLM\...\Wacom Tablet Driver) (Version: 6.3.6-3 - Wacom Technology Corp.) War Thunder (HKLM-x32\...\Steam App 236390) (Version: - Gaijin Entertainment) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WhiteCap (HKLM-x32\...\WhiteCap) (Version: 5.7.1 - SoundSpectrum) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) XFast USB (HKLM-x32\...\XFast USB) (Version: - ) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\DustinGamer\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay No File CustomCLSID: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000_Classes\CLSID\{01E9FAE9-3819-4dd9-B1D9-998A1C62D1F8}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000_Classes\CLSID\{092dfa86-5807-5a94-bf3b-5a53ba9e5308}\InprocServer32 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) ==================== Restore Points ========================= 12-07-2015 00:23:29 Windows Update 12-07-2015 00:38:52 Windows Update 12-07-2015 01:38:54 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2013-07-25 13:31 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {39AD730C-7514-4974-87EF-9E52AA5BF7AE} - System32\Tasks\{1AEE16D6-B8A5-42C9-BC60-63A158BEBE34} => pcalua.exe -a "C:\Program Files (x86)\Steam\steam.exe" -c steam://uninstall/218230 Task: {3B753ACB-999F-44BE-ADCD-43253C27919A} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000UA => C:\Users\DustinGamer\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-23] (Facebook Inc.) Task: {5166C5E3-6896-4DBD-B3B5-88D6F1387C57} - System32\Tasks\{D27D35C9-7E82-446E-A461-CA0B60169A33} => pcalua.exe -a "C:\Users\DustinGamer\Downloads\JavaSetup8u25 (1).exe" -d C:\Users\DustinGamer\Downloads Task: {5591842F-8F4B-4785-9EB8-CC7EE0A57C16} - System32\Tasks\{B87AE8EF-73C0-49A2-B7D0-E3BF42ADE2A0} => pcalua.exe -a C:\Users\DustinGamer\Downloads\chromeinstall-8u25.exe -d C:\Users\DustinGamer\Downloads Task: {61051D30-0190-4026-A92B-A0199B39F201} - System32\Tasks\{E546C680-A51C-4ACB-950E-CBA2664C7831} => pcalua.exe -a "C:\Users\DustinGamer\Downloads\chromeinstall-8u25 (1).exe" -d C:\Users\DustinGamer\Downloads Task: {6560AB03-0E2D-4C96-A01E-1CDBD59D83DB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-05] (Google Inc.) Task: {68761891-F69D-45A5-AC47-E09E963C3700} - System32\Tasks\{CBAFCC8A-280E-4FED-B2B1-15445C141489} => pcalua.exe -a "C:\Program Files (x86)\Steam\SteamApps\common\Arma 2\BEsetup\setup_BattlEyeARMA2.exe" -d "C:\Program Files (x86)\Steam\SteamApps\common\Arma 2\BEsetup" Task: {8B7F865C-6EA8-403B-A5CB-AF63FDA992D1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-05] (Google Inc.) Task: {91527EF4-0021-44F9-8747-176B980B9ADF} - System32\Tasks\{6A46C907-7650-40CB-899F-C7E44AF8671E} => pcalua.exe -a C:\PROGRA~2\COMMON~1\ADOBEA~1\Versions\1.0\ADOBEA~1.EXE -d D:\ -c "D:\flcd.air" Task: {A076BF44-F1CF-4333-BB6A-6DC38B73A7AD} - System32\Tasks\{9C30998B-005A-473C-8514-940A548EE8B2} => pcalua.exe -a C:\Users\DustinGamer\Downloads\JavaSetup8u25.exe -d C:\Users\DustinGamer\Downloads Task: {AD0F76C6-4175-490E-BFD6-C8C2B8A92CA6} - System32\Tasks\{032BBB21-7F51-4F0D-8210-03059B8DEA49} => C:\Program Files (x86)\Forsaken Client\1. Forsaken Flyff.exe Task: {BCB94118-86CA-49A7-8343-857EB03C98A0} - System32\Tasks\{DBC340B6-C2C4-45F4-9E0B-35EF309C4615} => pcalua.exe -a C:\Users\DustinGamer\Downloads\Forsaken_Client_v2.exe -d C:\Users\DustinGamer\Downloads Task: {C0D9CB2D-B4A6-46A4-8DD6-85DFDEC7FE32} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-09] (Adobe Systems Incorporated) Task: {C1B346F0-D94C-4F48-93B9-DF67A441F4B4} - System32\Tasks\{9CD5B030-C201-4484-BA0B-332074311914} => pcalua.exe -a "C:\Users\DustinGamer\Desktop\Neuer Ordner\ARMA2_OA_Build_112555.exe" -d "C:\Users\DustinGamer\Desktop\Neuer Ordner" Task: {C1EE9AA0-C99D-4D31-9479-34D987BA4D4E} - System32\Tasks\{35F45C04-586D-49AE-B3C2-240EBAD8B33F} => C:\Program Files (x86)\Forsaken Client\1. Forsaken Flyff.exe Task: {D75CD2F7-0239-417A-B4F2-288D114B4F37} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000Core => C:\Users\DustinGamer\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-23] (Facebook Inc.) Task: {E158FB33-CCCB-4889-8A86-1B080A7EDA6A} - System32\Tasks\{3385F3D2-EAC0-4D18-B287-CDDF66ACABB5} => msiexec.exe /package "D:\setup.msi" (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000Core.job => C:\Users\DustinGamer\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000UA.job => C:\Users\DustinGamer\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2012-04-10 10:11 - 2012-04-10 10:11 - 00034304 _____ () C:\Windows\System32\ssb6mlm.dll 2014-12-04 07:19 - 2014-12-04 07:19 - 00029184 _____ () C:\Windows\System32\sst9clm.dll 2015-06-22 21:37 - 2015-06-22 21:37 - 00214528 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 00817152 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Device.dll 2014-02-11 07:08 - 2014-02-11 07:08 - 03650560 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Platform.dll 2015-03-20 18:12 - 2015-03-20 18:12 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-03-20 18:12 - 2015-03-20 18:12 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-02-05 21:48 - 2014-06-14 21:50 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2015-02-05 01:24 - 2015-02-05 01:25 - 00187072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2014-06-13 16:37 - 2013-06-06 04:09 - 01185048 ____N () C:\Program Files\Tablet\Wacom\libxml2.dll 2013-02-05 18:49 - 2011-05-19 10:58 - 00246784 _____ () C:\Windows\SYSTEM32\APOMgr64.DLL 2013-10-20 11:50 - 2013-10-20 11:50 - 00012520 _____ () C:\Users\DustinGamer\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.gadget\CoreTempReader.dll 2013-10-20 11:50 - 2013-10-20 11:50 - 00015080 _____ () C:\Users\DustinGamer\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.gadget\GetCoreTempInfoNET.dll 2013-10-20 11:50 - 2013-10-20 11:50 - 00014056 _____ () C:\Users\DustinGamer\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter_V4.7.gadget\SystemInfo.dll 2015-03-20 20:11 - 2015-02-03 16:22 - 00907144 _____ () C:\Program Files\Andy\HandyAndy.exe 2015-06-22 21:37 - 2015-06-22 21:37 - 00102400 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2015-03-20 20:11 - 2015-02-03 15:29 - 00856968 _____ () C:\Program Files\Andy\AndyPriorityMgr.exe 2014-02-28 11:14 - 2014-02-28 11:14 - 00173568 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 01080832 _____ () C:\Program Files\TeamSpeak 3 Client\platforms\qwindows.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00833024 _____ () C:\Program Files\TeamSpeak 3 Client\sqldrivers\qsqlite.dll 2014-02-28 15:07 - 2014-08-07 11:20 - 00102344 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2014-02-28 15:07 - 2014-08-07 11:20 - 00108488 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00030208 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qgif.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00233984 _____ () C:\Program Files\TeamSpeak 3 Client\imageformats\qjpeg.dll 2014-02-28 15:10 - 2014-08-07 11:20 - 00563656 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2014-06-05 17:26 - 2014-05-29 18:17 - 00337408 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\task_force_radio_win64.dll 2014-02-28 15:10 - 2014-08-07 11:20 - 00579016 _____ () C:\Program Files\TeamSpeak 3 Client\plugins\teamspeak_control_plugin.dll 2014-02-27 16:51 - 2014-02-27 16:51 - 00159232 _____ () C:\Program Files\TeamSpeak 3 Client\accessible\qtaccessiblewidgets.dll 2015-05-07 18:59 - 2015-07-12 12:19 - 00619840 _____ () C:\Users\DustinGamer\AppData\Local\Temp\0Kraken71ChromaDevProps.dll 2013-02-05 18:49 - 2011-05-04 17:32 - 00094208 ____N () C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\de-DE\THXAudNB.resources.dll 2014-09-10 16:28 - 2010-11-04 11:48 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Isku Keyboard\hiddriver.dll 2015-02-02 09:52 - 2015-02-02 09:52 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd 2014-05-14 01:26 - 2014-05-14 01:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd 2010-11-23 00:56 - 2010-11-23 00:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd 2014-08-14 02:37 - 2014-08-14 02:37 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll 2014-08-14 02:37 - 2014-08-14 02:37 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll 2013-11-21 02:05 - 2013-11-21 02:05 - 00256000 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll 2010-11-23 00:56 - 2010-11-23 00:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd 2015-07-09 21:47 - 2015-07-09 21:47 - 02551040 _____ () C:\Program Files (x86)\Raptr\ltc_host_ex.DLL 2010-11-23 00:56 - 2010-11-23 00:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll 2010-11-23 00:57 - 2010-11-23 00:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd 2010-11-23 00:57 - 2010-11-23 00:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd 2014-06-18 02:56 - 2014-06-18 02:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd 2011-02-15 20:17 - 2011-02-15 20:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll 2010-11-23 01:06 - 2010-11-23 01:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll 2013-05-10 01:52 - 2013-05-10 01:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll 2013-05-03 20:56 - 2013-05-03 20:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll 2013-05-03 20:57 - 2013-05-03 20:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll 2013-03-12 18:10 - 2015-04-16 19:40 - 00776192 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-01-20 16:59 - 2015-04-23 04:16 - 04962816 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-01-20 16:59 - 2015-04-23 04:16 - 01556992 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-01-20 16:59 - 2015-04-23 04:16 - 01187840 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2014-05-21 22:42 - 2015-06-04 20:56 - 02407104 _____ () C:\Program Files (x86)\Steam\video.dll 2014-08-29 08:26 - 2014-12-01 23:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2014-08-29 08:26 - 2014-12-01 23:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2014-08-29 08:26 - 2014-12-01 23:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2014-08-29 08:26 - 2014-12-01 23:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2014-08-29 08:26 - 2014-12-01 23:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2013-02-12 17:10 - 2015-06-04 20:56 - 00703168 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2013-02-12 17:10 - 2015-05-11 21:01 - 36302728 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2015-05-14 12:55 - 2015-05-11 21:01 - 08958344 _____ () C:\Program Files (x86)\Steam\bin\pdf.dll 2015-07-07 19:20 - 2015-07-07 05:49 - 16285512 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\PepperFlash\pepflashplayer.dll 2015-07-07 19:20 - 2015-07-07 05:49 - 01281864 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libglesv2.dll 2015-07-07 19:20 - 2015-07-07 05:49 - 00080712 _____ () C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\aeriagames.com -> hxxps://aeriagames.com IE trusted site: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\aeriagames.com -> hxxp://aeriagames.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [TCP Query User{3686A81A-8DDE-4AE7-8CEE-255215C1E2C6}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{2662C023-5203-41D8-8C97-1255E36C4E82}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{A3919D07-2C04-4CDB-B448-95272EFA8D28}C:\program files (x86)\empire earth\empire earth.exe] => (Allow) C:\program files (x86)\empire earth\empire earth.exe FirewallRules: [UDP Query User{E89A4B5F-BA5A-4A8B-973A-9183C61BEBDA}C:\program files (x86)\empire earth\empire earth.exe] => (Allow) C:\program files (x86)\empire earth\empire earth.exe FirewallRules: [TCP Query User{62225336-EAC7-4EBB-BEE1-6A951AE84D8F}C:\users\dustingamer\desktop\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\users\dustingamer\desktop\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [UDP Query User{4645F733-E008-4547-BA51-9A4843E04FA2}C:\users\dustingamer\desktop\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\users\dustingamer\desktop\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [TCP Query User{BF727888-ABE1-4D55-88C9-665E4C31A2CF}C:\users\dustingamer\appdata\local\temp\gw2.exe] => (Allow) C:\users\dustingamer\appdata\local\temp\gw2.exe FirewallRules: [UDP Query User{142487E7-62E4-435C-BC5F-A45604C27A6D}C:\users\dustingamer\appdata\local\temp\gw2.exe] => (Allow) C:\users\dustingamer\appdata\local\temp\gw2.exe FirewallRules: [TCP Query User{20E69769-86FE-423B-92C4-FBAA7D18F65C}C:\program files (x86)\guild wars 2\gw2.exe] => (Allow) C:\program files (x86)\guild wars 2\gw2.exe FirewallRules: [UDP Query User{C43F9FA3-7511-40BE-93F0-1B8A278E9F02}C:\program files (x86)\guild wars 2\gw2.exe] => (Allow) C:\program files (x86)\guild wars 2\gw2.exe FirewallRules: [{DE021FDF-FEFE-434F-9D4C-010F6818A649}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{DF7FDE45-E437-4022-8898-D8BD7A9E3E33}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{EB2513F4-D881-49EF-8923-82BDB629B5E2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 2\arma2.exe FirewallRules: [{781007F6-60C9-4451-BCBB-CED3944403F1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 2\arma2.exe FirewallRules: [{08F1BF8E-0E38-4483-8D08-6E1AF120E83B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{4D6C56D7-3757-4C36-8FD8-40F8846E97E1}C:\program files (x86)\rebellion\empire earth.exe] => (Allow) C:\program files (x86)\rebellion\empire earth.exe FirewallRules: [UDP Query User{CEB37644-2C71-4A7F-88EA-4D331B1A6446}C:\program files (x86)\rebellion\empire earth.exe] => (Allow) C:\program files (x86)\rebellion\empire earth.exe FirewallRules: [TCP Query User{3A1467EE-D295-47D3-87D8-A3BFE6C31340}C:\program files (x86)\lan_party\marco-lanparty\stronghold crusader\stronghold crusader.exe] => (Allow) C:\program files (x86)\lan_party\marco-lanparty\stronghold crusader\stronghold crusader.exe FirewallRules: [UDP Query User{686D0785-42D5-4282-BECE-CF6816BD2123}C:\program files (x86)\lan_party\marco-lanparty\stronghold crusader\stronghold crusader.exe] => (Allow) C:\program files (x86)\lan_party\marco-lanparty\stronghold crusader\stronghold crusader.exe FirewallRules: [TCP Query User{7414FB64-C321-415A-813E-09DA30F5D6A2}C:\program files (x86)\lan_party\marco-lanparty\warcraft-fz\war3.exe] => (Allow) C:\program files (x86)\lan_party\marco-lanparty\warcraft-fz\war3.exe FirewallRules: [UDP Query User{D7D777BA-8302-45E0-AA37-A5231290EE47}C:\program files (x86)\lan_party\marco-lanparty\warcraft-fz\war3.exe] => (Allow) C:\program files (x86)\lan_party\marco-lanparty\warcraft-fz\war3.exe FirewallRules: [TCP Query User{EE4D2D47-BD24-4C13-BB1B-4331D1BAF3E8}C:\program files (x86)\lan_party\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\lan_party\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [UDP Query User{80F90C6B-16C3-45CF-B818-3A4525F45489}C:\program files (x86)\lan_party\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\lan_party\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [TCP Query User{2E0D959C-8066-49D8-92B7-C71C5164D31D}C:\program files (x86)\lan_partey\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\lan_partey\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [UDP Query User{86D94016-1A2B-4AB0-A793-A23E377AB709}C:\program files (x86)\lan_partey\call of duty 4 - modern warfare\iw3mp.exe] => (Allow) C:\program files (x86)\lan_partey\call of duty 4 - modern warfare\iw3mp.exe FirewallRules: [{75D27269-7AE5-4EF4-B2B0-48A7358ED293}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{4F7B6F9E-E53B-40F9-913E-44BE7E2B6832}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [TCP Query User{B7A401D3-4D1B-4407-AD1A-8FD09D452B7B}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe FirewallRules: [UDP Query User{9A9B569E-76AD-4B37-8CC9-618C541A83D0}C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\planetside 2\planetside2.exe FirewallRules: [{0484FAA0-AA32-4969-AEEE-E2F5095CF4E1}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{8C3B7836-FA30-4EC4-98E6-69E32B2F7951}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Warframe\Tools\Launcher.exe FirewallRules: [{5D6E98A4-2049-4742-B039-E7F8AD093A0F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{DB1E5DCF-BCFF-4A12-8901-BB84ADC57BCA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{24674572-72BE-4CFE-A63A-D31DF903C398}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{55579BA3-26C7-4B28-A320-528FCBF30E3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{46DC8BB7-C318-4BCC-B5CF-F3BDE099DBDF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{B0688165-E19E-4559-AD0A-2B3FEAC6E002}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{48AD4842-055E-49C4-B80C-0EDE4E03F16F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{38C767E4-4263-4B9A-AD0B-C6EB6A905179}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe FirewallRules: [{70DA391A-2F03-41F3-8F0B-FA0CE2119AD4}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe FirewallRules: [TCP Query User{0200E62C-307F-4F5C-A58A-86F88012A681}C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe] => (Allow) C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe FirewallRules: [UDP Query User{9DA2440E-F163-4E3E-8D0D-B6ABDF9EC736}C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe] => (Allow) C:\program files (x86)\starcraft ii\sc2-x.x.x.x-1.5.0.22342-enus-downloader.exe FirewallRules: [{78F03170-7AD5-4D6B-B15A-015FCB89347A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe FirewallRules: [{73A28362-3FCD-40FB-BB1E-89DB44548F9E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1040\Agent.exe FirewallRules: [{26B37C52-76D1-448B-82E8-A5388A0BF8BD}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe FirewallRules: [{37CC9B8B-40B2-487B-A126-F188D788ACF2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe FirewallRules: [{C98B3EAA-F718-4873-81F2-342555111C34}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II Public Test.exe FirewallRules: [{412AB4EA-ED13-4EDB-AAFF-7021EEFF37F1}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II Public Test.exe FirewallRules: [TCP Query User{326E3742-3AA4-4BF0-A8AE-B0974E385D6E}C:\program files (x86)\starcraft ii\versions\base24944\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base24944\sc2.exe FirewallRules: [UDP Query User{20D3FA7F-22C1-414E-B7F3-4D45EFEE3947}C:\program files (x86)\starcraft ii\versions\base24944\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base24944\sc2.exe FirewallRules: [TCP Query User{BE858088-73C5-418C-B961-20F97682DC2F}C:\users\dustingamer\downloads\breakingpoint.exe] => (Allow) C:\users\dustingamer\downloads\breakingpoint.exe FirewallRules: [UDP Query User{DD02C46C-FF3C-443E-9097-9B1914E271C0}C:\users\dustingamer\downloads\breakingpoint.exe] => (Allow) C:\users\dustingamer\downloads\breakingpoint.exe FirewallRules: [TCP Query User{31B529B8-EFC0-44B8-BA9D-08CEB8893E74}C:\users\dustingamer\desktop\breakingpoint.exe] => (Allow) C:\users\dustingamer\desktop\breakingpoint.exe FirewallRules: [UDP Query User{90DC3E02-1C39-4829-8C90-69E371DF1AF0}C:\users\dustingamer\desktop\breakingpoint.exe] => (Allow) C:\users\dustingamer\desktop\breakingpoint.exe FirewallRules: [{393D7B9B-63AE-4172-A5EA-5B703D893A91}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.exe FirewallRules: [{9D21A46D-AB5A-4267-BBA6-FE5A9D78CE40}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.exe FirewallRules: [{AF6AA218-E637-4795-9B23-33BD9B89B211}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.exe FirewallRules: [{6E50DF39-698B-4308-B1EB-1765BA08A4D6}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.exe FirewallRules: [{29B4B0EF-4688-4338-9DFC-F71102CB23F2}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.admin.exe FirewallRules: [{7B57EFEF-4805-4EFE-8689-6134C0AC8E05}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.admin.exe FirewallRules: [{2C893218-8E50-4659-A439-7FA67780637C}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.admin.exe FirewallRules: [{C2AD650F-3E96-41AD-8AC8-75C100E79157}] => (Allow) C:\Program Files (x86)\League of Legends\lol.launcher.admin.exe FirewallRules: [{F93D2AFA-7585-45DB-B42E-0E9987375B0C}] => (Allow) C:\Program Files (x86)\Adobe\Acrobat.com\Acrobat.com.exe FirewallRules: [{EB59C155-D6BA-48EB-BBC5-B374F63640A4}] => (Allow) C:\Program Files (x86)\Adobe\Acrobat.com\Acrobat.com.exe FirewallRules: [{5A9D47F0-4390-4FD4-B9C0-21D082CAA35F}] => (Allow) C:\Program Files (x86)\Adobe\Acrobat.com\Acrobat.com.exe FirewallRules: [{904DFE0F-E5D7-40DA-ACCC-CE51B9A5CFED}] => (Allow) C:\Program Files (x86)\Adobe\Acrobat.com\Acrobat.com.exe FirewallRules: [{4882F033-B1E4-4DDA-BCD1-FE85B76A0544}] => (Allow) C:\Users\DustinGamer\Desktop\BreakingPoint.exe FirewallRules: [{D915FEA5-7934-40DD-889A-F6D9D6FCC65F}] => (Allow) C:\Users\DustinGamer\Desktop\BreakingPoint.exe FirewallRules: [{334F0E0A-61ED-47F4-BA09-811B516F395F}] => (Allow) LPort=2099 FirewallRules: [{07B59D40-9C54-43B5-8199-3BE528CA079B}] => (Allow) LPort=2099 FirewallRules: [{272D5C14-5D1C-4BD3-B8D6-A5620E211B63}] => (Block) %ProgramFiles% (x86)\Dxtory Software\Dxtory2.0\Dxtory.exe FirewallRules: [{DDB2D77B-31E3-457F-A98C-5D51D07BFEEE}] => (Block) %ProgramFiles% (x86)\Dxtory Software\Dxtory2.0\Dxtory.exe FirewallRules: [TCP Query User{AB089C6D-E7A6-41EB-B22B-6F20EEAA53A2}C:\users\dustingamer\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\dustingamer\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{5C2136FB-3302-44FD-BB16-EC1174339308}C:\users\dustingamer\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\dustingamer\appdata\local\akamai\netsession_win.exe FirewallRules: [{903598B5-B757-4C08-9400-99A3FF4AAD77}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe FirewallRules: [{6568E08E-7FFF-4350-B301-63D6E946F65A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Grand Theft Auto IV\GTAIV\LaunchGTAIV.exe FirewallRules: [TCP Query User{64F07A37-81F1-4252-9B8C-C664606275DD}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe FirewallRules: [UDP Query User{CCF77F97-099B-409D-8890-731887F586C7}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe FirewallRules: [TCP Query User{8241EE5B-24C6-46C8-A194-3659E82E951F}C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe FirewallRules: [UDP Query User{BC9879B0-F449-4A76-B546-63D3B39EC95C}C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\orcs must die 2\build\game\orcsmustdie2.exe FirewallRules: [{90855C4E-A3D0-4710-B195-04111156C528}] => (Allow) C:\Users\DustinGamer\Desktop\StarMade-starter.exe FirewallRules: [{77381A51-5DC5-4B00-933B-C95211CFCB68}] => (Allow) C:\Users\DustinGamer\Desktop\StarMade-starter.exe FirewallRules: [{33D703D3-7C0E-422C-8C05-E38906A8E318}] => (Allow) C:\Users\DustinGamer\Desktop\StarMade-starter.exe FirewallRules: [{DEE2CD2C-10B1-44C1-ABCB-530BAE0134AB}] => (Allow) C:\Users\DustinGamer\Desktop\StarMade-starter.exe FirewallRules: [TCP Query User{30FBB495-1475-473A-8A64-A19A726AF1B8}C:\users\dustingamer\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\dustingamer\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{CC25D402-7CD2-487B-92FD-F51416018392}C:\users\dustingamer\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\dustingamer\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{E656616C-71EA-4355-A056-455ECAE615BB}C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe] => (Allow) C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe FirewallRules: [UDP Query User{582394B0-CC1F-4DDE-8B85-0E1052558DA2}C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe] => (Allow) C:\program files (x86)\origin games\crysis 2 maximum edition\bin32\crysis2.exe FirewallRules: [{1AE9F1A5-68FE-48F2-A57E-81DC923E4FC8}] => (Allow) C:\Program Files (x86)\Origin Games\Mirrors Edge\Binaries\MirrorsEdge.exe FirewallRules: [{ED9E7B8F-0E20-4E3E-B527-435091946826}] => (Allow) C:\Program Files (x86)\Origin Games\Mirrors Edge\Binaries\MirrorsEdge.exe FirewallRules: [TCP Query User{F54A4BD7-BF64-481C-A5DB-62FCB0CF5E0A}C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe] => (Allow) C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe FirewallRules: [UDP Query User{BE9309B0-6BD1-4901-AE29-C9318548B5FE}C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe] => (Allow) C:\program files (x86)\origin games\medal of honor\mp\mohmpgame.exe FirewallRules: [{929C3AB4-555B-4D23-BE2D-35596031B357}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{DD6EB37F-7866-4C6D-981D-B17A79DA091C}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{9472B5BB-59B6-4629-BB56-A31B067B0C2A}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{4C21A5DF-1AD4-4D1B-9BEE-DC19520D18A2}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{61C9D73F-E116-40D3-810F-100FD87B0D69}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{972938BA-F81F-4320-8018-BEB2B1B45A77}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [TCP Query User{4D04FD43-C765-42B1-94CC-ED5C7CD252F8}C:\program files (x86)\lan_partey\marco-lanparty\warcraft-fz\war3.exe] => (Allow) C:\program files (x86)\lan_partey\marco-lanparty\warcraft-fz\war3.exe FirewallRules: [UDP Query User{D849A136-48F2-4D52-AC45-C18DD2EF23A4}C:\program files (x86)\lan_partey\marco-lanparty\warcraft-fz\war3.exe] => (Allow) C:\program files (x86)\lan_partey\marco-lanparty\warcraft-fz\war3.exe FirewallRules: [TCP Query User{E43D7A60-CB27-4060-981B-7AE301305DF8}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe FirewallRules: [UDP Query User{0DD3047B-7CD4-440A-B3D3-F214D8E64A9F}C:\program files (x86)\counter-strike 1.6\hl.exe] => (Allow) C:\program files (x86)\counter-strike 1.6\hl.exe FirewallRules: [TCP Query User{ED08690D-BAC2-4B56-A31D-F938C8F116E1}C:\users\dustingamer\desktop\kpm server\kmpserver.exe] => (Allow) C:\users\dustingamer\desktop\kpm server\kmpserver.exe FirewallRules: [UDP Query User{B08F5B66-38A8-44B5-BC53-B6ADD1BE7CA3}C:\users\dustingamer\desktop\kpm server\kmpserver.exe] => (Allow) C:\users\dustingamer\desktop\kpm server\kmpserver.exe FirewallRules: [{45F8810E-69B7-4D27-B8CE-27CB497A0787}] => (Allow) C:\AeriaGames\EdenEternal-DE\_Launcher.exe FirewallRules: [{2994C959-4E88-45AF-BF4C-58DE77742116}] => (Allow) C:\AeriaGames\EdenEternal-DE\_Launcher.exe FirewallRules: [{1674E11A-56DD-44C8-B3DC-A3C980E1164D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe FirewallRules: [{B84C608A-53C7-4137-9D27-EBA49C487794}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{AC8FFC7A-6386-4E45-AAC7-09A4894259E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{A66370DA-4EA4-466B-BB2D-8C60AE826F87}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{F4C7F3D6-361C-45E0-A801-4E752DE06B4A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{2AA011FC-5944-452E-BDFD-65A35A05C126}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Kerbal Space Program\KSP.exe FirewallRules: [{25FEAF3A-033F-4BA9-A1A3-8E61ACCC4A0B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Kerbal Space Program\KSP.exe FirewallRules: [{CB6A7603-92E6-463F-ACAC-B15394D9F01F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A5B158C0-1880-4D12-B87D-AB1E7D640687}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{70B6D8AC-3397-4569-ADD1-26C9D03DD2E9}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{9CCBA748-4C85-4EA5-80B2-A6C27608EBA8}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{775FB2BF-956B-4808-9360-10C553A05D23}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{D402BA2C-51CA-4A44-AB19-9D9A4801469C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{F888EA92-0179-46FE-BF73-1F55749DDCDE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{9081A454-E510-4C67-A74F-7228D2203598}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{240C78EE-5068-4D99-B3CB-4D89B0FDCF77}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [{6B2C087D-B4D9-4361-AF6A-751A2FBB8DAF}] => (Allow) C:\Program Files (x86)\Diablo III\Diablo III.exe FirewallRules: [{145D385F-3B21-4BD4-96E3-3885C938EA8F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\rust\rustlauncher.exe FirewallRules: [{F1A042DB-EB97-4515-8E7A-B0387E1FC8BE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\rust\rustlauncher.exe FirewallRules: [TCP Query User{B44CC3F6-04AE-47AA-82CE-B4B62D616DDD}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe FirewallRules: [UDP Query User{0A2EC0EF-A5C4-4D5B-8C5D-C9A0E8967B6D}C:\program files (x86)\lolreplay\lolreplay.exe] => (Allow) C:\program files (x86)\lolreplay\lolreplay.exe FirewallRules: [{42DBFC98-4179-4285-86AC-02C09ADA7CA3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{08FA4DEE-716E-42F7-B99B-E97FD9B8850A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2689\Agent.exe FirewallRules: [{9BA11FD9-5904-44C2-995E-F7CAE72B3037}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{FA4058D1-BDBF-4AE8-8E98-6EA1C3BDE1F6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2717\Agent.exe FirewallRules: [{57892866-CF4B-49FC-B847-B0F2A48A84B8}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{A5983A37-F799-42DD-9501-AB7FE256763A}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{79F0F302-BB56-4DB0-9AC5-0208E5AA692A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe FirewallRules: [{9908CF09-4438-4886-8DFC-9721E78FAB05}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2737\Agent.exe FirewallRules: [{9F567D64-96E0-48FA-98C5-1AB86E35CB2A}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{1F63B127-360F-4D23-8CBE-3FB9F15F93FC}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe FirewallRules: [{9033ECF6-B326-4C37-9BF4-F8BFA949CB2C}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{3014835A-F548-4965-A6DC-FBB880E3904D}] => (Allow) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe FirewallRules: [{53F96A5F-1661-4D2F-B8CC-3BDA6B20F301}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [{6472E309-3454-44F8-B3C8-B84B7308173B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [{BF0B92C2-A54B-4FDB-95D8-FCA4DA4F3692}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{533BFDBF-3376-4AEA-808B-03EDB397D8A7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{3B43527D-467E-42E7-9CB3-5856A2EFF38B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\arma3.exe FirewallRules: [{A4E53204-CEB9-4452-B442-11E1D01EB54D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\arma3.exe FirewallRules: [TCP Query User{5389D819-63E3-47CC-9051-EE6DD409925C}C:\users\dustingamer\downloads\withsix-play.exe] => (Allow) C:\users\dustingamer\downloads\withsix-play.exe FirewallRules: [UDP Query User{798F0F0F-8D6B-48C6-BF6D-1E393085FA42}C:\users\dustingamer\downloads\withsix-play.exe] => (Allow) C:\users\dustingamer\downloads\withsix-play.exe FirewallRules: [{96A0148D-15A7-4A39-84C6-89F7B5884D0E}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{716E7227-ECCE-4FE4-B240-16369081208C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{92FE2DE3-55C2-451C-B691-4A245D88AEB8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{D65E2411-18B6-43D9-9AE8-3F056248ED21}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{EFA13118-396B-46E2-B688-5E57A0D4F881}C:\programdata\battle.net\agent\agent.2880\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.2880\agent.exe FirewallRules: [UDP Query User{273D5F38-6F7B-4013-999B-3B19B5E36A7A}C:\programdata\battle.net\agent\agent.2880\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.2880\agent.exe FirewallRules: [{30954ECA-D9D5-4DFB-8683-EB0C79F27293}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe FirewallRules: [{7A3C3B04-2599-47FD-ADFC-6F1AE81C7411}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3023\Agent.exe FirewallRules: [{E1B6DAA0-39AF-4BEF-A560-7F68FD146AC8}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [{AD921009-AA89-44B7-B09D-6FF29F71E36D}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe FirewallRules: [TCP Query User{F4887471-9C4C-475C-8A56-AD00639A932D}C:\program files (x86)\steam\steamapps\common\projectzomboid\jre64\bin\java.