|
Plagegeister aller Art und deren Bekämpfung: Bei Download stürzt PC ab oder Internetverbindung bricht abWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
04.10.2015, 11:39 | #1 |
| Bei Download stürzt PC ab oder Internetverbindung bricht ab Hallo, ich habe in letzter Zeit ein großes Problem mit mein PC. Alles fing vor ca. 2 Monaten an, wo ständig meine Hardware, die mit USB angeschlossen ist, nicht mehr erkannt wurde. Sprich, meine Tastatur, Maus und mein TP Link gingen alle 20 Minuten für paar Sekunden aus und an. Besonders wenn ich etwas downloade, verliere ich oft die Internetverbindung. Damals habe ich immer mit einer Downloadgeschwindigkeit von 5 Mb/s runtergeladen (Bei Steam). Ich habe mal ein Speedtest durchgeführt: hxxp://www.speedtest.net/my-result/4716991931 Ich hoffe ihr könnt mir helfen |
04.10.2015, 11:59 | #2 |
/// TB-Ausbilder | Bei Download stürzt PC ab oder Internetverbindung bricht abMein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags: So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Danke für deine Mitarbeit! Zur ersten Analyse bitte FRST und TDSS-Killer ausführen: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Schritt 2 Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Bitte poste mit deiner nächsten Antwort
|
04.10.2015, 12:36 | #3 |
| Bei Download stürzt PC ab oder Internetverbindung bricht ab FRST.txt: hxxp://pastebin.com/R20crzV2
__________________Addition.txt: hxxp://pastebin.com/BA6Cf8HQ TDSSKiller: hxxp://pastebin.com/54Wviw7W (Hier wurde nichts gefunden) Ebend gerade ist mein Pc abgestürzt und ich habe ein Bild gemacht davon: Geändert von Trabbelmaker (04.10.2015 um 12:49 Uhr) |
04.10.2015, 13:39 | #4 |
/// TB-Ausbilder | Bei Download stürzt PC ab oder Internetverbindung bricht ab Bitte poste die Logdateien direkt hier in dein Thema mit Code-Tags. |
04.10.2015, 13:46 | #5 |
| Bei Download stürzt PC ab oder Internetverbindung bricht ab FRST: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:03-10-2015 durchgeführt von Marlon (Administrator) auf MARLON-PC (04-10-2015 13:23:12) Gestartet von C:\Users\Marlon\Desktop Geladene Profile: Marlon (Verfügbare Profile: Marlon) Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.89.63.0\OverwolfHelper.exe (Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.89.63.0\OverwolfHelper64.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Akamai Technologies, Inc.) C:\Users\Marlon\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) C:\Users\Marlon\AppData\Local\Akamai\netsession_win.exe (TeamSpeak Systems GmbH) C:\Program Files (x86)\TeamSpeak 3 Client\ts3client_win32.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Overwolf LTD) C:\Program Files (x86)\Overwolf\0.89.63.0\OverwolfBrowser.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1001.16470.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_3.6.13251.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.9.25.0_x64__8wekyb3d8bbwe\WinStore.Mobile.exe () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1509.14010.0_x64__8wekyb3d8bbwe\Calculator.exe () C:\Users\Marlon\Desktop\GTA SA\samp.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8484056 2015-06-12] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634896 2015-07-24] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5579624 2015-08-03] (LogMeIn Inc.) HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [523144 2015-07-30] (Autodesk Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation) HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [43760 2015-09-16] (Overwolf LTD) HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4468056 2015-06-18] (Disc Soft Ltd) HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53655680 2015-07-28] (Skype Technologies S.A.) HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Marlon\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.) HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\MountPoints2: {2e8ee139-378d-11e5-9cd6-e1b42cba2215} - "L:\setup.exe" HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\MountPoints2: {c585c5ae-5f19-11e5-9bcd-d43d7e4f3472} - "K:\HTC_Sync_Manager_PC.exe" ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{17e9415c-6b60-4a0d-83d0-f9e80d011513}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-10] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-10] (Oracle Corporation) FireFox: ======== FF ProfilePath: C:\Users\Marlon\AppData\Roaming\Mozilla\Firefox\Profiles\dnb6iwn1.default FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-10] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-10] (Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-07-23] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-07-23] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-07-31] CHR Extension: (Google Docs) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-31] CHR Extension: (Google Drive) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-31] CHR Extension: (YouTube) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-31] CHR Extension: (Adblock Plus) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-08-23] CHR Extension: (Google-Suche) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-31] CHR Extension: (Google Tabellen) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-31] CHR Extension: (Google Text & Tabellen Offline) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-31] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-31] CHR Extension: (Google Mail) - C:\Users\Marlon\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-31] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1129864 2015-07-30] (Autodesk Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1225216 2015-10-02] () R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568 2015-06-18] (Disc Soft Ltd) S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [245544 2015-07-07] (EasyAntiCheat Ltd) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-24] (NVIDIA Corporation) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-08-03] (LogMeIn, Inc.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-24] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-24] (NVIDIA Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1006320 2015-09-16] (Overwolf LTD) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-07-31] (Disc Soft Ltd) S3 FairplayKD; C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [65808 2015-09-27] (Multi Theft Auto) R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-07-14] (LogMeIn Inc.) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-24] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [587264 2015-07-10] (Realtek ) S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [3772632 2015-07-10] (Realtek Semiconductor Corporation ) S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] () S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation) R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [37416 2015-08-02] (Wellbia.com Co., Ltd.) S3 xspirit; C:\WINDOWS\xspirit.sys [19176 2015-08-01] () U3 idsvc; kein ImagePath S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X] U3 wpcsvc; kein ImagePath ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-10-04 13:23 - 2015-10-04 13:23 - 00013736 _____ C:\Users\Marlon\Desktop\FRST.txt 2015-10-04 13:22 - 2015-10-04 13:23 - 00000000 ____D C:\FRST 2015-10-04 13:22 - 2015-10-04 13:22 - 02193408 _____ (Farbar) C:\Users\Marlon\Desktop\FRST64.exe 2015-10-04 13:21 - 2015-10-04 13:22 - 02193408 _____ (Farbar) C:\Users\Marlon\Downloads\FRST64.exe 2015-10-04 13:09 - 2015-10-04 13:09 - 00016148 _____ C:\WINDOWS\system32\MARLON-PC_Marlon_HistoryPrediction.bin 2015-10-04 00:05 - 2015-10-04 00:05 - 01098033 _____ C:\Users\Marlon\Downloads\Stupid dancing Flanders - The Simpsons.mp4 2015-10-03 23:47 - 2015-10-04 11:32 - 601001859 _____ C:\WINDOWS\MEMORY.DMP 2015-10-03 23:47 - 2015-10-04 11:32 - 00000000 ____D C:\WINDOWS\Minidump 2015-10-03 23:47 - 2015-10-03 23:48 - 00395832 _____ C:\WINDOWS\Minidump\100315-30625-01.dmp 2015-10-03 19:15 - 2015-10-03 19:15 - 20173291 _____ C:\Users\Marlon\Desktop\Camels-v050.7z 2015-10-03 19:13 - 2015-10-03 19:15 - 20173291 _____ C:\Users\Marlon\Downloads\Camels-v050.7z 2015-10-03 19:02 - 2015-10-03 20:11 - 00000000 ____D C:\Users\Marlon\AppData\Local\Arma 3 Launcher 2015-10-03 19:02 - 2015-10-03 19:02 - 00000000 ____D C:\Users\Marlon\AppData\Local\Bohemia_Interactive 2015-10-01 20:41 - 2015-10-02 18:02 - 00000000 ____D C:\Users\Marlon\Desktop\Zeichnungen 2015-10-01 20:13 - 2015-09-17 08:49 - 06487248 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2015-10-01 20:13 - 2015-09-17 08:28 - 05120056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2015-10-01 20:13 - 2015-09-17 08:12 - 16708608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-10-01 20:13 - 2015-09-17 08:07 - 21875712 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2015-10-01 20:13 - 2015-09-17 08:04 - 07569408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2015-10-01 20:13 - 2015-09-17 08:00 - 24595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-10-01 20:13 - 2015-09-17 07:54 - 03781120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2015-10-01 20:13 - 2015-09-17 07:53 - 07055872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2015-10-01 20:13 - 2015-09-17 07:51 - 13027840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-10-01 20:13 - 2015-09-17 07:47 - 07523328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2015-10-01 20:13 - 2015-09-17 07:45 - 19325440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-10-01 20:13 - 2015-09-17 07:40 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2015-10-01 20:13 - 2015-09-17 07:37 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2015-10-01 20:13 - 2015-09-17 07:35 - 05079552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2015-10-01 20:12 - 2015-09-25 02:35 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll 2015-10-01 20:12 - 2015-09-25 02:34 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll 2015-10-01 20:12 - 2015-09-25 02:13 - 01276416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2015-10-01 20:12 - 2015-09-25 01:34 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll 2015-10-01 20:12 - 2015-09-25 01:34 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll 2015-10-01 20:12 - 2015-09-25 01:24 - 00796160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll 2015-10-01 20:12 - 2015-09-25 01:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll 2015-10-01 20:12 - 2015-09-25 01:23 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2015-10-01 20:12 - 2015-09-25 01:17 - 02178560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2015-10-01 20:12 - 2015-09-25 01:08 - 03586560 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2015-10-01 20:12 - 2015-09-25 01:07 - 01382400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2015-10-01 20:12 - 2015-09-25 01:06 - 01423872 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll 2015-10-01 20:12 - 2015-09-25 01:05 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll 2015-10-01 20:12 - 2015-09-25 01:01 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll 2015-10-01 20:12 - 2015-09-25 01:01 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll 2015-10-01 20:12 - 2015-09-25 01:00 - 01205248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2015-10-01 20:12 - 2015-09-25 01:00 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll 2015-10-01 20:12 - 2015-09-25 01:00 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll 2015-10-01 20:12 - 2015-09-25 01:00 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll 2015-10-01 20:12 - 2015-09-25 00:53 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2015-10-01 20:12 - 2015-09-25 00:43 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll 2015-10-01 20:12 - 2015-09-25 00:43 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll 2015-10-01 20:12 - 2015-09-25 00:42 - 01795072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2015-10-01 20:12 - 2015-09-25 00:25 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2015-10-01 20:12 - 2015-09-25 00:25 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll 2015-10-01 20:12 - 2015-09-25 00:25 - 00579584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll 2015-10-01 20:12 - 2015-09-25 00:25 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll 2015-10-01 20:12 - 2015-09-25 00:25 - 00525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll 2015-10-01 20:12 - 2015-09-25 00:24 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll 2015-10-01 20:12 - 2015-09-25 00:19 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2015-10-01 20:12 - 2015-09-19 07:14 - 00102304 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll 2015-10-01 20:12 - 2015-09-17 08:50 - 02464216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2015-10-01 20:12 - 2015-09-17 08:50 - 01563392 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2015-10-01 20:12 - 2015-09-17 08:50 - 00099664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2015-10-01 20:12 - 2015-09-17 08:50 - 00088384 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll 2015-10-01 20:12 - 2015-09-17 08:49 - 08020816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-10-01 20:12 - 2015-09-17 08:49 - 01563472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2015-10-01 20:12 - 2015-09-17 08:49 - 00894256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys 2015-10-01 20:12 - 2015-09-17 08:49 - 00553808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2015-10-01 20:12 - 2015-09-17 08:49 - 00501008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 02824248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 02494712 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 02432336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-10-01 20:12 - 2015-09-17 08:48 - 02156400 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 01983824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2015-10-01 20:12 - 2015-09-17 08:48 - 00809352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 00784136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 00584656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 00555768 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 00537080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 00516448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2015-10-01 20:12 - 2015-09-17 08:48 - 00505696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2015-10-01 20:12 - 2015-09-17 08:48 - 00476760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 00406864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-10-01 20:12 - 2015-09-17 08:48 - 00395088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2015-10-01 20:12 - 2015-09-17 08:48 - 00332624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2015-10-01 20:12 - 2015-09-17 08:48 - 00278352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2015-10-01 20:12 - 2015-09-17 08:48 - 00243760 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2015-10-01 20:12 - 2015-09-17 08:47 - 01397088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2015-10-01 20:12 - 2015-09-17 08:44 - 00781976 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll 2015-10-01 20:12 - 2015-09-17 08:43 - 00966416 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2015-10-01 20:12 - 2015-09-17 08:39 - 00081488 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-10-01 20:12 - 2015-09-17 08:37 - 01295712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2015-10-01 20:12 - 2015-09-17 08:37 - 01168736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-10-01 