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\projectzomboid\jre64\bin\java.exe FirewallRules: [UDP Query User{7930DF19-0C81-49DF-B7E0-DD55A4FD595B}C:\program files (x86)\steam\steamapps\common\projectzomboid\jre64\bin\java.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\projectzomboid\jre64\bin\java.exe FirewallRules: [{98968BFE-F45C-4233-AABE-FDE90C06F299}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe FirewallRules: [{71B737C5-D251-419E-BA38-B157FF95251F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe FirewallRules: [{70624588-38A7-41D9-A103-44D9C771328F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\arma3launcher.exe FirewallRules: [{B1D64C50-56C4-4DE6-8131-9F40ABB45A74}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Arma 3\arma3launcher.exe FirewallRules: [{7F76A440-228E-42A1-8AB7-D454C27CCAC3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{02206009-77DF-4127-A4A6-03014A15DEA6}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3147\Agent.exe FirewallRules: [{82E33360-3EAE-4903-9D6D-BBC3594BDC18}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{E7A1A674-6D5A-4449-97F5-AD07C6F5C342}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{B0582E68-7008-4B1A-8B82-F55CBB04E312}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{5646BED0-9C31-4494-A0FA-82DD83AAD960}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{91949EF6-29CC-4E63-83FA-21FF7242CFC6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{41DD3DEC-4318-4333-BB2F-9637E4D3CBE0}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4928CF5B-EE4F-4F59-9D8B-22D7E60ED639}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe FirewallRules: [{308489FC-ABD3-413E-A86C-88A61B58995F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe FirewallRules: [{E1C57470-062B-4F89-A3E4-A44A7A7DCF9B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{B4F944F1-60EB-46A6-893F-1F914E83DB39}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\rust\experimental\Rust.exe FirewallRules: [{0BD0BEF6-E3FD-46E5-80C3-ED91A3A94240}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\archeage.exe FirewallRules: [{A77191E1-5DED-48BF-A5B7-758A37E022AA}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\archeage.exe FirewallRules: [{64F959F9-59A4-4335-80A5-18E8B8287AD1}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\archeage.exe FirewallRules: [{45656D72-4013-446F-A05C-1C6050940021}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\archeage.exe FirewallRules: [{FF626E65-6EB5-4C8F-9391-C2BC10073E13}] => (Allow) C:\Program Files (x86)\Glyph\GlyphClient.exe FirewallRules: [{39248409-6337-4468-AC96-15BDA7B0199D}] => (Allow) C:\Program Files (x86)\Glyph\GlyphClient.exe FirewallRules: [{BCC744F7-4168-44D1-8BCF-C5F489A2A802}] => (Allow) C:\Program Files (x86)\Glyph\GlyphClient.exe FirewallRules: [{2CB58C3C-6373-4A7F-B412-1B912110A2A9}] => (Allow) C:\Program Files (x86)\Glyph\GlyphClient.exe FirewallRules: [{CA65979A-0F35-4B08-805E-F02FC29D3F2D}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\hslogmgr.exe FirewallRules: [{7B2EBCB3-9956-4960-B0D0-1716474E85C5}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\hslogmgr.exe FirewallRules: [{A4D529E4-1A39-4C3E-AD6D-C2C5F2C72688}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\hslogmgr.exe FirewallRules: [{132213B0-B5A9-4433-B0D5-91E2378FE1A3}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\hslogmgr.exe FirewallRules: [{CA17F902-154A-48BB-B4CF-5719CB0013D8}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\ahnrpt.exe FirewallRules: [{E0EEDC8B-355A-45E2-A76C-7A978F35E667}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\ahnrpt.exe FirewallRules: [{E2EECB27-3186-412C-A9CB-54EC675F37FD}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\ahnrpt.exe FirewallRules: [{C3A624AF-19BB-4843-AD0B-DEBC32EA14E7}] => (Allow) C:\Program Files (x86)\Glyph\Games\ArcheAge\Live\bin32\hshield\ahnrpt.exe FirewallRules: [{F1FD0A71-DDAA-4685-A97A-F7F66EA51629}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{C09C636F-E967-4A43-9605-BBFD4C62FBCC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{41D473A5-4593-4C9C-9CFB-04D4B8AA5EAD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Evolve\Bin64_SteamRetail\StaticLauncher64.exe FirewallRules: [{4375771E-6890-49B2-BD4A-9E023C5C93FE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Evolve\Bin64_SteamRetail\StaticLauncher64.exe FirewallRules: [{32B20C70-EA8A-4A72-84E3-470BC6B31B95}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{9E25930F-1E23-425A-9755-16096B928325}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [TCP Query User{9D81B34B-DC6A-46DC-AAF9-75220060FB82}C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [UDP Query User{7A1185E0-62A7-476F-AFFD-034C21F57AB2}C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [TCP Query User{C88A0B38-313D-425F-93CB-9DB8FCB61497}C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [UDP Query User{9A3F2CA7-B2D0-4389-A884-C577FE91EA15}C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\program files (x86)\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [{BA1BB342-014D-4F73-AFCD-740407EACD16}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Bugbear Entertainment\Wreckfest.exe FirewallRules: [{78227D42-0D8F-442E-B6D8-E58B0DB23BDF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Bugbear Entertainment\Wreckfest.exe FirewallRules: [{D2CEA77D-71B4-4C8E-A6FE-DB1F7C1E5B0D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Next Car Game Sneak Peek 2.0\Next Car Game Technology Sneak Peek.exe FirewallRules: [{9DF104C9-3368-4F86-9B4F-94CE287E05CE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Next Car Game Sneak Peek 2.0\Next Car Game Technology Sneak Peek.exe FirewallRules: [{A11FE33F-E106-47AC-A0F2-EE52D48D86D2}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{7FEEAF06-A13B-4F3A-A1A7-05D265077BA4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{1C331219-10CF-470A-B6F1-5B39D789CC98}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{F31C0A74-91E5-4DB5-8C15-B812EC95BE51}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{14D7112C-8523-4D22-AB5B-B341A1092C17}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{9F07618B-4C07-4703-B595-087045BD40FD}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{02D633E7-F82B-46D7-B44C-0B78582A2FE4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{CCECE38A-31B3-4CF9-A5CE-A82EF54F7C61}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{4EFAF7E1-6AAB-429B-854E-3BE6CBBC4593}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe FirewallRules: [{C63571DA-3811-4072-92B3-8AF7021BC9FB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Life is Feudal Your Own\yo_cm_client.exe FirewallRules: [{1C58AC38-0CC4-4A9A-867C-7F32132053CB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Souls II\Game\DarkSoulsII.exe FirewallRules: [{8C87AE69-8557-473E-BFC4-0EED79D7E6BE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Souls II\Game\DarkSoulsII.exe FirewallRules: [{A08F8328-1E16-46F0-ADAE-F27DCA76968F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [{3E6B373C-95B5-49C9-AA02-F3188A77233D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\rust\legacy\rust.exe FirewallRules: [TCP Query User{B1CD8317-4560-4098-81A4-902219BCD7D7}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe FirewallRules: [UDP Query User{5CA38688-E1E6-45E7-9A75-0E48A7FF9ED5}C:\program files\unity\editor\unity.exe] => (Allow) C:\program files\unity\editor\unity.exe FirewallRules: [{87EC2FE3-7E3D-43E5-8E74-32765BBB6581}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{52996532-AEE3-4016-B722-FE317DFCDEAD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [TCP Query User{626B4FEF-307E-4FDA-AA96-E497B5C39983}C:\program files\andy\andy.exe] => (Allow) C:\program files\andy\andy.exe FirewallRules: [UDP Query User{9EADA153-04DF-4DF1-AD3C-48F6AF0D4812}C:\program files\andy\andy.exe] => (Allow) C:\program files\andy\andy.exe FirewallRules: [{206CAF0A-658B-46B3-A745-CE29C5DF67D7}] => (Block) C:\program files\andy\andy.exe FirewallRules: [{6AAA745B-173F-41A2-BC14-BA50030FC793}] => (Block) C:\program files\andy\andy.exe FirewallRules: [TCP Query User{10C0F2C8-6811-435F-8916-A1373CC3F5BF}C:\program files (x86)\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{D0FB7459-115F-4DD7-A98B-AD049763F1B0}C:\program files (x86)\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [{535CC192-FCDF-434F-B1AE-8912E32CC959}] => (Block) C:\program files (x86)\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [{EEB98FBB-EC05-427D-BC04-9F57157A46D0}] => (Block) C:\program files (x86)\heroes of the storm\versions\base34190\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{C2E93AAC-FCDB-471B-AD34-46A89A17F3DF}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{7D6286FA-834A-4D73-AB18-AF85C608793C}C:\program files\rockstar games\grand theft auto v\gta5.exe] => (Allow) C:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [{C1793563-D984-49AE-AFF0-5E5C82F1BF75}] => (Block) C:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [{39FA11A4-427F-46EC-8B1F-27AA42B80DBC}] => (Block) C:\program files\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{0065DB42-AE41-467E-BE5B-F93D457BDA18}C:\program files (x86)\supraball\binaries\win32\udk.exe] => (Allow) C:\program files (x86)\supraball\binaries\win32\udk.exe FirewallRules: [UDP Query User{84A1FA12-EE65-40BC-BD5F-68B16B9A2E8A}C:\program files (x86)\supraball\binaries\win32\udk.exe] => (Allow) C:\program files (x86)\supraball\binaries\win32\udk.exe FirewallRules: [{45B8D0CE-EAA2-40EF-8E4B-7943C7EBB30C}] => (Block) C:\program files (x86)\supraball\binaries\win32\udk.exe FirewallRules: [{6478AF04-290C-44EF-B79F-ABCD01EA8CE0}] => (Block) C:\program files (x86)\supraball\binaries\win32\udk.exe FirewallRules: [{B99F0D15-B89E-4AB3-92D2-94B3D58FBE19}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Souls II\Game\DarkSoulsII.exe FirewallRules: [{BA7A76AA-A99D-4DCF-AA46-70A6932C5845}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Dark Souls II\Game\DarkSoulsII.exe FirewallRules: [{09B3E9C2-6FAB-44BE-A64E-CCE7C1CAD3B3}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{FFF6D57F-7082-4C23-867B-42219EBD75F8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{6C8FE658-1CBC-4296-9317-581D0CA47A0F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameServer.exe FirewallRules: [{A828E310-7F74-4551-BCDE-6C597293F570}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGameServer.exe FirewallRules: [{465E8E06-C148-4479-98C0-ED3B0C6BA81E}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY XIII\FFXiiiLauncher.exe FirewallRules: [{9B9C0124-1E89-4E64-835A-A7A372278868}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY XIII\FFXiiiLauncher.exe FirewallRules: [{805CAB45-0A5F-44E4-B8F2-124B8E6E1EB2}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{9E8EE412-2543-4587-B5E8-8B29A2F8A931}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\arma 2 operation arrowhead\ArmA2OA_BE.exe FirewallRules: [{304682CC-BCE3-4332-9315-A1B7259ED29C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\arma 2 operation arrowhead\ArmA2OA_BE.exe FirewallRules: [{360AE388-6D78-44CA-875A-435D36E7E641}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\arma 2 operation arrowhead\ArmA2OA.exe FirewallRules: [{7187B488-3E6A-4C81-9544-6639C5300805}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\arma 2 operation arrowhead\ArmA2OA.exe FirewallRules: [{08EC774B-BE4E-4799-A8D8-77E901A4D367}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Bugbear Entertainment\Wreckfest_x64.exe FirewallRules: [{5D7882F3-8E4D-44F2-A7C0-623C239D0193}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Bugbear Entertainment\Wreckfest_x64.exe FirewallRules: [{4C7323C7-3B24-40C8-99D2-99A7D3A30485}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\War Thunder\launcher.exe FirewallRules: [{2AF0D539-3A8A-4B6D-A8DB-AF5BA87BE900}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\War Thunder\launcher.exe FirewallRules: [TCP Query User{73E334DA-E5DD-4170-B9CC-0469F9BA6889}C:\program files (x86)\steam\steamapps\common\war thunder\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\aces.exe FirewallRules: [UDP Query User{3669FD80-47D9-4389-B7C1-583FC91F31B0}C:\program files (x86)\steam\steamapps\common\war thunder\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\aces.exe FirewallRules: [{7C068174-27E6-4838-B34E-18BBD0C1116F}] => (Block) C:\program files (x86)\steam\steamapps\common\war thunder\aces.exe FirewallRules: [{F0475AC9-B223-4CA6-97C0-4A97764FF117}] => (Block) C:\program files (x86)\steam\steamapps\common\war thunder\aces.exe FirewallRules: [{318FBC8B-FF7F-4C4A-AB66-F9CE727FDD2C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe FirewallRules: [{D5976AA1-043F-43E1-9C07-25BE0FC65022}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Path of Exile\PathOfExileSteam.exe FirewallRules: [{C684B7C3-BC8F-4D65-B2E5-F74A8599E77F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{CBA16793-292A-40A1-BA33-B604043D0D65}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{D22DAF62-DE06-4165-98BA-3E767E4D3365}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\nosgoth\Binaries\Win32\Nosgoth.exe FirewallRules: [{AC0DA0BB-75CD-43D4-ABB2-23442A430A7E}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{B58F4916-BFAB-4BAD-9A4E-33858E1619FF}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{4DF1C102-A8BD-4ABE-B96C-CF581D67D667}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{1A3A4A85-03D7-4D2D-8CF3-73EF8765CF0C}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{D49A4923-448C-4D0A-B9ED-DB8419ABDF06}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe FirewallRules: [{78CB2EB5-59ED-4BE5-B53E-EE2F49CF4EF5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Don't Starve Together\bin\dontstarve_steam.exe ==================== Faulty Device Manager Devices ============= Name: AODDriver4.2.0 Description: AODDriver4.2.0 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: AODDriver4.2.0 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (07/12/2015 12:18:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/12/2015 01:12:04 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/12/2015 12:44:19 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/12/2015 12:41:03 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET" (ASP.NET). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (07/12/2015 12:41:03 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (07/12/2015 12:41:03 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (07/12/2015 12:40:56 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "ASP.NET" (ASP.NET). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (07/12/2015 12:40:56 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (07/12/2015 12:40:56 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (07/12/2015 12:40:55 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "aspnet_state" (ASP.NET-Zustandsdienst). Der Fehlercode ist das erste DWORD im Datenbereich. System errors: ============= Error: (07/12/2015 12:17:56 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "AODDriver4.2.0" wurde aufgrund folgenden Fehlers nicht gestartet: %%3 Error: (07/12/2015 01:10:45 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "AODDriver4.2.0" wurde aufgrund folgenden Fehlers nicht gestartet: %%3 Error: (07/12/2015 01:09:25 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 2 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/12/2015 01:09:24 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Modules Installer" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/12/2015 01:09:24 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Steam Client Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (07/12/2015 01:09:23 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/12/2015 01:09:23 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "iPod-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (07/12/2015 01:09:22 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/12/2015 01:09:22 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Live ID Sign-in Assistant" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (07/12/2015 01:09:22 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Razer Game Scanner" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts. Microsoft Office: ========================= Error: (07/12/2015 12:18:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/12/2015 01:12:04 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/12/2015 12:44:19 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/12/2015 12:41:03 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: ASP.NETASP.NET8F20300004D070000 Error: (07/12/2015 12:41:03 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (07/12/2015 12:41:03 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (07/12/2015 12:40:56 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: ASP.NETASP.NET8F20300004D070000 Error: (07/12/2015 12:40:56 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (07/12/2015 12:40:56 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT) Description: Performance1637070000000000000000000009030000 Error: (07/12/2015 12:40:55 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT) Description: aspnet_stateASP.NET-Zustandsdienst8F20300004D070000 CodeIntegrity Errors: =================================== Date: 2013-11-09 23:53:37.116 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-11-09 23:53:37.046 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\vrtaucbl.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-07-25 13:29:36.276 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-07-25 13:29:36.246 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Processor: AMD FX(tm)-8350 Eight-Core Processor Percentage of memory in use: 28% Total physical RAM: 16341.63 MB Available physical RAM: 11715.71 MB Total Virtual: 32681.47 MB Available Virtual: 27580.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:1862.92 GB) (Free:1248.33 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 31803465) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1862.9 GB) - (Type=07 NTFS) ==================== End of log ============================ Danke,dass Sie sich Zeit für mein Problem nehmen. MfG Takato |
13.07.2015, 15:13 | #4 |
/// the machine /// TB-Ausbilder | Lösung: Pc langsam und Sound knistert fehlt noch die FRST.txt
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
13.07.2015, 19:31 | #5 |
| Wie Pc langsam und Sound knistertCode:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-07-2015 Ran by DustinGamer (administrator) on DUSTINGAMER-PC on 13-07-2015 01:26:35 Running from C:\Users\DustinGamer\Desktop Loaded Profiles: DustinGamer (Available Profiles: DustinGamer) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (AMD) C:\Windows\System32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (AMD) C:\Windows\System32\atieclxx.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Akamai Technologies, Inc.) C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (FNet Co., Ltd.) C:\Program Files (x86)\XFast USB\XFastUsb.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe (Logitech(c)) C:\Program Files (x86)\Logitech\G35\G35.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe () C:\Program Files\Andy\HandyAndy.exe (Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe () C:\Program Files\Andy\AndyPriorityMgr.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-18] (Realtek Semiconductor) HKLM\...\Run: [THXCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64 HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.) HKLM-x32\...\Run: [XFast USB] => C:\Program Files (x86)\XFast USB\XFastUsb.exe [4878912 2013-02-05] (FNet Co., Ltd.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [THX TruStudio NB Settings] => C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe [909824 2011-05-19] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [STCAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect IE\STCAgent.exe" HKLM-x32\...\Run: [ZyngaGamesAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe" HKLM-x32\...\Run: [Logitech G35] => C:\Program Files (x86)\Logitech\G35\G35.exe [1811800 2010-10-05] (Logitech(c)) HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.) HKLM-x32\...\Run: [RoccatIsku] => C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE [536576 2013-10-30] (ROCCAT GmbH) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-07-09] (Raptr, Inc) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590144 2015-04-22] (Razer Inc.) HKLM-x32\...\Run: [Andy] => C:\Program Files\Andy\HandyAndy.exe [907144 2015-02-03] () HKLM-x32\...\Run: [Kraken71ChromaHelper] => C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [1600320 2015-02-03] (Razer Inc) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-06-22] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2892992 2015-06-04] (Valve Corporation) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Facebook Update] => C:\Users\DustinGamer\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-02-23] (Facebook Inc.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Dxtory Update Checker 2.0] => C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe [93696 2010-10-17] (Dxtory Software) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Akamai NetSession Interface] => C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [GamingMouseEditor] => C:\Program Files (x86)\GamingMouseEditor\GamingMouseEditor\GamingMouseEditor.exe Minimum HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Policies\Explorer: [DisallowRun] 1 ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> {257C8684-AD59-40c9-B783-8A013B406F2F} URL = hxxp://www.google.com/cse?cx=partner-pub-3794288947762788%3A6976579318&ie=UTF-8&q=&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A6976579318&q={searchTerms} SearchScopes: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> {D03C896E-A518-4623-BB2C-01D2E6953E3C} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-01] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-01] (Oracle Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated) BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO-x32: FindRight -> {cf710881-c002-4ea4-860a-b6931b040948} -> C:\Program Files (x86)\FindRight\FindRightbho.dll No File Toolbar: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{38967EBE-AD85-48D2-AF7F-56F5AFDD52A3}: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\DustinGamer\AppData\Roaming\Mozilla\Firefox\Profiles\ccywtshb.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_191.dll [2015-07-09] () FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-01] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-01] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_191.dll [2015-07-09] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @esn/esnlaunch,version=2.1.4 -> C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll [2014-05-26] (EA Digital Illusions CE AB) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: facebook.com/fbDesktopPlugin -> C:\Users\DustinGamer\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll [2013-03-07] (Facebook, Inc.) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2014-03-01] () FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Extension: Amazon-Icon - C:\Users\DustinGamer\AppData\Roaming\Mozilla\Firefox\Profiles\ccywtshb.default\Extensions\amazon-icon@giga.de [2014-07-16] Chrome: ======= CHR Profile: C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-07-18] CHR Extension: (Google Docs) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-02-05] CHR Extension: (Google Drive) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-05] CHR Extension: (YouTube) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-05] CHR Extension: (Script Defender) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\celgmkbkgakmkfboolifhbllkfiepcae [2015-07-12] CHR Extension: (Google Search) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-05] CHR Extension: (SAO Theme 1920x1080) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgikfepnnphbmgngmpiflajcbmoomnll [2014-07-20] CHR Extension: (AdBlock) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-07-18] CHR Extension: (No Name) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdjknjpbnhdoabbngpmfekaecnpajba [2015-07-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-05] CHR Extension: (Google Wallet) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR Extension: (Gmail) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-05] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-06-22] (Advanced Micro Devices, Inc.) [File not signed] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1060352 2015-06-11] () S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [174624 2015-01-13] (EasyAntiCheat Ltd) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4868640 2013-08-25] (INCA Internet Co., Ltd.) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-06-14] () R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] () S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [759192 2013-09-03] (Tunngle.net GmbH) [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [598808 2013-06-06] (Wacom Technology, Corp.) S2 SmartViewService; C:\Program Files (x86)\DeviceVM\SmartView\SmartViewService.exe [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2015-02-21] (FNet Co., Ltd.) R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2013-02-05] (FNet Co., Ltd.) S3 LADF_DHP2; C:\Windows\System32\DRIVERS\ladfDHP2amd64.sys [62168 2010-09-29] (Logitech) S3 LADF_SBVM; C:\Windows\System32\DRIVERS\ladfSBVMamd64.sys [377176 2010-09-29] (Logitech) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation) R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [40104 2015-03-10] (Razer Inc) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2014-11-17] (Razer, Inc.) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 USBTINSP; C:\Windows\System32\DRIVERS\tinspusb.sys [142848 2010-03-29] (Texas Instruments) S2 AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [X] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-13 01:26 - 2015-07-13 01:27 - 00022133 _____ C:\Users\DustinGamer\Desktop\FRST.txt 2015-07-13 01:25 - 2015-07-13 01:25 - 02133504 _____ (Farbar) C:\Users\DustinGamer\Desktop\FRST64.exe 2015-07-12 19:49 - 2015-07-12 20:17 - 00000000 ____D C:\Users\DustinGamer\Desktop\Neuer Ordner (2) 2015-07-12 01:41 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2015-07-12 01:41 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2015-07-12 01:41 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-07-12 01:41 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2015-07-12 01:41 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2015-07-12 01:41 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-07-12 01:41 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2015-07-12 01:41 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-07-12 01:41 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2015-07-12 01:41 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2015-07-12 01:41 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-07-12 01:41 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2015-07-12 01:41 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-07-12 01:41 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-07-12 01:41 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-07-12 01:41 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2015-07-12 01:41 - 2013-10-01 22:57 - 06578176 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-07-12 01:41 - 2013-10-01 22:55 - 05698048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 02603008 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-07-12 01:38 - 2015-06-27 00:07 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-07-12 01:38 - 2015-06-27 00:06 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-07-12 01:38 - 2015-06-27 00:06 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-07-12 01:38 - 2015-06-27 00:06 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-07-12 01:38 - 2015-06-26 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-07-12 01:38 - 2015-06-26 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-07-12 01:38 - 2015-06-26 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-07-12 01:38 - 2015-06-26 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-07-12 01:38 - 2015-06-26 19:55 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-07-12 01:38 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-12 01:38 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-07-12 01:38 - 2015-03-14 05:21 - 01632768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-07-12 01:38 - 2015-03-14 05:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-07-12 01:38 - 2015-03-14 05:04 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-07-12 01:38 - 2015-03-14 05:04 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-07-12 01:37 - 2015-07-09 19:59 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-07-12 01:37 - 2015-07-09 19:58 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-07-12 01:37 - 2015-07-09 19:50 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-07-12 01:36 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-07-12 01:11 - 2015-07-12 01:11 - 00004189 _____ C:\Users\DustinGamer\Desktop\AdwCleaner[S2].txt 2015-07-12 01:07 - 2015-07-12 01:07 - 02248704 _____ C:\Users\DustinGamer\Downloads\adwcleaner_4.208.exe 2015-07-12 00:27 - 2015-07-12 00:27 - 01198368 _____ C:\Users\DustinGamer\Downloads\0006-32bit_Win7_Win8_Win81_Win10_R279 - CHIP-Installer.exe 2015-07-12 00:24 - 2015-07-12 00:24 - 00516728 _____ ( ) C:\Users\DustinGamer\Downloads\0006-64bit_Win7_Win8_Win81_Win10_R279_CB-DL-Manager.exe 2015-07-09 14:04 - 2015-07-09 14:04 - 00000000 ____D C:\ProgramData\ATI 2015-07-09 14:02 - 2015-07-09 14:02 - 00058877 _____ C:\Windows\SysWOW64\CCCInstall_201507091402258526.log 2015-07-09 14:02 - 2015-07-09 14:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-07-05 02:15 - 2015-07-05 02:15 - 00002416 _____ C:\Users\DustinGamer\Downloads\Anime.rar 2015-07-05 02:15 - 2015-06-30 16:18 - 00000000 ____D C:\Users\DustinGamer\Desktop\Anime12 2015-07-04 14:26 - 2015-07-04 14:26 - 00001878 _____ C:\Users\DustinGamer\Desktop\launcher - Verknüpfung.lnk 2015-06-29 16:10 - 2015-06-29 23:35 - 00000000 ____D C:\Users\DustinGamer\Desktop\abi 2015-06-23 19:58 - 2015-06-23 19:59 - 11179126 _____ C:\Users\DustinGamer\Downloads\ARMA2_OA_Build_108074.zip 2015-06-23 19:54 - 2015-06-23 19:59 - 00000000 ____D C:\Users\DustinGamer\Desktop\Neuer Ordner 2015-06-23 19:54 - 2015-06-23 19:54 - 00003250 _____ C:\Windows\System32\Tasks\{9CD5B030-C201-4484-BA0B-332074311914} 2015-06-23 19:52 - 2015-06-23 19:53 - 11178510 _____ C:\Users\DustinGamer\Downloads\ARMA2_OA_Build_112555.zip 2015-06-23 19:38 - 2015-06-23 19:38 - 00003322 _____ C:\Windows\System32\Tasks\{CBAFCC8A-280E-4FED-B2B1-15445C141489} 2015-06-23 16:32 - 2015-06-23 16:32 - 00131549 _____ C:\Users\DustinGamer\Downloads\DayZ_Epoch_Client_1.0.5.1_Release.7z (1).torrent 2015-06-23 16:26 - 2015-06-23 16:26 - 00002306 _____ C:\Users\DustinGamer\Desktop\Play withSIX.lnk 2015-06-23 16:26 - 2015-06-23 16:26 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SIX Networks 2015-06-23 16:25 - 2015-06-23 16:30 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\PlaywithSIX 2015-06-23 16:25 - 2015-06-23 16:26 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\SquirrelTemp 2015-06-23 16:25 - 2015-06-23 16:25 - 43752272 _____ (SIX Networks GmbH) C:\Users\DustinGamer\Downloads\PwS-Setup.exe 2015-06-23 16:23 - 2015-06-23 16:23 - 00131549 _____ C:\Users\DustinGamer\Downloads\DayZ_Epoch_Client_1.0.5.1_Release.7z.torrent 2015-06-23 16:23 - 2015-06-23 16:23 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Maca134 2015-06-23 16:22 - 2015-06-23 16:24 - 00000000 ____D C:\Program Files (x86)\DayZLauncher 2015-06-23 16:18 - 2015-06-23 16:19 - 14866537 _____ (Maca134 ) C:\Users\DustinGamer\Downloads\setup_dzlauncher.exe 2015-06-23 13:57 - 2015-06-23 13:57 - 02932736 _____ C:\Users\DustinGamer\Downloads\Dotjosh.DayZCommander.Installer.msi 2015-06-23 04:09 - 2015-06-23 04:09 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00107784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 10087472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 08890576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 08786040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 00133016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 00120144 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2015-06-23 04:05 - 2015-06-23 04:05 - 00297672 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2015-06-23 04:03 - 2015-06-23 04:03 - 21612032 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2015-06-23 03:59 - 2015-06-23 03:59 - 47782912 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2015-06-23 03:59 - 2015-06-23 03:59 - 00235008 _____ C:\Windows\system32\clinfo.exe 2015-06-23 03:57 - 2015-06-23 03:57 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2015-06-23 03:57 - 2015-06-23 03:57 - 00059392 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2015-06-23 03:55 - 2015-06-23 03:55 - 27535872 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll 2015-06-23 03:55 - 2015-06-23 03:55 - 22318592 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll 2015-06-23 03:33 - 2015-06-23 03:33 - 06476288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2015-06-23 03:33 - 2015-06-23 03:33 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2015-06-23 03:33 - 2015-06-23 03:33 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2015-06-23 03:28 - 2015-06-23 03:28 - 05067264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2015-06-23 03:27 - 2015-06-23 03:27 - 30749184 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2015-06-23 03:25 - 2015-06-23 03:25 - 00093184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2015-06-23 03:25 - 2015-06-23 03:25 - 00086528 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2015-06-23 03:22 - 2015-06-23 03:22 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2015-06-23 03:22 - 2015-06-23 03:22 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2015-06-23 03:21 - 2015-06-23 03:21 - 25296896 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2015-06-23 03:21 - 2015-06-23 03:21 - 00865792 _____ (AMD) C:\Windows\system32\coinst_15.20.dll 2015-06-23 03:20 - 2015-06-23 03:20 - 03437632 _____ C:\Windows\system32\atiumd6a.cap 2015-06-23 03:19 - 2015-06-23 03:19 - 00660224 _____ C:\Windows\SysWOW64\atiapfxx.blb 2015-06-23 03:19 - 2015-06-23 03:19 - 00660224 _____ C:\Windows\system32\atiapfxx.blb 2015-06-23 03:19 - 2015-06-23 03:19 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2015-06-23 03:19 - 2015-06-23 03:19 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2015-06-23 03:19 - 2015-06-23 03:19 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2015-06-23 03:19 - 2015-06-23 03:19 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2015-06-23 03:19 - 2015-06-23 03:19 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2015-06-23 03:18 - 2015-06-23 03:18 - 15716864 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2015-06-23 03:18 - 2015-06-23 03:18 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2015-06-23 03:16 - 2015-06-23 03:16 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap 2015-06-23 03:14 - 2015-06-23 03:14 - 00670720 _____ (AMD) C:\Windows\system32\atieclxx.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00245760 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00204800 _____ C:\Windows\system32\amdgfxinfo64.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00189952 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00160256 _____ C:\Windows\system32\atieah64.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00143872 _____ C:\Windows\SysWOW64\atieah32.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00029696 _____ (AMD) C:\Windows\system32\atimuixx.dll 2015-06-23 03:12 - 2015-06-23 03:12 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2015-06-23 03:12 - 2015-06-23 03:12 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2015-06-23 03:11 - 2015-06-23 03:11 - 01246208 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2015-06-23 03:11 - 2015-06-23 03:11 - 00926720 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00663552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2015-06-23 03:10 - 2015-06-23 03:10 - 00156672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2015-06-23 03:09 - 2015-06-23 03:09 - 00102912 _____ C:\Windows\system32\hsa-thunk64.dll 2015-06-23 03:09 - 2015-06-23 03:09 - 00102400 _____ C:\Windows\SysWOW64\hsa-thunk.dll 2015-06-23 03:07 - 2015-06-23 03:07 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2015-06-22 09:14 - 2015-06-22 09:14 - 00830518 _____ C:\Windows\system32\amdicdxx.dat 2015-06-21 20:55 - 2015-06-21 20:55 - 00001753 _____ C:\Users\Public\Desktop\iTunes.lnk 2015-06-21 20:55 - 2015-06-21 20:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-06-21 20:54 - 2015-06-21 20:55 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-06-21 20:54 - 2015-06-21 20:54 - 00000000 ____D C:\Program Files\iTunes 2015-06-21 20:54 - 2015-06-21 20:54 - 00000000 ____D C:\Program Files\iPod 2015-06-21 20:54 - 2015-06-21 20:54 - 00000000 ____D C:\Program Files (x86)\iTunes 2015-06-21 20:51 - 2015-06-21 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2015-06-21 20:50 - 2015-06-21 20:51 - 00000000 ____D C:\Program Files (x86)\QuickTime 2015-06-19 14:01 - 2015-06-19 14:01 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\SquareEnix 2015-06-15 12:20 - 2015-06-15 12:20 - 00020894 _____ C:\Users\DustinGamer\Downloads\MSS32.zip 2015-06-15 11:37 - 2015-06-15 11:38 - 00000000 ____D C:\Program Files (x86)\VAC 2015-06-15 11:16 - 2015-06-15 11:16 - 01197344 _____ C:\Users\DustinGamer\Downloads\Virtual Audio Cable - CHIP-Installer.exe 2015-06-15 10:47 - 2015-06-16 01:34 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\OBS 2015-06-15 10:47 - 2015-06-15 10:47 - 00000899 _____ C:\Users\DustinGamer\Desktop\Open Broadcaster Software.lnk 2015-06-15 10:47 - 2015-06-15 10:47 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software 2015-06-15 10:47 - 2015-06-15 10:47 - 00000000 ____D C:\Program Files\OBS 2015-06-15 10:47 - 2015-06-15 10:47 - 00000000 ____D C:\Program Files (x86)\OBS 2015-06-15 10:46 - 2015-06-15 10:46 - 01197344 _____ C:\Users\DustinGamer\Downloads\Open Broadcaster Software - CHIP-Installer.exe ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-13 01:26 - 2013-08-23 19:38 - 00000000 ____D C:\FRST 2015-07-13 01:25 - 2013-11-10 00:50 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\vlc 2015-07-13 01:25 - 2013-05-23 19:25 - 00000000 ____D C:\Program Files (x86)\League of Legends 2015-07-13 01:19 - 2013-02-05 20:57 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-13 01:07 - 2013-02-05 18:58 - 00003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6AED3915-AFFD-4854-A79C-ED88B0F4728F} 2015-07-13 01:02 - 2009-07-14 06:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-07-13 01:02 - 2009-07-14 06:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-07-13 00:54 - 2013-02-05 21:04 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\TS3Client 2015-07-13 00:31 - 2013-02-15 16:30 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-07-13 00:20 - 2013-11-22 18:00 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Raptr 2015-07-12 23:08 - 2013-02-23 15:03 - 00000952 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000UA.job 2015-07-12 20:37 - 2014-05-07 19:58 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Arma 3 2015-07-12 20:37 - 2013-02-12 17:06 - 00000000 ____D C:\Program Files (x86)\Steam 2015-07-12 19:27 - 2014-08-29 16:57 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Arma 3 Launcher 2015-07-12 18:22 - 2014-09-18 18:36 - 00000000 ____D C:\Program Files (x86)\ArmA3Sync 2015-07-12 16:15 - 2013-02-05 18:39 - 01846886 _____ C:\Windows\WindowsUpdate.log 2015-07-12 14:31 - 2014-03-04 18:09 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Battle.net 2015-07-12 14:08 - 2013-02-23 15:03 - 00000930 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000Core.job 2015-07-12 13:19 - 2013-02-05 20:57 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-12 12:20 - 2015-03-20 20:11 - 00000000 ____D C:\Users\DustinGamer\.VirtualBox 2015-07-12 12:19 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-12 12:17 - 2013-09-14 20:17 - 00093449 _____ C:\Windows\setupact.log 2015-07-12 12:17 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-07-12 02:46 - 2014-12-10 18:51 - 00000000 ____D C:\Windows\system32\appraiser 2015-07-12 02:46 - 2014-05-06 17:24 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-07-12 02:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-12 02:23 - 2013-10-28 20:46 - 00000000 ____D C:\Users\DustinGamer\Desktop\powdertoy 2015-07-12 01:09 - 2013-12-27 15:34 - 00000000 ____D C:\AdwCleaner 2015-07-12 00:41 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-07-12 00:41 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\system32\GWX 2015-07-12 00:29 - 2013-02-05 18:44 - 00000000 ___HD C:\Program Files (x86)\Temp 2015-07-11 22:04 - 2011-04-12 09:43 - 00742718 _____ C:\Windows\system32\perfh007.dat 2015-07-11 22:04 - 2011-04-12 09:43 - 00162786 _____ C:\Windows\system32\perfc007.dat 2015-07-11 22:04 - 2009-07-14 07:13 - 00006224 _____ C:\Windows\system32\PerfStringBackup.INI 2015-07-10 19:38 - 2013-02-27 18:15 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Skype 2015-07-10 14:13 - 2013-11-22 18:00 - 00000000 ____D C:\Program Files (x86)\Raptr 2015-07-09 21:06 - 2014-01-31 19:25 - 00000000 ____D C:\Program Files (x86)\Diablo III 2015-07-09 20:58 - 2014-03-04 18:09 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-07-09 19:31 - 2013-02-15 16:30 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-09 19:31 - 2013-02-15 16:30 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-09 19:31 - 2013-02-15 16:30 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-07-09 19:29 - 2014-10-20 17:13 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-07-09 19:29 - 2013-02-27 18:15 - 00000000 ____D C:\ProgramData\Skype 2015-07-09 14:02 - 2013-02-05 19:13 - 00000000 ____D C:\Program Files\AMD 2015-07-09 14:02 - 2013-02-05 18:43 - 00000000 ____D C:\Program Files (x86)\AMD 2015-07-09 14:01 - 2013-02-05 19:12 - 00000000 ____D C:\ProgramData\AMD 2015-07-09 14:00 - 2013-02-07 21:32 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\CrashDumps 2015-07-09 13:57 - 2013-09-29 21:11 - 00000000 ____D C:\ProgramData\Package Cache 2015-07-09 13:54 - 2013-11-22 17:49 - 00000000 ____D C:\AMD 2015-07-09 13:46 - 2013-11-10 00:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable 2015-07-07 19:20 - 2013-02-05 20:58 - 00002135 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-07-05 20:45 - 2013-03-05 14:14 - 00000000 ____D C:\Users\DustinGamer\Documents\My Games 2015-07-05 12:26 - 2013-02-06 11:57 - 00000000 ____D C:\Users\DustinGamer\Desktop\Wallpaper 2015-07-05 12:08 - 2010-11-21 05:27 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-06-30 22:04 - 2013-02-14 17:21 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\ArmA 2 OA 2015-06-24 21:14 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-06-23 20:21 - 2013-02-14 17:17 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2015-06-23 17:25 - 2013-04-22 18:27 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\.technic 2015-06-23 17:25 - 2013-04-22 18:26 - 04697768 _____ () C:\Users\DustinGamer\Desktop\TechnicLauncher.exe 2015-06-23 16:34 - 2013-02-14 17:18 - 00000000 ____D C:\Users\DustinGamer\Documents\ArmA 2 2015-06-23 04:09 - 2014-11-21 04:44 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2015-06-23 04:09 - 2014-11-21 04:09 - 00100568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 07927568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 07407400 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 01191320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2015-06-23 04:08 - 2012-07-28 04:13 - 01440592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2015-06-23 04:08 - 2012-07-28 03:51 - 11941000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2015-06-23 04:08 - 2012-07-28 03:13 - 00152056 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2015-06-23 03:58 - 2014-11-21 04:32 - 39712256 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2015-06-23 03:11 - 2014-11-21 04:09 - 00926720 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2015-06-23 03:10 - 2014-11-21 04:08 - 00141824 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2015-06-21 20:54 - 2014-01-15 18:21 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2015-06-21 20:54 - 2014-01-15 18:20 - 00000000 ____D C:\Program Files\Common Files\Apple 2015-06-21 20:51 - 2014-01-15 18:20 - 00000000 ____D C:\ProgramData\Apple 2015-06-18 00:57 - 2014-03-01 00:31 - 00000000 ____D C:\Program Files (x86)\osu! ==================== Files in the root of some directories ======= 2013-03-31 23:10 - 2013-04-03 22:47 - 0450131 _____ () C:\Program Files (x86)\changelog.txt 2012-08-30 15:11 - 2012-08-30 15:11 - 0027624 _____ () C:\Program Files (x86)\changes.txt 2013-03-31 23:10 - 2013-04-03 22:47 - 0018431 _____ () C:\Program Files (x86)\COPYING 2013-03-31 23:10 - 2013-04-03 22:47 - 0021659 _____ () C:\Program Files (x86)\known-bugs.txt 2013-07-14 22:11 - 2013-07-14 22:33 - 1799350272 _____ () C:\Program Files (x86)\MAESTIA_SETUP-1.bin 2013-07-14 22:11 - 2013-07-14 22:54 - 1729019577 _____ () C:\Program Files (x86)\MAESTIA_SETUP-2.bin 2013-07-14 22:11 - 2013-07-14 22:54 - 0649704 _____ (ANDROMEDAGAMES ) C:\Program Files (x86)\MAESTIA_SETUP.exe 2013-03-31 23:10 - 2013-03-31 23:10 - 9960448 _____ (OpenTTD Development Team) C:\Program Files (x86)\openttd.exe 2012-08-30 15:09 - 2012-08-30 15:09 - 0001892 _____ () C:\Program Files (x86)\README.HTM 2013-03-31 23:10 - 2013-04-03 22:47 - 0033491 _____ () C:\Program Files (x86)\readme.txt 2013-10-20 11:50 - 2013-10-20 18:56 - 0000624 _____ () C:\Users\DustinGamer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-05-16 19:04 - 2013-05-16 19:04 - 0000867 _____ () C:\Users\DustinGamer\AppData\Roaming\BreakingPoint_Options.ini 2015-06-01 21:21 - 2015-06-01 21:21 - 0006565 _____ () C:\Users\DustinGamer\AppData\Local\recently-used.xbel 2013-09-02 15:08 - 2015-06-12 19:30 - 0007597 _____ () C:\Users\DustinGamer\AppData\Local\Resmon.ResmonCfg 2013-02-05 18:48 - 2013-02-05 18:48 - 0000003 _____ () C:\Users\DustinGamer\AppData\Local\user_data.ini 2015-03-20 20:09 - 2015-03-20 20:09 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip 2014-02-03 14:05 - 2014-02-03 14:05 - 0000233 _____ () C:\ProgramData\flcd_proxy.log Some files in TEMP: ==================== C:\Users\DustinGamer\AppData\Local\Temp\0Kraken71ChromaDevProps.dll C:\Users\DustinGamer\AppData\Local\Temp\BRSVC_13437130_hlp.exe C:\Users\DustinGamer\AppData\Local\Temp\dotNetFx40_Full_setup.exe C:\Users\DustinGamer\AppData\Local\Temp\drm_dyndata_7380015.dll C:\Users\DustinGamer\AppData\Local\Temp\drm_dyndata_7390006.dll C:\Users\DustinGamer\AppData\Local\Temp\GTA_V_Launcher_1_0_344_1.exe C:\Users\DustinGamer\AppData\Local\Temp\Quarantine.exe C:\Users\DustinGamer\AppData\Local\Temp\SkypeSetup.exe C:\Users\DustinGamer\AppData\Local\Temp\sqlite3.dll C:\Users\DustinGamer\AppData\Local\Temp\tmp3F50.exe C:\Users\DustinGamer\AppData\Local\Temp\vlc-2.1.5-win64.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-07-06 16:17 ==================== End of log ============================ -Takato |
14.07.2015, 10:00 | #6 |
/// the machine /// TB-Ausbilder | Wo Pc langsam und Sound knistert Lösung! hi, Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ --> Pc langsam und Sound knistert |
14.07.2015, 13:43 | #7 |
| Pc langsam und Sound knistertCode:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.09.1.1004 www.malwarebytes.org Database version: main: v2015.07.14.03 rootkit: v2015.07.10.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.17843 DustinGamer :: DUSTINGAMER-PC [administrator] 14.07.2015 14:05:09 mbar-log-2015-07-14 (14-05-09).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 409550 Time elapsed: 26 minute(s), 2 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 1 C:\Users\DustinGamer\Videos\magix.video.deluxe.2013.premium-patch.exe (Hacktool.Patcher) -> Delete on reboot. [436815cc622851e504f6980f4db738c8] Physical Sectors Detected: 0 (No malicious items detected) (end) Code:
ATTFilter 14:38:36.0148 0x119c TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04 14:38:39.0744 0x119c ============================================================ 14:38:39.0744 0x119c Current date / time: 2015/07/14 14:38:39.0744 14:38:39.0744 0x119c SystemInfo: 14:38:39.0745 0x119c 14:38:39.0745 0x119c OS Version: 6.1.7601 ServicePack: 1.0 14:38:39.0745 0x119c Product type: Workstation 14:38:39.0745 0x119c ComputerName: DUSTINGAMER-PC 14:38:39.0745 0x119c UserName: DustinGamer 14:38:39.0745 0x119c Windows directory: C:\Windows 14:38:39.0745 0x119c System windows directory: C:\Windows 14:38:39.0745 0x119c Running under WOW64 14:38:39.0745 0x119c Processor architecture: Intel x64 14:38:39.0745 0x119c Number of processors: 8 14:38:39.0745 0x119c Page size: 0x1000 14:38:39.0745 0x119c Boot type: Normal boot 14:38:39.0745 0x119c ============================================================ 14:38:41.0987 0x119c KLMD registered as C:\Windows\system32\drivers\52690531.sys 14:38:42.0291 0x119c System UUID: {F722AD00-1FD3-E6F4-BC0B-ED9BEDFF4631} 14:38:42.0760 0x119c Drive \Device\Harddisk0\DR0 - Size: 0x1D1C1116000 ( 1863.02 Gb ), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:38:42.0765 0x119c ============================================================ 14:38:42.0765 0x119c \Device\Harddisk0\DR0: 14:38:42.0766 0x119c MBR partitions: 14:38:42.0766 0x119c \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 14:38:42.0766 0x119c \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0xE8DD5800 14:38:42.0766 0x119c ============================================================ 14:38:42.0784 0x119c C: <-> \Device\Harddisk0\DR0\Partition2 14:38:42.0784 0x119c ============================================================ 14:38:42.0784 0x119c Initialize success 14:38:42.0784 0x119c ============================================================ 14:39:15.0001 0x1984 ============================================================ 14:39:15.0001 0x1984 Scan started 14:39:15.0001 0x1984 Mode: Manual; SigCheck; TDLFS; 14:39:15.0001 0x1984 ============================================================ 14:39:15.0001 0x1984 KSN ping started 14:39:17.0460 0x1984 KSN ping finished: true 14:39:18.0744 0x1984 ================ Scan system memory ======================== 14:39:18.0744 0x1984 System memory - ok 14:39:18.0745 0x1984 ================ Scan services ============================= 14:39:18.0859 0x1984 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 14:39:18.0946 0x1984 1394ohci - ok 14:39:18.0971 0x1984 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 14:39:18.0986 0x1984 ACPI - ok 14:39:19.0009 0x1984 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 14:39:19.0056 0x1984 AcpiPmi - ok 14:39:19.0117 0x1984 [ 0C5C64AB1402F93013B4A24D09D2EC90, FF5E6D4CDCC0B29E0E7BD0A6271DAC6967A50292395DBF5F3CA63A27F26FE4FC ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 14:39:19.0131 0x1984 AdobeFlashPlayerUpdateSvc - ok 14:39:19.0161 0x1984 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 14:39:19.0180 0x1984 adp94xx - ok 14:39:19.0207 0x1984 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys 14:39:19.0222 0x1984 adpahci - ok 14:39:19.0232 0x1984 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 14:39:19.0244 0x1984 adpu320 - ok 14:39:19.0277 0x1984 [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 14:39:19.0323 0x1984 AeLookupSvc - ok 14:39:19.0366 0x1984 [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys 14:39:19.0413 0x1984 AFD - ok 14:39:19.0471 0x1984 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 14:39:19.0480 0x1984 agp440 - ok 14:39:19.0496 0x1984 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 14:39:19.0535 0x1984 ALG - ok 14:39:19.0557 0x1984 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 14:39:19.0566 0x1984 aliide - ok 14:39:19.0617 0x1984 [ E8E046DB17671161DE74D1BB4E42D4B5, 49E0989DBA83AD0E6343FF85183C272C3DDDFF46A82D4F03C96E1EF84732020B ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 14:39:19.0696 0x1984 AMD External Events Utility - ok 14:39:19.0755 0x1984 [ 23B97097BE0DAF1583EFD9B22233CF5A, 629B9377319AEBD4C8AB1E9F186E4BE8C5BFD0E2FF9B6966D6CDED1F80080C4B ] AMD FUEL Service C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe 14:39:19.0798 0x1984 AMD FUEL Service - detected UnsignedFile.Multi.Generic ( 1 ) 14:39:22.0318 0x1984 Detect skipped due to KSN trusted 14:39:22.0318 0x1984 AMD FUEL Service - ok 14:39:22.0350 0x1984 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 14:39:22.0358 0x1984 amdide - ok 14:39:22.0383 0x1984 [ 6A2EEB0C4133B20773BB3DD0B7B377B4, E4CB35C6937C70A145A13E5AE5B34A271B49101DA623171ACBFDA8601E5A70EA ] amdiox64 C:\Windows\system32\DRIVERS\amdiox64.sys 14:39:22.0393 0x1984 amdiox64 - ok 14:39:22.0414 0x1984 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 14:39:22.0452 0x1984 AmdK8 - ok 14:39:22.0490 0x1984 amdkmdag - ok 14:39:22.0545 0x1984 [ D3714915E9DFE9ED65AC8AFA7BC2AC19, 1DCDACE2F6A1237BFA8CEE5ECDE33BD32F8CD94DC8E566174E2A16E092740D37 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 14:39:22.0596 0x1984 amdkmdap - ok 14:39:22.0612 0x1984 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 14:39:22.0626 0x1984 AmdPPM - ok 14:39:22.0649 0x1984 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 14:39:22.0659 0x1984 amdsata - ok 14:39:22.0665 0x1984 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 14:39:22.0677 0x1984 amdsbs - ok 14:39:22.0688 0x1984 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 14:39:22.0696 0x1984 amdxata - ok 14:39:22.0725 0x1984 AODDriver4.2.0 - ok 14:39:22.0741 0x1984 [ C3D487827E48CC5EC17994FEC5BDFF87, 5FCEA3EEA583755D0C9F6005ED3032E9DFECB57F504DC67701AE7D2D2631C30E ] AODDriver4.3 C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys 14:39:22.0751 0x1984 AODDriver4.3 - ok 14:39:22.0785 0x1984 [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID C:\Windows\system32\drivers\appid.sys 14:39:22.0804 0x1984 AppID - ok 14:39:22.0812 0x1984 [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc C:\Windows\System32\appidsvc.dll 14:39:22.0830 0x1984 AppIDSvc - ok 14:39:22.0863 0x1984 [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll 14:39:22.0896 0x1984 Appinfo - ok 14:39:22.0965 0x1984 [ 612CB66D93ED0F2F21BB109840C7D813, 75484123DA27B8942B13148FCF061C75A08A50386A095143736B593E9C772173 ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 14:39:22.0986 0x1984 Apple Mobile Device Service - ok 14:39:23.0010 0x1984 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys 14:39:23.0031 0x1984 arc - ok 14:39:23.0044 0x1984 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys 14:39:23.0055 0x1984 arcsas - ok 14:39:23.0144 0x1984 [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:39:23.0218 0x1984 aspnet_state - ok 14:39:23.0275 0x1984 [ E1AFEE1584C74050DE0DD16DE2A54BF3, 77C8D98159D8BCDC7917B04977949823D50C49D0D13587310E060A4B8893AE42 ] AsrAppCharger C:\Windows\system32\DRIVERS\AsrAppCharger.sys 14:39:23.0301 0x1984 AsrAppCharger - ok 14:39:23.0306 0x1984 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 14:39:23.0427 0x1984 AsyncMac - ok 14:39:23.0457 0x1984 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 14:39:23.0469 0x1984 atapi - ok 14:39:23.0506 0x1984 [ 4EB5F2611381CB79DDDD627F3F1503CB, 53584998C32B1D2AD6B898CBDBEAC72100B8FAC25B5BCFDA88E0C3588244F335 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys 14:39:23.0569 0x1984 AtiHDAudioService - ok 14:39:23.0600 0x1984 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 14:39:23.0637 0x1984 AudioEndpointBuilder - ok 14:39:23.0653 0x1984 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll 14:39:23.0674 0x1984 AudioSrv - ok 14:39:23.0688 0x1984 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 14:39:23.0730 0x1984 AxInstSV - ok 14:39:23.0773 0x1984 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 14:39:23.0843 0x1984 b06bdrv - ok 14:39:23.0868 0x1984 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 14:39:23.0898 0x1984 b57nd60a - ok 14:39:23.0922 0x1984 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 14:39:23.0946 0x1984 BDESVC - ok 14:39:23.0954 0x1984 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 14:39:23.0983 0x1984 Beep - ok 14:39:24.0111 0x1984 [ C88B130365524EC69F6B8E0D31D7561D, 5D3797C93420477F4509C037511D497448EFDA7D567E15CB623FB5EEE9209146 ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe 14:39:25.0061 0x1984 BEService - ok 14:39:25.0107 0x1984 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 14:39:25.0170 0x1984 BFE - ok 14:39:25.0222 0x1984 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\system32\qmgr.dll 14:39:25.0379 0x1984 BITS - ok 14:39:25.0399 0x1984 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 14:39:25.0427 0x1984 blbdrive - ok 14:39:25.0486 0x1984 [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 14:39:25.0506 0x1984 Bonjour Service - ok 14:39:25.0527 0x1984 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 14:39:25.0574 0x1984 bowser - ok 14:39:25.0589 0x1984 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 14:39:25.0620 0x1984 BrFiltLo - ok 14:39:25.0632 0x1984 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 14:39:25.0653 0x1984 BrFiltUp - ok 14:39:25.0670 0x1984 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys 14:39:25.0708 0x1984 BridgeMP - ok 14:39:25.0730 0x1984 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 14:39:25.0757 0x1984 Browser - ok 14:39:25.0773 0x1984 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 14:39:25.0801 0x1984 Brserid - ok 14:39:25.0813 0x1984 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 14:39:25.0836 0x1984 BrSerWdm - ok 14:39:25.0849 0x1984 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 14:39:25.0867 0x1984 BrUsbMdm - ok 14:39:25.0873 0x1984 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 14:39:25.0882 0x1984 BrUsbSer - ok 14:39:25.0893 0x1984 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 14:39:25.0917 0x1984 BTHMODEM - ok 14:39:25.0929 0x1984 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 14:39:25.0969 0x1984 bthserv - ok 14:39:25.0971 0x1984 catchme - ok 14:39:25.0990 0x1984 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 14:39:26.0016 0x1984 cdfs - ok 14:39:26.0034 0x1984 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 14:39:26.0047 0x1984 cdrom - ok 14:39:26.0063 0x1984 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 14:39:26.0100 0x1984 CertPropSvc - ok 14:39:26.0118 0x1984 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys 14:39:26.0141 0x1984 circlass - ok 14:39:26.0167 0x1984 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys 14:39:26.0183 0x1984 CLFS - ok 14:39:26.0225 0x1984 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:39:26.0238 0x1984 clr_optimization_v2.0.50727_32 - ok 14:39:26.0261 0x1984 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:39:26.0271 0x1984 clr_optimization_v2.0.50727_64 - ok 14:39:26.0343 0x1984 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:39:26.0414 0x1984 clr_optimization_v4.0.30319_32 - ok 14:39:26.0433 0x1984 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:39:26.0459 0x1984 clr_optimization_v4.0.30319_64 - ok 14:39:26.0472 0x1984 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys 14:39:26.0482 0x1984 CmBatt - ok 14:39:26.0500 0x1984 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 14:39:26.0509 0x1984 cmdide - ok 14:39:26.0554 0x1984 [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG C:\Windows\system32\Drivers\cng.sys 14:39:26.0577 0x1984 CNG - ok 14:39:26.0589 0x1984 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys 14:39:26.0597 0x1984 Compbatt - ok 14:39:26.0606 0x1984 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 14:39:26.0618 0x1984 CompositeBus - ok 14:39:26.0624 0x1984 COMSysApp - ok 14:39:26.0628 0x1984 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 14:39:26.0637 0x1984 crcdisk - ok 14:39:26.0667 0x1984 [ 7BC3E861F7E8EB543A630090FAE779E0, 52A538F25C853AAC9706CD0D4EBF80B1963391AA175895CFD9D44C8ABBFCFB74 ] CryptSvc C:\Windows\system32\cryptsvc.dll 14:39:26.0696 0x1984 CryptSvc - ok 14:39:26.0719 0x1984 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 14:39:26.0754 0x1984 DcomLaunch - ok 14:39:26.0771 0x1984 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 14:39:26.0818 0x1984 defragsvc - ok 14:39:26.0840 0x1984 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 14:39:26.0877 0x1984 DfsC - ok 14:39:26.0903 0x1984 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 14:39:26.0939 0x1984 Dhcp - ok 14:39:27.0038 0x1984 [ AA5319FA8602676B5D3A2B4A1355896D, 57532E16FF0DDE3D62B6B6DC35E2598DD453140E9277247965A1E835645E588A ] DiagTrack C:\Windows\system32\diagtrack.dll 14:39:27.0106 0x1984 DiagTrack - ok 14:39:27.0127 0x1984 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 14:39:27.0150 0x1984 discache - ok 14:39:27.0163 0x1984 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys 14:39:27.0172 0x1984 Disk - ok 14:39:27.0195 0x1984 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 14:39:27.0212 0x1984 Dnscache - ok 14:39:27.0232 0x1984 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 14:39:27.0273 0x1984 dot3svc - ok 14:39:27.0296 0x1984 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 14:39:27.0336 0x1984 DPS - ok 14:39:27.0363 0x1984 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 14:39:27.0385 0x1984 drmkaud - ok 14:39:27.0462 0x1984 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 14:39:27.0493 0x1984 DXGKrnl - ok 14:39:27.0536 0x1984 EagleX64 - ok 14:39:27.0549 0x1984 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 14:39:27.0592 0x1984 EapHost - ok 14:39:27.0624 0x1984 EasyAntiCheat - ok 14:39:27.0735 0x1984 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys 14:39:27.0857 0x1984 ebdrv - ok 14:39:27.0878 0x1984 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] EFS C:\Windows\System32\lsass.exe 14:39:27.0901 0x1984 EFS - ok 14:39:27.0941 0x1984 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 14:39:27.0995 0x1984 ehRecvr - ok 14:39:28.0022 0x1984 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 14:39:28.0034 0x1984 ehSched - ok 14:39:28.0063 0x1984 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys 14:39:28.0083 0x1984 elxstor - ok 14:39:28.0090 0x1984 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 14:39:28.0107 0x1984 ErrDev - ok 14:39:28.0121 0x1984 [ DB6AEC32FAF5BD002D9ED6C38692D42B, 8BB85AE88E783B678B05D5937B7EE261BB6ECC9BF82CCB0D9A4009A1535F62B3 ] EtronHub3 C:\Windows\system32\Drivers\EtronHub3.sys 14:39:28.0147 0x1984 EtronHub3 - ok 14:39:28.0163 0x1984 [ 9CC2F24274741E12F9DF92125EA6D6D8, AC51B2A81A4D285E2E17880597B491EBBFEC533A5009B810E4AD0D9FC589EB22 ] EtronXHCI C:\Windows\system32\Drivers\EtronXHCI.sys 14:39:28.0185 0x1984 EtronXHCI - ok 14:39:28.0212 0x1984 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 14:39:28.0244 0x1984 EventSystem - ok 14:39:28.0254 0x1984 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 14:39:28.0296 0x1984 exfat - ok 14:39:28.0315 0x1984 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 14:39:28.0358 0x1984 fastfat - ok 14:39:28.0387 0x1984 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 14:39:28.0432 0x1984 Fax - ok 14:39:28.0444 0x1984 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys 14:39:28.0461 0x1984 fdc - ok 14:39:28.0474 0x1984 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 14:39:28.0510 0x1984 fdPHost - ok 14:39:28.0530 0x1984 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 14:39:28.0571 0x1984 FDResPub - ok 14:39:28.0584 0x1984 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 14:39:28.0593 0x1984 FileInfo - ok 14:39:28.0602 0x1984 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 14:39:28.0635 0x1984 Filetrace - ok 14:39:28.0649 0x1984 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 14:39:28.0659 0x1984 flpydisk - ok 14:39:28.0671 0x1984 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 14:39:28.0686 0x1984 FltMgr - ok 14:39:28.0707 0x1984 [ 508401A63E6B1CBF0B9C9A011498731F, F636B0A9C0EB6AE7EC04E5C5FD8A0578AEB76A1B0D974F355BCE6B6091901725 ] FNETTBOH_305 C:\Windows\system32\drivers\FNETTBOH_305.SYS 14:39:28.0724 0x1984 FNETTBOH_305 - ok 14:39:28.0753 0x1984 [ 7C3C4B4C951EC1BDFD4F769D05E2CC68, 7B9DA195D3CF0E7BE6BB532CC5D058BC6658B7538B5C5CF09B1A4ABEF1ECACB4 ] FNETURPX C:\Windows\system32\drivers\FNETURPX.SYS 14:39:28.0769 0x1984 FNETURPX - ok 14:39:28.0956 0x1984 [ E612E86FA15EA1EF9A52433A2743C447, 8A66164541D2EE2334B6DE3995C31138EA85E3A06BC7FD901E60D345E4E1E8A8 ] FontCache C:\Windows\system32\FntCache.dll 14:39:29.0002 0x1984 FontCache - ok 14:39:29.0049 0x1984 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:39:29.0066 0x1984 FontCache3.0.0.0 - ok 14:39:29.0102 0x1984 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 14:39:29.0127 0x1984 FsDepends - ok 14:39:29.0162 0x1984 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 14:39:29.0178 0x1984 Fs_Rec - ok 14:39:29.0205 0x1984 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 14:39:29.0226 0x1984 fvevol - ok 14:39:29.0241 0x1984 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 14:39:29.0250 0x1984 gagp30kx - ok 14:39:29.0299 0x1984 [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM C:\Windows\system32\DRIVERS\GEARAspiWDM.sys 14:39:29.0319 0x1984 GEARAspiWDM - ok 14:39:29.0389 0x1984 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 14:39:29.0460 0x1984 gpsvc - ok 14:39:29.0524 0x1984 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:39:29.0533 0x1984 gupdate - ok 14:39:29.0537 0x1984 [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 14:39:29.0545 0x1984 gupdatem - ok 14:39:29.0550 0x1984 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 14:39:29.0582 0x1984 hcw85cir - ok 14:39:29.0619 0x1984 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 14:39:29.0645 0x1984 HdAudAddService - ok 14:39:29.0668 0x1984 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 14:39:29.0686 0x1984 HDAudBus - ok 14:39:29.0693 0x1984 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 14:39:29.0714 0x1984 HidBatt - ok 14:39:29.0735 0x1984 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys 14:39:29.0748 0x1984 HidBth - ok 14:39:29.0767 0x1984 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys 14:39:29.0779 0x1984 HidIr - ok 14:39:29.0799 0x1984 [ 949900BBF7015CCD877D20DB6C2628BE, 7D39DFF56FD17A3054324F2BC260F72DC8C3AD5063AA5056A2FCA52F3AAF880E ] hidkmdf C:\Windows\system32\DRIVERS\hidkmdf.sys 14:39:29.0814 0x1984 hidkmdf - ok 14:39:29.0825 0x1984 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\System32\hidserv.dll 14:39:29.0860 0x1984 hidserv - ok 14:39:29.0870 0x1984 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 14:39:29.0895 0x1984 HidUsb - ok 14:39:29.0905 0x1984 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 14:39:29.0938 0x1984 hkmsvc - ok 14:39:29.0959 0x1984 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 14:39:29.0985 0x1984 HomeGroupListener - ok 14:39:30.0007 0x1984 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 14:39:30.0021 0x1984 HomeGroupProvider - ok 14:39:30.0033 0x1984 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 14:39:30.0043 0x1984 HpSAMD - ok 14:39:30.0088 0x1984 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 14:39:30.0148 0x1984 HTTP - ok 14:39:30.0157 0x1984 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 14:39:30.0165 0x1984 hwpolicy - ok 14:39:30.0174 0x1984 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 14:39:30.0185 0x1984 i8042prt - ok 14:39:30.0201 0x1984 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 14:39:30.0217 0x1984 iaStorV - ok 14:39:30.0447 0x1984 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:39:30.0487 0x1984 idsvc - ok 14:39:30.0517 0x1984 IEEtwCollectorService - ok 14:39:30.0532 0x1984 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys 14:39:30.0540 0x1984 iirsp - ok 14:39:30.0568 0x1984 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 14:39:30.0595 0x1984 IKEEXT - ok 14:39:30.0684 0x1984 [ C7124DA48E557D8F88D0D7F1254557F4, 300BC8ACB5CCB15F80ECAEAD27F12925EE94C84FE8110143A3E0F30E19DDA87B ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 14:39:30.0743 0x1984 IntcAzAudAddService - ok 14:39:30.0776 0x1984 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 14:39:30.0784 0x1984 intelide - ok 14:39:30.0802 0x1984 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys 14:39:30.0824 0x1984 intelppm - ok 14:39:30.0851 0x1984 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 14:39:30.0886 0x1984 IPBusEnum - ok 14:39:30.0890 0x1984 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 14:39:30.0931 0x1984 IpFilterDriver - ok 14:39:30.0957 0x1984 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 14:39:31.0010 0x1984 iphlpsvc - ok 14:39:31.0026 0x1984 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 14:39:31.0059 0x1984 IPMIDRV - ok 14:39:31.0083 0x1984 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 14:39:31.0128 0x1984 IPNAT - ok 14:39:31.0178 0x1984 [ E61BB95A7CB49696D25A0C4EBD108156, 65D95A0DBC408AD18D5E344A5E875551E6CC044038DE438E4EA1102A234FC529 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 14:39:31.0198 0x1984 iPod Service - ok 14:39:31.0218 0x1984 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 14:39:31.0230 0x1984 IRENUM - ok 14:39:31.0248 0x1984 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 14:39:31.0257 0x1984 isapnp - ok 14:39:31.0276 0x1984 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 14:39:31.0290 0x1984 iScsiPrt - ok 14:39:31.0301 0x1984 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 14:39:31.0310 0x1984 kbdclass - ok 14:39:31.0316 0x1984 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 14:39:31.0341 0x1984 kbdhid - ok 14:39:31.0344 0x1984 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] KeyIso C:\Windows\system32\lsass.exe 14:39:31.0353 0x1984 KeyIso - ok 14:39:31.0387 0x1984 [ BF69D973523D539A35807946C6DA7E16, 38F2C59B0857131961DBEA48C4A5DFA9BE7B564941935086B8DC8DBEF896F3EC ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 14:39:31.0427 0x1984 KSecDD - ok 14:39:31.0453 0x1984 [ 272C27711C8AA6E7815EE33F8ACA9C66, 0A5A10A7A3E87DB92E06395A6676B94FE8B7AD6704864075D443CDC9BABDB4DF ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 14:39:31.0469 0x1984 KSecPkg - ok 14:39:31.0476 0x1984 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 14:39:31.0512 0x1984 ksthunk - ok 14:39:31.0531 0x1984 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 14:39:31.0563 0x1984 KtmRm - ok 14:39:31.0588 0x1984 [ 86DCBF8A41C78561A1DA07AB5E7B1CCC, 5AF276893B8752B5F8DE58491D54A338EE449091F06113EA07580F4461CAEA4E ] LADF_DHP2 C:\Windows\system32\DRIVERS\ladfDHP2amd64.sys 14:39:31.0596 0x1984 LADF_DHP2 - ok 14:39:31.0611 0x1984 [ 175C04C7813CE64616B5CB046E5E1383, 20D7BA76FCFDAD785DBFCEAB7069CEF74E142C4F6FE797C38B5BF759173CE32B ] LADF_SBVM C:\Windows\system32\DRIVERS\ladfSBVMamd64.sys 14:39:31.0625 0x1984 LADF_SBVM - ok 14:39:31.0650 0x1984 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\System32\srvsvc.dll 14:39:31.0679 0x1984 LanmanServer - ok 14:39:31.0693 0x1984 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 14:39:31.0728 0x1984 LanmanWorkstation - ok 14:39:31.0743 0x1984 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 14:39:31.0785 0x1984 lltdio - ok 14:39:31.0812 0x1984 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 14:39:31.0846 0x1984 lltdsvc - ok 14:39:31.0857 0x1984 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 14:39:31.0900 0x1984 lmhosts - ok 14:39:31.0922 0x1984 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 14:39:31.0932 0x1984 LSI_FC - ok 14:39:31.0939 0x1984 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 14:39:31.0950 0x1984 LSI_SAS - ok 14:39:31.0959 0x1984 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 14:39:31.0968 0x1984 LSI_SAS2 - ok 14:39:31.0976 0x1984 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 14:39:31.0986 0x1984 LSI_SCSI - ok 14:39:31.0998 0x1984 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 14:39:32.0038 0x1984 luafv - ok 14:39:32.0080 0x1984 [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys 14:39:32.0096 0x1984 LVRS64 - ok 14:39:32.0236 0x1984 [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64 C:\Windows\system32\DRIVERS\lvuvc64.sys 14:39:32.0379 0x1984 LVUVC64 - ok 14:39:32.0417 0x1984 [ 8FF2D95CBA49B405C5DE27039FF0BF35, 03BF7FC7F1C2C76EDB583BA342EA1C325DB8058517744EF2A78529D3938F4DC1 ] MBfilt C:\Windows\system32\drivers\MBfilt64.sys 14:39:32.0424 0x1984 MBfilt - ok 14:39:32.0441 0x1984 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 14:39:32.0461 0x1984 Mcx2Svc - ok 14:39:32.0471 0x1984 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys 14:39:32.0480 0x1984 megasas - ok 14:39:32.0495 0x1984 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 14:39:32.0509 0x1984 MegaSR - ok 14:39:32.0520 0x1984 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 14:39:32.0547 0x1984 MMCSS - ok 14:39:32.0557 0x1984 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 14:39:32.0589 0x1984 Modem - ok 14:39:32.0605 0x1984 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 14:39:32.0619 0x1984 monitor - ok 14:39:32.0636 0x1984 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 14:39:32.0644 0x1984 mouclass - ok 14:39:32.0655 0x1984 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 14:39:32.0680 0x1984 mouhid - ok 14:39:32.0706 0x1984 [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 14:39:32.0716 0x1984 mountmgr - ok 14:39:32.0767 0x1984 [ 338037EFA0E8E8699B2667D57B751574, 59E0D39806D0C4EB57913AA013242837FD39AD378726AEE42D250CBA87C1C3BF ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 14:39:32.0777 0x1984 MozillaMaintenance - ok 14:39:32.0825 0x1984 [ 73150F67D20270FF95A021A22E64F28A, A8878DEFBE437FB453F8E9243FB5C787D07AC7415A4475388D479C10417C524F ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys 14:39:32.0841 0x1984 MpFilter - ok 14:39:32.0853 0x1984 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 14:39:32.0864 0x1984 mpio - ok 14:39:32.0874 0x1984 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 14:39:32.0899 0x1984 mpsdrv - ok 14:39:32.0922 0x1984 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 14:39:32.0970 0x1984 MpsSvc - ok 14:39:33.0008 0x1984 [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 14:39:33.0040 0x1984 MRxDAV - ok 14:39:33.0074 0x1984 [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 14:39:33.0114 0x1984 mrxsmb - ok 14:39:33.0131 0x1984 [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 14:39:33.0167 0x1984 mrxsmb10 - ok 14:39:33.0185 0x1984 [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 14:39:33.0212 0x1984 mrxsmb20 - ok 14:39:33.0243 0x1984 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 14:39:33.0274 0x1984 msahci - ok 14:39:33.0305 0x1984 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 14:39:33.0342 0x1984 msdsm - ok 14:39:33.0365 0x1984 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 14:39:33.0392 0x1984 MSDTC - ok 14:39:33.0414 0x1984 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 14:39:33.0440 0x1984 Msfs - ok 14:39:33.0449 0x1984 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 14:39:33.0486 0x1984 mshidkmdf - ok 14:39:33.0497 0x1984 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 14:39:33.0505 0x1984 msisadrv - ok 14:39:33.0528 0x1984 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 14:39:33.0569 0x1984 MSiSCSI - ok 14:39:33.0572 0x1984 msiserver - ok 14:39:33.0589 0x1984 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 14:39:33.0652 0x1984 MSKSSRV - ok 14:39:33.0698 0x1984 [ CE996C1821021ADF8E28E80A54E846A8, 99042E895B6C2EA80F3BA65563A12C8EBA882E3AD6A21DD8E799B0112C75DDD2 ] MsMpSvc c:\Program Files\Microsoft Security Client\MsMpEng.exe 14:39:33.0707 0x1984 MsMpSvc - ok 14:39:33.0720 0x1984 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 14:39:33.0754 0x1984 MSPCLOCK - ok 14:39:33.0757 0x1984 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 14:39:33.0781 0x1984 MSPQM - ok 14:39:33.0800 0x1984 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 14:39:33.0816 0x1984 MsRPC - ok 14:39:33.0829 0x1984 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 14:39:33.0837 0x1984 mssmbios - ok 14:39:33.0843 0x1984 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 14:39:33.0866 0x1984 MSTEE - ok 14:39:33.0873 0x1984 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 14:39:33.0882 0x1984 MTConfig - ok 14:39:33.0889 0x1984 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 14:39:33.0898 0x1984 Mup - ok 14:39:33.0925 0x1984 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 14:39:33.0969 0x1984 napagent - ok 14:39:34.0008 0x1984 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 14:39:34.0049 0x1984 NativeWifiP - ok 14:39:34.0087 0x1984 [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys 14:39:34.0142 0x1984 NDIS - ok 14:39:34.0155 0x1984 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 14:39:34.0186 0x1984 NdisCap - ok 14:39:34.0194 0x1984 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 14:39:34.0218 0x1984 NdisTapi - ok 14:39:34.0228 0x1984 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 14:39:34.0269 0x1984 Ndisuio - ok 14:39:34.0295 0x1984 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 14:39:34.0371 0x1984 NdisWan - ok 14:39:34.0387 0x1984 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 14:39:34.0432 0x1984 NDProxy - ok 14:39:34.0436 0x1984 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 14:39:34.0463 0x1984 NetBIOS - ok 14:39:34.0470 0x1984 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 14:39:34.0518 0x1984 NetBT - ok 14:39:34.0522 0x1984 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] Netlogon C:\Windows\system32\lsass.exe 14:39:34.0531 0x1984 Netlogon - ok 14:39:34.0581 0x1984 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 14:39:34.0647 0x1984 Netman - ok 14:39:34.0698 0x1984 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:34.0721 0x1984 NetMsmqActivator - ok 14:39:34.0735 0x1984 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:34.0751 0x1984 NetPipeActivator - ok 14:39:34.0799 0x1984 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 14:39:34.0845 0x1984 netprofm - ok 14:39:34.0850 0x1984 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:34.0861 0x1984 NetTcpActivator - ok 14:39:34.0866 0x1984 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:39:34.0876 0x1984 NetTcpPortSharing - ok 14:39:34.0902 0x1984 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 14:39:34.0911 0x1984 nfrd960 - ok 14:39:34.0942 0x1984 [ 4774AD83C650001B337B92E5E5DA337B, 138ECC7F556D8A12AE58B78B68F6515BE4C00F9F062596B48B6CA6C010F13035 ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys 14:39:34.0954 0x1984 NisDrv - ok 14:39:34.0992 0x1984 [ 96B7D15161A778B359E707796CCEA646, 9E4A25D9848FAECC517474EAD548E7975CBE3F41AAA964E5245E78F2A723925E ] NisSrv c:\Program Files\Microsoft Security Client\NisSrv.exe 14:39:35.0009 0x1984 NisSrv - ok 14:39:35.0094 0x1984 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 14:39:35.0154 0x1984 NlaSvc - ok 14:39:35.0172 0x1984 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 14:39:35.0202 0x1984 Npfs - ok 14:39:35.0224 0x1984 npggsvc - ok 14:39:35.0236 0x1984 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 14:39:35.0261 0x1984 nsi - ok 14:39:35.0264 0x1984 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 14:39:35.0287 0x1984 nsiproxy - ok 14:39:35.0384 0x1984 [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 14:39:35.0486 0x1984 Ntfs - ok 14:39:35.0501 0x1984 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 14:39:35.0524 0x1984 Null - ok 14:39:35.0552 0x1984 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 14:39:35.0564 0x1984 nvraid - ok 14:39:35.0578 0x1984 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 14:39:35.0589 0x1984 nvstor - ok 14:39:35.0601 0x1984 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 14:39:35.0612 0x1984 nv_agp - ok 14:39:35.0626 0x1984 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 14:39:35.0641 0x1984 ohci1394 - ok 14:39:35.0671 0x1984 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 14:39:35.0697 0x1984 p2pimsvc - ok 14:39:35.0718 0x1984 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 14:39:35.0750 0x1984 p2psvc - ok 14:39:35.0764 0x1984 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys 14:39:35.0776 0x1984 Parport - ok 14:39:35.0785 0x1984 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 14:39:35.0794 0x1984 partmgr - ok 14:39:35.0818 0x1984 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\Windows\System32\pcasvc.dll 14:39:35.0852 0x1984 PcaSvc - ok 14:39:35.0866 0x1984 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 14:39:35.0877 0x1984 pci - ok 14:39:35.0890 0x1984 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 14:39:35.0898 0x1984 pciide - ok 14:39:35.0913 0x1984 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 14:39:35.0926 0x1984 pcmcia - ok 14:39:35.0938 0x1984 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 14:39:35.0947 0x1984 pcw - ok 14:39:35.0973 0x1984 [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 14:39:35.0996 0x1984 PEAUTH - ok 14:39:36.0046 0x1984 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 14:39:36.0079 0x1984 PerfHost - ok 14:39:36.0252 0x1984 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 14:39:36.0307 0x1984 pla - ok 14:39:36.0335 0x1984 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 14:39:36.0384 0x1984 PlugPlay - ok 14:39:36.0402 0x1984 PnkBstrA - ok 14:39:36.0410 0x1984 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 14:39:36.0425 0x1984 PNRPAutoReg - ok 14:39:36.0434 0x1984 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 14:39:36.0449 0x1984 PNRPsvc - ok 14:39:36.0490 0x1984 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 14:39:36.0533 0x1984 PolicyAgent - ok 14:39:36.0557 0x1984 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 14:39:36.0585 0x1984 Power - ok 14:39:36.0600 0x1984 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 14:39:36.0624 0x1984 PptpMiniport - ok 14:39:36.0636 0x1984 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys 14:39:36.0660 0x1984 Processor - ok 14:39:36.0689 0x1984 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 14:39:36.0730 0x1984 ProfSvc - ok 14:39:36.0740 0x1984 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] ProtectedStorage C:\Windows\system32\lsass.exe 14:39:36.0750 0x1984 ProtectedStorage - ok 14:39:36.0763 0x1984 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 14:39:36.0787 0x1984 Psched - ok 14:39:36.0833 0x1984 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 14:39:36.0873 0x1984 ql2300 - ok 14:39:36.0888 0x1984 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 14:39:36.0898 0x1984 ql40xx - ok 14:39:36.0920 0x1984 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 14:39:36.0947 0x1984 QWAVE - ok 14:39:36.0956 0x1984 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 14:39:36.0979 0x1984 QWAVEdrv - ok 14:39:36.0992 0x1984 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 14:39:37.0016 0x1984 RasAcd - ok 14:39:37.0033 0x1984 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 14:39:37.0071 0x1984 RasAgileVpn - ok 14:39:37.0076 0x1984 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 14:39:37.0117 0x1984 RasAuto - ok 14:39:37.0122 0x1984 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 14:39:37.0160 0x1984 Rasl2tp - ok 14:39:37.0184 0x1984 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 14:39:37.0215 0x1984 RasMan - ok 14:39:37.0229 0x1984 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 14:39:37.0264 0x1984 RasPppoe - ok 14:39:37.0276 0x1984 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 14:39:37.0300 0x1984 RasSstp - ok 14:39:37.0380 0x1984 [ 67EAD2898F681B4ECA6E385AA39C8539, BD3D46234DD4FB6232CFF073E75CA8E35E06B416D205DCD6564E30D7548ED6F6 ] Razer Game Scanner Service C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 14:39:37.0417 0x1984 Razer Game Scanner Service - ok 14:39:37.0459 0x1984 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 14:39:37.0530 0x1984 rdbss - ok 14:39:37.0549 0x1984 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\drivers\rdpbus.sys 14:39:37.0574 0x1984 rdpbus - ok 14:39:37.0589 0x1984 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 14:39:37.0622 0x1984 RDPCDD - ok 14:39:37.0630 0x1984 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 14:39:37.0654 0x1984 RDPENCDD - ok 14:39:37.0660 0x1984 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 14:39:37.0683 0x1984 RDPREFMP - ok 14:39:37.0721 0x1984 [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 14:39:37.0759 0x1984 RdpVideoMiniport - ok 14:39:37.0781 0x1984 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 14:39:37.0825 0x1984 RDPWD - ok 14:39:37.0837 0x1984 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 14:39:37.0849 0x1984 rdyboost - ok 14:39:37.0869 0x1984 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 14:39:37.0894 0x1984 RemoteAccess - ok 14:39:37.0900 0x1984 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 14:39:37.0927 0x1984 RemoteRegistry - ok 14:39:37.0941 0x1984 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 14:39:37.0966 0x1984 RpcEptMapper - ok 14:39:37.0983 0x1984 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 14:39:38.0004 0x1984 RpcLocator - ok 14:39:38.0028 0x1984 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 14:39:38.0060 0x1984 RpcSs - ok 14:39:38.0064 0x1984 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 14:39:38.0089 0x1984 rspndr - ok 14:39:38.0120 0x1984 [ F4C374B1C46DE294B573BB43723AC3F6, 9B8A40BF54262A1949661596CB753D0B591E94577470ED44D498042BD3EA7C10 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 14:39:38.0135 0x1984 RTL8167 - ok 14:39:38.0183 0x1984 [ 8992AD7C87D3D8A533DA4790040ED23B, D02B688561239A60EE8CF1AB0E11D3F3A57247889D2FEE10078DC87493D9F992 ] rzendpt C:\Windows\system32\DRIVERS\rzendpt.sys 14:39:38.0201 0x1984 rzendpt - ok 14:39:38.0249 0x1984 [ F17F84511E7DFDEEAB646F0699A006D7, 5237937841FBD1F99A5D6161DEBA26182DDAF617CA98946EE7DB0AB67FC149EA ] rzpmgrk C:\Windows\system32\drivers\rzpmgrk.sys 14:39:38.0266 0x1984 rzpmgrk - ok 14:39:38.0290 0x1984 [ FEF60A37301E1F5A3020FA3487FB2CD7, 0C925468C3376458D0E1EC65E097BD1A81A03901035C0195E8F6EF904EF3F901 ] rzpnk C:\Windows\system32\drivers\rzpnk.sys 14:39:38.0309 0x1984 rzpnk - ok 14:39:38.0336 0x1984 [ ABFC75BBD41A03F0CC6031327D7FB84B, 539E42C5911CA979B7E7B3EF1B91B27DB5C51DFFABDF8B8D29E8BDB4A2174854 ] rzudd C:\Windows\system32\DRIVERS\rzudd.sys 14:39:38.0356 0x1984 rzudd - ok 14:39:38.0365 0x1984 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] SamSs C:\Windows\system32\lsass.exe 14:39:38.0374 0x1984 SamSs - ok 14:39:38.0388 0x1984 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 14:39:38.0398 0x1984 sbp2port - ok 14:39:38.0408 0x1984 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 14:39:38.0454 0x1984 SCardSvr - ok 14:39:38.0475 0x1984 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 14:39:38.0521 0x1984 scfilter - ok 14:39:38.0575 0x1984 [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll 14:39:38.0627 0x1984 Schedule - ok 14:39:38.0646 0x1984 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 14:39:38.0670 0x1984 SCPolicySvc - ok 14:39:38.0682 0x1984 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 14:39:38.0705 0x1984 SDRSVC - ok 14:39:38.0719 0x1984 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 14:39:38.0748 0x1984 secdrv - ok 14:39:38.0765 0x1984 [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll 14:39:38.0804 0x1984 seclogon - ok 14:39:38.0815 0x1984 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\system32\sens.dll 14:39:38.0849 0x1984 SENS - ok 14:39:38.0863 0x1984 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 14:39:38.0906 0x1984 SensrSvc - ok 14:39:38.0928 0x1984 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 14:39:38.0937 0x1984 Serenum - ok 14:39:38.0949 0x1984 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 14:39:38.0981 0x1984 Serial - ok 14:39:38.0998 0x1984 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys 14:39:39.0019 0x1984 sermouse - ok 14:39:39.0028 0x1984 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 14:39:39.0066 0x1984 SessionEnv - ok 14:39:39.0074 0x1984 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 14:39:39.0085 0x1984 sffdisk - ok 14:39:39.0096 0x1984 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 14:39:39.0107 0x1984 sffp_mmc - ok 14:39:39.0110 0x1984 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 14:39:39.0120 0x1984 sffp_sd - ok 14:39:39.0129 0x1984 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 14:39:39.0139 0x1984 sfloppy - ok 14:39:39.0166 0x1984 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 14:39:39.0198 0x1984 SharedAccess - ok 14:39:39.0220 0x1984 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 14:39:39.0252 0x1984 ShellHWDetection - ok 14:39:39.0269 0x1984 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 14:39:39.0278 0x1984 SiSRaid2 - ok 14:39:39.0282 0x1984 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 14:39:39.0292 0x1984 SiSRaid4 - ok 14:39:39.0359 0x1984 [ 0B70786BD1062CD4C6B58E412B9C3E55, 60ED027642FFF97BFFA55AE3EFFCCBB6D6AD8196D35E9ED06F9AF431E3C0402A ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 14:39:39.0375 0x1984 SkypeUpdate - ok 14:39:39.0378 0x1984 SmartViewService - ok 14:39:39.0396 0x1984 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 14:39:39.0425 0x1984 Smb - ok 14:39:39.0431 0x1984 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 14:39:39.0448 0x1984 SNMPTRAP - ok 14:39:39.0461 0x1984 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 14:39:39.0469 0x1984 spldr - ok 14:39:39.0500 0x1984 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 14:39:39.0537 0x1984 Spooler - ok 14:39:39.0629 0x1984 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 14:39:39.0781 0x1984 sppsvc - ok 14:39:39.0804 0x1984 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 14:39:39.0845 0x1984 sppuinotify - ok 14:39:39.0883 0x1984 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 14:39:39.0936 0x1984 srv - ok 14:39:39.0958 0x1984 [ E10010AC9A4E8D7676EC89700BB6A24C, 1B76DC3C5C9E3651D60A8E5AF12AF779C575FA10E6E8232F7BBEBAA736EFAC02 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 14:39:39.0975 0x1984 srv2 - ok 14:39:39.0991 0x1984 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 14:39:40.0012 0x1984 srvnet - ok 14:39:40.0026 0x1984 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 14:39:40.0054 0x1984 SSDPSRV - ok 14:39:40.0064 0x1984 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 14:39:40.0090 0x1984 SstpSvc - ok 14:39:40.0157 0x1984 [ 0A3544D7E9AF7D8C991C904339157EDC, 1E1DE4D808AE1174B0CB37E93EBADFC98FEBCD70D612CFE393DDA513581CD123 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 14:39:40.0184 0x1984 Steam Client