20:12 - 2015-09-17 08:28 - 02154808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2015-10-01 20:12 - 2015-09-17 08:28 - 01357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2015-10-01 20:12 - 2015-09-17 08:28 - 00441168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2015-10-01 20:12 - 2015-09-17 08:28 - 00407608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2015-10-01 20:12 - 2015-09-17 08:28 - 00074880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll 2015-10-01 20:12 - 2015-09-17 08:27 - 01766952 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2015-10-01 20:12 - 2015-09-17 08:27 - 00454512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll 2015-10-01 20:12 - 2015-09-17 08:26 - 02446648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2015-10-01 20:12 - 2015-09-17 08:26 - 01895568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll 2015-10-01 20:12 - 2015-09-17 08:26 - 00646672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2015-10-01 20:12 - 2015-09-17 08:26 - 00508248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2015-10-01 20:12 - 2015-09-17 08:26 - 00434376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2015-10-01 20:12 - 2015-09-17 08:26 - 00428128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2015-10-01 20:12 - 2015-09-17 08:25 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2015-10-01 20:12 - 2015-09-17 08:21 - 00658528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll 2015-10-01 20:12 - 2015-09-17 08:20 - 00764416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2015-10-01 20:12 - 2015-09-17 08:11 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2015-10-01 20:12 - 2015-09-17 08:10 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2015-10-01 20:12 - 2015-09-17 08:09 - 00269312 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2015-10-01 20:12 - 2015-09-17 08:09 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2015-10-01 20:12 - 2015-09-17 08:08 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2015-10-01 20:12 - 2015-09-17 08:08 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Speech.Pal.dll 2015-10-01 20:12 - 2015-09-17 08:08 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe 2015-10-01 20:12 - 2015-09-17 08:06 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll 2015-10-01 20:12 - 2015-09-17 08:06 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll 2015-10-01 20:12 - 2015-09-17 08:06 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll 2015-10-01 20:12 - 2015-09-17 08:05 - 02226688 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2015-10-01 20:12 - 2015-09-17 08:05 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2015-10-01 20:12 - 2015-09-17 08:04 - 00910848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll 2015-10-01 20:12 - 2015-09-17 08:04 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2015-10-01 20:12 - 2015-09-17 08:03 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2015-10-01 20:12 - 2015-09-17 08:03 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2015-10-01 20:12 - 2015-09-17 08:03 - 00154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe 2015-10-01 20:12 - 2015-09-17 08:03 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2015-10-01 20:12 - 2015-09-17 08:03 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2015-10-01 20:12 - 2015-09-17 08:02 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2015-10-01 20:12 - 2015-09-17 08:02 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll 2015-10-01 20:12 - 2015-09-17 08:00 - 03248640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2015-10-01 20:12 - 2015-09-17 08:00 - 02417664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2015-10-01 20:12 - 2015-09-17 08:00 - 00446976 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2015-10-01 20:12 - 2015-09-17 08:00 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\KeywordDetectorMsftSidAdapter.dll 2015-10-01 20:12 - 2015-09-17 07:58 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2015-10-01 20:12 - 2015-09-17 07:57 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2015-10-01 20:12 - 2015-09-17 07:57 - 00403456 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2015-10-01 20:12 - 2015-09-17 07:57 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll 2015-10-01 20:12 - 2015-09-17 07:57 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll 2015-10-01 20:12 - 2015-09-17 07:56 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2015-10-01 20:12 - 2015-09-17 07:56 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2015-10-01 20:12 - 2015-09-17 07:56 - 00317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 02236416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 01601536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFx02000.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 00366592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll 2015-10-01 20:12 - 2015-09-17 07:55 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2015-10-01 20:12 - 2015-09-17 07:55 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll 2015-10-01 20:12 - 2015-09-17 07:54 - 00780288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2015-10-01 20:12 - 2015-09-17 07:54 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 01216512 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcenter.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 01181696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 00591360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2015-10-01 20:12 - 2015-09-17 07:52 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll 2015-10-01 20:12 - 2015-09-17 07:51 - 02660864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2015-10-01 20:12 - 2015-09-17 07:51 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2015-10-01 20:12 - 2015-09-17 07:51 - 01203712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2015-10-01 20:12 - 2015-09-17 07:51 - 01067520 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2015-10-01 20:12 - 2015-09-17 07:51 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll 2015-10-01 20:12 - 2015-09-17 07:51 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2015-10-01 20:12 - 2015-09-17 07:50 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2015-10-01 20:12 - 2015-09-17 07:50 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2015-10-01 20:12 - 2015-09-17 07:50 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2015-10-01 20:12 - 2015-09-17 07:50 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeWiFi.dll 2015-10-01 20:12 - 2015-09-17 07:50 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeCell.dll 2015-10-01 20:12 - 2015-09-17 07:50 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys 2015-10-01 20:12 - 2015-09-17 07:49 - 02740224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 01290240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 01010176 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00771072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWebproxy.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationGeofences.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationCrowdsource.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPeIP.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationWiFiAdapter.dll 2015-10-01 20:12 - 2015-09-17 07:49 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Speech.Pal.dll 2015-10-01 20:12 - 2015-09-17 07:48 - 02093056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2015-10-01 20:12 - 2015-09-17 07:48 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2015-10-01 20:12 - 2015-09-17 07:48 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2015-10-01 20:12 - 2015-09-17 07:48 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2015-10-01 20:12 - 2015-09-17 07:48 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll 2015-10-01 20:12 - 2015-09-17 07:48 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2015-10-01 20:12 - 2015-09-17 07:47 - 00513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2015-10-01 20:12 - 2015-09-17 07:47 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2015-10-01 20:12 - 2015-09-17 07:47 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll 2015-10-01 20:12 - 2015-09-17 07:46 - 00928256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2015-10-01 20:12 - 2015-09-17 07:46 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2015-10-01 20:12 - 2015-09-17 07:46 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2015-10-01 20:12 - 2015-09-17 07:46 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2015-10-01 20:12 - 2015-09-17 07:46 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2015-10-01 20:12 - 2015-09-17 07:46 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2015-10-01 20:12 - 2015-09-17 07:46 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll 2015-10-01 20:12 - 2015-09-17 07:46 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncmlhook.dll 2015-10-01 20:12 - 2015-09-17 07:45 - 04791296 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-10-01 20:12 - 2015-09-17 07:45 - 01331200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-10-01 20:12 - 2015-09-17 07:45 - 00869376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2015-10-01 20:12 - 2015-09-17 07:45 - 00832512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2015-10-01 20:12 - 2015-09-17 07:45 - 00627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2015-10-01 20:12 - 2015-09-17 07:45 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2015-10-01 20:12 - 2015-09-17 07:44 - 01844736 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2015-10-01 20:12 - 2015-09-17 07:44 - 00599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll 2015-10-01 20:12 - 2015-09-17 07:44 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2015-10-01 20:12 - 2015-09-17 07:44 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll 2015-10-01 20:12 - 2015-09-17 07:43 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2015-10-01 20:12 - 2015-09-17 07:43 - 00378368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll 2015-10-01 20:12 - 2015-09-17 07:43 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2015-10-01 20:12 - 2015-09-17 07:43 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2015-10-01 20:12 - 2015-09-17 07:42 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2015-10-01 20:12 - 2015-09-17 07:41 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll 2015-10-01 20:12 - 2015-09-17 07:40 - 01918464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2015-10-01 20:12 - 2015-09-17 07:40 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2015-10-01 20:12 - 2015-09-17 07:39 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2015-10-01 20:12 - 2015-09-17 07:39 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-10-01 20:12 - 2015-09-17 07:38 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll 2015-10-01 20:12 - 2015-09-17 07:37 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2015-10-01 20:12 - 2015-09-17 07:36 - 01171456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcenter.dll 2015-10-01 20:12 - 2015-09-17 07:35 - 02207232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-10-01 20:12 - 2015-09-17 07:35 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2015-10-01 20:12 - 2015-09-17 07:35 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2015-10-01 20:12 - 2015-09-17 07:34 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2015-10-01 20:12 - 2015-09-17 07:33 - 00574464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2015-10-01 20:12 - 2015-09-17 07:32 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-10-01 20:12 - 2015-09-17 07:32 - 00336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2015-10-01 20:12 - 2015-09-17 07:32 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2015-10-01 20:12 - 2015-09-17 07:32 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2015-10-01 20:12 - 2015-09-17 07:31 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2015-10-01 20:12 - 2015-09-17 07:31 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll 2015-10-01 20:12 - 2015-09-17 07:30 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2015-10-01 20:12 - 2015-09-17 07:29 - 01104384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-10-01 20:12 - 2015-09-17 07:29 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2015-10-01 20:12 - 2015-09-17 07:29 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2015-10-01 20:12 - 2015-09-17 07:29 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2015-10-01 20:12 - 2015-09-17 07:28 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll 2015-10-01 20:12 - 2015-09-17 07:26 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2015-10-01 20:12 - 2015-09-17 07:16 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2015-10-01 20:12 - 2015-09-13 04:05 - 02987520 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2015-10-01 20:12 - 2015-09-13 03:41 - 02639872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2015-10-01 20:10 - 2015-10-01 20:10 - 28212659 _____ C:\Users\Marlon\Downloads\+++ ORIGINAL +++ _Alles wird aus Hack gemacht_.mp4 2015-09-30 21:58 - 2015-09-30 21:58 - 00000160 _____ C:\Users\Marlon\Desktop\Neues Textdokument (3).txt 2015-09-30 16:34 - 2015-09-30 16:34 - 00001560 _____ C:\Users\Public\Desktop\Free MP4 Video Converter.lnk 2015-09-30 16:33 - 2015-09-30 16:33 - 00141920 _____ C:\Users\Marlon\Desktop\Pirate.swf 2015-09-30 16:32 - 2015-09-30 16:33 - 29384576 _____ (DVDVideoSoft Ltd. ) C:\Users\Marlon\Downloads\FreeMP4VideoConverter.exe 2015-09-27 19:35 - 2015-09-27 19:36 - 09138365 _____ C:\Users\Marlon\Downloads\Spongebob Schwammkopf - und jetzt.mp4 2015-09-27 18:25 - 2015-09-27 19:01 - 00002199 _____ C:\Users\Public\Desktop\MTA San Andreas 1.5.lnk 2015-09-27 18:25 - 2015-09-27 18:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MTA San Andreas 1.5 2015-09-27 18:22 - 2015-09-27 18:26 - 00000000 ____D C:\ProgramData\MTA San Andreas All 2015-09-27 18:22 - 2015-09-27 18:26 - 00000000 ____D C:\Program Files (x86)\MTA San Andreas 1.5 2015-09-27 18:20 - 2015-09-27 18:20 - 45040448 _____ (Multi Theft Auto) C:\Users\Marlon\Desktop\mtasa-1.5.exe 2015-09-27 18:19 - 2015-09-27 18:20 - 45040448 _____ (Multi Theft Auto) C:\Users\Marlon\Downloads\mtasa-1.5.exe 2015-09-25 20:55 - 2015-09-25 20:55 - 05700442 _____ C:\Users\Marlon\Desktop\Zooooorrrrr.mp4 2015-09-25 20:55 - 2015-09-25 20:55 - 00000000 ____D C:\Users\Marlon\Desktop\Z0r 2015-09-25 20:53 - 2015-09-25 20:53 - 01049147 _____ C:\Users\Marlon\Desktop\Zooooorrrrr.swf 2015-09-25 20:28 - 2015-09-25 20:28 - 05428792 _____ C:\Users\Marlon\Downloads\Ode To Joy.mp4 2015-09-25 20:10 - 2015-09-25 20:10 - 126792523 _____ C:\Users\Marlon\Downloads\Reddit's Try Not To Laugh Challenge [ORIGINAL].mp4 2015-09-25 20:09 - 2015-09-25 20:09 - 00510140 _____ C:\Users\Marlon\Downloads\Reifenverlust.mp4 2015-09-25 20:07 - 2015-09-25 20:07 - 02427344 _____ C:\Users\Marlon\Downloads\Komm Freddy_ Bus bauen!.mp4 2015-09-25 18:51 - 2015-09-25 18:51 - 00000000 ____D C:\Users\Marlon\Desktop\IGG-Besiege.v0.11 2015-09-25 18:51 - 2015-09-25 18:46 - 172590185 _____ C:\Users\Marlon\Desktop\IGG-Besiege.v0.11.rar 2015-09-25 18:45 - 2015-09-25 18:46 - 172590185 _____ C:\Users\Marlon\Downloads\IGG-Besiege.v0.11.rar 2015-09-25 14:06 - 2015-09-25 14:06 - 00001249 _____ C:\Users\Marlon\Desktop\SAMP Screenshots.lnk 2015-09-23 21:16 - 2015-09-23 21:16 - 00000000 ____D C:\Users\Marlon\AppData\Roaming\Adobe 2015-09-21 20:25 - 2015-09-21 20:25 - 00001181 _____ C:\Users\Marlon\Desktop\Photoshop CS6.lnk 2015-09-21 20:08 - 2015-09-21 20:08 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2015-09-21 18:29 - 2015-09-21 18:29 - 00001353 _____ C:\Users\Marlon\Desktop\Neues Textdokument (2).txt 2015-09-20 18:09 - 2015-09-23 20:58 - 00000000 ____D C:\Users\Marlon\Desktop\Cinema 4D Projekte 2015-09-20 14:03 - 2015-09-20 14:06 - 940064768 _____ C:\Users\Marlon\Downloads\gta3.img 2015-09-20 13:49 - 2015-09-20 13:48 - 05099039 _____ C:\Users\Marlon\Desktop\1440056476_ZX-10R.rar 2015-09-20 13:49 - 2015-08-19 18:29 - 05123496 _____ C:\Users\Marlon\Desktop\freeway.txd 2015-09-20 13:49 - 2015-08-19 18:16 - 12539904 _____ C:\Users\Marlon\Desktop\freeway.dff 2015-09-20 13:48 - 2015-09-20 13:48 - 05099039 _____ C:\Users\Marlon\Downloads\1440056476_ZX-10R.rar 2015-09-20 13:44 - 2015-09-20 13:44 - 00000000 ____D C:\Users\Marlon\Desktop\imgtool20 2015-09-19 20:37 - 2015-09-19 20:37 - 00000000 ____D C:\Users\Marlon\AppData\LocalLow\Eggcode 2015-09-19 20:25 - 2015-09-19 20:25 - 00000000 ____D C:\Users\Marlon\Desktop\IGG-Mad.Games.Tycoon.v0.150915A 2015-09-19 20:24 - 2015-09-19 20:25 - 159943908 _____ C:\Users\Marlon\Downloads\IGG-Mad.Games.Tycoon.v0.150915A.rar 2015-09-17 19:01 - 2015-09-17 19:17 - 00000000 ___HD C:\$Windows.~BT 2015-09-16 19:25 - 2015-09-16 19:25 - 00000000 ___RD C:\Users\Marlon\3D Objects 2015-09-12 18:32 - 2015-09-16 17:59 - 00000000 ____D C:\Users\Marlon\Documents\OpenTTD 2015-09-12 18:29 - 2015-09-12 18:29 - 00000843 _____ C:\Users\Public\Desktop\OpenTTD.lnk 2015-09-12 18:29 - 2015-09-12 18:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenTTD 2015-09-12 18:29 - 2015-09-12 18:29 - 00000000 ____D C:\Program Files\OpenTTD 2015-09-12 12:04 - 2015-09-12 12:04 - 00000000 ____D C:\Users\Marlon\AppData\Local\Colossal Order 2015-09-12 12:04 - 2015-09-12 12:04 - 00000000 ____D C:\ProgramData\.mono 2015-09-11 18:04 - 2015-09-21 18:11 - 00000000 ____D C:\Users\Marlon\Desktop\Hitbär 2015-09-09 18:39 - 2015-08-27 08:36 - 03620736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-09-09 18:39 - 2015-08-27 08:32 - 00608936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2015-09-09 18:39 - 2015-08-27 07:59 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-09-09 18:39 - 2015-08-27 07:54 - 00541248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2015-09-09 18:39 - 2015-08-27 07:54 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-09-09 18:39 - 2015-08-27 07:51 - 02350592 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-09-09 18:39 - 2015-08-27 07:51 - 01774592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-09-09 18:39 - 2015-08-27 07:49 - 01008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2015-09-09 18:39 - 2015-08-27 07:47 - 12503552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-09-09 18:39 - 2015-08-27 07:43 - 00826880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-09-09 18:39 - 2015-08-27 07:43 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-09-09 18:39 - 2015-08-27 07:42 - 00596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2015-09-09 18:39 - 2015-08-27 07:42 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.PicturePassword.dll 2015-09-09 18:39 - 2015-08-27 07:42 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2015-09-09 18:39 - 2015-08-27 07:39 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-09-09 18:39 - 2015-08-27 07:23 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-09-09 18:39 - 2015-08-27 07:16 - 02153472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-09-09 18:39 - 2015-08-27 07:16 - 01612288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-09-09 18:39 - 2015-08-27 07:12 - 00650752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-09-09 18:39 - 2015-08-27 07:12 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-09-09 18:39 - 2015-08-27 07:11 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2015-09-09 18:39 - 2015-08-27 07:11 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2015-09-09 18:39 - 2015-08-27 07:09 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-09-09 18:39 - 2015-08-27 07:08 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-09-08 18:12 - 2015-09-08 18:12 - 00514225 _____ C:\Users\Marlon\Desktop\UniversalBinder.exe 2015-09-08 18:12 - 2015-09-08 18:12 - 00000000 ____D C:\Users\Marlon\AppData\Roaming\.UniversalBinder 2015-09-06 15:31 - 2015-09-06 17:37 - 00000153 _____ C:\Users\Marlon\Desktop\DayZ Thug Life Server.txt 2015-09-06 13:29 - 2015-09-27 19:31 - 00000000 ____D C:\Users\Marlon\Desktop\Anzeige 2015-09-05 22:05 - 2015-10-02 13:07 - 00000281 _____ C:\Users\Marlon\Desktop\Neues Textdokument.txt 2015-09-04 20:03 - 2015-09-04 20:10 - 00000000 ____D C:\Users\Public\Documents\GTA San Andreas User Files 2015-09-04 20:00 - 2015-09-04 20:01 - 10976720 _____ C:\Users\Marlon\Desktop\Joooo warscheinlich oderwas.wav ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-10-04 13:23 - 2015-08-07 18:13 - 00000000 ____D C:\Users\Marlon\AppData\Roaming\Skype 2015-10-04 13:22 - 2015-07-10 14:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log 2015-10-04 13:11 - 2015-07-31 14:56 - 00001138 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-10-04 13:11 - 2015-07-31 14:35 - 00000000 ____D C:\Users\Marlon\AppData\Roaming\TS3Client 2015-10-04 13:01 - 2015-07-31 20:06 - 00000000 ____D C:\Users\Marlon\AppData\Local\LogMeIn Hamachi 2015-10-04 12:55 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\sru 2015-10-04 12:40 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-10-04 11:39 - 2015-08-08 16:10 - 00000000 ____D C:\Users\Marlon\AppData\Local\Akamai 2015-10-04 11:39 - 2015-07-31 17:04 - 01790124 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-10-04 11:39 - 2015-07-10 18:34 - 00771100 _____ C:\WINDOWS\system32\perfh007.dat 2015-10-04 11:39 - 2015-07-10 18:34 - 00153964 _____ C:\WINDOWS\system32\perfc007.dat 2015-10-04 11:38 - 2015-07-31 14:35 - 00000000 ____D C:\Users\Marlon\AppData\Local\Overwolf 2015-10-04 11:37 - 2015-07-31 16:54 - 00000000 ____D C:\Users\Marlon 2015-10-04 11:37 - 2015-07-31 14:56 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-10-04 11:32 - 2015-07-31 16:51 - 00000000 ____D C:\ProgramData\NVIDIA 2015-10-04 11:32 - 2015-07-10 14:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-10-04 00:55 - 2013-09-07 20:41 - 00000000 ____D C:\Steam 2015-10-04 00:54 - 2015-07-31 20:10 - 00000000 ____D C:\Users\Marlon\AppData\Local\Arma 3 2015-10-04 00:23 - 2015-08-02 15:08 - 00004162 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FD3FCD47-8FBB-4534-BB3D-1B6B2A23BE7A} 2015-10-03 23:51 - 2015-07-10 11:05 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-10-03 23:50 - 2015-07-10 13:04 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ___SD C:\WINDOWS\system32\F12 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\Provisioning 2015-10-03 23:49 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\L2Schemas 2015-10-03 23:47 - 2015-07-31 16:48 - 00014282 _____ C:\WINDOWS\PFRO.log 2015-10-03 19:01 - 2015-08-08 16:17 - 00000000 ____D C:\ProgramData\Package Cache 2015-10-03 17:29 - 2015-08-28 12:18 - 00000000 ____D C:\WarThunder 2015-10-01 21:09 - 2015-07-10 12:55 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-09-30 16:34 - 2015-08-08 22:21 - 00001324 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2015-09-30 16:34 - 2015-08-08 22:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2015-09-30 16:34 - 2015-08-08 22:18 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft 2015-09-28 16:28 - 2015-07-31 14:36 - 00000000 ____D C:\Program Files (x86)\Overwolf 2015-09-27 18:26 - 2015-08-30 19:59 - 00000000 ____D C:\Users\Marlon\Desktop\GTA SA 2015-09-26 10:24 - 2015-07-31 14:35 - 00000000 ____D C:\Program Files (x86)\TeamSpeak 3 Client 2015-09-25 18:12 - 2015-07-31 14:57 - 00002258 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-09-23 20:58 - 2015-08-11 23:39 - 00001456 _____ C:\Users\Marlon\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2015-09-22 20:00 - 2015-08-13 12:50 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-09-21 20:25 - 2014-07-16 16:12 - 00000000 ____D C:\Adobe Photoshop CS6 v13.0 [P0RTABLE] 2015-09-21 20:21 - 2015-08-28 19:03 - 00000000 ____D C:\Users\Marlon\Desktop\War Tunte 2015-09-21 20:08 - 2015-07-10 14:20 - 00001970 _____ C:\WINDOWS\setupact.log 2015-09-21 19:35 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-09-20 19:33 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\rescache 2015-09-20 18:26 - 2015-08-08 19:07 - 00000000 ____D C:\Users\Marlon\AppData\Roaming\MAXON 2015-09-19 12:29 - 2015-07-31 19:09 - 00063064 _____ C:\WINDOWS\DirectX.log 2015-09-17 19:17 - 2015-07-31 16:14 - 00001908 _____ C:\WINDOWS\diagwrn.xml 2015-09-17 19:17 - 2015-07-31 16:14 - 00001908 _____ C:\WINDOWS\diagerr.xml 2015-09-17 19:16 - 2015-07-31 17:46 - 00000000 ___DC C:\WINDOWS\Panther 2015-09-17 19:01 - 2015-07-10 14:20 - 00000000 _____ C:\WINDOWS\setuperr.log 2015-09-17 18:59 - 2015-07-10 14:20 - 00193800 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-09-17 18:57 - 2015-07-10 18:46 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-17 18:07 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-09-17 16:06 - 2015-07-31 14:56 - 00004196 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-09-17 16:06 - 2015-07-31 14:56 - 00003964 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-09-16 17:36 - 2015-08-02 17:27 - 00000000 ____D C:\Users\Marlon\AppData\Local\ArmA 2 OA 2015-09-16 17:11 - 2015-08-06 15:33 - 00000000 ____D C:\Users\Marlon\Desktop\DayZ 2015-09-16 16:04 - 2015-07-31 17:23 - 00000000 ____D C:\Users\Marlon\AppData\Local\Packages 2015-09-15 18:12 - 2015-07-31 17:47 - 00812008 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-09-15 18:12 - 2015-07-31 17:47 - 00178152 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-09-15 15:53 - 2015-07-31 17:26 - 00002367 _____ C:\Users\Marlon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-09-15 15:53 - 2015-07-31 17:26 - 00000000 ___RD C:\Users\Marlon\OneDrive 2015-09-12 16:34 - 2015-07-31 14:56 - 00000000 ____D C:\Users\Marlon\AppData\Local\Google 2015-09-12 14:16 - 2015-08-08 16:13 - 00000000 ____D C:\Users\Marlon\AppData\Local\CrashDumps 2015-09-12 12:04 - 2015-08-09 19:47 - 00000000 ____D C:\Users\Marlon\AppData\Roaming\.mono 2015-09-08 16:17 - 2015-08-07 18:13 - 00000000 ____D C:\ProgramData\Skype 2015-09-06 18:22 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\oobe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-08-11 23:39 - 2015-09-23 20:58 - 0001456 _____ () C:\Users\Marlon\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2015-07-31 16:51 - 2015-07-31 16:51 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Marlon\AppData\Local\Temp\AcDeltree.exe C:\Users\Marlon\AppData\Local\Temp\bf42b6f18916a804f395bc5ca3f63664.dll C:\Users\Marlon\AppData\Local\Temp\cd2bba68e412b4070e29f480ad142459.dll C:\Users\Marlon\AppData\Local\Temp\FNP_ACT_InstallerCA.dll C:\Users\Marlon\AppData\Local\Temp\nvStInst.exe C:\Users\Marlon\AppData\Local\Temp\vcredist12_x86.exe C:\Users\Marlon\AppData\Local\Temp\vcredist9_x86.exe C:\Users\Marlon\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-10-01 15:51 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:03-10-2015 durchgeführt von Marlon (2015-10-04 13:24:31) Gestartet von C:\Users\Marlon\Desktop Windows 10 Home (X64) (2015-07-31 15:23:13) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3111803562-2746769953-2236998745-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3111803562-2746769953-2236998745-503 - Limited - Disabled) Gast (S-1-5-21-3111803562-2746769953-2236998745-501 - Limited - Disabled) Marlon (S-1-5-21-3111803562-2746769953-2236998745-1000 - Administrator - Enabled) => C:\Users\Marlon ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Arma 2 (HKLM-x32\...\Steam App 33910) (Version: - Bohemia Interactive) Arma 2: Operation Arrowhead (HKLM-x32\...\Steam App 33930) (Version: - Bohemia Interactive) Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 5.0.142.1 - Autodesk) Autodesk DirectConnect 2015 64-bit (HKLM\...\Autodesk DirectConnect 2015 64-bit) (Version: 9.0.56.4 - Autodesk) Autodesk DirectConnect 2015 64-bit (Version: 9.0.56.4 - Autodesk) Hidden Autodesk DirectConnect 2015 64-bit Hotfix1 (HKLM\...\Autodesk DirectConnect 2015 64-bit_9001) (Version: 9.0.56.4 - Autodesk) Autodesk Maya 2015 (HKLM\...\Autodesk Maya 2015) (Version: 15.2.1633.0 - Autodesk) Autodesk Maya 2015 (Version: 15.2.1633.0 - Autodesk) Hidden Autodesk Maya 2015 SP2 (HKLM\...\Autodesk Maya 2015 SP2) (Version: 15.2.1633.0 - Autodesk) BattlEye for OA Uninstall (HKLM-x32\...\BattlEye for OA) (Version: - ) BattlEye Uninstall (HKLM-x32\...\BattlEye for A2) (Version: - ) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) DayZLauncher version 0.0.0.19 (HKLM-x32\...\{E31045B4-9DB5-9EBD-44DF-BD4E6CFD40DF}_is1) (Version: 0.0.0.19 - Maca134) FileZilla Client 3.12.0.2 (HKLM-x32\...\FileZilla Client) (Version: 3.12.0.2 - Tim Kosse) Free MP4 Video Converter version 5.0.63.913 (HKLM-x32\...\Free MP4 Video Converter_is1) (Version: 5.0.63.913 - DVDVideoSoft Ltd.) Free Studio version 6.5.4.805 (HKLM-x32\...\Free Studio_is1) (Version: 6.5.4.805 - DVDVideoSoft Ltd.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{AA67D612-0BE5-44D6-9A91-592958F754A1}) (Version: 13.0.198 - Intel Corporation) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Landwirtschafts Simulator 15 (HKLM-x32\...\FarmingSimulator2015DE_is1) (Version: 1.2.0.0 - GIANTS Software) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.383 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.383 - LogMeIn, Inc.) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mozilla Firefox 39.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 39.0.3 (x86 de)) (Version: 39.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 39.0.3 - Mozilla) MTA:SA v1.5.0 (HKLM-x32\...\MTA:SA 1.5) (Version: v1.5.0 - Multi Theft Auto) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.62 - NVIDIA Corporation) NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation) NVIDIA Grafiktreiber 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) OpenTTD 1.5.2 (HKLM-x32\...\OpenTTD) (Version: 1.5.2 - OpenTTD) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.89.63.0 - Overwolf Ltd.) Overwolf.Setup.VC100CRTx64.Dist (HKLM\...\{EC9D5554-6852-4A55-81BB-AC02C7A8CFED}) (Version: 1.0.0 - Overwolf) Overwolf.Setup.VC100CRTx86.Dist (x32 Version: 1.0.0 - Overwolf) Hidden PBO Manager v.1.4 beta (HKLM-x32\...\{0E3A79BF-E860-4371-8ABC-7AAEDD68DA0A}) (Version: 1.4.0 - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7541 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.103 - Skype Technologies S.A.) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TL-WN822N Driver (HKLM-x32\...\{62FE0726-9652-4CD2-9F09-C769D8699C21}) (Version: 1.00.0000 - TP-LINK) Train Fever (HKLM-x32\...