Service - ok 14:39:40.0193 0x1984 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys 14:39:40.0202 0x1984 stexstor - ok 14:39:40.0232 0x1984 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 14:39:40.0257 0x1984 stisvc - ok 14:39:40.0261 0x1984 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 14:39:40.0269 0x1984 swenum - ok 14:39:40.0322 0x1984 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 14:39:40.0362 0x1984 swprv - ok 14:39:40.0406 0x1984 [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll 14:39:40.0470 0x1984 SysMain - ok 14:39:40.0486 0x1984 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 14:39:40.0506 0x1984 TabletInputService - ok 14:39:40.0535 0x1984 [ B08740047145B9BCE15BF75CA0F9718A, 3E2A8A5A2A4DC4D0F05E22EA2C0EBD85AA5C7C6854E873D53538D1F54B8F7C63 ] tap0901t C:\Windows\system32\DRIVERS\tap0901t.sys 14:39:40.0550 0x1984 tap0901t - detected UnsignedFile.Multi.Generic ( 1 ) 14:39:43.0361 0x1984 Detect skipped due to KSN trusted 14:39:43.0361 0x1984 tap0901t - ok 14:39:43.0509 0x1984 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 14:39:43.0557 0x1984 TapiSrv - ok 14:39:43.0572 0x1984 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 14:39:43.0606 0x1984 TBS - ok 14:39:43.0862 0x1984 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 14:39:43.0913 0x1984 Tcpip - ok 14:39:43.0967 0x1984 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 14:39:44.0010 0x1984 TCPIP6 - ok 14:39:44.0052 0x1984 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 14:39:44.0086 0x1984 tcpipreg - ok 14:39:44.0101 0x1984 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 14:39:44.0120 0x1984 TDPIPE - ok 14:39:44.0130 0x1984 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 14:39:44.0142 0x1984 TDTCP - ok 14:39:44.0162 0x1984 [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx C:\Windows\system32\DRIVERS\tdx.sys 14:39:44.0182 0x1984 tdx - ok 14:39:44.0670 0x1984 [ E849218177EC8F7541EC3FAA693EE21A, 9E6AF67C8A649A0D0B39D36D01BFF44BB31114E5BF2AE423B3B4CCD6B2E238D5 ] TeamViewer9 C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe 14:39:44.0770 0x1984 TeamViewer9 - ok 14:39:44.0792 0x1984 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 14:39:44.0801 0x1984 TermDD - ok 14:39:44.0837 0x1984 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 14:39:44.0892 0x1984 TermService - ok 14:39:44.0907 0x1984 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 14:39:44.0930 0x1984 Themes - ok 14:39:44.0954 0x1984 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 14:39:44.0979 0x1984 THREADORDER - ok 14:39:45.0008 0x1984 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 14:39:45.0035 0x1984 TrkWks - ok 14:39:45.0117 0x1984 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 14:39:45.0163 0x1984 TrustedInstaller - ok 14:39:45.0189 0x1984 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 14:39:45.0226 0x1984 tssecsrv - ok 14:39:45.0257 0x1984 [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 14:39:45.0305 0x1984 TsUsbFlt - ok 14:39:45.0341 0x1984 [ AD64450A4ABE076F5CB34CC08EEACB07, B5C386635441A19178E7FEEE299BA430C8D72F9110866C13A216B12A1080AD12 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 14:39:45.0376 0x1984 TsUsbGD - ok 14:39:45.0408 0x1984 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 14:39:45.0466 0x1984 tunnel - ok 14:39:45.0585 0x1984 [ 97D6177C2DCCDA2BA25F053B3C75D74E, DFB449E51978433F21BD85E42C5012DE64992CC0101FD9FFA6BA418233C6E70A ] TunngleService C:\Program Files (x86)\Tunngle\TnglCtrl.exe 14:39:45.0932 0x1984 TunngleService - detected UnsignedFile.Multi.Generic ( 1 ) 14:39:48.0473 0x1984 Detect skipped due to KSN trusted 14:39:48.0473 0x1984 TunngleService - ok 14:39:48.0492 0x1984 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 14:39:48.0517 0x1984 uagp35 - ok 14:39:48.0549 0x1984 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 14:39:48.0599 0x1984 udfs - ok 14:39:48.0628 0x1984 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 14:39:48.0645 0x1984 UI0Detect - ok 14:39:48.0659 0x1984 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 14:39:48.0669 0x1984 uliagpkx - ok 14:39:48.0686 0x1984 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 14:39:48.0695 0x1984 umbus - ok 14:39:48.0707 0x1984 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys 14:39:48.0716 0x1984 UmPass - ok 14:39:48.0781 0x1984 [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe 14:39:48.0807 0x1984 UMVPFSrv - ok 14:39:48.0824 0x1984 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 14:39:48.0868 0x1984 upnphost - ok 14:39:48.0902 0x1984 [ 5C3BE22E485B9BF11FCEFDC676C728D0, F55061066ECF6920D56518A677BB538C18B7F1BB150ED6DB3591408F44E8D53A ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys 14:39:48.0952 0x1984 USBAAPL64 - ok 14:39:48.0992 0x1984 [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 14:39:49.0025 0x1984 usbaudio - ok 14:39:49.0045 0x1984 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 14:39:49.0102 0x1984 usbccgp - ok 14:39:49.0128 0x1984 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 14:39:49.0153 0x1984 usbcir - ok 14:39:49.0177 0x1984 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 14:39:49.0201 0x1984 usbehci - ok 14:39:49.0234 0x1984 [ 858BE9C0E498C8E505E198E17EECE0D9, 6720DEE3620325742FA5D3481534C703A7D7DEAFABEE08652843357E8FC97FA1 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys 14:39:49.0244 0x1984 usbfilter - ok 14:39:49.0279 0x1984 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 14:39:49.0301 0x1984 usbhub - ok 14:39:49.0325 0x1984 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys 14:39:49.0348 0x1984 usbohci - ok 14:39:49.0359 0x1984 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 14:39:49.0380 0x1984 usbprint - ok 14:39:49.0398 0x1984 [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 14:39:49.0435 0x1984 USBSTOR - ok 14:39:49.0480 0x1984 [ C44D96B1CDDE705B23F55AB423CCA73D, AB9842E90DD3D686E66BDBE043EB0068272B611D6F63C818EB9D1B6FE2FE23BD ] USBTINSP C:\Windows\system32\DRIVERS\tinspusb.sys 14:39:49.0512 0x1984 USBTINSP - ok 14:39:49.0532 0x1984 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 14:39:49.0550 0x1984 usbuhci - ok 14:39:49.0557 0x1984 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 14:39:49.0592 0x1984 UxSms - ok 14:39:49.0597 0x1984 [ 17A6A9AAD04CCC6EE53290585BFC43AF, E4901D86C6470D21ABA0F6D9615A613E5C74A3FEF931E497F51B6AFA5715332B ] VaultSvc C:\Windows\system32\lsass.exe 14:39:49.0607 0x1984 VaultSvc - ok 14:39:49.0656 0x1984 [ 301F11B8BC2208D4F4867D2103DA7CE2, FD844240D349AF3CD34AE2F30DCABB1327DBDCB6DB3336A379CFFF65F72EB642 ] VBoxDrv C:\Windows\system32\DRIVERS\VBoxDrv.sys 14:39:49.0681 0x1984 VBoxDrv - ok 14:39:49.0693 0x1984 [ C64AD70CCCB0CED8925BE4E2C889DE3A, 0E25202639B10F66BDFEA867594508977112ADCCF51054E82C0C14475A1F18F5 ] VBoxNetAdp C:\Windows\system32\DRIVERS\VBoxNetAdp.sys 14:39:49.0703 0x1984 VBoxNetAdp - ok 14:39:49.0718 0x1984 [ 712724A7C726CA15AD2FC8C40D56AE6D, 221DB97E433629660C704667FA7BCAA9037063DC4C8CE8CB67C7AF6AFD87B005 ] VBoxNetFlt C:\Windows\system32\DRIVERS\VBoxNetFlt.sys 14:39:49.0728 0x1984 VBoxNetFlt - ok 14:39:49.0766 0x1984 [ 3FB968D261CE6A51454CE0C65E43B205, 2860554CC35495CC1A1D14DF002AAAE985E9C37650384B1D1524263D27DD68C5 ] VBoxUSBMon C:\Windows\system32\DRIVERS\VBoxUSBMon.sys 14:39:49.0775 0x1984 VBoxUSBMon - ok 14:39:49.0786 0x1984 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 14:39:49.0794 0x1984 vdrvroot - ok 14:39:49.0820 0x1984 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 14:39:49.0855 0x1984 vds - ok 14:39:49.0869 0x1984 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 14:39:49.0880 0x1984 vga - ok 14:39:49.0886 0x1984 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 14:39:49.0921 0x1984 VgaSave - ok 14:39:49.0943 0x1984 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 14:39:49.0955 0x1984 vhdmp - ok 14:39:49.0976 0x1984 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 14:39:49.0984 0x1984 viaide - ok 14:39:50.0001 0x1984 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 14:39:50.0011 0x1984 volmgr - ok 14:39:50.0028 0x1984 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 14:39:50.0044 0x1984 volmgrx - ok 14:39:50.0059 0x1984 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 14:39:50.0073 0x1984 volsnap - ok 14:39:50.0090 0x1984 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 14:39:50.0101 0x1984 vsmraid - ok 14:39:50.0143 0x1984 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 14:39:50.0222 0x1984 VSS - ok 14:39:50.0240 0x1984 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 14:39:50.0251 0x1984 vwifibus - ok 14:39:50.0265 0x1984 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 14:39:50.0298 0x1984 W32Time - ok 14:39:50.0341 0x1984 [ 5E5704A38928D8452246867D94AEDC39, 7430301107C05785F197EDFF165CF0884C425F74609CB2EA23516B255D9F29FE ] WacHidRouter C:\Windows\system32\DRIVERS\wachidrouter.sys 14:39:50.0360 0x1984 WacHidRouter - ok 14:39:50.0363 0x1984 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 14:39:50.0379 0x1984 WacomPen - ok 14:39:50.0400 0x1984 [ 056891AD9FB65EEE3A927C9FB5131FC7, 5CEC0E460A7A247672357E04E1B6B11A6F22FBB65DE533E0216CE3B2A33EF438 ] wacomrouterfilter C:\Windows\system32\DRIVERS\wacomrouterfilter.sys 14:39:50.0418 0x1984 wacomrouterfilter - ok 14:39:50.0428 0x1984 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 14:39:50.0466 0x1984 WANARP - ok 14:39:50.0470 0x1984 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 14:39:50.0493 0x1984 Wanarpv6 - ok 14:39:50.0539 0x1984 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 14:39:50.0606 0x1984 wbengine - ok 14:39:50.0627 0x1984 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 14:39:50.0644 0x1984 WbioSrvc - ok 14:39:50.0666 0x1984 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 14:39:50.0688 0x1984 wcncsvc - ok 14:39:50.0701 0x1984 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 14:39:50.0728 0x1984 WcsPlugInService - ok 14:39:50.0739 0x1984 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys 14:39:50.0747 0x1984 Wd - ok 14:39:50.0786 0x1984 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 14:39:50.0822 0x1984 Wdf01000 - ok 14:39:50.0848 0x1984 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 14:39:50.0877 0x1984 WdiServiceHost - ok 14:39:50.0887 0x1984 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 14:39:50.0908 0x1984 WdiSystemHost - ok 14:39:50.0942 0x1984 [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll 14:39:50.0979 0x1984 WebClient - ok 14:39:50.0997 0x1984 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 14:39:51.0033 0x1984 Wecsvc - ok 14:39:51.0050 0x1984 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 14:39:51.0093 0x1984 wercplsupport - ok 14:39:51.0110 0x1984 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 14:39:51.0135 0x1984 WerSvc - ok 14:39:51.0144 0x1984 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 14:39:51.0169 0x1984 WfpLwf - ok 14:39:51.0176 0x1984 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 14:39:51.0185 0x1984 WIMMount - ok 14:39:51.0197 0x1984 WinDefend - ok 14:39:51.0212 0x1984 WinHttpAutoProxySvc - ok 14:39:51.0251 0x1984 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 14:39:51.0279 0x1984 Winmgmt - ok 14:39:51.0380 0x1984 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll 14:39:51.0456 0x1984 WinRM - ok 14:39:51.0500 0x1984 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\drivers\WinUsb.sys 14:39:51.0525 0x1984 WinUsb - ok 14:39:51.0684 0x1984 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 14:39:51.0724 0x1984 Wlansvc - ok 14:39:51.0881 0x1984 [ 98F138897EF4246381D197CB81846D62, A9FA88475AFBB8883297708608EC7C1AC29F229C3299A84D557172604813A18C ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 14:39:51.0931 0x1984 wlidsvc - ok 14:39:51.0947 0x1984 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 14:39:51.0975 0x1984 WmiAcpi - ok 14:39:51.0996 0x1984 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 14:39:52.0010 0x1984 wmiApSrv - ok 14:39:52.0025 0x1984 WMPNetworkSvc - ok 14:39:52.0036 0x1984 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 14:39:52.0056 0x1984 WPCSvc - ok 14:39:52.0070 0x1984 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 14:39:52.0083 0x1984 WPDBusEnum - ok 14:39:52.0099 0x1984 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 14:39:52.0123 0x1984 ws2ifsl - ok 14:39:52.0133 0x1984 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\system32\wscsvc.dll 14:39:52.0155 0x1984 wscsvc - ok 14:39:52.0190 0x1984 [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys 14:39:52.0201 0x1984 WSDPrintDevice - ok 14:39:52.0224 0x1984 [ 4A2A5C50DD1A63577D3ACA94269FBC7F, F75C1906D431CF871AD954218DF32A0F206E45FF49332DEF9F13C0A36A407047 ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys 14:39:52.0237 0x1984 WSDScan - ok 14:39:52.0240 0x1984 WSearch - ok 14:39:52.0333 0x1984 [ FB0AE0897AA77BCCDA77F0CA4FA30C3F, 3115D81B479E21CD40AD3025354D385CFFBAEAC48F8DE9C802CC3317F1AE54A3 ] WTabletServicePro C:\Program Files\Tablet\Wacom\WTabletServicePro.exe 14:39:52.0373 0x1984 WTabletServicePro - ok 14:39:52.0719 0x1984 [ 175EA728F02F5637164CD490BE263D5C, 0AC4C7AE97DAD071A6C033A765AEA93201C1AFB988FA57DAD95EC2A67352BFF7 ] wuauserv C:\Windows\system32\wuaueng.dll 14:39:52.0795 0x1984 wuauserv - ok 14:39:52.0821 0x1984 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 14:39:52.0856 0x1984 WudfPf - ok 14:39:52.0885 0x1984 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\drivers\WUDFRd.sys 14:39:52.0909 0x1984 WUDFRd - ok 14:39:52.0926 0x1984 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 14:39:52.0939 0x1984 wudfsvc - ok 14:39:52.0960 0x1984 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 14:39:53.0005 0x1984 WwanSvc - ok 14:39:53.0028 0x1984 [ 2EE48CFCE7CA8E0DB4C44C7476C0943B, 2C324592F3F2D50BABA7123B6F9FC922667CC132777E019FF615F2D6F273A45E ] xusb21 C:\Windows\system32\DRIVERS\xusb21.sys 14:39:53.0051 0x1984 xusb21 - ok 14:39:53.0060 0x1984 ================ Scan global =============================== 14:39:53.0077 0x1984 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll 14:39:53.0104 0x1984 [ 2313AF8D5A9CEB4A55400A01DD311A95, A5779FE967EA2703E86BEDC32CD736617AF278C72048228F038DFC628E1E0AA2 ] C:\Windows\system32\winsrv.dll 14:39:53.0115 0x1984 [ 2313AF8D5A9CEB4A55400A01DD311A95, A5779FE967EA2703E86BEDC32CD736617AF278C72048228F038DFC628E1E0AA2 ] C:\Windows\system32\winsrv.dll 14:39:53.0133 0x1984 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 14:39:53.0149 0x1984 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 14:39:53.0156 0x1984 [ Global ] - ok 14:39:53.0156 0x1984 ================ Scan MBR ================================== 14:39:53.0163 0x1984 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 14:39:53.0681 0x1984 \Device\Harddisk0\DR0 - ok 14:39:53.0682 0x1984 ================ Scan VBR ================================== 14:39:53.0686 0x1984 [ 77D4C4E2324AF129EBEFC49A86BC620D ] \Device\Harddisk0\DR0\Partition1 14:39:53.0800 0x1984 \Device\Harddisk0\DR0\Partition1 - ok 14:39:53.0807 0x1984 [ 47534AC84412815EC21424D750AA0139 ] \Device\Harddisk0\DR0\Partition2 14:39:53.0904 0x1984 \Device\Harddisk0\DR0\Partition2 - ok 14:39:53.0905 0x1984 ================ Scan generic autorun ====================== 14:39:54.0899 0x1984 [ 7180CC6A80918BB5F9A50F6FFF51AC33, 5D1FF27BB2AE0F3A722F396D4E0E4E7EBCEF806B49533D2292AFB8C7529CBBC6 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 14:39:55.0175 0x1984 RTHDVCPL - ok 14:39:55.0215 0x1984 [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\RunDLL32.exe 14:39:55.0236 0x1984 THXCfg64 - ok 14:39:55.0308 0x1984 [ 35BA4E6632BA690EA6421C1E03537D0E, 99D6B4DB12ABE3A7F44AB1B2D626978E85231185AE280D9516986027BC8385CB ] c:\Program Files\Microsoft Security Client\msseces.exe 14:39:55.0348 0x1984 MSC - ok 14:39:55.0390 0x1984 [ ED43758BF94B8A5221D69F1B7F63F13D, F6E7418823E45085F4D4F50DD25A55ED517C0A335C6C2F69A1139B30677D3DA9 ] C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe 14:39:55.0422 0x1984 XboxStat - ok 14:39:55.0461 0x1984 [ 076B3EE149E01ADBAC2DC529554A3FD9, 4F65D9D2EE44829AA2264210112851E899165C2346489BEBE679C41420CF7D07 ] C:\Program Files\iTunes\iTunesHelper.exe 14:39:55.0483 0x1984 iTunesHelper - ok 14:39:55.0629 0x1984 [ 25C713A9A2CE45AEFDC0E7FF524ECD46, A8765483A4E9852247B4E27E12E962ADEEE1FB52F185F7A18A911DD3B1A2F779 ] C:\Program Files (x86)\XFast USB\XFastUsb.exe 14:39:55.0725 0x1984 XFast USB - ok 14:39:55.0808 0x1984 [ 69B16C7B7746BA5C642FC05B3561FC73, 0DECEB6B1B7A2DD1F13133AC7328FF420DAD4610CEE1FA7466E8E0F6BAA39116 ] C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe 14:39:55.0838 0x1984 Adobe Reader Speed Launcher - ok 14:39:55.0873 0x1984 [ D29C3F2BEA792CC2196AF7B2BEB9E899, EC787FC79C01444BAEA4866146FCF810B664D4C176D3F3E9C58C436531EE4266 ] C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe 14:39:55.0898 0x1984 THX TruStudio NB Settings - detected UnsignedFile.Multi.Generic ( 1 ) 14:39:58.0417 0x1984 Detect skipped due to KSN trusted 14:39:58.0417 0x1984 THX TruStudio NB Settings - ok 14:39:58.0436 0x1984 [ C419DF63E0121D72411285780C2FC6CC, F47F854D327C589D174D3BB5B55D5C05F5ACA73DF52A6BEF47596B9010190291 ] C:\Windows\UpdReg.EXE 14:39:58.0455 0x1984 UpdReg - detected UnsignedFile.Multi.Generic ( 1 ) 14:40:01.0004 0x1984 Detect skipped due to KSN trusted 14:40:01.0004 0x1984 UpdReg - ok 14:40:01.0005 0x1984 STCAgent - ok 14:40:01.0008 0x1984 ZyngaGamesAgent - ok 14:40:01.0090 0x1984 [ 08660140E548227B6EE70501A0680088, FB0B9C349E03CCA3768CCA772509C90DA5AEFC0777F2DCCCB8D4C663154E3360 ] C:\Program Files (x86)\Logitech\G35\G35.exe 14:40:01.0150 0x1984 Logitech G35 - ok 14:40:01.0191 0x1984 EaseUS EPM tray - ok 14:40:01.0271 0x1984 [ 4275C55AA440DC08EA0267AED31D9654, A5EF4505960D9CECC45376026A8B51FF43282AE811C88617CCD8F7F1E6E56A7B ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe 14:40:01.0295 0x1984 APSDaemon - ok 14:40:01.0341 0x1984 [ D0B1DA5382433AFBF52DE8815298EB0C, A326D01783359CCA1054210D82F17533638A9769A7A08C2BD0621DE016909359 ] C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE 14:40:01.0365 0x1984 RoccatIsku - detected UnsignedFile.Multi.Generic ( 1 ) 14:40:03.0987 0x1984 RoccatIsku ( UnsignedFile.Multi.Generic ) - warning 14:40:06.0419 0x1984 [ 0B24E46059915439A39234772C344887, D7EBB268E637966E73DB48200EECABAD138D9D85A83F58EDD2384D66C1691016 ] C:\Program Files (x86)\Raptr\raptrstub.exe 14:40:06.0439 0x1984 Raptr - ok 14:40:06.0549 0x1984 [ 8DACA62F3E15E45EBAF7AE51A609CBC1, 5FACF0EA36572E7228EB2808731ED00DD08B481937569E71C3A537D7E65022AD ] C:\Program Files (x86)\Steam\steam.exe 14:40:06.0606 0x1984 Steam - ok 14:40:06.0670 0x1984 [ 2A3FB4C98F139038E23330D2439DB8A4, DE9253AD362B03FA5D3D4912662398E5C4AC76F7274B83E51C251A6921A5B838 ] C:\Users\DustinGamer\AppData\Local\Facebook\Update\FacebookUpdate.exe 14:40:06.0684 0x1984 Facebook Update - ok 14:40:06.0754 0x1984 [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe 14:40:06.0825 0x1984 Sidebar - ok 14:40:06.0862 0x1984 [ 406E7DF08CE79BE3016CC6D15E2ED956, 9DA8D10AE642B9411A3EB253F97918A6F470F1772F0057964267497CE0BDA53A ] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe 14:40:06.0875 0x1984 Dxtory Update Checker 2.0 - detected UnsignedFile.Multi.Generic ( 1 ) 14:40:09.0432 0x1984 Detect skipped due to KSN trusted 14:40:09.0432 0x1984 Dxtory Update Checker 2.0 - ok 14:40:09.0680 0x1984 [ D6E2ED7F1F7BE7CCB8676491BF950B57, CBF07EE746F2C27ACC532E83ADC43FBE954DC3C598C4333F13B1A7615AEA9AD5 ] C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe 14:40:09.0773 0x1984 Akamai NetSession Interface - ok 14:40:09.0797 0x1984 GamingMouseEditor - ok 14:40:09.0798 0x1984 Waiting for KSN requests completion. In queue: 5 14:40:10.0798 0x1984 Waiting for KSN requests completion. In queue: 5 14:40:11.0798 0x1984 Waiting for KSN requests completion. In queue: 1 14:40:12.0819 0x1984 AV detected via SS2: Microsoft Security Essentials, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.8.204.0 ), 0x61000 ( enabled : updated ) 14:40:12.0826 0x1984 Win FW state via NFP2: enabled 14:40:15.0232 0x1984 ============================================================ 14:40:15.0232 0x1984 Scan finished 14:40:15.0232 0x1984 ============================================================ 14:40:15.0249 0x197c Detected object count: 1 14:40:15.0249 0x197c Actual detected object count: 1 14:41:10.0342 0x197c RoccatIsku ( UnsignedFile.Multi.Generic ) - skipped by user 14:41:10.0342 0x197c RoccatIsku ( UnsignedFile.Multi.Generic ) - User select action: Skip 14:41:58.0333 0x13d8 Deinitialize success |
15.07.2015, 08:42 | #8 |
/// the machine /// TB-Ausbilder | Pc langsam und Sound knistert hi, Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.07.2015, 12:27 | #9 |
| Pc langsam und Sound knistertCode:
ATTFilter ComboFix 15-07-16.01 - DustinGamer 17.07.2015 12:48:22.2.8 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.16342.12453 [GMT 2:00] ausgeführt von:: c:\users\DustinGamer\Downloads\ComboFix.exe AV: Microsoft Security Essentials *Disabled/Updated* {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A} SP: Microsoft Security Essentials *Disabled/Updated* {0C8D1929-27B2-688D-E114-9117BD2BB1B7} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\readme.txt c:\program files (x86)\Skype\Phone\Skype.exe c:\users\DUSTIN~1\AppData\Local\Temp\0Kraken71ChromaDevProps.dll c:\users\DustinGamer\AppData\Local\Temp\0Kraken71ChromaDevProps.dll c:\windows\msdownld.tmp . . ((((((((((((((((((((((( Dateien erstellt von 2015-06-17 bis 2015-07-17 )))))))))))))))))))))))))))))) . . 2015-07-17 11:08 . 2015-07-17 11:08 -------- d-----w- c:\users\Public\AppData\Local\temp 2015-07-17 11:08 . 2015-07-17 11:08 -------- d-----w- c:\users\hedev\AppData\Local\temp 2015-07-17 11:08 . 2015-07-17 11:08 -------- d-----w- c:\users\Default\AppData\Local\temp 2015-07-17 10:56 . 2015-06-12 07:50 12221144 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{E77EF0D3-6D91-4014-94E7-AF8B003FFF67}\mpengine.dll 2015-07-17 10:43 . 2015-06-12 07:50 12221144 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2015-07-17 00:01 . 2015-07-17 00:29 -------- d-----w- C:\sky 2015-07-17 00:00 . 2015-07-17 00:00 -------- d-----w- c:\program files (x86)\Skyforge 2015-07-16 23:59 . 2015-07-17 10:33 -------- d-----w- c:\users\DustinGamer\AppData\Local\MyComGames 2015-07-15 21:51 . 2015-07-01 11:54 1190000 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{DDEAB165-6C38-49A3-8F2C-2BB45BBCFEAC}\gapaengine.dll 2015-07-15 12:18 . 2015-06-20 19:57 49664 ----a-w- c:\program files\Internet Explorer\DiagnosticsHub_is.dll 2015-07-15 12:16 . 2015-06-11 17:56 7077376 ----a-w- c:\windows\system32\mstscax.dll 2015-07-15 12:15 . 2015-06-15 21:45 504320 ----a-w- c:\windows\system32\msihnd.dll 2015-07-14 12:04 . 2015-07-14 12:04 136408 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2015-07-14 12:04 . 2015-07-14 12:04 107736 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2015-07-13 18:03 . 2015-07-13 18:03 -------- d-----w- c:\program files (x86)\NVIDIA Corporation 2015-07-13 18:03 . 2015-07-13 18:03 -------- d-----w- c:\program files (x86)\AGEIA Technologies 2015-07-12 10:29 . 2014-12-11 17:47 87040 ----a-w- c:\windows\system32\TSWbPrxy.exe 2015-07-11 23:41 . 2013-10-02 04:51 3584 ----a-w- c:\windows\system32\drivers\de-DE\tsusbflt.sys.mui 2015-07-11 23:41 . 2013-10-02 01:10 44544 ----a-w- c:\windows\system32\TsUsbGDCoInstaller.dll 2015-07-11 23:41 . 2013-10-02 02:22 56832 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys 2015-07-11 23:41 . 2013-10-02 02:11 13824 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2015-07-11 23:41 . 2013-10-02 02:08 12800 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-07-11 23:41 . 2013-10-02 01:48 56832 ----a-w- c:\windows\system32\MsRdpWebAccess.dll 2015-07-11 23:41 . 2013-10-02 01:48 18944 ----a-w- c:\windows\system32\wksprtPS.dll 2015-07-11 23:41 . 2013-10-02 00:14 50176 ----a-w- c:\windows\SysWow64\MsRdpWebAccess.dll 2015-07-11 23:41 . 2013-10-02 00:14 17920 ----a-w- c:\windows\SysWow64\wksprtPS.dll 2015-07-11 23:41 . 2013-10-01 23:31 1147392 ----a-w- c:\windows\system32\mstsc.exe 2015-07-11 23:41 . 2013-10-01 22:34 1068544 ----a-w- c:\windows\SysWow64\mstsc.exe 2015-07-11 23:38 . 2015-04-27 19:23 229376 ----a-w- c:\windows\system32\wintrust.dll 2015-07-11 23:38 . 2015-04-27 19:23 188416 ----a-w- c:\windows\system32\cryptsvc.dll 2015-07-11 23:38 . 2015-04-27 19:23 1480192 ----a-w- c:\windows\system32\crypt32.dll 2015-07-11 23:38 . 2015-04-27 19:23 140288 ----a-w- c:\windows\system32\cryptnet.dll 2015-07-11 23:38 . 2015-04-27 19:05 179200 ----a-w- c:\windows\SysWow64\wintrust.dll 2015-07-11 23:38 . 2015-04-27 19:04 143872 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2015-07-11 23:38 . 2015-04-27 19:04 1174528 ----a-w- c:\windows\SysWow64\crypt32.dll 2015-07-11 23:38 . 2015-04-27 19:04 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll 2015-07-11 23:38 . 2015-03-14 03:21 82944 ----a-w- c:\windows\system32\dwmapi.dll 2015-07-11 23:38 . 2015-03-14 03:21 1632768 ----a-w- c:\windows\system32\dwmcore.dll 2015-07-11 23:38 . 2015-03-14 03:04 67584 ----a-w- c:\windows\SysWow64\dwmapi.dll 2015-07-11 23:38 . 2015-03-14 03:04 1372160 ----a-w- c:\windows\SysWow64\dwmcore.dll 2015-07-11 23:37 . 2015-07-09 17:59 17856 ----a-w- c:\windows\system32\CompatTelRunner.exe 2015-07-11 23:37 . 2015-07-09 17:58 726528 ----a-w- c:\windows\system32\generaltel.dll 2015-07-11 23:37 . 2015-07-09 17:58 765440 ----a-w- c:\windows\system32\invagent.dll 2015-07-11 23:37 . 2015-07-09 17:58 433664 ----a-w- c:\windows\system32\devinv.dll 2015-07-11 23:37 . 2015-07-09 17:58 1085440 ----a-w- c:\windows\system32\appraiser.dll 2015-07-11 23:37 . 2015-07-09 17:58 67584 ----a-w- c:\windows\system32\acmigration.dll 2015-07-11 23:37 . 2015-07-09 17:50 1145856 ----a-w- c:\windows\system32\aeinv.dll 2015-07-11 23:37 . 2015-07-09 17:58 227328 ----a-w- c:\windows\system32\aepdu.dll 2015-07-11 23:36 . 2015-05-09 18:26 493504 ----a-w- c:\windows\system32\mcupdate_GenuineIntel.dll 2015-07-09 12:04 . 2015-07-09 12:04 -------- d-----w- c:\programdata\ATI 2015-06-23 14:25 . 2015-06-23 14:30 -------- d-----w- c:\users\DustinGamer\AppData\Local\PlaywithSIX 2015-06-23 14:25 . 2015-06-23 14:26 -------- d-----w- c:\users\DustinGamer\AppData\Local\SquirrelTemp 2015-06-23 14:23 . 2015-06-23 14:23 -------- d-----w- c:\users\DustinGamer\AppData\Local\Maca134 2015-06-23 14:22 . 2015-06-23 14:24 -------- d-----w- c:\program files (x86)\DayZLauncher 2015-06-23 02:09 . 2015-06-23 02:09 107784 ----a-w- c:\windows\system32\amdave64.dll 2015-06-23 02:09 . 2015-06-23 02:09 141792 ----a-w- c:\windows\system32\amdhcp64.dll 2015-06-23 02:09 . 2015-06-23 02:09 78432 ----a-w- c:\windows\system32\atimpc64.dll 2015-06-23 02:09 . 2015-06-23 02:09 78432 ----a-w- c:\windows\system32\amdpcom64.dll 2015-06-23 02:09 . 2015-06-23 02:09 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll 2015-06-23 02:09 . 2015-06-23 02:09 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll 2015-06-23 02:08 . 2015-06-23 02:08 133016 ----a-w- c:\windows\SysWow64\atiuxpag.dll 2015-06-23 02:08 . 2015-06-23 02:08 120144 ----a-w- c:\windows\system32\atiu9p64.dll 2015-06-23 02:08 . 2015-06-23 02:08 10087472 ----a-w- c:\windows\SysWow64\atidxx32.dll 2015-06-23 02:08 . 2015-06-23 02:08 8890576 ----a-w- c:\windows\system32\atiumd6a.dll 2015-06-23 02:08 . 2015-06-23 02:08 8786040 ----a-w- c:\windows\system32\atiumd64.dll 2015-06-23 02:05 . 2015-06-23 02:05 297672 ----a-w- c:\windows\system32\drivers\amdacpksd.sys 2015-06-23 02:03 . 2015-06-23 02:03 21612032 ----a-w- c:\windows\system32\drivers\atikmdag.sys 2015-06-23 01:59 . 2015-06-23 01:59 235008 ----a-w- c:\windows\system32\clinfo.exe 2015-06-23 01:59 . 2015-06-23 01:59 47782912 ----a-w- c:\windows\system32\amdocl64.dll 2015-06-23 01:57 . 2015-06-23 01:57 65024 ----a-w- c:\windows\system32\OpenCL.dll 2015-06-23 01:57 . 2015-06-23 01:57 59392 ----a-w- c:\windows\SysWow64\OpenCL.dll 2015-06-23 01:55 . 2015-06-23 01:55 27535872 ----a-w- c:\windows\system32\amdocl12cl64.dll 2015-06-23 01:55 . 2015-06-23 01:55 22318592 ----a-w- c:\windows\SysWow64\amdocl12cl.dll 2015-06-23 01:33 . 2015-06-23 01:33 127488 ----a-w- c:\windows\system32\mantle64.dll 2015-06-23 01:33 . 2015-06-23 01:33 113664 ----a-w- c:\windows\SysWow64\mantle32.dll 2015-06-23 01:33 . 2015-06-23 01:33 6476288 ----a-w- c:\windows\system32\amdmantle64.dll 2015-06-23 01:28 . 2015-06-23 01:28 5067264 ----a-w- c:\windows\SysWow64\amdmantle32.dll 2015-06-23 01:27 . 2015-06-23 01:27 30749184 ----a-w- c:\windows\system32\atio6axx.dll 2015-06-23 01:25 . 2015-06-23 01:25 93184 ----a-w- c:\windows\system32\mantleaxl64.dll 2015-06-23 01:25 . 2015-06-23 01:25 86528 ----a-w- c:\windows\SysWow64\mantleaxl32.dll 2015-06-23 01:22 . 2015-06-23 01:22 50688 ----a-w- c:\windows\system32\amdmmcl6.dll 2015-06-23 01:22 . 2015-06-23 01:22 39424 ----a-w- c:\windows\SysWow64\amdmmcl.dll 2015-06-23 01:21 . 2015-06-23 01:21 865792 ----a-w- c:\windows\system32\coinst_15.20.dll 2015-06-23 01:21 . 2015-06-23 01:21 25296896 ----a-w- c:\windows\SysWow64\atioglxx.dll 2015-06-23 01:19 . 2015-06-23 01:19 367104 ----a-w- c:\windows\system32\atiapfxx.exe 2015-06-23 01:19 . 2015-06-23 01:19 62464 ----a-w- c:\windows\system32\aticalrt64.dll 2015-06-23 01:19 . 2015-06-23 01:19 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll 2015-06-23 01:19 . 2015-06-23 01:19 55808 ----a-w- c:\windows\system32\aticalcl64.dll 2015-06-23 01:19 . 2015-06-23 01:19 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll 2015-06-23 01:18 . 2015-06-23 01:18 15716864 ----a-w- c:\windows\system32\aticaldd64.dll 2015-06-23 01:18 . 2015-06-23 01:18 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll 2015-06-23 01:14 . 2015-06-23 01:14 442368 ----a-w- c:\windows\system32\atidemgy.dll 2015-06-23 01:14 . 2015-06-23 01:14 160256 ----a-w- c:\windows\system32\atieah64.exe 2015-06-23 01:14 . 2015-06-23 01:14 143872 ----a-w- c:\windows\SysWow64\atieah32.exe 2015-06-23 01:14 . 2015-06-23 01:14 204800 ----a-w- c:\windows\system32\amdgfxinfo64.dll 2015-06-23 01:14 . 2015-06-23 01:14 189952 ----a-w- c:\windows\SysWow64\amdgfxinfo32.dll 2015-06-23 01:14 . 2015-06-23 01:14 670720 ----a-w- c:\windows\system32\atieclxx.exe 2015-06-23 01:14 . 2015-06-23 01:14 29696 ----a-w- c:\windows\system32\atimuixx.dll 2015-06-23 01:14 . 2015-06-23 01:14 245760 ----a-w- c:\windows\system32\atiesrxx.exe 2015-06-23 01:14 . 2015-06-23 01:14 190976 ----a-w- c:\windows\system32\atitmm64.dll 2015-06-23 01:12 . 2015-06-23 01:12 89088 ----a-w- c:\windows\system32\atisamu64.dll 2015-06-23 01:12 . 2015-06-23 01:12 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll 2015-06-23 01:11 . 2015-06-23 01:11 1246208 ----a-w- c:\windows\system32\atiadlxx.dll 2015-06-23 01:11 . 2015-06-23 01:11 926720 ----a-w- c:\windows\SysWow64\atiadlxx.dll 2015-06-23 01:10 . 