\Steam App 304730) (Version: - Urban Games) War Thunder Launcher 1.0.1.542 (HKLM-x32\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment) World of Warships (HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version: - Wargaming.net) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-3111803562-2746769953-2236998745-1000_Classes\CLSID\{073CB204-6B29-46FC-AB98-451F1D068741}\InprocServer32 -> C:\Program Files\Common Files\Autodesk Shared\DirectConnect2015 (64-bit)\bin\Aruba\Inventor Server\B (Der Dateneintrag hat 32 mehr Zeichen). CustomCLSID: HKU\S-1-5-21-3111803562-2746769953-2236998745-1000_Classes\CLSID\{8C23B656-4E6E-4B45-9920-9617168D39A3}\InprocServer32 -> C:\Program Files\Common Files\Autodesk Shared\DirectConnect2015 (64-bit)\bin\Aruba\Inventor Server\B (Der Dateneintrag hat 32 mehr Zeichen). CustomCLSID: HKU\S-1-5-21-3111803562-2746769953-2236998745-1000_Classes\CLSID\{E5B0515D-48D2-4F04-906D-0192ED65A2DD}\InprocServer32 -> C:\Program Files\Common Files\Autodesk Shared\DirectConnect2015 (64-bit)\bin\Aruba\Inventor Server\B (Der Dateneintrag hat 32 mehr Zeichen). ==================== Wiederherstellungspunkte ========================= 19-09-2015 12:27:31 DirectX wurde installiert 22-09-2015 19:48:15 Windows Update 27-09-2015 18:21:46 Installed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 01-10-2015 21:07:55 Windows Update 03-10-2015 19:00:20 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 03-10-2015 19:00:51 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {1341D991-45A7-4C10-BAA5-65EBDB9134B1} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {339E1F37-81AE-4471-A004-A99800C1429E} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {365A9221-DFCE-446D-B320-25B861E5C431} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {3951376F-BC7C-4B23-9314-B51073F5C2AE} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {3CAEBD94-8B23-40B2-AE21-E1038D74AFE5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {3F1089B6-5E83-48C2-B53D-1F0654C31A32} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {42F182BA-A8AB-4E20-91D3-9CECC64D35BF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-31] (Google Inc.) Task: {5CA9B7EF-0DF7-4BA7-857D-0DAABFC0A421} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {6778659A-248F-4C8C-9EB7-F4724F4DCDDE} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {68040486-D6CA-4E31-81E8-5879EE53DDA2} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {74821D10-FD54-4C64-A4CC-C24BD17153F7} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {79F92853-D26C-4BA6-AA27-21864807F33C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-07-31] (Google Inc.) Task: {8ABD49BA-7C64-4684-8D5D-1F99F2F4DF63} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {8DCECE90-398A-46A0-AAF8-AA246DE2E0DC} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {9ADF89A4-882D-4FF6-8ACD-D62CAD6D08AC} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {A28A17DF-2DDE-4F46-990F-647230BA2471} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {AF929AB7-BCC6-4D84-BCB6-67422D6D851E} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {B3D6E5C9-6958-4062-AACD-DBBCA6A0AB28} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {BBBEC7DA-9E26-4D8E-96FC-8DD213939808} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {BE87AEDE-ABDE-499D-A71B-9651AF8BC34D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {C2F72335-A79C-4D90-B0D2-AA4ED7305172} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-26] (Microsoft Corporation) Task: {C432132E-92D2-40BE-B039-3A36B954FB3D} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {C86D453F-7C21-4AA1-B008-83D8F73B4F15} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {D560CB97-0DC8-4DA2-A321-A16BE5A5DBEC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {DF716968-3442-4732-A220-BFB974D8C131} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2015-09-16] (Overwolf LTD) Task: {E9B9B665-1B6C-41AB-AB57-AE0A46122AA9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe Task: {EF166433-DFA4-4590-B4AB-AD15E9DE8C53} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {F3087E0C-D011-4531-BD48-38E8C42A2895} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-07-31 17:35 - 2015-07-15 04:04 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll 2015-07-31 16:51 - 2015-07-23 03:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-08-22 16:55 - 2015-08-11 11:14 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-10-01 20:12 - 2015-09-17 08:48 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2015-04-15 22:13 - 2015-04-15 22:13 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2015-10-01 20:12 - 2015-09-17 07:48 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-07-10 12:59 - 2015-07-10 12:59 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll 2015-10-03 11:57 - 2015-10-03 11:58 - 00012288 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1001.16470.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2015-10-03 11:57 - 2015-10-03 11:58 - 10814464 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1001.16470.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2015-09-30 16:16 - 2015-09-30 16:16 - 08395776 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.9.25.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2015-09-30 16:16 - 2015-09-30 16:16 - 02311680 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.9.25.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll 2015-09-18 12:28 - 2015-09-18 12:28 - 03495936 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1509.14010.0_x64__8wekyb3d8bbwe\Calculator.exe 2015-04-27 04:50 - 2015-04-27 04:50 - 00412672 _____ () C:\Users\Marlon\Desktop\GTA SA\samp.exe 2015-10-01 20:13 - 2015-09-17 07:44 - 06569472 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2015-10-01 20:12 - 2015-09-17 07:42 - 00471040 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2015-10-01 20:12 - 2015-09-17 07:42 - 01808384 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2015-10-01 20:12 - 2015-09-17 07:43 - 02274816 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-08-08 16:19 - 2015-07-30 05:40 - 00055688 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\QtSolutions_Service-head.dll 2015-08-08 16:19 - 2015-07-30 05:40 - 00104328 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\qjson0.dll 2015-07-31 17:33 - 2015-07-24 06:22 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-09-16 15:39 - 2015-09-16 15:39 - 45069312 _____ () C:\Program Files (x86)\Overwolf\0.89.63.0\libcef.DLL 2015-09-16 15:39 - 2015-09-16 15:39 - 00025600 _____ () C:\Program Files (x86)\Overwolf\0.89.63.0\CoreAudioApi.dll 2014-02-28 15:33 - 2015-09-26 10:24 - 00149480 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\quazip.dll 2014-08-04 15:43 - 2015-09-26 10:24 - 00090088 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\directsound_win32.dll 2014-08-04 15:43 - 2015-09-26 10:24 - 00103400 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll 2014-08-04 15:45 - 2015-09-26 10:24 - 00260072 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\clientquery_plugin.dll 2015-08-02 19:32 - 2015-08-23 12:56 - 00433664 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\plugins\soundboard.dll 2014-06-05 15:35 - 2015-09-26 10:25 - 00270336 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\ssleay32.dll 2014-06-05 15:35 - 2015-09-26 10:24 - 01291776 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\LIBEAY32.dll 2015-07-09 19:32 - 2015-07-09 19:32 - 00039384 _____ () C:\Program Files\FileZilla FTP Client\fzshellext.dll 2015-09-25 18:12 - 2015-09-24 04:34 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\libglesv2.dll 2015-09-25 18:12 - 2015-09-24 04:34 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.101\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData:NT AlternateDataStreams: C:\ProgramData:NT2 AlternateDataStreams: C:\Users\All Users:NT AlternateDataStreams: C:\Users\All Users:NT2 AlternateDataStreams: C:\ProgramData\Anwendungsdaten:NT AlternateDataStreams: C:\ProgramData\Anwendungsdaten:NT2 AlternateDataStreams: C:\ProgramData\Application Data:NT AlternateDataStreams: C:\ProgramData\Application Data:NT2 AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 AlternateDataStreams: C:\Users\Marlon\Anwendungsdaten:NT AlternateDataStreams: C:\Users\Marlon\Anwendungsdaten:NT2 AlternateDataStreams: C:\Users\Marlon\AppData\Roaming:NT AlternateDataStreams: C:\Users\Marlon\AppData\Roaming:NT2 ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-3111803562-2746769953-2236998745-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{524C0A4D-D4EA-4440-BB03-4F43E2D7D3DD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{F6144FA3-A037-42E3-9046-51711208DF1F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{CC5256B1-7C76-4D45-9D47-B3216ACEA305}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{0B8961D1-69DF-439F-A6CB-41583F413997}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{8AF21AB2-B354-4C87-9FAB-03724D724D25}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{70610403-56DC-4493-9435-1D186B77CD8C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{4403358E-3D6E-4BFD-831E-59F87AF2369C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{97FD3A4B-9176-424C-9851-E5D6629ABA15}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{AA4015B0-6846-4623-828F-6CC6799105E3}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\FarmingSimulator2015.exe FirewallRules: [{1CFBD98C-CF05-4757-A4A6-64E1B99EF50E}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{F2532978-1010-4A2A-9A08-933F3BAB062B}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x86\FarmingSimulator2015Game.exe FirewallRules: [{1B25BE2B-B8C6-4670-9EC9-EE5F94CEB60C}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{33049CE9-1C60-48F8-9D1B-03412E176786}] => (Allow) C:\Program Files (x86)\Landwirtschafts Simulator 2015\x64\FarmingSimulator2015Game.exe FirewallRules: [{22DD9854-77C0-4286-BED2-8C03AEF5E5B0}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{07BC39CD-8EE4-4030-9C99-C726C96DA914}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{E2258D94-79E5-4722-BC0F-68F968D0A6C0}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{B00DFBD7-5001-463F-BB96-8F7FD66DA101}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{7935CC01-88AB-48CC-B518-DB65E41D53DE}] => (Allow) C:\Steam\SteamApps\common\Rust\Rust.exe FirewallRules: [{0288EEBE-740A-4C65-A470-74A3CD7E025F}] => (Allow) C:\Steam\SteamApps\common\Rust\Rust.exe FirewallRules: [{DE8F7AD7-1D43-445E-BEC2-E0E0BCE29BDD}] => (Allow) C:\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [{F95B2467-19FE-4502-B90E-597877151EB3}] => (Allow) C:\Steam\SteamApps\common\Robocraft\Robocraft.exe FirewallRules: [TCP Query User{414895EB-0D3A-41A0-B55D-359DFF687EED}C:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [UDP Query User{37FDAFA1-87A3-417A-9552-7306F71AADC6}C:\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{367D939F-0016-4991-8D6F-1D85A9116A9E}] => (Allow) C:\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [{3F544CAF-6C6C-4F85-A97F-01A32E145F53}] => (Allow) C:\Steam\SteamApps\common\Unturned\Unturned.exe FirewallRules: [TCP Query User{9B319E8C-7427-48D1-B01E-3A7CC61A8851}C:\wolfteam\wolfteam-de\wolfteam.bin] => (Allow) C:\wolfteam\wolfteam-de\wolfteam.bin FirewallRules: [UDP Query User{A4DC822F-B683-4789-9CCB-D5E3E581FA6C}C:\wolfteam\wolfteam-de\wolfteam.bin] => (Allow) C:\wolfteam\wolfteam-de\wolfteam.bin FirewallRules: [{C84D8236-CAF4-4FD3-8968-DAA9FA90F2E6}] => (Allow) C:\Steam\SteamApps\common\Heroes & Generals\hngsteamlauncher.exe FirewallRules: [{701BEC58-A219-4641-A307-5D7BDD19EA36}] => (Allow) C:\Steam\SteamApps\common\Heroes & Generals\hngsteamlauncher.exe FirewallRules: [{5BA6C971-F13F-449A-A34F-878AF3975F5A}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{EA64A60F-D98F-48CC-8BDA-901C3DF74E67}C:\users\marlon\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\marlon\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{3D663696-6970-4B59-9D39-593B8EF2D7D3}C:\users\marlon\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\marlon\appdata\local\akamai\netsession_win.exe FirewallRules: [{2E62D4F0-4382-4C7F-8FC2-58121966C992}] => (Allow) C:\Program Files (x86)\DVDVideoSoft\Free Torrent Download\FreeTorrentDownload.exe FirewallRules: [{C81AA308-637A-4DEB-B576-A4FAEEEBDF5F}] => (Allow) C:\Program Files (x86)\DVDVideoSoft\Free Torrent Download\FreeTorrentDownload.exe FirewallRules: [TCP Query User{EA2EEA48-4D6B-45BF-AF40-FF7192F2B226}C:\program files (x86)\dayzlauncher\dayzlauncher.exe] => (Allow) C:\program files (x86)\dayzlauncher\dayzlauncher.exe FirewallRules: [UDP Query User{BF729416-1FC7-4D4D-862E-D87676AF43BA}C:\program files (x86)\dayzlauncher\dayzlauncher.exe] => (Allow) C:\program files (x86)\dayzlauncher\dayzlauncher.exe FirewallRules: [{4B27FB77-A27F-46AC-B7B3-B923F14C60EF}] => (Allow) C:\Steam\SteamApps\common\Arma 2\arma2.exe FirewallRules: [{6795A945-EA2B-4057-83A4-35C5817183F2}] => (Allow) C:\Steam\SteamApps\common\Arma 2\arma2.exe FirewallRules: [{E5BE5FE9-941A-46E0-8B80-39CA13659427}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1AE32715-FD43-486E-B0D7-A8682DA34F06}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{598C03F6-6E15-44A6-9405-61D3C1D754CC}] => (Allow) C:\Steam\SteamApps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{8AE2FA32-A701-4BCE-B28E-7FCD505E4A11}] => (Allow) C:\Steam\SteamApps\common\Arma 2 Operation Arrowhead\ArmA2OA_BE.exe FirewallRules: [{06CB22A1-0EC7-45DC-902C-131D0B789246}] => (Allow) C:\Steam\SteamApps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{67A16160-1AB3-4023-8BDB-63EE0AF8E4B1}] => (Allow) C:\Steam\SteamApps\common\Arma 2 Operation Arrowhead\ArmA2OA.exe FirewallRules: [{BFBB5A29-48F9-44BE-83BB-7A4E9FB35CC8}] => (Block) %USERPROFILE%\Desktop\CINEMA 4D R16\CINEMA 4D.exe FirewallRules: [{A0C366B6-C037-41C5-A696-E83B039ECFDB}] => (Allow) C:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{9748D917-6219-486C-8DE9-C900973A29AF}] => (Allow) C:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4936C75A-8386-47F2-B56A-39B79AC04025}] => (Allow) C:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{4D53868D-CFCF-4A31-90B0-74EEC6896577}] => (Allow) C:\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{0CB443B2-3816-4BA5-A811-44C083CC473D}] => (Allow) C:\Steam\SteamApps\common\Clicker Heroes\Clicker Heroes.exe FirewallRules: [{750A79A1-A302-408B-9A64-81BE3BA86ED5}] => (Allow) C:\Steam\SteamApps\common\Clicker Heroes\Clicker Heroes.exe FirewallRules: [{FDD71731-1D50-4C1F-86A0-AB85B04BF685}] => (Allow) C:\Steam\SteamApps\common\Reign Of Kings\Reign of Kings.exe FirewallRules: [{2B3EBC7B-512A-44D3-A53A-CE6E0ACE0020}] => (Allow) C:\Steam\SteamApps\common\Reign Of Kings\Reign of Kings.exe FirewallRules: [{2DDA6B67-BA7A-4F53-8398-3D24833CCA11}] => (Allow) C:\Steam\SteamApps\common\Train Fever\TrainFever.exe FirewallRules: [{143814F0-56C2-44A9-8033-D4A83FA0DB04}] => (Allow) C:\Steam\SteamApps\common\Train Fever\TrainFever.exe FirewallRules: [{2BCEE04D-0F63-47A2-9E1E-E301920A6A00}] => (Allow) C:\Steam\SteamApps\common\Arma 3\arma3launcher.exe FirewallRules: [{F6F5F5B2-2F2A-4A8C-BD39-5E1935F83198}] => (Allow) C:\Steam\SteamApps\common\Arma 3\arma3launcher.exe FirewallRules: [TCP Query User{263CF0BC-E391-44BD-A37C-5BC1947AA237}C:\games\world_of_warships\wowslauncher.exe] => (Allow) C:\games\world_of_warships\wowslauncher.exe FirewallRules: [UDP Query User{694B29AA-23C8-4D68-A8C9-5561FBB4C616}C:\games\world_of_warships\wowslauncher.exe] => (Allow) C:\games\world_of_warships\wowslauncher.exe FirewallRules: [{797FDE46-A5F5-4590-A015-37AC7B8ED402}] => (Allow) C:\WarThunder\launcher.exe FirewallRules: [{C1C58A6D-2C20-4E84-BB71-0921E60A9828}] => (Allow) C:\WarThunder\launcher.exe FirewallRules: [{0692DE0C-7770-4A5F-A55B-B6E9B3BDC16A}] => (Allow) C:\WarThunder\launcher.exe FirewallRules: [{E625A5AA-C02F-403A-9EBF-468C6CC62603}] => (Allow) C:\WarThunder\launcher.exe FirewallRules: [{26D428D7-E76C-40E9-90BA-BA13127B7F11}] => (Allow) C:\WarThunder\bpreport.exe FirewallRules: [{0BC14442-693D-49A5-903B-D1A729773531}] => (Allow) C:\WarThunder\bpreport.exe FirewallRules: [{6D1DCDFF-974C-49A0-8181-63E49751B3F3}] => (Allow) C:\WarThunder\bpreport.exe FirewallRules: [{121B45E5-3412-4E76-8D4B-EC179B2E8316}] => (Allow) C:\WarThunder\bpreport.exe FirewallRules: [TCP Query User{AB580C7D-0D60-40B7-8664-949F7F2E61DD}C:\warthunder\aces.exe] => (Allow) C:\warthunder\aces.exe FirewallRules: [UDP Query User{23A2EFC0-B3D3-48F6-B2B7-82045CC1313D}C:\warthunder\aces.exe] => (Allow) C:\warthunder\aces.exe FirewallRules: [{885C833A-A781-4D2A-A709-315811DC36B9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{510D3964-113F-45ED-BC90-30D81EC75C7A}] => (Allow) C:\Steam\SteamApps\common\Cities_Skylines\Cities.exe FirewallRules: [{8D881590-61F7-4F70-B1EC-5FDE0F9678A8}] => (Allow) C:\Steam\SteamApps\common\Cities_Skylines\Cities.exe FirewallRules: [{794B0CA9-C53B-4C15-90D3-87F030BC1BD3}] => (Allow) C:\Steam\SteamApps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{A94BF667-B9E7-422A-A9F0-69D2A37B8385}] => (Allow) C:\Steam\SteamApps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{0C175A5E-17BF-44CD-8168-203EA04BA6CC}] => (Allow) C:\Steam\SteamApps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{84C6E076-052C-4701-83EC-AAC1883FCE0F}] => (Allow) C:\Steam\SteamApps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/04/2015 11:44:01 AM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Es wird bereits eine Instanz des Dienstes ausgeführt Error: (10/04/2015 11:44:01 AM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Das Handle ist ungültig Error: (10/04/2015 11:39:45 AM) (Source: MsiInstaller) (EventID: 11310) (User: MARLON-PC) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Marlon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (10/04/2015 11:39:23 AM) (Source: MsiInstaller) (EventID: 11310) (User: MARLON-PC) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Marlon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (10/04/2015 12:00:59 AM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Es wird bereits eine Instanz des Dienstes ausgeführt Error: (10/04/2015 12:00:59 AM) (Source: OverwolfUpdater) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. Das Handle ist ungültig Error: (10/03/2015 09:54:20 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm arma3.exe, Version 1.52.132.676 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1bcc Startzeit: 01d0fe153e82e155 Beendigungszeit: 3 Anwendungspfad: C:\Steam\SteamApps\common\Arma 3\arma3.exe Berichts-ID: 82ca8416-6a08-11e5-9bce-d43d7e4f3472 Vollständiger Name des fehlerhaften Pakets: Auf das fehlerhafte Paket bezogene Anwendungs-ID: Error: (10/03/2015 08:57:44 PM) (Source: MsiInstaller) (EventID: 11310) (User: MARLON-PC) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Marlon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (10/03/2015 08:57:23 PM) (Source: MsiInstaller) (EventID: 11310) (User: MARLON-PC) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Marlon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (10/03/2015 07:00:54 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Systemfehler: ============= Error: (10/04/2015 11:32:51 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\WINDOWS\system32\athExt.dll Fehlercode: 126 Error: (10/04/2015 11:32:49 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000139 (0x0000000000000003, 0xffffd0018e9b5560, 0xffffd0018e9b54b8, 0x0000000000000000)C:\WINDOWS\MEMORY.DMP Error: (10/04/2015 11:32:47 AM) (Source: BugCheck) (EventID: 1005) (User: ) Description: Error: (10/04/2015 11:32:46 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 04.10.2015 um 00:33:14 unerwartet heruntergefahren. Error: (10/03/2015 11:57:51 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTLokaler DienstS-1-5-19LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar Error: (10/03/2015 11:53:26 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\WINDOWS\system32\athExt.dll Fehlercode: 126 Error: (10/03/2015 11:51:23 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "Übermittlungsoptimierung" wurde mit dem folgenden dienstspezifischen Fehler beendet: %%2147500053 Error: (10/03/2015 11:48:12 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT-AUTORITÄT) Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden. Modulpfad: C:\WINDOWS\system32\athExt.dll Fehlercode: 126 Error: (10/03/2015 11:48:00 PM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000139 (0x0000000000000003, 0xffffd001e57d4120, 0xffffd001e57d4078, 0x0000000000000000)C:\WINDOWS\MEMORY.DMP100315-30625-01 Error: (10/03/2015 11:47:58 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 03.10.2015 um 23:17:04 unerwartet heruntergefahren. ==================== Speicherinformationen =========================== Prozessor: AMD FX(tm)-6100 Six-Core Processor Prozentuale Nutzung des RAM: 33% Installierter physikalischer RAM: 8190.17 MB Verfügbarer physikalischer RAM: 5442.73 MB Summe virtueller Speicher: 16382.17 MB Verfügbarer virtueller Speicher: 13428.39 MB ==================== Laufwerke ================================ Drive c: (Volume) (Fixed) (Total:2048 GB) (Free:1583.76 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)] Drive d: () (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[System mit Startkomponenten (eingeholt von lesen Laufwerk)] Drive e: () (Fixed) (Total:465.22 GB) (Free:463.24 GB) NTFS Drive f: (Landwirtschafts-Simulator 2015) (CDROM) (Total:1.87 GB) (Free:0 GB) UDF Drive l: (ESD-ISO) (CDROM) (Total:3.14 GB) (Free:0 GB) UDF ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 8CE9FBB7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 2794.5 GB) (Disk ID: FF25C429) Partition 1: (Active) - (Size=2048 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
04.10.2015, 13:47 | #6 |
| Bei Download stürzt PC ab oder Internetverbindung bricht ab TDSS Killer: Code:
ATTFilter 13:25:33.0039 0x0a18 TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57 13:25:37.0484 0x0a18 ============================================================ 13:25:37.0484 0x0a18 Current date / time: 2015/10/04 13:25:37.0484 13:25:37.0484 0x0a18 SystemInfo: 13:25:37.0484 0x0a18 13:25:37.0484 0x0a18 OS Version: 10.0.10240 ServicePack: 0.0 13:25:37.0484 0x0a18 Product type: Workstation 13:25:37.0485 0x0a18 ComputerName: MARLON-PC 13:25:37.0485 0x0a18 UserName: Marlon 13:25:37.0485 0x0a18 Windows directory: C:\WINDOWS 13:25:37.0485 0x0a18 System windows directory: C:\WINDOWS 13:25:37.0485 0x0a18 Running under WOW64 13:25:37.0485 0x0a18 Processor architecture: Intel x64 13:25:37.0485 0x0a18 Number of processors: 6 13:25:37.0485 0x0a18 Page size: 0x1000 13:25:37.0485 0x0a18 Boot type: Normal boot 13:25:37.0485 0x0a18 ============================================================ 13:25:37.0856 0x0a18 KLMD registered as C:\WINDOWS\system32\drivers\66835679.sys 13:25:38.0813 0x0a18 System UUID: {354600E6-C194-C01D-9DC3-9C03CC415439} 13:25:39.0512 0x0a18 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 13:25:39.0519 0x0a18 Drive \Device\Harddisk1\DR1 - Size: 0x2BAA1476000 ( 2794.52 Gb ), SectorSize: 0x200, Cylinders: 0x59101, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 13:25:39.0572 0x0a18 ============================================================ 13:25:39.0572 0x0a18 \Device\Harddisk0\DR0: 13:25:39.0572 0x0a18 MBR partitions: 13:25:39.0572 0x0a18 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 13:25:39.0572 0x0a18 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A272000 13:25:39.0572 0x0a18 \Device\Harddisk1\DR1: 13:25:39.0573 0x0a18 MBR partitions: 13:25:39.0573 0x0a18 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFFFFF000 13:25:39.0573 0x0a18 ============================================================ 13:25:39.0582 0x0a18 C: <-> \Device\Harddisk1\DR1\Partition1 13:25:39.0583 0x0a18 D: <-> \Device\Harddisk0\DR0\Partition1 13:25:39.0595 0x0a18 E: <-> \Device\Harddisk0\DR0\Partition2 13:25:39.0595 0x0a18 ============================================================ 13:25:39.0595 0x0a18 Initialize success 13:25:39.0595 0x0a18 ============================================================ 13:28:36.0898 0x1938 ============================================================ 13:28:36.0898 0x1938 Scan started 13:28:36.0898 0x1938 Mode: Manual; SigCheck; TDLFS; 13:28:36.0898 0x1938 ============================================================ 13:28:36.0898 0x1938 KSN ping started 13:28:39.0260 0x1938 KSN ping finished: true 13:28:41.0523 0x1938 ================ Scan system memory ======================== 13:28:41.0523 0x1938 System memory - ok 13:28:41.0524 0x1938 ================ Scan services ============================= 13:28:41.0645 0x1938 [ 22CE801AD25C51E2553F41A076BB0CB2, 0520216417F1619FB642734EC937C59D5E79A24306C1E9B793C82FAE077851E6 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 13:28:41.0717 0x1938 1394ohci - ok 13:28:41.0730 0x1938 [ 2C49A2441EBB24C6ACFB524C1459115F, 0ABACB6F21C41C0297994E61F1BFABB3905AF6B569D0446FE8E174EB9225B8EF ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 13:28:41.0746 0x1938 3ware - ok 13:28:41.0790 0x1938 [ B87D3D07FE6F15328C6860D542F0E2BD, 46CF069EDD7DBFB4DB800BABA3081DAB363DD2CFD724AFF5916D3419F62A3574 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 13:28:41.0821 0x1938 ACPI - ok 13:28:41.0842 0x1938 [ 1E3C4EDBB7F3F668B7205E351010BB79, A3CA12F72836C4F77B671264828B370B9EBA9CD71110E2C0514994760B6B12FF ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 13:28:41.0857 0x1938 acpiex - ok 13:28:44.0773 0x1938 cdrom - ok 13:28:44.0790 0x1938 [ 320E7A02D81A468E8C1FEEFDB856AFAE, E65127D3D6B628F9D19EA509FEBD9E4DC1BF20D0C62C3C9E1D7087DF972B2AA7 ] CertPropSvc C:\WINDOWS\System32\certprop.dll 13:28:44.0815 0x1938 CertPropSvc - ok 13:28:44.0822 0x1938 [ 60D7D304DF75DFF6A46CF633F583B592, 4141D8D1C6FE829C02053DA91AC6B0628BDEB3322CAAD4AD958190F9D173340E ] circlass C:\WINDOWS\System32\drivers\circlass.sys 13:28:44.0836 0x1938 circlass - ok 13:28:44.0851 0x1938 [ FF9D4BCE19E5D36CB3A845A3286DA6C3, A0E2C38D629359EEC6F8EEC6F92A3E571AEF018BAF259F395DC497ED4827460B ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 13:28:44.0873 0x1938 CLFS - ok 13:28:44.0922 0x1938 [ 5C4648673693724C8D4A1A92E1AA06E6, 5D548241715687BFA52E40B867EF73CB45D01B7F9A9B7F00B92BF2B4C97BE1D0 ] ClipSVC C:\WINDOWS\System32\ClipSVC.dll 13:28:44.0954 0x1938 ClipSVC - ok 13:28:44.0971 0x1938 [ 8EBA63416EC166EBA6EF6D34A505D8C8, 5EB0236ABEA2277B71D9F009DA71934C618606B20BBEC07B8595195E40C12A2B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 13:28:44.0984 0x1938 CmBatt - ok 13:28:45.0040 0x1938 [ 3B64DA873CEA5BEC42570BFF1054A014, 3649B25855CB9BE5BA3B3FEE4221575381FB2D488B8B050B5DD0088386AA0F7B ] CNG C:\WINDOWS\system32\Drivers\cng.sys 13:28:45.0070 0x1938 CNG - ok 13:28:45.0079 0x1938 [ 5EEA0856000F81B3D709BC81B3AA1EF2, C04E4E31D3FC38102BA410D312F58AF848920EE37004A5C306D79229C9B6079A ] cnghwassist C:\WINDOWS\system32\DRIVERS\cnghwassist.sys 13:28:45.0091 0x1938 cnghwassist - ok 13:28:45.0144 0x1938 [ 74CD3BF688E2B408227FE012A2F2D8ED, CC01AC79CEB9DC94FA5675D66F048928C9968B8944E34F5482A73C14B70EE8A8 ] CompositeBus C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys 13:28:45.0159 0x1938 CompositeBus - ok 13:28:45.0163 0x1938 COMSysApp - ok 13:28:45.0175 0x1938 [ D38774D1D383A2CDB9A4F64B7206913B, 6CDDC46D1D431342F00CA537FC327B23B8AA4D513CEEEE61F3E19C77975DF9C8 ] condrv C:\WINDOWS\system32\drivers\condrv.sys 13:28:45.0189 0x1938 condrv - ok 13:28:45.0242 0x1938 [ 8AFDD74F2DC5BAD9B2215FB19DB65240, A2BDDA4C77C63D3D8E9F1D397D7B41EC1BF093A6399C14D311D4D230B5F1E093 ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll 13:28:45.0281 0x1938 CoreMessagingRegistrar - ok 13:28:45.0320 0x1938 [ 35DB06AACD8AD5999161DA71FF0E16F0, 22AD27811AAD14666ACEF4115447B0CFAA70D1E73923059FB2A9B4C3CBE500A6 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 13:28:45.0337 0x1938 CryptSvc - ok 13:28:45.0345 0x1938 [ F038EAF73AAB72A4A89185A5A7B9FD75, 8213A60B3BEAFC1C554C5D049DFE3C6E44CEFE639EDD6A335AC18A9DAEDA2D4B ] dam C:\WINDOWS\system32\drivers\dam.sys 13:28:45.0358 0x1938 dam - ok 13:28:45.0410 0x1938 [ 5E57B9FBB4E9C43EE5B69BEE01A1819F, A1F8D1E52AF446CEA2EB50064E3A24B713B19197D61C3EAECB81B3CCD80558E7 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 13:28:45.0460 0x1938 DcomLaunch - ok 13:28:45.0520 0x1938 [ 0605AB12BF1856DF21AB708F28EA91CF, 3A6A7F8F84044DC1EA490A007E6DBC52203BA237ECF1B845961D9BB95E9BF8C8 ] DcpSvc C:\WINDOWS\system32\dcpsvc.dll 13:28:45.0546 0x1938 DcpSvc - ok 13:28:45.0576 0x1938 [ BABB7BB5AD3CECFF466E6080F43CFC58, 1B8FF66557EC4C749156ED6DACC4D61D5DC4E25DD58F6DB3713C356214B80FDA ] defragsvc C:\WINDOWS\System32\defragsvc.dll 13:28:45.0614 0x1938 defragsvc - ok 13:28:45.0655 0x1938 [ 63C9464B165D31ACC46B6B089AB36B41, DE38DE4E6331D07630B63224F8014C27368C29791EDB58CC5DAE7CBACD37160A ] DeviceAssociationService C:\WINDOWS\system32\das.dll 13:28:45.0689 0x1938 DeviceAssociationService - ok 13:28:45.0705 0x1938 [ 7B3DA16FAA498838BB457E0B7E380EDF, B73DCFFA60886F10765E4B76A58CFF18C08CAFEE620700361FC8FEC7E80B5958 ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll 13:28:45.0728 0x1938 DeviceInstall - ok 13:28:45.0743 0x1938 [ CF3895DD260ADE05BC91D8FBE0A82907, D7D8A29E873BE5C3832C9264F0165F6CD50D42ED0E04B0FCF07F054793092334 ] DevQueryBroker C:\WINDOWS\system32\DevQueryBroker.dll 13:28:45.0757 0x1938 DevQueryBroker - ok 13:28:45.0766 0x1938 [ 25435407D97419627F4B10653433BF2B, 5429B0DB7C5302E9A6AF92C046637183D4147D4A206963ABEA3A611214D6AB04 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys 13:28:45.0784 0x1938 Dfsc - ok 13:28:45.0807 0x1938 [ E59C209F1F633C1AEAF151B2CA46BBAA, 6A4DA927418B56A228CC8D9DFA3351B2B53A9328F5C56C10F0C7B19974B2ED89 ] Dhcp C:\WINDOWS\system32\dhcpcore.dll 13:28:45.0843 0x1938 Dhcp - ok 13:28:45.0892 0x1938 [ 95AA7877FD4161BFBC8493F9279B1901, F6B7DF75D763A89901BD12454BEF92D161B392F721B8568505073929D9F419BD ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe 13:28:45.0906 0x1938 diagnosticshub.standardcollector.service - ok 13:28:45.0981 0x1938 [ 58395E37ED838B93A56F1D089C2F53CF, 57D167B58DF5B33F7E2A98E1B8B33C8F076D34CA032D22F050AE6F83A48DC8E6 ] DiagTrack C:\WINDOWS\system32\diagtrack.dll 13:28:46.0047 0x1938 DiagTrack - ok 13:28:46.0147 0x1938 [ 91DF13EC831BDCFA36A7A12CD13D66B9, 5054281FE91D4BE0DB446F6F30E3D59E669185555F6C20B988DEC250713FFCED ] Disc Soft Lite Bus Service C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe 13:28:46.0194 0x1938 Disc Soft Lite Bus Service - ok 13:28:46.0208 0x1938 [ FDCD449AE9E75D7690593D16ADAF4DB4, 3366C4BDB031EB525F85850E903C46802A2AC762C0772C6F6E543DDA4AF1E9D5 ] disk C:\WINDOWS\system32\drivers\disk.sys 13:28:46.0222 0x1938 disk - ok 13:28:46.0262 0x1938 [ 43A1B8B43CA4E213E0FD920F2FD6BCBA, 839C6047FD6EA951538209C30C9D8AE68F9B47A58DA151D071C03408250B0ECD ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll 13:28:46.0288 0x1938 DmEnrollmentSvc - ok 13:28:46.0311 0x1938 [ F10A8F6D036CEDD14A5471782C52F041, E0DA3C4F76DBBEAED549375E57819F8825B33A118F7674D417D294054863F648 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys 13:28:46.0325 0x1938 dmvsc - ok 13:28:46.0358 0x1938 [ 7228733177F673B4D51BD1AA082D47C1, DBE155CDCFAA7C32407A207F637F252FA0CE30F1DE7E7DBEC42DB37FADB5BFA7 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll 13:28:46.0385 0x1938 dmwappushservice - ok 13:28:46.0427 0x1938 [ 592E41B3C11CA12203D3708AD8FC3D37, 6C69D5D603FBF038C069EDDCE29F7C6A60CAAE58B985AB218E1497F2BA934D42 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 13:28:46.0451 0x1938 Dnscache - ok 13:28:46.0474 0x1938 [ 6184C7A2F12625C108AEFD3A43429967, 689153F319BB1013FF60F71317E8380A6945EEE8141EDBDD6B185A966E23BB93 ] dot3svc C:\WINDOWS\System32\dot3svc.dll 13:28:46.0500 0x1938 dot3svc - ok 13:28:46.0514 0x1938 [ A616D8297C1BEA690BBC796736A7A78D, 9365470F4609606410AD79D98E1E77D815DC7C5AA924FB639FCF713EE8EDEA76 ] DPS C:\WINDOWS\system32\dps.dll 13:28:46.0534 0x1938 DPS - ok 13:28:46.0569 0x1938 [ 45771610FF181434073B5A0A00F20F8D, 6A17DB09AA6D021F000F7315317235E1FCF41FD58EA7DF81A7C9F5A6DE999984 