2015-06-23 01:10 75264 ----a-w- c:\windows\system32\atig6pxx.dll 2015-06-23 01:10 . 2015-06-23 01:10 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll 2015-06-23 01:10 . 2015-06-23 01:10 69632 ----a-w- c:\windows\system32\atiglpxx.dll 2015-06-23 01:10 . 2015-06-23 01:10 156672 ----a-w- c:\windows\system32\atig6txx.dll 2015-06-23 01:10 . 2015-06-23 01:10 663552 ----a-w- c:\windows\system32\drivers\atikmpag.sys 2015-06-23 01:09 . 2015-06-23 01:09 102912 ----a-w- c:\windows\system32\hsa-thunk64.dll 2015-06-23 01:09 . 2015-06-23 01:09 102400 ----a-w- c:\windows\SysWow64\hsa-thunk.dll 2015-06-23 01:07 . 2015-06-23 01:07 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll 2015-06-21 18:54 . 2015-06-21 18:54 -------- d-----w- c:\program files (x86)\iTunes 2015-06-21 18:54 . 2015-06-21 18:54 -------- d-----w- c:\program files\iPod 2015-06-21 18:54 . 2015-06-21 18:55 -------- d-----w- c:\programdata\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-06-21 18:54 . 2015-06-21 18:54 -------- d-----w- c:\program files\iTunes 2015-06-21 18:51 . 2015-06-21 18:51 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin5.dll 2015-06-21 18:51 . 2015-06-21 18:51 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin4.dll 2015-06-21 18:51 . 2015-06-21 18:51 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin3.dll 2015-06-21 18:51 . 2015-06-21 18:51 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin2.dll 2015-06-21 18:51 . 2015-06-21 18:51 159744 ----a-w- c:\program files\Internet Explorer\Plugins\npqtplugin.dll 2015-06-21 18:50 . 2015-06-21 18:51 -------- d-----w- c:\program files (x86)\QuickTime 2015-06-19 12:01 . 2015-06-19 12:01 -------- d-----w- c:\users\DustinGamer\AppData\Local\SquareEnix . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2015-07-14 23:31 . 2013-02-15 14:30 778416 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2015-07-14 23:31 . 2013-02-15 14:30 142512 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2015-07-05 10:08 . 2010-11-21 03:27 300704 ------w- c:\windows\system32\MpSigStub.exe 2015-07-03 06:43 . 2013-02-05 17:52 130333168 ----a-w- c:\windows\system32\MRT.exe 2015-07-01 11:54 . 2013-03-13 17:54 1190000 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll 2015-06-23 02:09 . 2014-11-21 02:09 100568 ----a-w- c:\windows\SysWow64\amdave32.dll 2015-06-23 02:09 . 2014-11-21 02:44 128384 ----a-w- c:\windows\SysWow64\amdhcp32.dll 2015-06-23 02:08 . 2012-07-28 01:13 152056 ----a-w- c:\windows\system32\atiuxp64.dll 2015-06-23 02:08 . 2014-09-15 22:31 102616 ----a-w- c:\windows\SysWow64\atiu9pag.dll 2015-06-23 02:08 . 2012-07-28 02:13 1440592 ----a-w- c:\windows\system32\aticfx64.dll 2015-06-23 02:08 . 2014-09-15 22:31 1191320 ----a-w- c:\windows\SysWow64\aticfx32.dll 2015-06-23 02:08 . 2012-07-28 01:51 11941000 ----a-w- c:\windows\system32\atidxx64.dll 2015-06-23 02:08 . 2014-09-15 22:31 7927568 ----a-w- c:\windows\SysWow64\atiumdva.dll 2015-06-23 02:08 . 2014-09-15 22:31 7407400 ----a-w- c:\windows\SysWow64\atiumdag.dll 2015-06-23 01:58 . 2014-11-21 02:32 39712256 ----a-w- c:\windows\SysWow64\amdocl.dll 2015-06-23 01:11 . 2014-11-21 02:09 926720 ----a-w- c:\windows\SysWow64\atiadlxy.dll 2015-06-23 01:10 . 2014-11-21 02:08 141824 ----a-w- c:\windows\SysWow64\atigktxx.dll 2015-05-27 15:38 . 2013-02-05 16:44 2825944 ----a-w- c:\windows\RtlExUpd.dll 2015-05-25 18:24 . 2015-06-10 10:23 5569984 ----a-w- c:\windows\system32\ntoskrnl.exe 2015-05-25 18:21 . 2015-06-10 10:23 1728960 ----a-w- c:\windows\system32\ntdll.dll 2015-05-25 18:19 . 2015-06-10 10:23 243712 ----a-w- c:\windows\system32\wow64.dll 2015-05-25 18:19 . 2015-06-10 10:23 362496 ----a-w- c:\windows\system32\wow64win.dll 2015-05-25 18:19 . 2015-06-10 10:23 13312 ----a-w- c:\windows\system32\wow64cpu.dll 2015-05-25 18:19 . 2015-06-10 10:23 215040 ----a-w- c:\windows\system32\winsrv.dll 2015-05-25 18:19 . 2015-06-10 10:23 1255424 ----a-w- c:\windows\system32\diagtrack.dll 2015-05-25 18:19 . 2015-06-10 10:23 879104 ----a-w- c:\windows\system32\tdh.dll 2015-05-25 18:19 . 2015-06-10 10:23 503808 ----a-w- c:\windows\system32\srcore.dll 2015-05-25 18:19 . 2015-06-10 10:23 113664 ----a-w- c:\windows\system32\sechost.dll 2015-05-25 18:19 . 2015-06-10 10:23 50176 ----a-w- c:\windows\system32\srclient.dll 2015-05-25 18:19 . 2015-06-10 10:23 16384 ----a-w- c:\windows\system32\ntvdm64.dll 2015-05-25 18:19 . 2015-06-10 10:23 424960 ----a-w- c:\windows\system32\KernelBase.dll 2015-05-25 18:19 . 2015-06-10 10:23 1162752 ----a-w- c:\windows\system32\kernel32.dll 2015-05-25 18:18 . 2015-06-10 10:23 43520 ----a-w- c:\windows\system32\csrsrv.dll 2015-05-25 18:18 . 2015-06-10 10:23 879104 ----a-w- c:\windows\system32\advapi32.dll 2015-05-25 18:18 . 2015-06-10 10:23 404992 ----a-w- c:\windows\system32\tracerpt.exe 2015-05-25 18:18 . 2015-06-10 10:23 47104 ----a-w- c:\windows\system32\typeperf.exe 2015-05-25 18:18 . 2015-06-10 10:23 112640 ----a-w- c:\windows\system32\smss.exe 2015-05-25 18:18 . 2015-06-10 10:23 296960 ----a-w- c:\windows\system32\rstrui.exe 2015-05-25 18:18 . 2015-06-10 10:23 43008 ----a-w- c:\windows\system32\relog.exe 2015-05-25 18:18 . 2015-06-10 10:23 104448 ----a-w- c:\windows\system32\logman.exe 2015-05-25 18:18 . 2015-06-10 10:23 19456 ----a-w- c:\windows\system32\diskperf.exe 2015-05-25 18:18 . 2015-06-10 10:23 338432 ----a-w- c:\windows\system32\conhost.exe 2015-05-25 18:11 . 2015-06-10 10:23 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 4608 ---ha-w- c:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 6656 ----a-w- c:\windows\system32\apisetschema.dll 2015-05-25 18:11 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 5120 ---ha-w- c:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-05-25 18:11 . 2015-06-10 10:23 3072 ---ha-w- c:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-05-25 18:07 . 2015-06-10 10:23 3989440 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2015-05-25 18:07 . 2015-06-10 10:23 3934144 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2015-05-25 18:04 . 2015-06-10 10:23 1310744 ----a-w- c:\windows\SysWow64\ntdll.dll 2015-05-25 18:01 . 2015-06-10 10:23 635392 ----a-w- c:\windows\SysWow64\tdh.dll 2015-05-25 18:01 . 2015-06-10 10:23 43008 ----a-w- c:\windows\SysWow64\srclient.dll 2015-05-25 18:01 . 2015-06-10 10:23 92160 ----a-w- c:\windows\SysWow64\sechost.dll 2015-05-25 18:01 . 2015-06-10 10:23 14336 ----a-w- c:\windows\SysWow64\ntvdm64.dll 2015-05-25 18:01 . 2015-06-10 10:23 641536 ----a-w- c:\windows\SysWow64\advapi32.dll 2015-05-25 18:01 . 2015-06-10 10:23 44032 ----a-w- c:\windows\apppatch\acwow64.dll 2015-05-25 18:00 . 2015-06-10 10:23 40448 ----a-w- c:\windows\SysWow64\typeperf.exe 2015-05-25 18:00 . 2015-06-10 10:23 364544 ----a-w- c:\windows\SysWow64\tracerpt.exe 2015-05-25 18:00 . 2015-06-10 10:23 25600 ----a-w- c:\windows\SysWow64\setup16.exe 2015-05-25 18:00 . 2015-06-10 10:23 37888 ----a-w- c:\windows\SysWow64\relog.exe 2015-05-25 18:00 . 2015-06-10 10:23 82944 ----a-w- c:\windows\SysWow64\logman.exe 2015-05-25 18:00 . 2015-06-10 10:23 17408 ----a-w- c:\windows\SysWow64\diskperf.exe 2015-05-25 17:59 . 2015-06-10 10:23 5120 ----a-w- c:\windows\SysWow64\wow32.dll 2015-05-25 17:59 . 2015-06-10 10:23 274944 ----a-w- c:\windows\SysWow64\KernelBase.dll 2015-05-25 17:55 . 2015-06-10 10:23 5120 ---ha-w- c:\windows\SysWow64\api-ms-win-core-file-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 4608 ---ha-w- c:\windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll 2015-05-25 17:55 . 2015-06-10 10:23 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll . -Takato |
18.07.2015, 07:46 | #10 |
/// the machine /// TB-Ausbilder | Pc langsam und Sound knistert [gelöst] Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.07.2015, 14:40 | #11 |
| Pc langsam und Sound knistert [gelöst]Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 19.07.2015 Suchlauf-Zeit: 13:39:53 Logdatei: mbam.txt Administrator: Ja Version: 2.01.6.1022 Malware Datenbank: v2015.07.19.01 Rootkit Datenbank: v2015.07.17.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: DustinGamer Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 402596 Verstrichene Zeit: 21 Min, 7 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente gefunden) Module: 0 (Keine schädliche Elemente gefunden) Registrierungsschlüssel: 4 PUP.Optional.SuperOptimizer.C, HKU\S-1-5-18\SOFTWARE\APPDATALOW\{1146AC44-2F03-4431-B4FD-889BC837521F}, In Quarantäne, [128b796a0e7c7bbbf09cdbbaa55f05fb], PUP.Optional.FindRight.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{cf710881-c002-4ea4-860a-b6931b040948}, In Quarantäne, [3f5edd06acdec96d297adc5c778e9a66], PUP.Optional.FindRight.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{CF710881-C002-4EA4-860A-B6931B040948}, In Quarantäne, [3f5edd06acdec96d297adc5c778e9a66], PUP.Optional.FindRight.A, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{CF710881-C002-4EA4-860A-B6931B040948}, In Quarantäne, [3f5edd06acdec96d297adc5c778e9a66], Registrierungswerte: 0 (Keine schädliche Elemente gefunden) Registrierungsdaten: 0 (Keine schädliche Elemente gefunden) Ordner: 0 (Keine schädliche Elemente gefunden) Dateien: 1 PUP.Netcat, C:\Program Files (x86)\crypt\Cryptload_1.1.8.zip, In Quarantäne, [abf282614d3d6acc1fb946b88a7748b8], Physische Sektoren: 0 (Keine schädliche Elemente gefunden) (end) Code:
ATTFilter # AdwCleaner v4.208 - Bericht erstellt 20/07/2015 um 15:19:25 # Aktualisiert 09/07/2015 von Xplode # Datenbank : 2015-07-15.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64) # Benutzername : DustinGamer - DUSTINGAMER-PC # Gestarted von : C:\Users\DustinGamer\Downloads\adwcleaner_4.208.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdjknjpbnhdoabbngpmfekaecnpajba ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local> ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17909 -\\ Mozilla Firefox v27.0.1 (de) -\\ Google Chrome v43.0.2357.134 [C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://en.softonic.com/s/{searchTerms} ************************* AdwCleaner[R0].txt - [3933 Bytes] - [27/12/2013 15:34:32] AdwCleaner[R1].txt - [6890 Bytes] - [16/07/2014 16:01:30] AdwCleaner[R2].txt - [4176 Bytes] - [12/07/2015 01:08:02] AdwCleaner[R3].txt - [1590 Bytes] - [20/07/2015 15:18:12] AdwCleaner[S0].txt - [3899 Bytes] - [27/12/2013 15:35:38] AdwCleaner[S1].txt - [4907 Bytes] - [16/07/2014 16:02:20] AdwCleaner[S2].txt - [4189 Bytes] - [12/07/2015 01:09:24] AdwCleaner[S3].txt - [1510 Bytes] - [20/07/2015 15:19:25] ########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [1569 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.5.1 (07.16.2015:1) OS: Windows 7 Home Premium x64 Ran by DustinGamer on 20.07.2015 at 15:27:25,72 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer ~~~ Files Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static.ak.facebook.com_0.localstorage Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static.ak.facebook.com_0.localstorage-journal Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www.allthelyrics.com_0.localstorage Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www.allthelyrics.com_0.localstorage-journal Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www.azlyrics.com_0.localstorage Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www.azlyrics.com_0.localstorage-journal Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www.metrolyrics.com_0.localstorage Successfully deleted: [File] C:\Users\DustinGamer\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www.metrolyrics.com_0.localstorage-journal ~~~ Folders Successfully deleted: [Folder] C:\Users\DustinGamer\Appdata\Local\crashrpt Successfully deleted: [Folder] C:\Windows\SysWOW64\ai_recyclebin ~~~ Chrome [C:\Users\DustinGamer\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset [C:\Users\DustinGamer\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted: hcdjknjpbnhdoabbngpmfekaecnpajba [C:\Users\DustinGamer\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset [C:\Users\DustinGamer\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted: [ hcdjknjpbnhdoabbngpmfekaecnpajba ] ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 20.07.2015 at 15:34:56,62 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:12-07-2015 Ran by DustinGamer (administrator) on DUSTINGAMER-PC on 20-07-2015 15:36:22 Running from C:\Users\DustinGamer\Desktop\TBoard Loaded Profiles: DustinGamer (Available Profiles: DustinGamer) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-18] (Realtek Semiconductor) HKLM\...\Run: [THXCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64 HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.) HKLM-x32\...\Run: [XFast USB] => C:\Program Files (x86)\XFast USB\XFastUsb.exe [4878912 2013-02-05] (FNet Co., Ltd.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [THX TruStudio NB Settings] => C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe [909824 2011-05-19] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [STCAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect IE\STCAgent.exe" HKLM-x32\...\Run: [ZyngaGamesAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe" HKLM-x32\...\Run: [Logitech G35] => C:\Program Files (x86)\Logitech\G35\G35.exe [1811800 2010-10-05] (Logitech(c)) HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.) HKLM-x32\...\Run: [RoccatIsku] => C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE [536576 2013-10-30] (ROCCAT GmbH) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-07-09] (Raptr, Inc) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590144 2015-04-22] (Razer Inc.) HKLM-x32\...\Run: [Andy] => C:\Program Files\Andy\HandyAndy.exe [907144 2015-02-03] () HKLM-x32\...\Run: [Kraken71ChromaHelper] => C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [1600320 2015-02-03] (Razer Inc) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-06-22] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2892992 2015-06-04] (Valve Corporation) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Dxtory Update Checker 2.0] => C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe [93696 2010-10-17] (Dxtory Software) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Akamai NetSession Interface] => C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [GamingMouseEditor] => C:\Program Files (x86)\GamingMouseEditor\GamingMouseEditor\GamingMouseEditor.exe Minimum HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [MyComGames] => C:\Users\DustinGamer\AppData\Local\MyComGames\MyComGames.exe [4060104 2015-07-17] () ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> {257C8684-AD59-40c9-B783-8A013B406F2F} URL = hxxp://www.google.com/cse?cx=partner-pub-3794288947762788%3A6976579318&ie=UTF-8&q=&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A6976579318&q={searchTerms} SearchScopes: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> {D03C896E-A518-4623-BB2C-01D2E6953E3C} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-01] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-01] (Oracle Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated) BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) Toolbar: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{38967EBE-AD85-48D2-AF7F-56F5AFDD52A3}: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\DustinGamer\AppData\Roaming\Mozilla\Firefox\Profiles\ccywtshb.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-01] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-01] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @esn/esnlaunch,version=2.1.4 -> C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll [2014-05-26] (EA Digital Illusions CE AB) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: @my.com/Games -> C:\Users\DustinGamer\AppData\Local\MyComGames\NPMyComDetector.dll [2015-07-17] (My.com, Inc) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: facebook.com/fbDesktopPlugin -> C:\Users\DustinGamer\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll [2013-03-07] (Facebook, Inc.) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2014-03-01] () FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Extension: Amazon-Icon - C:\Users\DustinGamer\AppData\Roaming\Mozilla\Firefox\Profiles\ccywtshb.default\Extensions\amazon-icon@giga.de [2014-07-16] Chrome: ======= CHR Profile: C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-07-18] CHR Extension: (Google Docs) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-02-05] CHR Extension: (Google Drive) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-05] CHR Extension: (YouTube) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-05] CHR Extension: (Script Defender) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\celgmkbkgakmkfboolifhbllkfiepcae [2015-07-12] CHR Extension: (Google Search) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-05] CHR Extension: (SAO Theme 1920x1080) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgikfepnnphbmgngmpiflajcbmoomnll [2014-07-20] CHR Extension: (AdBlock) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-07-18] CHR Extension: (ScriptBlock) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdjknjpbnhdoabbngpmfekaecnpajba [2015-07-20] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-05] CHR Extension: (Google Wallet) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR Extension: (Gmail) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-05] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-06-22] (Advanced Micro Devices, Inc.) [File not signed] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1060352 2015-06-11] () S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [174624 2015-01-13] (EasyAntiCheat Ltd) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4868640 2013-08-25] (INCA Internet Co., Ltd.) S2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-06-14] () R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] () S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [759192 2013-09-03] (Tunngle.net GmbH) [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [598808 2013-06-06] (Wacom Technology, Corp.) S2 SmartViewService; C:\Program Files (x86)\DeviceVM\SmartView\SmartViewService.exe [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2015-02-21] (FNet Co., Ltd.) R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2013-02-05] (FNet Co., Ltd.) S3 LADF_DHP2; C:\Windows\System32\DRIVERS\ladfDHP2amd64.sys [62168 2010-09-29] (Logitech) S3 LADF_SBVM; C:\Windows\System32\DRIVERS\ladfSBVMamd64.sys [377176 2010-09-29] (Logitech) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation) R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [40104 2015-03-10] (Razer Inc) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2014-11-17] (Razer, Inc.) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 USBTINSP; C:\Windows\System32\DRIVERS\tinspusb.sys [142848 2010-03-29] (Texas Instruments) S2 AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [X] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-20 15:34 - 2015-07-20 15:34 - 00002779 _____ C:\Users\DustinGamer\Desktop\JRT.txt 2015-07-20 15:26 - 2015-07-20 15:26 - 01798288 _____ (Malwarebytes Corporation) C:\Users\DustinGamer\Desktop\JRT.exe 2015-07-20 15:21 - 2015-07-20 15:21 - 00001649 _____ C:\Users\DustinGamer\Desktop\AdwCleaner[S3].txt 2015-07-20 02:43 - 2015-07-20 02:43 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2015-07-20 02:43 - 2015-07-20 02:43 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-07-20 02:43 - 2015-07-20 02:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-07-19 15:26 - 2015-07-19 15:26 - 00000000 _____ C:\Users\DustinGamer\Desktop\Neues Textdokument.txt 2015-07-19 15:22 - 2014-12-18 16:24 - 00000000 ____D C:\Users\DustinGamer\Desktop\clrbrowser4_repack 2015-07-19 15:12 - 2015-07-19 15:22 - 00000000 ____D C:\Users\DustinGamer\Desktop\Neuer Ordner (2) 2015-07-19 15:10 - 2015-07-19 15:10 - 102983184 _____ C:\Users\DustinGamer\Downloads\clrbrowser4_repack.zip 2015-07-19 14:03 - 2015-07-19 14:03 - 00000000 ____D C:\Users\DustinGamer\Desktop\TBoard 2015-07-19 14:02 - 2015-07-19 14:02 - 00001940 _____ C:\Users\DustinGamer\Desktop\mbam.txt 2015-07-19 13:43 - 2015-07-19 13:43 - 00013460 _____ C:\Users\DustinGamer\Desktop\adwcleaner_4.208 - Verknüpfung.lnk 2015-07-19 13:39 - 2015-07-19 13:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-07-19 13:39 - 2015-07-19 13:39 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-07-19 13:39 - 2015-04-14 09:37 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-07-19 13:39 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-07-17 13:24 - 2015-07-17 13:24 - 00003234 _____ C:\Windows\System32\Tasks\SidebarExecute 2015-07-17 13:22 - 2015-07-17 13:22 - 00036485 _____ C:\ComboFix.txt 2015-07-17 12:39 - 2015-07-17 12:41 - 05634275 ____R (Swearware) C:\Users\DustinGamer\Downloads\ComboFix.exe 2015-07-17 02:38 - 2015-07-17 02:38 - 00000118 _____ C:\Users\DustinGamer\Desktop\Skyforge My.com.url 2015-07-17 02:38 - 2015-07-17 02:38 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com 2015-07-17 02:01 - 2015-07-17 02:29 - 00000000 ____D C:\sky 2015-07-17 02:01 - 2015-07-17 02:01 - 00002052 _____ C:\Users\DustinGamer\Desktop\My.com Game Center.lnk 2015-07-17 02:01 - 2015-07-17 02:01 - 00000000 ____D C:\Users\DustinGamer\Desktop\sky 2015-07-17 02:01 - 2015-07-17 02:01 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games 2015-07-17 02:00 - 2015-07-17 02:00 - 00000000 ____D C:\Program Files (x86)\Skyforge 2015-07-17 01:59 - 2015-07-20 15:21 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\MyComGames 2015-07-17 01:58 - 2015-07-17 01:58 - 04539376 _____ C:\Users\DustinGamer\Downloads\SkyforgeLoader_de.exe 2015-07-15 14:19 - 2015-07-09 19:58 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 02603008 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-07-15 14:19 - 2015-07-09 19:58 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-07-15 14:19 - 2015-07-09 19:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-07-15 14:19 - 2015-07-09 19:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-07-15 14:19 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-07-15 14:19 - 2015-07-02 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-07-15 14:19 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-07-15 14:19 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-07-15 14:19 - 2015-07-02 22:46 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-07-15 14:19 - 2015-07-02 22:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-07-15 14:19 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-07-15 14:19 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-07-15 14:19 - 2015-07-02 22:12 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-07-15 14:19 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-07-15 14:19 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-07-15 14:19 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-07-15 14:19 - 2015-06-27 04:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-07-15 14:19 - 2015-06-27 04:43 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-07-15 14:19 - 2015-06-27 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-07-15 14:19 - 2015-06-27 03:39 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-07-15 14:19 - 2015-06-25 10:57 - 03207168 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-07-15 14:19 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-07-15 14:19 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-07-15 14:19 - 2015-06-09 20:03 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-07-15 14:19 - 2015-06-09 20:03 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2015-07-15 14:19 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-07-15 14:19 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-07-15 14:18 - 2015-06-25 20:09 - 00389832 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-07-15 14:18 - 2015-06-25 19:43 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-07-15 14:18 - 2015-06-20 22:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-07-15 14:18 - 2015-06-20 21:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-07-15 14:18 - 2015-06-20 21:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-07-15 14:18 - 2015-06-20 21:49 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-07-15 14:18 - 2015-06-20 21:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-07-15 14:18 - 2015-06-20 21:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-07-15 14:18 - 2015-06-20 21:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-07-15 14:18 - 2015-06-20 21:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-07-15 14:18 - 2015-06-20 21:34 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-07-15 14:18 - 2015-06-20 21:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-07-15 14:18 - 2015-06-20 21:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-07-15 14:18 - 2015-06-20 21:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-07-15 14:18 - 2015-06-20 21:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-07-15 14:18 - 2015-06-20 21:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-07-15 14:18 - 2015-06-20 21:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-07-15 14:18 - 2015-06-20 21:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-07-15 14:18 - 2015-06-20 21:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-07-15 14:18 - 2015-06-20 20:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-07-15 14:18 - 2015-06-20 20:48 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-07-15 14:18 - 2015-06-20 20:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-07-15 14:18 - 2015-06-20 20:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-07-15 14:18 - 2015-06-20 20:26 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-07-15 14:18 - 2015-06-20 20:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-07-15 14:18 - 2015-06-19 20:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-07-15 14:18 - 2015-06-19 20:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-07-15 14:18 - 2015-06-19 20:24 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-07-15 14:18 - 2015-06-19 20:24 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-07-15 14:18 - 2015-06-19 20:23 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-07-15 14:18 - 2015-06-19 20:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-07-15 14:18 - 2015-06-19 20:16 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-07-15 14:18 - 2015-06-19 20:13 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-07-15 14:18 - 2015-06-19 20:13 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-07-15 14:18 - 2015-06-19 20:03 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-07-15 14:18 - 2015-06-19 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-07-15 14:18 - 2015-06-19 19:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-07-15 14:18 - 2015-06-19 19:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-07-15 14:18 - 2015-06-19 19:51 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-07-15 14:18 - 2015-06-19 19:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-07-15 14:18 - 2015-06-19 19:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-07-15 14:18 - 2015-06-19 19:39 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-07-15 14:18 - 2015-06-19 19:15 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-07-15 14:18 - 2015-06-19 19:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-07-15 14:16 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-07-15 14:16 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-07-15 14:16 - 2015-07-01 22:56 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-07-15 14:16 - 2015-07-01 22:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-07-15 14:16 - 2015-07-01 22:49 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-07-15 14:16 - 2015-07-01 22:48 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-07-15 14:16 - 2015-07-01 22:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-07-15 14:16 - 2015-07-01 22:47 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-07-15 14:16 - 2015-07-01 22:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-07-15 14:16 - 2015-07-01 22:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-07-15 14:16 - 2015-07-01 22:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-07-15 14:16 - 2015-07-01 22:39 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-07-15 14:16 - 2015-07-01 22:29 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-07-15 14:16 - 2015-07-01 22:29 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-07-15 14:16 - 2015-07-01 22:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-07-15 14:16 - 2015-07-01 22:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-07-15 14:16 - 2015-07-01 22:26 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-07-15 14:16 - 2015-07-01 22:24 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-07-15 14:16 - 2015-07-01 21:27 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-07-15 14:16 - 2015-07-01 21:26 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-07-15 14:16 - 2015-07-01 21:26 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-07-15 14:16 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-07-15 14:16 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-07-15 14:16 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-07-15 14:16 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-07-15 14:16 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-07-15 14:16 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-07-15 14:16 - 2015-06-11 19:57 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-07-15 14:16 - 2015-06-11 19:57 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-07-15 14:16 - 2015-06-11 19:57 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-07-15 14:16 - 2015-06-11 19:56 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-07-15 14:16 - 2015-06-11 19:56 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-07-15 14:16 - 2015-06-11 19:56 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-07-15 14:16 - 2015-06-11 15:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2015-07-15 14:15 - 2015-07-03 20:05 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-07-15 14:15 - 2015-07-03 20:05 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-07-15 14:15 - 2015-07-03 20:05 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-07-15 14:15 - 2015-07-03 20:05 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-07-15 14:15 - 2015-07-03 19:56 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-07-15 14:15 - 2015-07-03 19:56 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-07-15 14:15 - 2015-07-03 19:56 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-07-15 14:15 - 2015-07-03 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-07-15 14:15 - 2015-07-03 18:52 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-07-15 14:15 - 2015-07-03 