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 13:28:46.0581 0x1938 drmkaud - ok 13:28:46.0604 0x1938 [ 00D9A948FB7344C62CEBED88E50EE39A, EF33FE7FB34DE571F3956C1F7AC8EFAA25BFD9F3AFA3ECD25DD34C5890873245 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 13:28:46.0626 0x1938 DsmSvc - ok 13:28:46.0650 0x1938 [ F2328181D289CE83E9979733EAB6742A, 73B1CDA6ED8C42B36126909F1335B72126A5DDC6FC7CE8BA2CA274A2B92E82FD ] DsSvc C:\WINDOWS\System32\DsSvc.dll 13:28:46.0671 0x1938 DsSvc - ok 13:28:46.0700 0x1938 [ 496C3C6BC3D930D0960C9E75AA30F4A7, 3FE0E86DA8C2C6A990BB2F1B92C22BD3483882B8D69FF8025BB68A199362C234 ] dtlitescsibus C:\WINDOWS\System32\drivers\dtlitescsibus.sys 13:28:46.0708 0x1938 dtlitescsibus - ok 13:28:46.0790 0x1938 [ 89C9C3745F270EF93988DA57BC6AA62B, 947886F3121919427BDCB123C6FC28E29CA73D427E92025E1BEAA743D27306D3 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 13:28:46.0864 0x1938 DXGKrnl - ok 13:28:46.0886 0x1938 [ 6E36BDBB46DF7F865D0DD30663AE3891, 98967B01EA450AD4D5FE8085F710359C022D783B839A51BD4A266718156B01EB ] Eaphost C:\WINDOWS\System32\eapsvc.dll 13:28:46.0906 0x1938 Eaphost - ok 13:28:46.0911 0x1938 EasyAntiCheat - ok 13:28:47.0070 0x1938 [ 3070013B01EDA42C7EB67D731340C396, C083CA05650750876E70CB6AB51D5C047C06098C2ED86B083A74C97830247BFC ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 13:28:47.0189 0x1938 ebdrv - ok 13:28:47.0224 0x1938 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] EFS C:\WINDOWS\System32\lsass.exe 13:28:47.0238 0x1938 EFS - ok 13:28:47.0275 0x1938 [ 59EE187E333EE9914DD9BEA5F4E0D85D, E34BB8075E38FC6AEC056323C6E3B5B4E7041EE6F4D51699B706DEEA18BDB911 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 13:28:47.0288 0x1938 EhStorClass - ok 13:28:47.0310 0x1938 [ 9297F1CC486F24BDFD2874156AC5430F, 1AF8689ADE4E658FC9418F7886B6C19F7D005EAB2AEF9B0E14FC81C61A74CECF ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 13:28:47.0325 0x1938 EhStorTcgDrv - ok 13:28:47.0346 0x1938 [ 9E8FF6B95FD420FA9E40BE548E5C8D92, 8825B81418335D03CFAADB792C1466023C459BE489ACACBD6686FFB544F22D30 ] embeddedmode C:\WINDOWS\System32\embeddedmodesvc.dll 13:28:47.0374 0x1938 embeddedmode - ok 13:28:47.0391 0x1fc0 Object required for P2P: [ 7614E6E6B53E8FE6E6B8A6D6D3CC2018 ] Audiosrv 13:28:47.0405 0x1938 [ DC2F91EAE9A28FA8C6610A9B7701B70D, 480DB509BF944AAC3617594F1245B4603069DE39186BC1FA7EDB8E0536B05E79 ] EntAppSvc C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 13:28:47.0428 0x1938 EntAppSvc - ok 13:28:47.0434 0x1938 [ F7FCCA6300485EF60CEA6D991D6C8C78, 24080D80CF1FD678DF4C9CAE70F65F8D9232F5F6A6F2B73A77B5E3C91E6505F3 ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 13:28:47.0446 0x1938 ErrDev - ok 13:28:47.0479 0x1938 [ 2093F65AA84478E28C8E9D05BC413845, 086D4E0D4B993F4041AA8A9DCBEEDB53BD05B88E2BEFB218837FB10FACDF4233 ] EventSystem C:\WINDOWS\system32\es.dll 13:28:47.0526 0x1938 EventSystem - ok 13:28:47.0539 0x1938 [ DCCDC3F35F0618692117DF90800A4284, B636B2A39AE89A9C2CDE17EC52DA669DA8AA9E2B04CA5CA19926DA8009655244 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 13:28:47.0563 0x1938 exfat - ok 13:28:47.0654 0x1938 [ 76FA7D9F57562B88A1442469F08DD0D3, 21D50641D1E547FC90D4A1255139FFC61287D46A8E23AF25C84DEDD7A71E3299 ] FairplayKD C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys 13:28:47.0666 0x1938 FairplayKD - ok 13:28:47.0697 0x1938 [ 5A1C6AFFF6946C5C21A27AE05084C0D1, 558CB87E596E85182F6976F215EE0E35F57BF901409A2805E6A3C29D8984B048 ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 13:28:47.0718 0x1938 fastfat - ok 13:28:47.0770 0x1938 [ 046FC9CF53A91E2FBA498CA7B0C3B028, BCFB06DF53065706DD6287E8C47BF5047F8A1E33981E1881E6ED7510337F5BC8 ] Fax C:\WINDOWS\system32\fxssvc.exe 13:28:47.0810 0x1938 Fax - ok 13:28:47.0839 0x1938 [ 4E4B7D935DBF522B2F23D3573596181D, 9D0EC9F65920EE0FFFB2D49C58E4D5151C8CEEB7AA82543D226E4B84EEE4B3F0 ] fcvsc C:\WINDOWS\System32\drivers\fcvsc.sys 13:28:47.0853 0x1938 fcvsc - ok 13:28:47.0859 0x1938 [ 583EB1C7690E361213BBD0472155128B, 5F5871490A6DAC4A824F4428941AC86FBFA9AA349B99B5D9544E5D62EB459FA8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 13:28:47.0873 0x1938 fdc - ok 13:28:47.0896 0x1938 [ 94B1A46EDD335F0C54C7BDAFC43348E6, 58073D58D0BE7389C2A4736AFE108835E5AE9C9950FF630644F585C99B964043 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 13:28:47.0925 0x1938 fdPHost - ok 13:28:47.0935 0x1938 [ BC855BB7DFE06F27F78E0EB2A8CCB70D, D16C3DAB99C16B077BA5DA5E9E0646B0B9237B00ABAE867D9F81A2D072D583B1 ] FDResPub C:\WINDOWS\system32\fdrespub.dll 13:28:47.0954 0x1938 FDResPub - ok 13:28:47.0966 0x1938 [ F1125F20D56F28DDCD1A6F3E81EB4F5F, A6620ECCB15FAA70E4A43ADA4CE82CF97D708B6FA07F3FAED276359E7F92FD0F ] fhsvc C:\WINDOWS\system32\fhsvc.dll 13:28:47.0989 0x1938 fhsvc - ok 13:28:47.0999 0x1938 [ CDFD81CACE0E11596A3BB61EC4CF6467, 569FA86A215B054131AA9AFEECFEE7FD7143DCFFE275B84196004AEA538B2476 ] FileCrypt C:\WINDOWS\system32\drivers\filecrypt.sys 13:28:48.0014 0x1938 FileCrypt - ok 13:28:48.0025 0x1938 [ 3F02FEDAE894CBF4BAADDF8C8E1D53A8, DA32ABB1CDA867B8456C46F8581FA7F3A8D8B89D9F6E7422F51941D5FFA15B13 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 13:28:48.0038 0x1938 FileInfo - ok 13:28:48.0050 0x1938 [ 2824933386E30DE5BA089DF539CE19A3, 7B33E514576C68B444AE99CBA1360EBFAE8A46EEE5C01F4EE4CF471A712AB148 ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 13:28:48.0069 0x1938 Filetrace - ok 13:28:48.0160 0x1938 [ 8645F91F40B8D022C9AC3DABDF360A6B, 4F83080B1273C92470EB90D80B32056C913240DCC9C4C50B7BE85254066D654D ] FlexNet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe 13:28:48.0204 0x1938 FlexNet Licensing Service 64 - ok 13:28:48.0212 0x1938 [ 6A598249640F8BEDD79EC73917E1664F, A675238EA19E6632CDEB4EEFF7CF509EAAEF76AD8DFD247664E5607555D9CEE1 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 13:28:48.0226 0x1938 flpydisk - ok 13:28:48.0247 0x1938 [ 44B6A6832134DF651E887E941478CA35, FCF4EB726D00F5A17DD66C81CFDA49427281C94CF9CA2008397D591AEA61AE05 ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 13:28:48.0269 0x1938 FltMgr - ok 13:28:48.0345 0x1938 [ C197284A9D565A38497733AF2BDFA111, C6615AF0D366C2DD6D431B073901EED02D49AA3F252230735DBB52A90BCFA833 ] FontCache C:\WINDOWS\system32\FntCache.dll 13:28:48.0427 0x1938 FontCache - ok 13:28:48.0500 0x1938 [ 109AACC7FB0170535F71491F673AFD38, 212B6761ABBAC29993DA0A47C3DDE8074EA9E5A8FFA8FF6EAB95AC69D8FDD5A0 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 13:28:48.0513 0x1938 FontCache3.0.0.0 - ok 13:28:48.0526 0x1938 [ 3F3B9E8CECD5604BC7746EF3A852EB67, 51AF62A9563379266C0C873E82F55427900032DFD7AC3EBDCDF77F8F8DE91A5D ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 13:28:48.0539 0x1938 FsDepends - ok 13:28:48.0554 0x1938 [ A60583221C7BB7CEC35C63285A297BE1, 3C842FBEAD1FA2BD8D37B2B0E8EDF77F4F50508C56FB25DFA81DE9679090D51D ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 13:28:48.0566 0x1938 Fs_Rec - ok 13:28:48.0595 0x1938 [ 58013A50225174EEF1410E37795D7908, F8E557CA4110ABB203192DEAF59D91A5FEF2A5EA394637276DAB7F4D2E7BFA39 ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 13:28:48.0625 0x1938 fvevol - ok 13:28:48.0647 0x1938 [ 0DAAE3EFCE00133AB3E383A36C47CDAF, 9145665F4F0575F951803AAFAA1A7DC0FAA35430CAE7D90E902074D60D6F4C62 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 13:28:48.0660 0x1938 gagp30kx - ok 13:28:48.0687 0x1938 [ F59155B95D01C08F9ED774B626B504A1, EF0FCF35AD9CD5E5D695F0C064244D2B327E7FB10FD7CBB0586253EC75562918 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 13:28:48.0700 0x1938 gencounter - ok 13:28:48.0716 0x1938 [ AE24452F55C6F1784CBD7489D0CDDB02, 4E13C51CBF30A8662B1180AC74E968CFC428B6EA7931F09357E7D120063D4823 ] genericusbfn C:\WINDOWS\System32\drivers\genericusbfn.sys 13:28:48.0729 0x1938 genericusbfn - ok 13:28:48.0817 0x1938 [ 5031F3E650D242EEECEB92EB9900FB93, FB51ADB81AC3E0097362BAECEC4F0C83C46E5505277B7F35FDCE9BF88B72C963 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe 13:28:48.0855 0x1938 GfExperienceService - ok 13:28:48.0880 0x1938 [ 96F0D3A583A91B634EE2AC2507356EDC, 43D2575F33D28F61C13D2DCF358BFA9DCEAE276C83152DBE7AE2020A66929CD9 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 13:28:48.0895 0x1938 GPIOClx0101 - ok 13:28:48.0960 0x1938 [ E50CE978F571B900D9A7E2F1C5BCC070, EA14873A5F1B700D7CDBE55B9D214DC457262866A90D80B3E8325A8EB7932CE7 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 13:28:49.0033 0x1938 gpsvc - ok 13:28:49.0068 0x1938 [ BA2455D93BD57989A04FE4094AA6F941, B579FB367C063EA30C034381148410D49D38E183A5A4D51D2334A81DAEE95CEC ] GpuEnergyDrv C:\WINDOWS\system32\drivers\gpuenergydrv.sys 13:28:49.0086 0x1938 GpuEnergyDrv - ok 13:28:49.0127 0x1938 [ 7814A8ED32D5186BA651008AFFB55080, 1116694AD45DC53B987910DFD16909B69DEF754034E4C535AEE6340229CE5697 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 13:28:49.0137 0x1938 gupdate - ok 13:28:49.0144 0x1938 [ 7814A8ED32D5186BA651008AFFB55080, 1116694AD45DC53B987910DFD16909B69DEF754034E4C535AEE6340229CE5697 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 13:28:49.0153 0x1938 gupdatem - ok 13:28:49.0169 0x1938 [ 7F79205B4EFA98F0767309479C8C01C6, 4B576903A83F33A8CF31D3887144A3D51C56D1187115C83AC99C0E9F6B4BF128 ] Hamachi C:\WINDOWS\system32\DRIVERS\Hamdrv.sys 13:28:49.0184 0x1938 Hamachi - ok 13:28:49.0280 0x1938 [ 2ADED86ED9B92885378467CFEE9ABE8F, 78703B6E51C5E7DCFFBA9F15C404DB2A0054FE8F2F92B7AD470B08498995712A ] Hamachi2Svc C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe 13:28:49.0354 0x1938 Hamachi2Svc - ok 13:28:49.0376 0x1938 [ C277A49F8A8295840DEBC9240B75A282, 8B2BA0E6A8300323765D95ECD843105B0FC4B80B85EE2220E677C4E9A760C9D8 ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 13:28:49.0392 0x1938 HDAudBus - ok 13:28:49.0397 0x1938 [ D5A57EF4822A0388352FFF9F5CD53495, 509F365386859157E9078821FAA56D2A3C0BA296CA129E0D42453428A14687A5 ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 13:28:49.0410 0x1938 HidBatt - ok 13:28:49.0429 0x1938 [ 39575B53EB80C77FF2A3F1449D00B7F5, 37E66B38BACE00AFEF7093F990A234399D8451A9D2C2C8CBECAB69C664E63EA6 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 13:28:49.0446 0x1938 HidBth - ok 13:28:49.0452 0x1938 [ 35C3B602664116E737FF729F9A7156AD, 7A3C5CAD716E819CC53405971F3ACD135BCF023EC2228C1095E2116BCC384E62 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 13:28:49.0466 0x1938 hidi2c - ok 13:28:49.0472 0x1938 [ C4ABE526BBF2A18E8AF70177FBAD9C6E, 4DA06B563A08AC15D949F4599F73F172B3BFCB5D23B34240D1E2114438A11929 ] hidinterrupt C:\WINDOWS\System32\drivers\hidinterrupt.sys 13:28:49.0484 0x1938 hidinterrupt - ok 13:28:49.0495 0x1938 [ 348416C7D7EB05BC3099FE2F2B27985C, F30E8682E9DD731A1AD7328FB8A48A2BB7D6E52780AE1FDE839D26E84B4FA7B5 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 13:28:49.0510 0x1938 HidIr - ok 13:28:49.0516 0x1938 [ 5576DF399CF2D3B63608F7F282151249, 04939E79B8B8035547CE6FFE9001252CA810BAD46D8DB75FF5C13EB10EEB5C57 ] hidserv C:\WINDOWS\system32\hidserv.dll 13:28:49.0530 0x1938 hidserv - ok 13:28:49.0536 0x1938 [ 01F732724AF6EFE69886DA95A4E51820, E048A480F9396418BDE9659596E7EDA5FF97D3CE029D186048609B47575BEAE1 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 13:28:49.0550 0x1938 HidUsb - ok 13:28:49.0584 0x1938 [ 7433A8D28EE11A661C7A45AF28BA7987, 8A73DB423924E84CD3629BF6C7298CD093D2437B73B3F4520D39330923DDA2D6 ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 13:28:49.0608 0x1938 HomeGroupListener - ok 13:28:49.0652 0x1938 [ 3FDBFBE5AE639996EB8D482C16BA7EA9, 7E48304818AABB4C5B0CB7FD32D96D6F90F4180AB0F668A2FE653A7097A40673 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 13:28:49.0685 0x1938 HomeGroupProvider - ok 13:28:49.0691 0x1938 [ 3844CE7DD23530CAD59D8CABA57CCB05, A44BB60686A0E98FF370D9DED5B32C3F34F0352ACFA3B3052BA4023922B53DB7 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 13:28:49.0704 0x1938 HpSAMD - ok 13:28:49.0764 0x1938 [ CA6EADBB8731CA27BDA4037BF290AC14, 31EC9397D55D4EEC416AD722134E2D6B5D14E46D2150CB94889C4BFDAACBF421 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 13:28:49.0807 0x1938 HTTP - ok 13:28:49.0825 0x1938 [ 8841D927EB1F7FFC8B1805BC0CF190ED, B063E686380EEF582CF736E33751812F0041C593C7F30EE97D13DEDC9B246AB5 ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 13:28:49.0837 0x1938 hwpolicy - ok 13:28:49.0842 0x1938 [ 53436C3835E80F4421652A67F44D6313, 8731091945A839713348DF3060A4C96033874E2B3DC7E099BEEC8C65B07F98CF ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 13:28:49.0855 0x1938 hyperkbd - ok 13:28:49.0860 0x1938 [ B2DC6C2F313EBB967B556B4E73A75451, B1816A0AE15705F0325F167EA76166779607D6086EC36A4A960E3BA47B4EBC4B ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys 13:28:49.0873 0x1938 HyperVideo - ok 13:28:49.0881 0x1938 [ D4CDEE4A62BDFFF6E8558A9552148EA7, 55306786CB45082AE374937EBA256FF9CD640BB2E8C19DC6C704489D4743F5CC ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 13:28:49.0882 0x1fc0 Object send P2P result: true 13:28:49.0900 0x1938 i8042prt - ok 13:28:49.0905 0x1938 [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 13:28:49.0914 0x1938 iaLPSSi_GPIO - ok 13:28:49.0921 0x1938 [ F1DF87463AC308047B089E9F0456B4C8, DFFF3C63D3124C2B879B888104042406FE326D4E7C8C1881A269BD4287B9CD33 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 13:28:49.0931 0x1938 iaLPSSi_I2C - ok 13:28:49.0955 0x1938 [ 9FDD4763A115D04F565C38183DE4646F, A8B0653E7C5F5B3CB2A1B642F502269FB1BB1E35DBB1CBABDBDADF92C9815727 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 13:28:49.0988 0x1938 iaStorAV - ok 13:28:50.0005 0x1938 [ 4E69EE8F8E5DA036535D433C544AF9E2, 2ADE9B97CE1C19FF984D8BB99CF31415872C2D9628864BD78C0E44D21CC94EE3 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 13:28:50.0028 0x1938 iaStorV - ok 13:28:50.0045 0x1938 [ 15C59DF20F74A0C2C764B991FED7F4A5, 6E9804775E815F32A4D73C346E627D64A3096525E78FAE3B6E43CFECAE270428 ] ibbus C:\WINDOWS\System32\drivers\ibbus.sys 13:28:50.0068 0x1938 ibbus - ok 13:28:50.0107 0x1938 [ 88E6A429944544346EC3AE1FD7D24BCC, B6B8D51E5491C91D2FCDC77C1D82A5168B0C860252208E1B4612D8D5C19401AD ] icssvc C:\WINDOWS\System32\tetheringservice.dll 13:28:50.0128 0x1938 icssvc - ok 13:28:50.0135 0x1938 IEEtwCollectorService - ok 13:28:50.0179 0x1938 [ 6F9C31435DD3E3D3BC247212EA144EBF, 05C4A0BD4BABD27783CEFEE6108C1A05911A212189233F09AF1A56BDC60F60F8 ] IKEEXT C:\WINDOWS\System32\ikeext.dll 13:28:50.0232 0x1938 IKEEXT - ok 13:28:50.0392 0x1938 [ 3A2D6740F51BE48C0FD01AD907329DEE, 4FD899CD6E3B3D5C9803E52CB72F002B6CFC144D524FAF6845CF6D115EC6E059 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 13:28:50.0519 0x1938 IntcAzAudAddService - ok 13:28:50.0532 0x1938 [ 498759139F71142888CF7EFA1ABE18C8, 9CD0CD748B143F947B4DEDE39344A8C284717CC8AC97E25827EB73CF10831419 ] intelide C:\WINDOWS\system32\drivers\intelide.sys 13:28:50.0544 0x1938 intelide - ok 13:28:50.0549 0x1938 [ DC270DDCDDC2EF65D484A65CC5166222, A88BEAD819ABEFE28B6F9A10586ADCB0EE2A5ED9273F176E9313750609C7892F ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 13:28:50.0561 0x1938 intelpep - ok 13:28:50.0587 0x1938 [ B4D9C777762B1F7356958B9C0AA93BEB, F11B07FE939A107AB4EED4857854DF269C2D86A80C8507C8B1E95F7805975EDB ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 13:28:50.0604 0x1938 intelppm - ok 13:28:50.0610 0x1938 [ 22BD83268B80A8C89AAC0BDF46E4EB5D, E7DC0C2E4104B51EA545BA8D0CFF11FD6A15BFD8EE16E546E8FC220853402CB3 ] IoQos C:\WINDOWS\system32\drivers\ioqos.sys 13:28:50.0623 0x1938 IoQos - ok 13:28:50.0647 0x1938 [ A49E47A6E1429123F46A7CA9C05AEFC1, FFD68CA46DFAA4954FD76145808E2C74BDC34FFD6979BB3FB6A3EE4DC33CDC78 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 13:28:50.0666 0x1938 IpFilterDriver - ok 13:28:50.0727 0x1938 [ 8FBA61B7CB44F136226BE3B346FC6D19, 2190A523AC948B18C2C7B6DC96ABB654DAB471AD5E5E13F79899416E91777AED ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 13:28:50.0782 0x1938 iphlpsvc - ok 13:28:50.0790 0x1938 [ E0C276985AF968CE295B8E09C121321F, 07B54165E80D4254C29A6CF00CC634E70F190EF0EB8EEF73EC14F38B841087A5 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 13:28:50.0806 0x1938 IPMIDRV - ok 13:28:50.0829 0x1938 [ 5D3744E6FDEC1A6FB3FA9B1DD4AF0694, 209BE9FC25C8BF8CE058B7E993B6A902B881380DADC69F5208733077DA7F4382 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 13:28:50.0848 0x1938 IPNAT - ok 13:28:50.0869 0x1938 [ B18202D72C0EF4B53CEC6F59E3E1B955, 6DA244E6485372C16CF0B38838DC90B48079A85F5D22B0F2F197C8DA37F0A293 ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 13:28:50.0885 0x1938 IRENUM - ok 13:28:50.0890 0x1938 [ CD04CBCCCB4C0E4BB06B98E0F45C888A, 106B3E823C188BD14328F2BEA28559D2F637C270064B2FD214522FAC4E616F4C ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 13:28:50.0902 0x1938 isapnp - ok 13:28:50.0927 0x1938 [ 5D90E942C94B20E0F321015C0ABF3EEA, 4110551B172D4A5524DD857D7CB65FAF2594310BE7883D5641BC0DF5EF49C82C ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 13:28:50.0945 0x1938 iScsiPrt - ok 13:28:50.0952 0x1938 [ 4192DFE6CA143C0AD8AF42C51A82BECA, 31FB3A261D0D5241CC87EF7DFF8BFC1A1EACE8CEC42138918EC5958DAEE100CD ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 13:28:50.0965 0x1938 kbdclass - ok 13:28:50.0970 0x1938 [ B63C0DB341DCB46CF7AA259333A737DD, F1B43BA68707F3F99CD31AB2035F5E86CD967AE4E5393928C69861785E960872 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 13:28:50.0984 0x1938 kbdhid - ok 13:28:50.0989 0x1938 [ 53C79A7FABDAAFD11EAB31963FB2CED7, 357418645DDCEFA5546AE78EDCAE86D50928710CA7A3F65F01CF721AADA36623 ] kdnic C:\WINDOWS\System32\drivers\kdnic.sys 13:28:51.0002 0x1938 kdnic - ok 13:28:51.0017 0x1938 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] KeyIso C:\WINDOWS\system32\lsass.exe 13:28:51.0030 0x1938 KeyIso - ok 13:28:51.0044 0x1938 [ 1E99B26BDB9B9C9BC775ED4543558560, 890870A6737B4910735D1B23F714AA73FCCD1C131D135FACBA6909F06D31B3FF ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 13:28:51.0058 0x1938 KSecDD - ok 13:28:51.0067 0x1938 [ 6198A79011C67497B324798B3D4272CE, C587F7D86837550D07918F6AACF26BF65EBAF7FF57475DC9196B4D011E83AE47 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 13:28:51.0083 0x1938 KSecPkg - ok 13:28:51.0088 0x1938 [ 503597D9B72DBD9998F722F12A51ACFC, 9B3585282191163AA70243BAD921ED8725A98454E0D3879E0F671E0E4F56AB4F ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 13:28:51.0102 0x1938 ksthunk - ok 13:28:51.0139 0x1938 [ ED5AE20C27F27F293C6C61AEC9881054, 4D5BE394D129BD559B0A9D237F3F59CB3D24C15ABDD97AE2E64931D6B9D14FF1 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 13:28:51.0168 0x1938 KtmRm - ok 13:28:51.0220 0x1938 [ C529DA0AD5A21878E318801B024AF8E7, A14E8ADCA33C37B1D256CB4926A19F56D2D19B94EDF314A4ED34A8B5AB62CA5A ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 13:28:51.0247 0x1938 LanmanServer - ok 13:28:51.0261 0x1938 [ D6D9F4CAFD3F1A7E30AD02E508552CD2, F0D225E5951CFE1D8349F634CC91BDD5B3F9DCF6233CCB965E99BFEAFE642265 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 13:28:51.0288 0x1938 LanmanWorkstation - ok 13:28:51.0303 0x1938 [ 24881F16D2829764681F5FAE7B86D7D3, 290348CFAF3165847E4B53965D22E9D417EE20FFD23293B5C1855C57E6328599 ] lfsvc C:\WINDOWS\System32\lfsvc.dll 13:28:51.0317 0x1938 lfsvc - ok 13:28:51.0325 0x1938 [ 6ED675774BDC3735AB6DA12D29F825CF, 4317C7CF491F4E806975E7A973CFF11CFEE9E94730DDABCC67C3D693691DDDE5 ] LicenseManager C:\WINDOWS\system32\LicenseManagerSvc.dll 13:28:51.0339 0x1938 LicenseManager - ok 13:28:51.0369 0x1938 [ DB789F57CE94C827FBFF709CA5ABD29E, 4CA4DD079A63649C36F76A31C4081F11F5CF6574AC573B63EF930DB19B1D1C95 ] lltdio C:\WINDOWS\system32\drivers\lltdio.sys 13:28:51.0388 0x1938 lltdio - ok 13:28:51.0413 0x1938 [ FECBC6C4981772E5D0F517B34A5496EE, 15DB097BFB221B91E580E5CD1DD6B34A9A2C78A1A6FCE4162A855BB4AFE673E9 ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 13:28:51.0441 0x1938 lltdsvc - ok 13:28:51.0476 0x1938 [ 24C87BDC66AB192FEB273BEE5FD5AA38, BFAAE1F2450DEBD1A14877C046C6EBA91014DB0B5D0FB95EC14CB714B773B3C0 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 13:28:51.0490 0x1938 lmhosts - ok 13:28:51.0537 0x1938 [ D6BF6FD055BD719F3D62E51B90857159, A7777D18E404164B4DA531AD94D2A712D9CC6A9288795B7388037752A558E96F ] LMIGuardianSvc C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe 13:28:51.0554 0x1938 LMIGuardianSvc - ok 13:28:51.0571 0x1938 [ 3BB39166E446D456C277C17DFEA3DAC6, 1A08E1D017BBCE91E508D876835FA7AD2DA0859A8CFE8F8F31B4F12B48E2573D ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 13:28:51.0585 0x1938 LSI_SAS - ok 13:28:51.0592 0x1938 [ 25CF625E46307A5D6674C8DFA1A289AA, 1D00EB70B6B0157013A7C15EF194F51B8596612066EF31B337D8134D6BD0BBBE ] LSI_SAS2i C:\WINDOWS\system32\drivers\lsi_sas2i.sys 13:28:51.0606 0x1938 LSI_SAS2i - ok 13:28:51.0613 0x1938 [ 722C52B12EA4C198D56994934C9DDAB6, 5F4AB818251C770821BAF41C19B1C483A31CCC28EB96F2084D4092E33EAF906B ] LSI_SAS3i C:\WINDOWS\system32\drivers\lsi_sas3i.sys 13:28:51.0630 0x1938 LSI_SAS3i - ok 13:28:51.0637 0x1938 [ 3371FF1D5D745C3306C6A2C4E99C25A9, DD6F0099001501BAEDDF8411FBCD930BD6472662D209199249203CB2FDAA23FB ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 13:28:51.0650 0x1938 LSI_SSS - ok 13:28:51.0681 0x1938 [ E2EEF074F5260378F9AAFBCD592319A3, DC56674A08FA03FA7AF7DD8B3CC55D8324D1CB51546092A990A935FF9AB48A3C ] LSM C:\WINDOWS\System32\lsm.dll 13:28:51.0725 0x1938 LSM - ok 13:28:51.0741 0x1938 [ C692B9C0352315417CF49FFA664957A3, C2D4F9A936B809889F7C51FE48214A1923175913A6C5D0B72D3BA469214B5174 ] luafv C:\WINDOWS\system32\drivers\luafv.sys 13:28:51.0764 0x1938 luafv - ok 13:28:51.0803 0x1938 [ 6A4C75FD28F60062FEA3DF3B15D956C0, 4FC58F3320D33BDACCF759A50C623A3E58E4320749E6691B397DF0C8EAAA8A6F ] MapsBroker C:\WINDOWS\System32\moshost.dll 13:28:51.0820 0x1938 MapsBroker - ok 13:28:51.0827 0x1938 [ B2ED9A7A5587A128A0EFD0DBE7662E95, 63070AAFD44E3CD2A4B262DF27222B103455A4D8C2E45914502BFA03D84D32C9 ] megasas C:\WINDOWS\system32\drivers\megasas.sys 13:28:51.0840 0x1938 megasas - ok 13:28:51.0861 0x1938 [ 083F71488E6780A67290273180256EA5, 5F43CE66F5A48850BABB70F4D219FDD002F9BC2B2F0E58E66FE2C492AA335E50 ] megasr C:\WINDOWS\system32\drivers\megasr.sys 13:28:51.0892 0x1938 megasr - ok 13:28:51.0918 0x1938 [ 5907A10D46747A2B6DBFD6A198254DC2, 6C283E9DC75C7ABFD270D6FABBF4F54628A1786E7CE2F603BF664CBB9E4FE583 ] mlx4_bus C:\WINDOWS\System32\drivers\mlx4_bus.sys 13:28:51.0952 0x1938 mlx4_bus - ok 13:28:51.0973 0x1938 [ 91ED6F0EDF4158D63C52194F17D4F42E, ACF543978E253650C167C6C370699AEA7340EBCECF7CAB904CBDD334D1BD6928 ] MMCSS C:\WINDOWS\system32\drivers\mmcss.sys 13:28:51.0987 0x1938 MMCSS - ok 13:28:52.0004 0x1938 [ 2C4CC9F6ADBED5A6D131FDB97A78FF68, 04DC76E3F0959C0A9B00DF2133B075194FB7DCBD76832B9D25B0E37223D300DC ] Modem C:\WINDOWS\system32\drivers\modem.sys 13:28:52.0021 0x1938 Modem - ok 13:28:52.0038 0x1938 [ D8DB13529C8AD6FBAF8E2F382024374F, 13025035C479E2EF76EDCB90D83BE65B4ADD9F7000AD31FEAD628D5DDFE69158 ] monitor C:\WINDOWS\System32\drivers\monitor.sys 13:28:52.0052 0x1938 monitor - ok 13:28:52.0063 0x1938 [ 2DAAF1EE1C30F2FCF59851A64ADA0422, 08CD801E63E2862DE058CD732C3DB3D87B1A2898732365440E3F8919932E96FC ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 13:28:52.0075 0x1938 mouclass - ok 13:28:52.0081 0x1938 [ D30FE074503283829ED194BCAE6239C3, A3A127381ECC798417D01F6B8A1894EED7D71989047BC4D1D74D0E7C8394AD65 ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 13:28:52.0095 0x1938 mouhid - ok 13:28:52.0126 0x1938 [ D5EC9413527B286CFEEB0294C53ABB95, B094C611F5A7E33D2F8667B2A4D6260E1D57BD135867F984EE5B674C7EE72B95 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 13:28:52.0139 0x1938 mountmgr - ok 13:28:52.0192 0x1938 [ 31A94358EF55B871B1B81ADE3ACEBFF9, 611E9502DC15733F37EEF8EA3D6DCD51434EACE3EBC204197E05A7B299FFC0D4 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 13:28:52.0204 0x1938 MozillaMaintenance - ok 13:28:52.0212 0x1938 [ 989A1BBD9C49B107B4A47D06E6827A69, 62D90B22AE13AC84324DFD5FEBA595813AD07469B7FEC41380CE223D93020CCA ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 13:28:52.0228 0x1938 mpsdrv - ok 13:28:52.0274 0x1938 [ A0DBB9386BEA8DA1A159C2A2E07081A3, 9D3F26005A76A72F9512F040D45C16124D17F8C8DA45C51FFAF74F066357D0A4 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 13:28:52.0322 0x1938 MpsSvc - ok 13:28:52.0361 0x1938 [ C1E74DD1D84861D8F12FF8BC0BA11975, 5912A0455C840F5C8AD6383823C9C7DE6FF8B5CAF1B72EA181864999891EAF30 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 13:28:52.0385 0x1938 MRxDAV - ok 13:28:52.0402 0x1938 [ 1DF2C5FD2710A13B07E663A12F0E0EEA, 8EBCA9269F52A5CF602F5DE2B0C2AB2BFD82F415465DBB74C73D43F321D9FD46 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 13:28:52.0431 0x1938 mrxsmb - ok 13:28:52.0444 0x1938 [ 185932B1149BD707F8A13174CDAB365B, BC26CB10DD6E81A94477564444E91F76D47E685E897BD77B9C1393F0D31AB718 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 13:28:52.0468 0x1938 mrxsmb10 - ok 13:28:52.0484 0x1938 [ 99E24D4DBACBC569833B9A67710D65E7, 93BC765E7B6E19E83AFF783DE8080A80A1D69A406B496F1E36C47AE6E86AFB76 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 13:28:52.0505 0x1938 mrxsmb20 - ok 13:28:52.0530 0x1938 [ 6F8BE4FB6262012E61BBADB5444628DC, E87489207AA48106C08E4BADDD8D66D14BC9DD6AD2A4CDD880BA655932CDDE60 ] MsBridge C:\WINDOWS\system32\drivers\bridge.sys 13:28:52.0549 0x1938 MsBridge - ok 13:28:52.0586 0x1938 [ 283BDF3602F442336DAF242BDD07FB98, 185F046B6AA24FFD1567F00AA70357C82002FF627E329CEF9B926645A6DDB172 ] MSDTC C:\WINDOWS\System32\msdtc.exe 13:28:52.0605 0x1938 MSDTC - ok 13:28:52.0615 0x1938 [ 7C55F1751CAC199680D4489D1EE46544, 967EC8137D321F6139C3382D19A338FD97A3023EB654747AC57C2008BE4AF677 ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 13:28:52.0629 0x1938 Msfs - ok 13:28:52.0658 0x1938 [ 988588C16A53C2581488C15FF18934BF, F021FD31163CB5C7012CF96EF642C5E551708C835039075268F4CBED002D441D ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 13:28:52.0671 0x1938 msgpiowin32 - ok 13:28:52.0684 0x1938 [ 09622DBC24D0178F15DB8461BB6970DF, C0B3F9B2219AAF87E417EE9FF54C64B8AD9944E101EA79B5DC81D99E8C2ECF30 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 13:28:52.0697 0x1938 mshidkmdf - ok 13:28:52.0710 0x1938 [ 34BB07495C0159BE4189841E16F3BC2F, 264B5735D9A68C85BEDE363D4C0AE1FCC381B39EA884B4BAEE185EB8A873184A ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 13:28:52.0722 0x1938 mshidumdf - ok 13:28:52.0731 0x1938 [ 7BF3F0DA362C053918F5F2EC43CE39E2, AA773FA3F83C0C572160D3D0286A697DC628FF4F3655EF21D01C6D1B7BE5DF1C ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 13:28:52.0742 0x1938 msisadrv - ok 13:28:52.0775 0x1938 [ 669DA2006C0B9D882D2014617E1E88F5, 090F558818806CAEF6C81D369F8BFFE4A8240295EF37CAA7102A18F4CD20D868 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 13:28:52.0795 0x1938 MSiSCSI - ok 13:28:52.0800 0x1938 msiserver - ok 13:28:52.0820 0x1938 [ B2D0FD21FE67D6434769CC6F7A7883CA, B2368BD72952C6EE6DAF1AA006DF575A3019E4721BEFB108D3DF1B9E07B2BC5D ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 13:28:52.0834 0x1938 MSKSSRV - ok 13:28:52.0851 0x1938 [ FB3801F176376286A3F8F20FFB8CDC53, EEF89081665B9BBA93AE9F5912C40C1698E8BA8DBBCCC3BBE0BAB5A86B7E05D4 ] MsLldp C:\WINDOWS\system32\drivers\mslldp.sys 13:28:52.0869 0x1938 MsLldp - ok 13:28:52.0874 0x1938 [ 8CBDF0E7A6CD824352F37A682A33DF7E, 4567FF4C73648FF26EA68EAE2B524B767099789086C158875C97768C77B81359 ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 13:28:52.0888 0x1938 MSPCLOCK - ok 13:28:52.0902 0x1938 [ 33E5B6261D69ACD4948A5C64B9D8F29F, 1D32340640312372E52E59AFB5DB872E6F9DFE3AC16B56F9D928AE230DA02B8A ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 13:28:52.0916 0x1938 MSPQM - ok 13:28:52.0930 0x1938 [ 557DF8C0DBBBF518AC395C6EB1B179AE, B294B5A7882C0C60D91FB853FC87505B6E7638D25E360FDAE002AEBB714ED471 ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys 13:28:52.0954 0x1938 MsRPC - ok 13:28:52.0963 0x1938 [ 0A29AFA668F5DD50482A98ECE70C77A7, 4C1F23B062361D97B1C8D864AB227E5F398F774A99B5E60A1149A4F78D5BEC20 ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys 13:28:52.0975 0x1938 mssmbios - ok 13:28:52.0979 0x1938 [ 30CE30877FD5BFADE74FA27D7829BF89, B5EA1F8C91E75722DB1E3E2172C8607FEDBF35BDC4141258A3E6D29D8B0E193B ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 13:28:52.0993 0x1938 MSTEE - ok 13:28:52.0999 0x1938 [ 13D88C0B8A2FA001CD72D454955A6974, 19DD5C8BBD07B64F355737436BF702FFC209D84A8855D2224D3377E233D4BB34 ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys 13:28:53.0013 0x1938 MTConfig - ok 13:28:53.0036 0x1938 [ 00C7F0F06A0A48B9CDB6B3AC3BE288F0, BF469A2DDF495ACB9FEE9063C6680C95BCC8686682C9EDAE6D1893D4058E8AA6 ] Mup C:\WINDOWS\system32\Drivers\mup.sys 13:28:53.0050 0x1938 Mup - ok 13:28:53.0057 0x1938 [ 8E237527CA260C71D39ED4081BDF3419, CA52DD174C756A404B1FAD3F2A70E50085C2820BF12369259F61DA649101A179 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys 13:28:53.0069 0x1938 mvumis - ok 13:28:53.0095 0x1938 [ 48D0587A8302FD3302CFE6F59F7345B0, 26D48AF3F7FF4867E179347CD635055DEA9A751C6C61CE2C391A7F74FC0DC1DE ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys 13:28:53.0130 0x1938 NativeWifiP - ok 13:28:53.0166 0x1938 [ 11BE8117653C542D264788A700AC5BFE, 87EAAC2DF62BB26619DA72950F5EE41DCA1DBDF93F098647F9D200D588F14003 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 13:28:53.0191 0x1938 NcaSvc - ok 13:28:53.0243 0x1938 [ 286C6276B2BA86F29A0F687D05466277, AC8551536F37717A0ACE4A260F5696D1276F7AC62F669E8F12AA158DD86F71A5 ] NcbService C:\WINDOWS\System32\ncbservice.dll 13:28:53.0270 0x1938 NcbService - ok 13:28:53.0285 0x1938 [ C55DA734ED2A831E0BACAAFA01CEB7FF, 9D989B03D07BBAD287B317D238691664B0694331D6A69B7A1AA3D8AB7D1323FC ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 13:28:53.0325 0x1938 NcdAutoSetup - ok 13:28:53.0332 0x1938 [ CF8296427834CF8BBB3EE1444C17362D, 6EFBE1F015DFFA0704C66DF5C88089DD5771E1542018E4AE98389CFF3D0B2309 ] ndfltr C:\WINDOWS\System32\drivers\ndfltr.sys 13:28:53.0345 0x1938 ndfltr - ok 13:28:53.0410 0x1938 [ 616F40B897DA651221F86A1741E9609B, 22D66029726313D92FC8E074BCC51C1E1560CB5FE36DCB735E7E063EA53E299A ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 13:28:53.0457 0x1938 NDIS - ok 13:28:53.0489 0x1938 [ A0719D1EBA971DFC5DF5F7CC010385F8, A982487D3A74E66F3C29AAA5B46CE9A0969F07F267DDEFE58C58573573AB0024 ] NdisCap C:\WINDOWS\system32\drivers\ndiscap.sys 13:28:53.0503 0x1938 NdisCap - ok 13:28:53.0522 0x1938 [ 0C557932CCCC65AEB37326DD36504527, C0AF3066DEE4BCC32DB30CCC16B7A91442A8383BB36C7C4E3CC0A5EFE0FAAA9B ] NdisImPlatform C:\WINDOWS\system32\drivers\NdisImPlatform.sys 13:28:53.0543 0x1938 NdisImPlatform - ok 13:28:53.0559 0x1938 [ 56F9345D1945826135FBAB7589592B1F, 6BC2A5900076B917823C7392C582A2648D0C8000F2F65D309D5B48E36D4FB4D6 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 13:28:53.0576 0x1938 NdisTapi - ok 13:28:53.0596 0x1938 [ AADFC340939D99E5D756E713E1D452EB, EFEFDBB2188DE82C2C5E67929861B269FD4C127D34D1DE6D0596ABC33E2C2B51 ] Ndisuio C:\WINDOWS\system32\drivers\ndisuio.sys 13:28:53.0610 0x1938 Ndisuio - ok 13:28:53.0622 0x1938 [ 312DFD787D99D3BF1427B0388BC04F71, C082CA1F332AD57FF2100748518D3D7B3D0F1B042F69BD7401C44B77AFE97462 ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 13:28:53.0639 0x1938 NdisVirtualBus - ok 13:28:53.0648 0x1938 [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] NdisWan C:\WINDOWS\System32\drivers\ndiswan.sys 13:28:53.0671 0x1938 NdisWan - ok 13:28:53.0680 0x1938 [ 2103F43E0A1ECFB14B7E1B889F5F24D7, 6A86E854C89E132DBC9183DE2B9464DC592E7492BE267BA02FE4DAFE6FA87528 ] ndiswanlegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 