18:42 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-07-15 14:15 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-07-15 14:15 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-07-15 14:15 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-07-15 14:15 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-07-15 14:15 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2015-07-15 14:15 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2015-07-14 14:04 - 2015-07-19 13:39 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-07-14 14:04 - 2015-07-14 14:37 - 00000000 ____D C:\Users\DustinGamer\Desktop\mbar 2015-07-14 14:04 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-07-13 20:03 - 2015-07-13 20:03 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-07-13 20:03 - 2015-07-13 20:03 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2015-07-12 12:29 - 2014-12-11 19:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-07-12 01:41 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2015-07-12 01:41 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2015-07-12 01:41 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-07-12 01:41 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2015-07-12 01:41 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2015-07-12 01:41 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2015-07-12 01:41 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2015-07-12 01:41 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2015-07-12 01:41 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-07-12 01:41 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2015-07-12 01:38 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-12 01:38 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-07-12 01:38 - 2015-03-14 05:21 - 01632768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-07-12 01:38 - 2015-03-14 05:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-07-12 01:38 - 2015-03-14 05:04 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-07-12 01:38 - 2015-03-14 05:04 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-07-12 01:37 - 2015-07-09 19:59 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-07-12 01:37 - 2015-07-09 19:58 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-07-12 01:37 - 2015-07-09 19:50 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-07-12 01:36 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-07-12 01:07 - 2015-07-12 01:07 - 02248704 _____ C:\Users\DustinGamer\Downloads\adwcleaner_4.208.exe 2015-07-12 00:27 - 2015-07-12 00:27 - 01198368 _____ C:\Users\DustinGamer\Downloads\0006-32bit_Win7_Win8_Win81_Win10_R279 - CHIP-Installer.exe 2015-07-12 00:24 - 2015-07-12 00:24 - 00516728 _____ ( ) C:\Users\DustinGamer\Downloads\0006-64bit_Win7_Win8_Win81_Win10_R279_CB-DL-Manager.exe 2015-07-09 14:04 - 2015-07-09 14:04 - 00000000 ____D C:\ProgramData\ATI 2015-07-09 14:02 - 2015-07-09 14:02 - 00058877 _____ C:\Windows\SysWOW64\CCCInstall_201507091402258526.log 2015-07-09 14:02 - 2015-07-09 14:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-07-05 02:15 - 2015-07-05 02:15 - 00002416 _____ C:\Users\DustinGamer\Downloads\Anime.rar 2015-07-05 02:15 - 2015-06-30 16:18 - 00000000 ____D C:\Users\DustinGamer\Desktop\Anime12 2015-07-04 14:26 - 2015-07-04 14:26 - 00001878 _____ C:\Users\DustinGamer\Desktop\launcher - Verknüpfung.lnk 2015-06-29 16:10 - 2015-06-29 23:35 - 00000000 ____D C:\Users\DustinGamer\Desktop\abi 2015-06-23 19:58 - 2015-06-23 19:59 - 11179126 _____ C:\Users\DustinGamer\Downloads\ARMA2_OA_Build_108074.zip 2015-06-23 19:54 - 2015-06-23 19:59 - 00000000 ____D C:\Users\DustinGamer\Desktop\Neuer Ordner 2015-06-23 19:54 - 2015-06-23 19:54 - 00003250 _____ C:\Windows\System32\Tasks\{9CD5B030-C201-4484-BA0B-332074311914} 2015-06-23 19:52 - 2015-06-23 19:53 - 11178510 _____ C:\Users\DustinGamer\Downloads\ARMA2_OA_Build_112555.zip 2015-06-23 19:38 - 2015-06-23 19:38 - 00003322 _____ C:\Windows\System32\Tasks\{CBAFCC8A-280E-4FED-B2B1-15445C141489} 2015-06-23 16:32 - 2015-06-23 16:32 - 00131549 _____ C:\Users\DustinGamer\Downloads\DayZ_Epoch_Client_1.0.5.1_Release.7z (1).torrent 2015-06-23 16:26 - 2015-06-23 16:26 - 00002306 _____ C:\Users\DustinGamer\Desktop\Play withSIX.lnk 2015-06-23 16:26 - 2015-06-23 16:26 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SIX Networks 2015-06-23 16:25 - 2015-06-23 16:30 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\PlaywithSIX 2015-06-23 16:25 - 2015-06-23 16:26 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\SquirrelTemp 2015-06-23 16:25 - 2015-06-23 16:25 - 43752272 _____ (SIX Networks GmbH) C:\Users\DustinGamer\Downloads\PwS-Setup.exe 2015-06-23 16:23 - 2015-06-23 16:23 - 00131549 _____ C:\Users\DustinGamer\Downloads\DayZ_Epoch_Client_1.0.5.1_Release.7z.torrent 2015-06-23 16:23 - 2015-06-23 16:23 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Maca134 2015-06-23 16:22 - 2015-06-23 16:24 - 00000000 ____D C:\Program Files (x86)\DayZLauncher 2015-06-23 16:18 - 2015-06-23 16:19 - 14866537 _____ (Maca134 ) C:\Users\DustinGamer\Downloads\setup_dzlauncher.exe 2015-06-23 13:57 - 2015-06-23 13:57 - 02932736 _____ C:\Users\DustinGamer\Downloads\Dotjosh.DayZCommander.Installer.msi 2015-06-23 04:09 - 2015-06-23 04:09 - 00141792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00107784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2015-06-23 04:09 - 2015-06-23 04:09 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 10087472 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 08890576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 08786040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 00133016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2015-06-23 04:08 - 2015-06-23 04:08 - 00120144 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2015-06-23 04:05 - 2015-06-23 04:05 - 00297672 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdacpksd.sys 2015-06-23 04:03 - 2015-06-23 04:03 - 21612032 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2015-06-23 03:59 - 2015-06-23 03:59 - 47782912 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2015-06-23 03:59 - 2015-06-23 03:59 - 00235008 _____ C:\Windows\system32\clinfo.exe 2015-06-23 03:57 - 2015-06-23 03:57 - 00065024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2015-06-23 03:57 - 2015-06-23 03:57 - 00059392 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2015-06-23 03:55 - 2015-06-23 03:55 - 27535872 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl12cl64.dll 2015-06-23 03:55 - 2015-06-23 03:55 - 22318592 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl12cl.dll 2015-06-23 03:33 - 2015-06-23 03:33 - 06476288 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmantle64.dll 2015-06-23 03:33 - 2015-06-23 03:33 - 00127488 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll 2015-06-23 03:33 - 2015-06-23 03:33 - 00113664 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll 2015-06-23 03:28 - 2015-06-23 03:28 - 05067264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmantle32.dll 2015-06-23 03:27 - 2015-06-23 03:27 - 30749184 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2015-06-23 03:25 - 2015-06-23 03:25 - 00093184 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll 2015-06-23 03:25 - 2015-06-23 03:25 - 00086528 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll 2015-06-23 03:22 - 2015-06-23 03:22 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdmmcl6.dll 2015-06-23 03:22 - 2015-06-23 03:22 - 00039424 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdmmcl.dll 2015-06-23 03:21 - 2015-06-23 03:21 - 25296896 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2015-06-23 03:21 - 2015-06-23 03:21 - 00865792 _____ (AMD) C:\Windows\system32\coinst_15.20.dll 2015-06-23 03:20 - 2015-06-23 03:20 - 03437632 _____ C:\Windows\system32\atiumd6a.cap 2015-06-23 03:19 - 2015-06-23 03:19 - 00660224 _____ C:\Windows\SysWOW64\atiapfxx.blb 2015-06-23 03:19 - 2015-06-23 03:19 - 00660224 _____ C:\Windows\system32\atiapfxx.blb 2015-06-23 03:19 - 2015-06-23 03:19 - 00367104 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2015-06-23 03:19 - 2015-06-23 03:19 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2015-06-23 03:19 - 2015-06-23 03:19 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2015-06-23 03:19 - 2015-06-23 03:19 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2015-06-23 03:19 - 2015-06-23 03:19 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2015-06-23 03:18 - 2015-06-23 03:18 - 15716864 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2015-06-23 03:18 - 2015-06-23 03:18 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2015-06-23 03:16 - 2015-06-23 03:16 - 03471376 _____ C:\Windows\SysWOW64\atiumdva.cap 2015-06-23 03:14 - 2015-06-23 03:14 - 00670720 _____ (AMD) C:\Windows\system32\atieclxx.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00245760 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00204800 _____ C:\Windows\system32\amdgfxinfo64.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00189952 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll 2015-06-23 03:14 - 2015-06-23 03:14 - 00160256 _____ C:\Windows\system32\atieah64.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00143872 _____ C:\Windows\SysWOW64\atieah32.exe 2015-06-23 03:14 - 2015-06-23 03:14 - 00029696 _____ (AMD) C:\Windows\system32\atimuixx.dll 2015-06-23 03:12 - 2015-06-23 03:12 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2015-06-23 03:12 - 2015-06-23 03:12 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2015-06-23 03:11 - 2015-06-23 03:11 - 01246208 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2015-06-23 03:11 - 2015-06-23 03:11 - 00926720 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00663552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2015-06-23 03:10 - 2015-06-23 03:10 - 00156672 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2015-06-23 03:10 - 2015-06-23 03:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2015-06-23 03:09 - 2015-06-23 03:09 - 00102912 _____ C:\Windows\system32\hsa-thunk64.dll 2015-06-23 03:09 - 2015-06-23 03:09 - 00102400 _____ C:\Windows\SysWOW64\hsa-thunk.dll 2015-06-23 03:07 - 2015-06-23 03:07 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2015-06-22 09:14 - 2015-06-22 09:14 - 00830518 _____ C:\Windows\system32\amdicdxx.dat 2015-06-21 20:55 - 2015-06-21 20:55 - 00001753 _____ C:\Users\Public\Desktop\iTunes.lnk 2015-06-21 20:55 - 2015-06-21 20:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-06-21 20:54 - 2015-06-21 20:55 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-06-21 20:54 - 2015-06-21 20:54 - 00000000 ____D C:\Program Files\iTunes 2015-06-21 20:54 - 2015-06-21 20:54 - 00000000 ____D C:\Program Files\iPod 2015-06-21 20:54 - 2015-06-21 20:54 - 00000000 ____D C:\Program Files (x86)\iTunes 2015-06-21 20:51 - 2015-06-21 20:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2015-06-21 20:50 - 2015-06-21 20:51 - 00000000 ____D C:\Program Files (x86)\QuickTime ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-20 15:36 - 2013-08-23 19:38 - 00000000 ____D C:\FRST 2015-07-20 15:36 - 2013-02-05 21:04 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\TS3Client 2015-07-20 15:35 - 2009-07-14 06:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-07-20 15:35 - 2009-07-14 06:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-07-20 15:34 - 2013-02-05 18:58 - 00003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6AED3915-AFFD-4854-A79C-ED88B0F4728F} 2015-07-20 15:31 - 2013-02-15 16:30 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-07-20 15:26 - 2013-02-05 18:39 - 01494510 _____ C:\Windows\WindowsUpdate.log 2015-07-20 15:24 - 2013-02-05 20:57 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-20 15:21 - 2015-03-20 20:11 - 00000000 ____D C:\Users\DustinGamer\.VirtualBox 2015-07-20 15:21 - 2013-11-22 18:00 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Raptr 2015-07-20 15:20 - 2013-09-14 20:17 - 00094569 _____ C:\Windows\setupact.log 2015-07-20 15:20 - 2013-02-12 17:06 - 00000000 ____D C:\Program Files (x86)\Steam 2015-07-20 15:20 - 2013-02-05 20:57 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-20 15:20 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-07-20 15:19 - 2013-12-27 15:34 - 00000000 ____D C:\AdwCleaner 2015-07-20 02:43 - 2013-02-27 18:15 - 00000000 ____D C:\ProgramData\Skype 2015-07-20 02:41 - 2013-05-23 19:25 - 00000000 ____D C:\Program Files (x86)\League of Legends 2015-07-20 02:08 - 2013-02-23 15:03 - 00000952 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000UA.job 2015-07-20 01:36 - 2015-06-15 10:47 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\OBS 2015-07-19 15:51 - 2015-06-15 10:47 - 00000000 ____D C:\Program Files (x86)\OBS 2015-07-19 15:43 - 2010-11-21 05:47 - 00492140 _____ C:\Windows\PFRO.log 2015-07-19 15:15 - 2013-09-29 21:11 - 00000000 ____D C:\ProgramData\Package Cache 2015-07-19 14:08 - 2013-02-23 15:03 - 00000930 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000Core.job 2015-07-19 14:02 - 2014-03-03 22:54 - 00000000 ____D C:\Program Files (x86)\crypt 2015-07-19 13:39 - 2013-07-26 10:10 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-07-18 22:17 - 2013-02-06 11:57 - 00000000 ____D C:\Users\DustinGamer\Desktop\Wallpaper 2015-07-18 16:41 - 2014-05-07 19:58 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Arma 3 2015-07-18 14:30 - 2013-10-28 20:46 - 00000000 ____D C:\Users\DustinGamer\Desktop\powdertoy 2015-07-18 02:50 - 2013-11-10 00:50 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\vlc 2015-07-17 13:23 - 2013-07-25 13:23 - 00000000 ____D C:\Qoobox 2015-07-17 13:11 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2015-07-17 12:41 - 2014-12-14 15:16 - 00000000 ____D C:\Users\DustinGamer\Desktop\dokumente 2015-07-17 12:41 - 2014-10-25 02:46 - 00000000 ____D C:\Users\DustinGamer\Desktop\dragon 2015-07-16 21:16 - 2014-03-04 18:09 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Battle.net 2015-07-16 17:36 - 2013-10-09 13:13 - 00000000 ____D C:\Users\DustinGamer\Desktop\league of legends 2015-07-16 00:19 - 2013-02-05 20:57 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-07-16 00:19 - 2013-02-05 20:57 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-07-15 23:37 - 2009-07-14 06:45 - 00294544 _____ C:\Windows\system32\FNTCACHE.DAT 2015-07-15 19:49 - 2013-07-23 00:16 - 00000000 ____D C:\Windows\system32\MRT 2015-07-15 16:47 - 2013-02-07 21:32 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\CrashDumps 2015-07-15 13:53 - 2013-12-26 14:19 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-07-15 01:31 - 2013-02-15 16:30 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-15 01:31 - 2013-02-15 16:30 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-15 01:31 - 2013-02-15 16:30 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-07-14 20:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-07-14 19:20 - 2013-02-05 20:58 - 00002135 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-07-13 20:03 - 2013-03-05 14:14 - 00000000 ____D C:\Users\DustinGamer\Documents\My Games 2015-07-12 19:27 - 2014-08-29 16:57 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Arma 3 Launcher 2015-07-12 18:22 - 2014-09-18 18:36 - 00000000 ____D C:\Program Files (x86)\ArmA3Sync 2015-07-12 12:19 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-12 02:46 - 2014-12-10 18:51 - 00000000 ____D C:\Windows\system32\appraiser 2015-07-12 02:46 - 2014-05-06 17:24 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-07-12 02:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-12 00:41 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-07-12 00:41 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\system32\GWX 2015-07-12 00:29 - 2013-02-05 18:44 - 00000000 ___HD C:\Program Files (x86)\Temp 2015-07-11 22:04 - 2011-04-12 09:43 - 00742718 _____ C:\Windows\system32\perfh007.dat 2015-07-11 22:04 - 2011-04-12 09:43 - 00162786 _____ C:\Windows\system32\perfc007.dat 2015-07-11 22:04 - 2009-07-14 07:13 - 00006224 _____ C:\Windows\system32\PerfStringBackup.INI 2015-07-10 19:38 - 2013-02-27 18:15 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Skype 2015-07-10 14:13 - 2013-11-22 18:00 - 00000000 ____D C:\Program Files (x86)\Raptr 2015-07-09 21:06 - 2014-01-31 19:25 - 00000000 ____D C:\Program Files (x86)\Diablo III 2015-07-09 20:58 - 2014-03-04 18:09 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-07-09 14:02 - 2013-02-05 19:13 - 00000000 ____D C:\Program Files\AMD 2015-07-09 14:02 - 2013-02-05 18:43 - 00000000 ____D C:\Program Files (x86)\AMD 2015-07-09 14:01 - 2013-02-05 19:12 - 00000000 ____D C:\ProgramData\AMD 2015-07-09 13:54 - 2013-11-22 17:49 - 00000000 ____D C:\AMD 2015-07-09 13:46 - 2013-11-10 00:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable 2015-07-05 12:08 - 2010-11-21 05:27 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-07-03 08:43 - 2013-02-05 19:52 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-06-30 22:04 - 2013-02-14 17:21 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\ArmA 2 OA 2015-06-23 20:21 - 2013-02-14 17:17 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive 2015-06-23 17:25 - 2013-04-22 18:27 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\.technic 2015-06-23 17:25 - 2013-04-22 18:26 - 04697768 _____ () C:\Users\DustinGamer\Desktop\TechnicLauncher.exe 2015-06-23 16:34 - 2013-02-14 17:18 - 00000000 ____D C:\Users\DustinGamer\Documents\ArmA 2 2015-06-23 04:09 - 2014-11-21 04:44 - 00128384 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2015-06-23 04:09 - 2014-11-21 04:09 - 00100568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 07927568 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 07407400 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 01191320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2015-06-23 04:08 - 2014-09-16 00:31 - 00102616 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2015-06-23 04:08 - 2012-07-28 04:13 - 01440592 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2015-06-23 04:08 - 2012-07-28 03:51 - 11941000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2015-06-23 04:08 - 2012-07-28 03:13 - 00152056 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2015-06-23 03:58 - 2014-11-21 04:32 - 39712256 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2015-06-23 03:11 - 2014-11-21 04:09 - 00926720 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2015-06-23 03:10 - 2014-11-21 04:08 - 00141824 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2015-06-21 20:54 - 2014-01-15 18:21 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2015-06-21 20:54 - 2014-01-15 18:20 - 00000000 ____D C:\Program Files\Common Files\Apple 2015-06-21 20:51 - 2014-01-15 18:20 - 00000000 ____D C:\ProgramData\Apple ==================== Files in the root of some directories ======= 2013-03-31 23:10 - 2013-04-03 22:47 - 0450131 _____ () C:\Program Files (x86)\changelog.txt 2012-08-30 15:11 - 2012-08-30 15:11 - 0027624 _____ () C:\Program Files (x86)\changes.txt 2013-03-31 23:10 - 2013-04-03 22:47 - 0018431 _____ () C:\Program Files (x86)\COPYING 2013-03-31 23:10 - 2013-04-03 22:47 - 0021659 _____ () C:\Program Files (x86)\known-bugs.txt 2013-07-14 22:11 - 2013-07-14 22:33 - 1799350272 _____ () C:\Program Files (x86)\MAESTIA_SETUP-1.bin 2013-07-14 22:11 - 2013-07-14 22:54 - 1729019577 _____ () C:\Program Files (x86)\MAESTIA_SETUP-2.bin 2013-07-14 22:11 - 2013-07-14 22:54 - 0649704 _____ (ANDROMEDAGAMES ) C:\Program Files (x86)\MAESTIA_SETUP.exe 2013-03-31 23:10 - 2013-03-31 23:10 - 9960448 _____ (OpenTTD Development Team) C:\Program Files (x86)\openttd.exe 2012-08-30 15:09 - 2012-08-30 15:09 - 0001892 _____ () C:\Program Files (x86)\README.HTM 2013-10-20 11:50 - 2013-10-20 18:56 - 0000624 _____ () C:\Users\DustinGamer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-05-16 19:04 - 2013-05-16 19:04 - 0000867 _____ () C:\Users\DustinGamer\AppData\Roaming\BreakingPoint_Options.ini 2015-06-01 21:21 - 2015-06-01 21:21 - 0006565 _____ () C:\Users\DustinGamer\AppData\Local\recently-used.xbel 2013-09-02 15:08 - 2015-06-12 19:30 - 0007597 _____ () C:\Users\DustinGamer\AppData\Local\Resmon.ResmonCfg 2013-02-05 18:48 - 2013-02-05 18:48 - 0000003 _____ () C:\Users\DustinGamer\AppData\Local\user_data.ini 2015-03-20 20:09 - 2015-03-20 20:09 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip 2014-02-03 14:05 - 2014-02-03 14:05 - 0000233 _____ () C:\ProgramData\flcd_proxy.log Some files in TEMP: ==================== C:\Users\DustinGamer\AppData\Local\Temp\0Kraken71ChromaDevProps.dll C:\Users\DustinGamer\AppData\Local\Temp\Quarantine.exe C:\Users\DustinGamer\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-07-14 20:24 ==================== End of log ============================ Geändert von Takato (20.07.2015 um 14:42 Uhr) Grund: vergessen nach STRG + a auch STRG + c zu drücken |
21.07.2015, 06:54 | #12 |
/// the machine /// TB-Ausbilder | Pc langsam und Sound knistert [gelöst]ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
26.07.2015, 12:43 | #13 |
| Pc langsam und Sound knistert [gelöst]Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=92d59c1f7983484c9ed984b52bbbb1b8 # engine=16430 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-12-28 06:08:29 # local_time=2013-12-28 07:08:29 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776574 100 94 14457351 139883959 0 0 # scanned=387174 # found=0 # cleaned=0 # scan_time=7851 ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=92d59c1f7983484c9ed984b52bbbb1b8 # end=init # utc_time=2015-07-23 11:17:30 # local_time=2015-07-23 01:17:30 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 Update Init Update Download Update Finalize Updated modules version: 24941 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=92d59c1f7983484c9ed984b52bbbb1b8 # end=updated # utc_time=2015-07-23 11:20:47 # local_time=2015-07-23 01:20:47 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # osver=6.1.7601 NT Service Pack 1 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=92d59c1f7983484c9ed984b52bbbb1b8 # engine=24941 # end=finished # remove_checked=true # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-07-23 01:09:25 # local_time=2015-07-23 03:09:25 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='Microsoft Security Essentials' # compatibility_mode=5895 16777213 100 100 5256378 108946987 0 0 # scanned=498630 # found=8 # cleaned=8 # scan_time=6517 sh=EC388F36E1B1C01A1A4BC9F03139EE206D238BDB ft=1 fh=daad9df096fa019b vn="Variante von Win32/BrowseFox.F evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\FindRight\FindRightBHO.dll.vir" sh=0FE24ED82D81AD374E30D41AC3016F614A451283 ft=1 fh=91bb7af36b3c7d5c vn="Win32/BrowseFox.C evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\FindRight\FindRightUninstall.exe.vir" sh=C074069F4618FC0F41F70880817D29CF450D02F1 ft=1 fh=720830375a85ad36 vn="Win32/Wajam.K evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\DustinGamer\AppData\Roaming\RHEng\23D1DDCBDB0946F092AF34A01E75FB63\WWE_1.2.0.53.exe.vir" sh=40A0C1EBC646041815FC34626FB46A19F48AC58B ft=1 fh=1501f29679cad919 vn="Variante von Win32/AdWare.MultiPlug.AQ Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000000" sh=26152A7C3F0CC6D4DBD050B3C1D74B8F1D21C4F2 ft=1 fh=8da2dca2e9716b26 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\DustinGamer\Downloads\0006-32bit_Win7_Win8_Win81_Win10_R279 - CHIP-Installer.exe" sh=02FAB6B95A1CA607A085C2A36AA144898B849E23 ft=1 fh=84b4202c8090ff98 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\DustinGamer\Downloads\Open Broadcaster Software - CHIP-Installer.exe" sh=32FC1BA273204027E96FD80757A1A0F4E0B73AB7 ft=1 fh=aab470eb8252b2fb vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\DustinGamer\Downloads\Virtual Audio Cable - CHIP-Installer.exe" sh=0AE8AB7FB6A75EC9525BA407DFA8700F868480D1 ft=1 fh=b420d8a10ac8789a vn="Variante von Win32/Toolbar.Linkury.G evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Windows\assembly\GAC_MSIL\Interop.SHDocVw\1.1.0.0__84542ff99aed6a4d\Interop.SHDocVw.dll" Code:
ATTFilter Results of screen317's Security Check version 1.004 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Java version 32-bit out of Date! Adobe Flash Player 18.0.0.209 Adobe Reader 9 Adobe Reader out of Date! Mozilla Firefox 27.0.1 Firefox out of Date! Google Chrome (43.0.2357.134) Google Chrome (44.0.2403.107) Google Chrome (Plugins...) ````````Process Check: objlist.exe by Laurent```````` Microsoft Security Essentials MSMpEng.exe Microsoft Security Essentials msseces.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:26-07-2015 durchgeführt von DustinGamer (Administrator) auf DUSTINGAMER-PC (26-07-2015 13:40:30) Gestartet von C:\Users\DustinGamer\Desktop Geladene Profile: DustinGamer (Verfügbare Profile: DustinGamer) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (AMD) C:\Windows\System32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Akamai Technologies, Inc.) C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Akamai Technologies, Inc.) C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe () C:\Users\DustinGamer\AppData\Local\MyComGames\MyComGames.exe (FNet Co., Ltd.) C:\Program Files (x86)\XFast USB\XFastUsb.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe (Logitech(c)) C:\Program Files (x86)\Logitech\G35\G35.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe () C:\Program Files\Andy\HandyAndy.exe (Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe () C:\Program Files\Andy\AndyPriorityMgr.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files (x86)\League of Legends\RADS\system\rads_user_kernel.exe () C:\Program Files (x86)\League of Legends\RADS\projects\lol_launcher\releases\0.0.0.250\deploy\LoLLauncher.exe () C:\Program Files (x86)\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.34\deploy\LoLPatcher.exe () C:\Program Files (x86)\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.152\deploy\LolClient.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-18] (Realtek Semiconductor) HKLM\...\Run: [THXCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64 HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1337000 2015-04-30] (Microsoft Corporation) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.) HKLM-x32\...\Run: [XFast USB] => C:\Program Files (x86)\XFast USB\XFastUsb.exe [4878912 2013-02-05] (FNet Co., Ltd.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [THX TruStudio NB Settings] => C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe [909824 2011-05-19] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [STCAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect IE\STCAgent.exe" HKLM-x32\...\Run: [ZyngaGamesAgent] => "C:\Program Files (x86)\Splashtop\Splashtop Connect\ZyngaGamesAgent.exe" HKLM-x32\...\Run: [Logitech G35] => C:\Program Files (x86)\Logitech\G35\G35.exe [1811800 2010-10-05] (Logitech(c)) HKLM-x32\...\Run: [EaseUS EPM tray] => C:\Program Files (x86)\EaseUS\EaseUS Partition Master 9.2.2\bin\EpmNews.exe HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.) HKLM-x32\...\Run: [RoccatIsku] => C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE [536576 2013-10-30] (ROCCAT GmbH) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-07-09] (Raptr, Inc) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590144 2015-04-22] (Razer Inc.) HKLM-x32\...\Run: [Andy] => C:\Program Files\Andy\HandyAndy.exe [907144 2015-02-03] () HKLM-x32\...\Run: [Kraken71ChromaHelper] => C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [1600320 2015-02-03] (Razer Inc) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-06-22] (Advanced Micro Devices, Inc.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2895552 2015-07-24] (Valve Corporation) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Dxtory Update Checker 2.0] => C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe [93696 2010-10-17] (Dxtory Software) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [Akamai NetSession Interface] => C:\Users\DustinGamer\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.) HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [GamingMouseEditor] => C:\Program Files (x86)\GamingMouseEditor\GamingMouseEditor\GamingMouseEditor.exe Minimum HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\...\Run: [MyComGames] => C:\Users\DustinGamer\AppData\Local\MyComGames\MyComGames.exe [4071368 2015-07-23] () ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => Keine Datei ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2242473079-4026403813-3816058736-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> {257C8684-AD59-40c9-B783-8A013B406F2F} URL = hxxp://www.google.com/cse?cx=partner-pub-3794288947762788%3A6976579318&ie=UTF-8&q=&sa=Search&siteurl=www.google.com%2Fcse%2Fhome%3Fcx%3Dpartner-pub-3794288947762788%3A6976579318&q={searchTerms} SearchScopes: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> {D03C896E-A518-4623-BB2C-01D2E6953E3C} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-11-01] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-11-01] (Oracle Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems Incorporated) BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) Toolbar: HKU\S-1-5-21-2242473079-4026403813-3816058736-1000 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{38967EBE-AD85-48D2-AF7F-56F5AFDD52A3}: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\DustinGamer\AppData\Roaming\Mozilla\Firefox\Profiles\ccywtshb.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-11-01] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-11-01] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @esn/esnlaunch,version=2.1.4 -> C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll No File FF Plugin-x32: @esn/npbattlelog,version=2.4.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.4.0\npbattlelog.dll [2014-05-26] (EA Digital Illusions CE AB) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.3 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: @my.com/Games -> C:\Users\DustinGamer\AppData\Local\MyComGames\NPMyComDetector.dll [2015-07-17] (My.com, Inc) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: facebook.com/fbDesktopPlugin -> C:\Users\DustinGamer\AppData\Local\Facebook\Messenger\2.1.4814.0\npFbDesktopPlugin.dll [2013-03-07] (Facebook, Inc.) FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2014-03-01] () FF Plugin HKU\S-1-5-21-2242473079-4026403813-3816058736-1000: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2012-12-25] (Wacom) FF Extension: Amazon-Icon - C:\Users\DustinGamer\AppData\Roaming\Mozilla\Firefox\Profiles\ccywtshb.default\Extensions\amazon-icon@giga.de [2014-07-16] Chrome: ======= CHR Profile: C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (ProxFlow) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2014-07-18] CHR Extension: (Google Docs) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-02-05] CHR Extension: (Google Drive) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-02-05] CHR Extension: (YouTube) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-02-05] CHR Extension: (Script Defender) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\celgmkbkgakmkfboolifhbllkfiepcae [2015-07-12] CHR Extension: (Google Search) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-02-05] CHR Extension: (SAO Theme 1920x1080) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgikfepnnphbmgngmpiflajcbmoomnll [2014-07-20] CHR Extension: (AdBlock) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-07-18] CHR Extension: (ScriptBlock) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\hcdjknjpbnhdoabbngpmfekaecnpajba [2015-07-20] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-05] CHR Extension: (Chrome Web Store Payments) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR Extension: (Gmail) - C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-02-05] ==================== Services (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [344064 2015-06-22] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1060352 2015-06-11] () S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [174624 2015-01-13] (EasyAntiCheat Ltd) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23816 2015-04-30] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [366544 2015-04-30] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4868640 2013-08-25] (INCA Internet Co., Ltd.) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-06-14] () R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] () S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [759192 2013-09-03] (Tunngle.net GmbH) [Datei ist nicht signiert] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WTabletServicePro; C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [598808 2013-06-06] (Wacom Technology, Corp.) S2 SmartViewService; C:\Program Files (x86)\DeviceVM\SmartView\SmartViewService.exe [X] ==================== Drivers (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AODDriver4.3; C:\Program Files\AMD\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [32320 2015-02-21] (FNet Co., Ltd.) R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2013-02-05] (FNet Co., Ltd.) S3 LADF_DHP2; C:\Windows\System32\DRIVERS\ladfDHP2amd64.sys [62168 2010-09-29] (Logitech) S3 LADF_SBVM; C:\Windows\System32\DRIVERS\ladfSBVMamd64.sys [377176 2010-09-29] (Logitech) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-04-14] (Malwarebytes Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [280376 2015-03-04] (Microsoft Corporation) R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [124568 2015-03-04] (Microsoft Corporation) R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [40104 2015-03-10] (Razer Inc) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129600 2014-11-17] (Razer, Inc.) R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [31232 2009-09-16] (Tunngle.net) S3 USBTINSP; C:\Windows\System32\DRIVERS\tinspusb.sys [142848 2010-03-29] (Texas Instruments) S2 AODDriver4.2.0; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [X] S3 catchme; \??\C:\ComboFix\catchme.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-07-26 13:39 - 2015-07-26 13:39 - 00001003 _____ C:\Users\DustinGamer\Desktop\checkup.txt 2015-07-26 13:33 - 2015-07-26 13:33 - 00852662 _____ C:\Users\DustinGamer\Desktop\SecurityCheck.exe 2015-07-23 13:16 - 2015-07-23 13:16 - 02870984 _____ (ESET) C:\Users\DustinGamer\Desktop\esetsmartinstaller_deu.exe 2015-07-22 22:02 - 2015-07-22 22:02 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\CEF 2015-07-22 17:20 - 2015-07-22 17:20 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\TERA 2015-07-22 17:19 - 2015-07-24 19:23 - 00000000 ____D C:\Users\DustinGamer\Downloads\Gameforge Live 2015-07-22 17:19 - 2015-07-22 17:19 - 00001170 _____ C:\Users\DustinGamer\Desktop\TERA.lnk 2015-07-22 17:19 - 2015-07-22 17:19 - 00001031 _____ C:\Users\Public\Desktop\Gameforge Live.lnk 2015-07-22 17:19 - 2015-07-22 17:19 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Gameforge4d 2015-07-22 17:19 - 2015-07-22 17:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2015-07-22 17:19 - 2015-07-22 17:19 - 00000000 ____D C:\Program Files (x86)\GameforgeLive 2015-07-22 17:13 - 2015-07-22 17:14 - 20206176 _____ (Gameforge ) C:\Users\DustinGamer\Downloads\TERA_GameforgeLiveSetup.exe 2015-07-21 15:42 - 2015-07-15 05:19 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-07-21 15:42 - 2015-07-15 05:19 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-07-21 15:42 - 2015-07-15 05:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-07-21 15:42 - 2015-07-15 05:19 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-07-21 15:42 - 2015-07-15 04:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-07-21 15:42 - 2015-07-15 04:55 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-07-21 15:42 - 2015-07-15 04:55 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-07-21 15:42 - 2015-07-15 04:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-07-21 15:42 - 2015-07-15 03:59 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-07-21 15:42 - 2015-07-15 03:52 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-07-20 15:38 - 2015-07-26 13:40 - 00022391 _____ C:\Users\DustinGamer\Desktop\FRST.txt 2015-07-20 15:34 - 2015-07-20 15:34 - 00002779 _____ C:\Users\DustinGamer\Desktop\JRT.txt 2015-07-20 15:26 - 2015-07-20 15:26 - 01798288 _____ (Malwarebytes Corporation) C:\Users\DustinGamer\Desktop\JRT.exe 2015-07-20 15:21 - 2015-07-20 15:21 - 00001649 _____ C:\Users\DustinGamer\Desktop\AdwCleaner[S3].txt 2015-07-20 02:43 - 2015-07-20 02:43 - 00002699 _____ C:\Users\Public\Desktop\Skype.lnk 2015-07-20 02:43 - 2015-07-20 02:43 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-07-20 02:43 - 2015-07-20 02:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-07-19 15:26 - 2015-07-19 15:26 - 00000000 _____ C:\Users\DustinGamer\Desktop\Neues Textdokument.txt 2015-07-19 15:22 - 2014-12-18 16:24 - 00000000 ____D C:\Users\DustinGamer\Desktop\clrbrowser4_repack 2015-07-19 15:12 - 2015-07-19 15:22 - 00000000 ____D C:\Users\DustinGamer\Desktop\Neuer Ordner (2) 2015-07-19 15:10 - 2015-07-19 15:10 - 102983184 _____ C:\Users\DustinGamer\Downloads\clrbrowser4_repack.zip 2015-07-19 14:03 - 2015-07-26 13:40 - 00000000 ____D C:\Users\DustinGamer\Desktop\TBoard 2015-07-19 14:02 - 2015-07-19 14:02 - 00001940 _____ C:\Users\DustinGamer\Desktop\mbam.txt 2015-07-19 13:43 - 2015-07-19 13:43 - 00013460 _____ C:\Users\DustinGamer\Desktop\adwcleaner_4.208 - Verknüpfung.lnk 2015-07-19 13:39 - 2015-07-19 13:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-07-19 13:39 - 2015-07-19 13:39 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-07-19 13:39 - 2015-04-14 09:37 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-07-19 13:39 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-07-17 13:24 - 2015-07-17 13:24 - 00003234 _____ C:\Windows\System32\Tasks\SidebarExecute 2015-07-17 13:22 - 2015-07-17 13:22 - 00036485 _____ C:\ComboFix.txt 2015-07-17 12:39 - 2015-07-17 12:41 - 05634275 ____R (Swearware) C:\Users\DustinGamer\Downloads\ComboFix.exe 2015-07-17 02:38 - 2015-07-17 02:38 - 00000118 _____ C:\Users\DustinGamer\Desktop\Skyforge My.com.url 2015-07-17 02:38 - 2015-07-17 02:38 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com 2015-07-17 02:01 - 2015-07-17 02:29 - 00000000 ____D C:\sky 2015-07-17 02:01 - 2015-07-17 02:01 - 00002052 _____ C:\Users\DustinGamer\Desktop\My.com Game Center.lnk 2015-07-17 02:01 - 2015-07-17 02:01 - 00000000 ____D C:\Users\DustinGamer\Desktop\sky 2015-07-17 02:01 - 2015-07-17 02:01 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games 2015-07-17 02:00 - 2015-07-17 02:00 - 00000000 ____D C:\Program Files (x86)\Skyforge 2015-07-17 01:59 - 2015-07-26 12:53 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\MyComGames 2015-07-17 01:58 - 2015-07-17 01:58 - 04539376 _____ C:\Users\DustinGamer\Downloads\SkyforgeLoader_de.exe 2015-07-15 14:19 - 2015-07-09 19:58 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 02603008 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-07-15 14:19 - 2015-07-09 19:58 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-07-15 14:19 - 2015-07-09 19:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-07-15 14:19 - 2015-07-09 19:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-07-15 14:19 - 2015-07-09 19:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-07-15 14:19 - 2015-07-09 19:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-07-15 14:19 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-07-15 14:19 - 2015-07-02 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-07-15 14:19 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-07-15 14:19 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-07-15 14:19 - 2015-07-02 22:46 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-07-15 14:19 - 2015-07-02 22:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-07-15 14:19 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-07-15 14:19 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-07-15 14:19 - 2015-07-02 22:12 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-07-15 14:19 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-07-15 14:19 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-07-15 14:19 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-07-15 14:19 - 2015-06-27 04:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-07-15 14:19 - 2015-06-27 04:43 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-07-15 14:19 - 2015-06-27 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-07-15 14:19 - 2015-06-27 03:39 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-07-15 14:19 - 2015-06-25 10:57 - 03207168 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-07-15 14:19 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-07-15 14:19 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-07-15 14:19 - 2015-06-09 20:03 - 03180544 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-07-15 14:19 - 2015-06-09 20:03 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2015-07-15 14:19 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-07-15 14:19 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-07-15 14:18 - 2015-06-25 20:09 - 00389832 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-07-15 14:18 - 2015-06-25 19:43 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-07-15 14:18 - 2015-06-20 22:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-07-15 14:18 - 2015-06-20 21:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-07-15 14:18 - 2015-06-20 21:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-07-15 14:18 - 2015-06-20 21:49 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-07-15 14:18 - 2015-06-20 21:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-07-15 14:18 - 2015-06-20 21:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-07-15 14:18 - 2015-06-20 21:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-07-15 14:18 - 2015-06-20 21:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-07-15 14:18 - 2015-06-20 21:34 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-07-15 14:18 - 2015-06-20 21:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-07-15 14:18 - 2015-06-20 21:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-07-15 14:18 - 2015-06-20 21:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-07-15 14:18 - 2015-06-20 21:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-07-15 14:18 - 2015-06-20 21:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-07-15 14:18 - 2015-06-20 21:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-07-15 14:18 - 2015-06-20 21:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-07-15 14:18 - 2015-06-20 21:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-07-15 14:18 - 2015-06-20 20:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-07-15 14:18 - 2015-06-20 20:48 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-07-15 14:18 - 2015-06-20 20:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-07-15 14:18 - 2015-06-20 20:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-07-15 14:18 - 2015-06-20 20:26 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-07-15 14:18 - 2015-06-20 20:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-07-15 14:18 - 2015-06-19 20:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-07-15 14:18 - 2015-06-19 20:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-07-15 14:18 - 2015-06-19 20:24 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-07-15 14:18 - 2015-06-19 20:24 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-07-15 14:18 - 2015-06-19 20:23 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-07-15 14:18 - 2015-06-19 20:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-07-15 14:18 - 2015-06-19 20:16 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-07-15 14:18 - 2015-06-19 20:13 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-07-15 14:18 - 2015-06-19 20:13 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-07-15 14:18 - 2015-06-19 20:03 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-07-15 14:18 - 2015-06-19 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-07-15 14:18 - 2015-06-19 19:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-07-15 14:18 - 2015-06-19 19:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-07-15 14:18 - 2015-06-19 19:51 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-07-15 14:18 - 2015-06-19 19:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-07-15 14:18 - 2015-06-19 19:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-07-15 14:18 - 2015-06-19 19:39 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-07-15 14:18 - 2015-06-19 19:15 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-07-15 14:18 - 2015-06-19 19:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-07-15 14:16 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-07-15 14:16 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-07-15 14:16 - 2015-07-01 22:56 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-07-15 14:16 - 2015-07-01 22:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-07-15 14:16 - 2015-07-01 22:49 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-07-15 14:16 - 2015-07-01 22:49 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-07-15 14:16 - 2015-07-01 22:48 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-07-15 14:16 - 2015-07-01 22:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-07-15 14:16 - 2015-07-01 22:47 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-07-15 14:16 - 2015-07-01 22:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-07-15 14:16 - 2015-07-01 22:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-07-15 14:16 - 2015-07-01 22:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-07-15 14:16 - 2015-07-01 22:39 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-07-15 14:16 - 2015-07-01 22:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-07-15 14:16 - 2015-07-01 22:29 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-07-15 14:16 - 2015-07-01 22:29 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-07-15 14:16 - 2015-07-01 22:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-07-15 14:16 - 2015-07-01 22:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-07-15 14:16 - 2015-07-01 22:26 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-07-15 14:16 - 2015-07-01 22:24 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-07-15 14:16 - 2015-07-01 21:27 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-07-15 14:16 - 2015-07-01 21:26 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-07-15 14:16 - 2015-07-01 21:26 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-07-15 14:16 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-07-15 14:16 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-07-15 14:16 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-07-15 14:16 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-07-15 14:16 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-07-15 14:16 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-07-15 14:16 - 2015-06-11 19:57 - 06131200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-07-15 14:16 - 2015-06-11 19:57 - 00856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-07-15 14:16 - 2015-06-11 19:57 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-07-15 14:16 - 2015-06-11 19:56 - 07077376 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-07-15 14:16 - 2015-06-11 19:56 - 01057792 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-07-15 14:16 - 2015-06-11 19:56 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-07-15 14:16 - 2015-06-11 15:15 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2015-07-15 14:15 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-07-15 14:15 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-07-15 14:15 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-07-15 14:15 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-07-15 14:15 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2015-07-15 14:15 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2015-07-14 14:04 - 2015-07-19 13:39 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-07-14 14:04 - 2015-07-14 14:37 - 00000000 ____D C:\Users\DustinGamer\Desktop\mbar 2015-07-14 14:04 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-07-13 20:03 - 2015-07-13 20:03 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2015-07-13 20:03 - 2015-07-13 20:03 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2015-07-13 01:25 - 2015-07-26 13:40 - 02146816 _____ (Farbar) C:\Users\DustinGamer\Desktop\FRST64.exe 2015-07-12 12:29 - 2014-12-11 19:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-07-12 01:41 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2015-07-12 01:41 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2015-07-12 01:41 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-07-12 01:41 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2015-07-12 01:41 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2015-07-12 01:41 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2015-07-12 01:41 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2015-07-12 01:41 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2015-07-12 01:41 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-07-12 01:41 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2015-07-12 01:38 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-12 01:38 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-12 01:38 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-12 01:38 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-07-12 01:38 - 2015-03-14 05:21 - 01632768 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-07-12 01:38 - 2015-03-14 05:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-07-12 01:38 - 2015-03-14 05:04 - 01372160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-07-12 01:38 - 2015-03-14 05:04 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-07-12 01:37 - 2015-07-09 19:59 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-07-12 01:37 - 2015-07-09 19:58 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-07-12 01:37 - 2015-07-09 19:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-07-12 01:37 - 2015-07-09 19:50 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-07-12 01:36 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-07-12 01:07 - 2015-07-12 01:07 - 02248704 _____ C:\Users\DustinGamer\Downloads\adwcleaner_4.208.exe 2015-07-12 00:24 - 2015-07-12 00:24 - 00516728 _____ ( ) C:\Users\DustinGamer\Downloads\0006-64bit_Win7_Win8_Win81_Win10_R279_CB-DL-Manager.exe 2015-07-09 14:04 - 2015-07-09 14:04 - 00000000 ____D C:\ProgramData\ATI 2015-07-09 14:02 - 2015-07-09 14:02 - 00058877 _____ C:\Windows\SysWOW64\CCCInstall_201507091402258526.log 2015-07-09 14:02 - 2015-07-09 14:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-07-05 02:15 - 2015-07-05 02:15 - 00002416 _____ C:\Users\DustinGamer\Downloads\Anime.rar 2015-07-05 02:15 - 2015-06-30 16:18 - 00000000 ____D C:\Users\DustinGamer\Desktop\Anime12 2015-07-04 14:26 - 2015-07-04 14:26 - 00001878 _____ C:\Users\DustinGamer\Desktop\launcher - Verknüpfung.lnk 2015-06-29 16:10 - 2015-06-29 23:35 - 00000000 ____D C:\Users\DustinGamer\Desktop\abi ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-07-26 13:40 - 2013-12-24 01:19 - 00000000 ____D C:\Users\DustinGamer\Desktop\FRST-OlderVersion 2015-07-26 13:40 - 2013-08-23 19:38 - 00000000 ____D C:\FRST 2015-07-26 13:31 - 2013-02-15 16:30 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-07-26 13:28 - 2013-05-23 19:25 - 00000000 ____D C:\Program Files (x86)\League of Legends 2015-07-26 13:25 - 2013-02-05 21:04 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\TS3Client 2015-07-26 13:24 - 2013-09-14 20:17 - 00095409 _____ C:\Windows\setupact.log 2015-07-26 13:24 - 2013-02-05 20:57 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-26 13:10 - 2013-02-05 18:39 - 01825676 _____ C:\Windows\WindowsUpdate.log 2015-07-26 13:04 - 2009-07-14 06:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-07-26 13:04 - 2009-07-14 06:45 - 00028912 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-07-26 12:58 - 2013-02-05 18:58 - 00003978 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{6AED3915-AFFD-4854-A79C-ED88B0F4728F} 2015-07-26 12:53 - 2015-03-20 20:11 - 00000000 ____D C:\Users\DustinGamer\.VirtualBox 2015-07-26 12:53 - 2013-11-22 18:00 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Raptr 2015-07-26 12:52 - 2013-02-12 17:06 - 00000000 ____D C:\Program Files (x86)\Steam 2015-07-26 12:52 - 2013-02-05 20:57 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-26 12:52 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-07-25 17:54 - 2013-10-28 20:46 - 00000000 ____D C:\Users\DustinGamer\Desktop\powdertoy 2015-07-25 17:49 - 2013-02-07 21:32 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\CrashDumps 2015-07-25 17:08 - 2013-02-23 15:03 - 00000952 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000UA.job 2015-07-25 14:08 - 2013-02-23 15:03 - 00000930 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2242473079-4026403813-3816058736-1000Core.job 2015-07-25 12:26 - 2013-02-05 20:58 - 00002135 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-07-25 12:20 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\system32\GWX 2015-07-23 16:26 - 2015-04-14 15:23 - 00000080 _____ C:\Users\DustinGamer\AppData\Local剜捯獫慴慇敭屳呇⁁屖湥楴汴浥湥湩潦 2015-07-23 16:25 - 2015-04-14 15:22 - 00000000 ____D C:\Program Files (x86)\Rockstar Games 2015-07-23 16:25 - 2015-04-14 15:20 - 00000000 ____D C:\Program Files\Rockstar Games 2015-07-23 16:01 - 2013-11-10 00:50 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\vlc 2015-07-22 20:25 - 2015-06-15 10:47 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\OBS 2015-07-22 13:12 - 2009-07-14 06:45 - 00294544 _____ C:\Windows\system32\FNTCACHE.DAT 2015-07-21 19:06 - 2015-06-15 10:47 - 00000000 ____D C:\Program Files (x86)\OBS 2015-07-21 17:34 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-07-20 15:19 - 2013-12-27 15:34 - 00000000 ____D C:\AdwCleaner 2015-07-20 02:43 - 2013-02-27 18:15 - 00000000 ____D C:\ProgramData\Skype 2015-07-19 15:43 - 2010-11-21 05:47 - 00492140 _____ C:\Windows\PFRO.log 2015-07-19 15:15 - 2013-09-29 21:11 - 00000000 ____D C:\ProgramData\Package Cache 2015-07-19 14:02 - 2014-03-03 22:54 - 00000000 ____D C:\Program Files (x86)\crypt 2015-07-19 13:39 - 2013-07-26 10:10 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-07-18 22:17 - 2013-02-06 11:57 - 00000000 ____D C:\Users\DustinGamer\Desktop\Wallpaper 2015-07-18 16:41 - 2014-05-07 19:58 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Arma 3 2015-07-17 13:23 - 2013-07-25 13:23 - 00000000 ____D C:\Qoobox 2015-07-17 13:11 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2015-07-17 12:41 - 2014-12-14 15:16 - 00000000 ____D C:\Users\DustinGamer\Desktop\dokumente 2015-07-17 12:41 - 2014-10-25 02:46 - 00000000 ____D C:\Users\DustinGamer\Desktop\dragon 2015-07-16 21:16 - 2014-03-04 18:09 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Battle.net 2015-07-16 17:36 - 2013-10-09 13:13 - 00000000 ____D C:\Users\DustinGamer\Desktop\league of legends 2015-07-16 00:19 - 2013-02-05 20:57 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-07-16 00:19 - 2013-02-05 20:57 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-07-15 19:49 - 2013-07-23 00:16 - 00000000 ____D C:\Windows\system32\MRT 2015-07-15 13:53 - 2013-12-26 14:19 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-07-15 01:31 - 2013-02-15 16:30 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-15 01:31 - 2013-02-15 16:30 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-15 01:31 - 2013-02-15 16:30 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-07-13 20:03 - 2013-03-05 14:14 - 00000000 ____D C:\Users\DustinGamer\Documents\My Games 2015-07-12 19:27 - 2014-08-29 16:57 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\Arma 3 Launcher 2015-07-12 18:22 - 2014-09-18 18:36 - 00000000 ____D C:\Program Files (x86)\ArmA3Sync 2015-07-12 12:19 - 2009-07-14 05:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-07-12 02:46 - 2014-12-10 18:51 - 00000000 ____D C:\Windows\system32\appraiser 2015-07-12 02:46 - 2014-05-06 17:24 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-07-12 02:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-12 00:41 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-07-12 00:29 - 2013-02-05 18:44 - 00000000 ___HD C:\Program Files (x86)\Temp 2015-07-11 22:04 - 2011-04-12 09:43 - 00742718 _____ C:\Windows\system32\perfh007.dat 2015-07-11 22:04 - 2011-04-12 09:43 - 00162786 _____ C:\Windows\system32\perfc007.dat 2015-07-11 22:04 - 2009-07-14 07:13 - 00006224 _____ C:\Windows\system32\PerfStringBackup.INI 2015-07-10 19:38 - 2013-02-27 18:15 - 00000000 ____D C:\Users\DustinGamer\AppData\Roaming\Skype 2015-07-10 14:13 - 2013-11-22 18:00 - 00000000 ____D C:\Program Files (x86)\Raptr 2015-07-09 21:06 - 2014-01-31 19:25 - 00000000 ____D C:\Program Files (x86)\Diablo III 2015-07-09 20:58 - 2014-03-04 18:09 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-07-09 14:02 - 2013-02-05 19:13 - 00000000 ____D C:\Program Files\AMD 2015-07-09 14:02 - 2013-02-05 18:43 - 00000000 ____D C:\Program Files (x86)\AMD 2015-07-09 14:01 - 2013-02-05 19:12 - 00000000 ____D C:\ProgramData\AMD 2015-07-09 13:54 - 2013-11-22 17:49 - 00000000 ____D C:\AMD 2015-07-09 13:46 - 2013-11-10 00:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual Audio Cable 2015-07-05 12:08 - 2010-11-21 05:27 - 00300704 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-07-03 08:43 - 2013-02-05 19:52 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-06-30 22:04 - 2013-02-14 17:21 - 00000000 ____D C:\Users\DustinGamer\AppData\Local\ArmA 2 OA ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2013-03-31 23:10 - 2013-04-03 22:47 - 0450131 _____ () C:\Program Files (x86)\changelog.txt 2012-08-30 15:11 - 2012-08-30 15:11 - 0027624 _____ () C:\Program Files (x86)\changes.txt 2013-03-31 23:10 - 2013-04-03 22:47 - 0018431 _____ () C:\Program Files (x86)\COPYING 2013-03-31 23:10 - 2013-04-03 22:47 - 0021659 _____ () C:\Program Files (x86)\known-bugs.txt 2013-07-14 22:11 - 2013-07-14 22:33 - 1799350272 _____ () C:\Program Files (x86)\MAESTIA_SETUP-1.bin 2013-07-14 22:11 - 2013-07-14 22:54 - 1729019577 _____ () C:\Program Files (x86)\MAESTIA_SETUP-2.bin 2013-07-14 22:11 - 2013-07-14 22:54 - 0649704 _____ (ANDROMEDAGAMES ) C:\Program Files (x86)\MAESTIA_SETUP.exe 2013-03-31 23:10 - 2013-03-31 23:10 - 9960448 _____ (OpenTTD Development Team) C:\Program Files (x86)\openttd.exe 2012-08-30 15:09 - 2012-08-30 15:09 - 0001892 _____ () C:\Program Files (x86)\README.HTM 2013-10-20 11:50 - 2013-10-20 18:56 - 0000624 _____ () C:\Users\DustinGamer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-05-16 19:04 - 2013-05-16 19:04 - 0000867 _____ () C:\Users\DustinGamer\AppData\Roaming\BreakingPoint_Options.ini 2015-06-01 21:21 - 2015-06-01 21:21 - 0006565 _____ () C:\Users\DustinGamer\AppData\Local\recently-used.xbel 2013-09-02 15:08 - 2015-06-12 19:30 - 0007597 _____ () C:\Users\DustinGamer\AppData\Local\Resmon.ResmonCfg 2013-02-05 18:48 - 2013-02-05 18:48 - 0000003 _____ () C:\Users\DustinGamer\AppData\Local\user_data.ini 2015-03-20 20:09 - 2015-03-20 20:09 - 0740775 _____ () C:\ProgramData\AndyDrivers.zip 2014-02-03 14:05 - 2014-02-03 14:05 - 0000233 _____ () C:\ProgramData\flcd_proxy.log Einige Dateien in TEMP: ==================== C:\Users\DustinGamer\AppData\Local\Temp\0Kraken71ChromaDevProps.dll C:\Users\DustinGamer\AppData\Local\Temp\GTA_V_Patch_1_0_393_4.exe C:\Users\DustinGamer\AppData\Local\Temp\Quarantine.exe C:\Users\DustinGamer\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\System32\winlogon.exe => Datei ist digital signiert C:\Windows\System32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\System32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\System32\services.exe => Datei ist digital signiert C:\Windows\System32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\System32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\System32\rpcss.dll => Datei ist digital signiert C:\Windows\System32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-07-23 15:27 ==================== Ende von log ============================ |
27.07.2015, 06:31 | #14 |
/// the machine /// TB-Ausbilder | Pc langsam und Sound knistert [gelöst] Java, Adobe und FIrefox updaten. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Users\DustinGamer\AppData\Local\Google\Chrome\User Data\Default\File System\005\t\00\00000000 C:\Users\DustinGamer\Downloads\0006-32bit_Win7_Win8_Win81_Win10_R279 - CHIP-Installer.exe C:\Users\DustinGamer\Downloads\Open Broadcaster Software - CHIP-Installer.exe C:\Users\DustinGamer\Downloads\Virtual Audio Cable - CHIP-Installer.exe C:\Windows\assembly\GAC_MSIL\Interop.SHDocVw\1.1.0.0__84542ff99aed6a4d\Interop.SHDocVw.dll Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Revo Uninstaller - Download - Filepony damit Chrome deinstallieren, keine Daten behalten, Reste entfernen lassen, neu installieren. Dann: https://support.google.com/chrome/answer/3296214?hl=de Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Pc langsam und Sound knistert |
amd, benötigt, board, funktioniert, gekauft, hardware, headset, installiert, keine rückmeldung, keine rückmeldung mehr, knistern, langsam, langsamer, logitech, neue, nichts, pc langsam, problem, prüfen, rechner, rückmeldung, schnell, sound, starten, teamspeak, treiber, windows |