13:28:53.0703 0x1938 ndiswanlegacy - ok 13:28:53.0709 0x1938 [ 6E98F16983C4AE8703FF9F90AB4B31DD, BB8BD5DB4B5FB31F3A257747C27CBEFA4B7837EC5C0CF3D4F408E626E4003F4C ] ndproxy C:\WINDOWS\system32\DRIVERS\NDProxy.sys 13:28:53.0727 0x1938 ndproxy - ok 13:28:53.0743 0x1938 [ F1B7CC77F412C8D45B2DDCF76EDA4F9D, 25F2AA76E675D9BCC0B1FD47AFEC6DF2D0B47E7B1C8AF6FB27C1ED2FB902961A ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 13:28:53.0760 0x1938 Ndu - ok 13:28:53.0807 0x1938 [ 824FDC990A3F79069BE468A132EB6888, D09F7A9EC04E37DA504CE54EEC25C312B407B6A8B214CBB074BEB50DE420F52A ] NetBIOS C:\WINDOWS\system32\drivers\netbios.sys 13:28:53.0820 0x1938 NetBIOS - ok 13:28:53.0834 0x1938 [ F0D791348AD254360CC3C3E501CCB745, E4CAB4D3C2CD3169731283B00DEBFE26438BB66A3F0D78BDB68E876A14FC7070 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 13:28:53.0857 0x1938 NetBT - ok 13:28:53.0892 0x1938 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] Netlogon C:\WINDOWS\system32\lsass.exe 13:28:53.0905 0x1938 Netlogon - ok 13:28:53.0944 0x1938 [ 7C8A7380CBE45DFD3DF118D8601499A7, C137280B7696F8CF4258BDC8B241C66BB3AA5708C5410D85255E46C7E8284826 ] Netman C:\WINDOWS\System32\netman.dll 13:28:53.0973 0x1938 Netman - ok 13:28:54.0000 0x1938 [ BBE9D72EFC7BD66B28309C3607683DBA, FC372EFBC650CE0BDB117858D840A1FB361947B1C67D1DD16BABA95D0286856A ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 13:28:54.0040 0x1938 netprofm - ok 13:28:54.0076 0x1938 [ 5D046D71B18BEFB2E4D164C3DEEDD672, 536834D020889973854830919B23DF22CC1B27236AFAEDEBDF42D432CE48FCDE ] NetSetupSvc C:\WINDOWS\System32\NetSetupSvc.dll 13:28:54.0096 0x1938 NetSetupSvc - ok 13:28:54.0170 0x1938 [ FBF2ACE9B10DDE0B4108930D78370E86, 2A4910F071747B786EA49A638B3AAB698DCD0AD7FE702078BA83F85C533A227E ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 13:28:54.0210 0x1938 NetTcpPortSharing - ok 13:28:54.0220 0x1938 [ 46E862DA2CF8F351375EF537276B69B5, AC0FE0977E56380849DCE668AC0F5AF183AAB115ED84ADD964E390CC0BEDF6D3 ] netvsc C:\WINDOWS\System32\drivers\netvsc.sys 13:28:54.0236 0x1938 netvsc - ok 13:28:54.0263 0x1938 [ 88CE4AC85F36B6347C1D820FA373B998, E10B5DF8883928A2062FC6180DE4CF0DE33C68622C2E3E4E1AFC56A0682F8E75 ] NgcCtnrSvc C:\WINDOWS\System32\NgcCtnrSvc.dll 13:28:54.0287 0x1938 NgcCtnrSvc - ok 13:28:54.0294 0x1938 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] NgcSvc C:\WINDOWS\system32\lsass.exe 13:28:54.0307 0x1938 NgcSvc - ok 13:28:54.0349 0x1938 [ EA1C2DAB8A63712B94897A58557B086C, 98DD7E5C84F3CDF2DAA89484892D6B439F5D14297B5243436925BEEAA0C02EE1 ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 13:28:54.0378 0x1938 NlaSvc - ok 13:28:54.0384 0x1938 [ 41557BE174E9EC6AC703A8A4ADBC6650, 8CF6DF3FDC3C7C44B32851538A67BF86A54AB6444A424D7A20B7A9A94B4158D8 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 13:28:54.0400 0x1938 Npfs - ok 13:28:54.0425 0x1938 [ AC3F70FCFBCE97AA2F12BA43EE13B86E, D0AC50FB022C0F3031531CEE210D47FC3244C6FB55FAAD4AAB04081F0A21DAE4 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 13:28:54.0438 0x1938 npsvctrig - ok 13:28:54.0446 0x1938 [ 0AF4872D3D6FD3A030E836DAC2B3EF2D, 03EE7B6FAFC0BB5C26793BC5FF8BD1019AC96B3104688009C1E062C3F4F34D6D ] nsi C:\WINDOWS\system32\nsisvc.dll 13:28:54.0461 0x1938 nsi - ok 13:28:54.0470 0x1938 [ 66A98C407085B8920DF1E6D722F1ADB8, 3FE307E4A9E41B08E0453507E50D6D0C67FA6F4245A863D90181463C749C83B5 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 13:28:54.0483 0x1938 nsiproxy - ok 13:28:54.0573 0x1938 [ 466EC5659C02ED53DBD47DC1BC2B8086, 1F35DE75386F7D029C01D67B09D5E5157141C6892858885C11972CE73D6078AC ] NTFS C:\WINDOWS\system32\drivers\NTFS.sys 13:28:54.0659 0x1938 NTFS - ok 13:28:54.0679 0x1938 [ 383E546EF4982262A0EF6CC2B6E9D525, 3C6C90B62E8EB094E6928C388E5081A3F73DF87B0F34F716B72EA7B6EF71FBB7 ] Null C:\WINDOWS\system32\drivers\Null.sys 13:28:54.0692 0x1938 Null - ok 13:28:54.0731 0x1938 [ B9E5A80F646DDFEF158773722A466EA3, 028979FE600D17DA70445F44D81FAE4EDA3478FCC81FA5506133CCAC37C4E2BF ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys 13:28:54.0742 0x1938 NVHDA - ok 13:28:55.0075 0x1938 [ DF0BB2C179476D312B7BC0056CEC50A6, 64CC3201FA903E0EC9C99BE167C439C14A4C9AC2A88898B64789EEB381DB97B6 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys 13:28:55.0379 0x1938 nvlddmkm - ok 13:28:55.0477 0x1938 [ 4EBEE69A8FE7DC85FD3C122821C617A0, 7193C14DEB4C5B0D86C5C6841C80879C28E1FDA8F77879EB18A3D2685C67B986 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 13:28:55.0533 0x1938 NvNetworkService - ok 13:28:55.0555 0x1938 [ 466F875F1D4C6ABB46AF28007009237C, 26F5A5579737A7CF2267F79DDE5A551149C682D5FD24663B53FCEC5AA6B448CE ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 13:28:55.0570 0x1938 nvraid - ok 13:28:55.0580 0x1938 [ 76F19EAE7A52CBAF7B8EC428BE6E0DA0, CF1E55D92FA32744A20AB75D466A3E05E6FACF4694F9265C41F5C27C1E7243DC ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 13:28:55.0597 0x1938 nvstor - ok 13:28:55.0621 0x1938 [ 0EF30778078D7B5877F8F57151699798, B0409C79143BDBB774C3C740CCA8EB77CF67915E59EC6050DB993ED0575EC077 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys 13:28:55.0627 0x1938 NvStreamKms - ok 13:28:55.0784 0x1938 [ D23A07D549243F5B77780BAA4FBF5BC3, 5BC5161CAE6BE6382BDCDE9B1CDD5F4DEBC3EA18D01B0E261AF716FDB04154BC ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe 13:28:55.0938 0x1938 NvStreamSvc - ok 13:28:55.0989 0x1938 [ DFCCA437717EACA8418F47992A41B39A, E587A629B894EE6A16AC414747D492FFC6B6E9F051B40F7D25F0D4406E2FF919 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe 13:28:56.0022 0x1938 nvsvc - ok 13:28:56.0037 0x1938 [ 4F00008B513F4019623ED61159363888, A1047FF1FCF3ED405C3426C8959AD10426F30E3F58E95BFD6ADF1DBC947AB379 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys 13:28:56.0044 0x1938 nvvad_WaveExtensible - ok 13:28:56.0058 0x1938 [ 0D0CB77D74B38E0EC62341C19E469D8D, A05D3CC67FEEB2FD219BFAA34BF98CB3F3718042124AF28F0E9FDFB9F132DD76 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 13:28:56.0072 0x1938 nv_agp - ok 13:28:56.0114 0x1938 [ EA3FFE8617B9FCA1620AD9876E92F4F1, 68D5143CA71D10A2BB44E29B3C76580596669D0624076BCF6CCBA7AF3140538E ] OneSyncSvc C:\WINDOWS\System32\APHostService.dll 13:28:56.0143 0x1938 OneSyncSvc - ok 13:28:56.0256 0x1938 [ 1A8ADCC40DAF1B3E8EEB949030CF4D8B, F0A936AEF580D3EA662067F8AF1050B2FC480C133DE33ED2A513B912DD9E5189 ] OverwolfUpdater C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe 13:28:56.0289 0x1938 OverwolfUpdater - ok 13:28:56.0334 0x1938 [ CAFB5A95883158A0579DED2ED5CB0627, B23F7D19142DD3544F96ADB36F152F4EA7F6C524A1281EC26A2B95D7D044822C ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 13:28:56.0361 0x1938 p2pimsvc - ok 13:28:56.0408 0x1938 [ 3612CE3432E0A2BE0081E6B488ACF84C, F1A641735FD374CA293FB98FADA2C41E2033B17FECCA3B6D225D0E591AFFF413 ] p2psvc C:\WINDOWS\system32\p2psvc.dll 13:28:56.0439 0x1938 p2psvc - ok 13:28:56.0452 0x1938 [ 38F1AE32339731F6E5A7281AE8042545, 308954518C45D29FC199525F0CC7FE4EA805322EC0B871DDDCBEEC15355514C8 ] Parport C:\WINDOWS\System32\drivers\parport.sys 13:28:56.0469 0x1938 Parport - ok 13:28:56.0476 0x1938 [ 707889D2F95AAE8C9DD254D8767AD908, BE7BD94728D7629F8B7567523FFB42B8979941CEA2EA03E11BFCD51CF119FC27 ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 13:28:56.0491 0x1938 partmgr - ok 13:28:56.0517 0x1938 [ A09B0D8F9F0FC17EBCE6481AC9FD5CDF, 8E8D68992D98CF3DBC4B70C7902B3EC28A1E2DA8D4DB38F0AD9D52B1A5A1D40F ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 13:28:56.0545 0x1938 PcaSvc - ok 13:28:56.0587 0x1938 [ 2834089EA4E550FF3B96E61FB4AA34ED, D25DAB47F9778675E984E0738D2014024C2758D52D7E071167A12FF466B7898E ] pci C:\WINDOWS\system32\drivers\pci.sys 13:28:56.0608 0x1938 pci - ok 13:28:56.0643 0x1938 [ 3D587E4295B11B8480F7ACB09A89D718, 8C3BD62B3451E1B2E7197EDAE381785406DF86C03BEEC486602C642FDD37DBC1 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 13:28:56.0655 0x1938 pciide - ok 13:28:56.0670 0x1938 [ B8F07002B5F1DA23CFF979C2806B09F3, AD5C589A02BB8185AA070420BF30E78BC8BE3C6F9B0F66319A8CA05B70A5ED32 ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 13:28:56.0684 0x1938 pcmcia - ok 13:28:56.0691 0x1938 [ FF588077D0C6AC2EA3FCBF1903CE08D0, 64BE1646FB6D8CC902B6F386255F7C0420E3C334E14DECD527DD541B43A1DCD6 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 13:28:56.0703 0x1938 pcw - ok 13:28:56.0737 0x1938 [ 70469C8AC4AD367295E70CFDD81B754C, 3EC6FD742C7C60363939E5343477810D751D91D32A2F24285976C08A7C4477AB ] pdc C:\WINDOWS\system32\drivers\pdc.sys 13:28:56.0752 0x1938 pdc - ok 13:28:56.0789 0x1938 [ 688F47C342E1BBC87A48AB71D316233E, CE99AB67C7E7A11AC69C2F4513AEBDACA385BA7F8CC49BE6313CE04ED404A0E7 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 13:28:56.0836 0x1938 PEAUTH - ok 13:28:56.0844 0x1938 [ 189265498945593D5256CFF7FEBB9665, 9CB88CC3C726BFE6EDCE8D9E4544306AACD3FB9E969E3A438D9FD533F25C1281 ] percsas2i C:\WINDOWS\system32\drivers\percsas2i.sys 13:28:56.0856 0x1938 percsas2i - ok 13:28:56.0862 0x1938 [ 9B86965114F6831A5130EFE6657B17D9, 4C5B657DB9A9F96BFD3EAFA756ED60D911EB58857C439F5FA6E495A473ED1145 ] percsas3i C:\WINDOWS\system32\drivers\percsas3i.sys 13:28:56.0874 0x1938 percsas3i - ok 13:28:56.0947 0x1938 [ 8A5A52C855FB5BFEF019AE9938AEA8AE, 77CB8A09B209DB5895319BA9D073A67148926E22C47836343050DFC178AFAEEE ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 13:28:56.0962 0x1938 PerfHost - ok 13:28:57.0004 0x1938 [ C1E6FBEBD285CABA0985533A56144F5F, A5619DE1E8E8DD05FAFAEC9B808F1C816393BFD2D85B4779483AD3942A388220 ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll 13:28:57.0029 0x1938 PimIndexMaintenanceSvc - ok 13:28:57.0091 0x1938 [ 82FDEC2A262728F62F2111A84CC04B16, A1FCE38D4F55F10BB9B3BFB7D9E3EF7C27D499D9C8882218C8A9A73487798188 ] pla C:\WINDOWS\system32\pla.dll 13:28:57.0172 0x1938 pla - ok 13:28:57.0209 0x1938 [ 7B3DA16FAA498838BB457E0B7E380EDF, B73DCFFA60886F10765E4B76A58CFF18C08CAFEE620700361FC8FEC7E80B5958 ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 13:28:57.0233 0x1938 PlugPlay - ok 13:28:57.0243 0x1938 [ F1E9C35A8DFD4D64382CFB9019A950F9, 24E0381C6909F9876D6DC4697DC6405FE18DF91531891B2CCA6DB0191B9C6DF4 ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 13:28:57.0258 0x1938 PNRPAutoReg - ok 13:28:57.0276 0x1938 [ CAFB5A95883158A0579DED2ED5CB0627, B23F7D19142DD3544F96ADB36F152F4EA7F6C524A1281EC26A2B95D7D044822C ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 13:28:57.0304 0x1938 PNRPsvc - ok 13:28:57.0344 0x1938 [ 62C0BD179961132EF2C5B952210C11F5, 2473FBB3619D0DDA229D4BEC30CEFE7497C27ED3844A5B7655F6F2D328FEAF61 ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 13:28:57.0377 0x1938 PolicyAgent - ok 13:28:57.0399 0x1938 [ 6390391EDFC43DD11CE9E6AADCAC20EA, C8BC222FFBB9E47489D16BB5248E0E2E594011C46CFF71F5DBCC4D5CC6788098 ] Power C:\WINDOWS\system32\umpo.dll 13:28:57.0417 0x1938 Power - ok 13:28:57.0438 0x1938 [ 1433EB7908E5E1E20FFD50E4126C3484, 34D81680C8F2F2C5892FC0E0A6DFCBB241AFF493267A1FE182ED28AE9F712456 ] PptpMiniport C:\WINDOWS\System32\drivers\raspptp.sys 13:28:57.0457 0x1938 PptpMiniport - ok 13:28:57.0585 0x1938 [ 12E2582F69ACA40A6BAE91DA578CBF34, 648C6394763906AA4163976DA2C3308F8B706486D9D8F16258CB1D61C2929930 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 13:28:57.0734 0x1938 PrintNotify - ok 13:28:57.0756 0x1938 [ 22DE54C3974E4FD98F61D095C22C59B7, 64E78D6DEC4A28ABB0A23F2CF078459D81796EC79235AE45976ABB4F72B1D1E6 ] Processor C:\WINDOWS\System32\drivers\processr.sys 13:28:57.0773 0x1938 Processor - ok 13:28:57.0802 0x1938 [ 27D0B024BB356C6BEB1214B61E47DE02, 8CBDD62E243CC652F2197AE83DEDD21D91D2792558A6D7D1CC680B37607DEF4B ] ProfSvc C:\WINDOWS\system32\profsvc.dll 13:28:57.0830 0x1938 ProfSvc - ok 13:28:57.0848 0x1938 [ EDD52C352CBAAAD13FD7BD5DCEA309B3, EC7D294B23FD5C309E5C4C455896937B85DC615E1B36C9F8F3BDC90E75EBF9CF ] Psched C:\WINDOWS\system32\drivers\pacer.sys 13:28:57.0863 0x1938 Psched - ok 13:28:57.0878 0x1938 [ DD3FF2053356D11C785999BBC633F3E0, E9A5B7C657F4523E5DEF7AEE7ECFCC94E911FC65F1D491BEF01239F357B8D8E0 ] QWAVE C:\WINDOWS\system32\qwave.dll 13:28:57.0904 0x1938 QWAVE - ok 13:28:57.0935 0x1938 [ 51590F442C6E5D43244BA30DDB0CE79D, 9C7FD0A19753C13FD4A27EBFD60703A2414D5A2F6F451F0B32769C8D7C953980 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 13:28:57.0949 0x1938 QWAVEdrv - ok 13:28:57.0954 0x1938 [ E951E70019865B06126AF850BCCA2026, C590DE38C7603149AFA0271D57EEBAF956F18F50584FCF04BC2C8D8CEC5C5932 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 13:28:57.0970 0x1938 RasAcd - ok 13:28:57.0985 0x1938 [ 0BF8607133AE264BC3C41A5BAA5FFB7B, 9A4F6AC6013AB5C2A99BCFC2CCF161DD225DE8D85D61579655ADBF04A4383A61 ] RasAgileVpn C:\WINDOWS\System32\drivers\AgileVpn.sys 13:28:58.0004 0x1938 RasAgileVpn - ok 13:28:58.0019 0x1938 [ FE0976379F9E7DB6F7945FCEB88C7E29, BA331CE55C02E86478714DA87FAC547B50D53BC7D02BCA5A64D484DED44BFAA5 ] RasAuto C:\WINDOWS\System32\rasauto.dll 13:28:58.0041 0x1938 RasAuto - ok 13:28:58.0048 0x1938 [ CA60F6C03611AF1710BC903ED9F566FB, B5C9E8BAC631738761E11168AB68EB1ECC5EC96BF9A8248B9127DCF744CA4691 ] Rasl2tp C:\WINDOWS\System32\drivers\rasl2tp.sys 13:28:58.0068 0x1938 Rasl2tp - ok 13:28:58.0096 0x1938 [ 586A17C10D417D889F1FF7D8636E2F34, EEDA4EE8D2BC5C8C7756AB79F1F19AF8B1C4057996748FAE4E3F37844DB0EB33 ] RasMan C:\WINDOWS\System32\rasmans.dll 13:28:58.0143 0x1938 RasMan - ok 13:28:58.0150 0x1938 [ E5FA41160F5A3D78D8F7765E5C5F6BB0, 31BA423FFFC3206717DC34B482149421EE28B27A4A3BA2DC78C3B3A9EE0C1365 ] RasPppoe C:\WINDOWS\System32\drivers\raspppoe.sys 13:28:58.0171 0x1938 RasPppoe - ok 13:28:58.0177 0x1938 [ DF0834AE921E633E05D1FDC55C318957, 851A00961224DACBEF9DA427122F6B4B73BB99849D5ECB55DBBD311B2EA84C33 ] RasSstp C:\WINDOWS\System32\drivers\rassstp.sys 13:28:58.0196 0x1938 RasSstp - ok 13:28:58.0222 0x1938 [ FC9B7AC6E2B837EF7CD6C64F7068D41D, 9B0DD842033E82BC7EE80416A62B084BF5200923EB7A6C80415BB28004E9B5E3 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 13:28:58.0251 0x1938 rdbss - ok 13:28:58.0265 0x1938 [ FB7375657F8A5932C35EAA45E9B4B416, 99594708BFD6DC9F8CECBF092058D4D0D4F1BC3204E86F9FDAD5207ED5ECF194 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 13:28:58.0278 0x1938 rdpbus - ok 13:28:58.0296 0x1938 [ A32AED8C644734B283A7C9D08D76064D, A12F67C57E43B6A2FE6449EA3822B1108FE70C66AF9911798777F85D760E384C ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 13:28:58.0315 0x1938 RDPDR - ok 13:28:58.0334 0x1938 [ 37CC7E41243EFBB4FBC0510E5CA32A02, 634E2F81D61F937F30E5ECE01FB581E090C6DA073EF7B1A3F6083ECAF363CB46 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 13:28:58.0346 0x1938 RdpVideoMiniport - ok 13:28:58.0382 0x1938 [ DAF957B25A35757E9D814611FAE8FE3B, 5244A427B2DEB5349B9F336A4A39A6834A6E8118A8EDA00738C6CE09F2452C24 ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 13:28:58.0400 0x1938 rdyboost - ok 13:28:58.0460 0x1938 [ 2C72E029C153D25325CA182A669E4ADE, 5CE0E04A6B53A1F11E8159DFD1E59F2AE6631E3B5BD27BAAEC4A35BC02A55722 ] ReFSv1 C:\WINDOWS\system32\drivers\ReFSv1.sys 13:28:58.0507 0x1938 ReFSv1 - ok 13:28:58.0546 0x1938 [ BABEE4A896D005BD0D205F1C932DA25E, 269FDF65BE3A226FA2A5CA25085366E32ADAD30A020484FE844962E8C61CB1D2 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 13:28:58.0583 0x1938 RemoteAccess - ok 13:28:58.0617 0x1938 [ 066062967A77867BDCF665960EFDAD32, 68143DBDFA7C68786C22F5CC4E80200255C663A844069C080E7816F423ABB1F4 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 13:28:58.0645 0x1938 RemoteRegistry - ok 13:28:58.0703 0x1938 [ 891C83BE8BA62B7547B9A6576A360C71, B808FE4B5A93B8C971C2AF6CC7F0BAE7154A43A87D6CE0826277D1D7D7948E24 ] RetailDemo C:\WINDOWS\system32\RDXService.dll 13:28:58.0758 0x1938 RetailDemo - ok 13:28:58.0797 0x1938 [ 6451FE42C35FDE3862D99579444F4A8F, BD56A1120AACF6143E6EB739E12BEE86DF142F1159865608BDF1BBE54B66AFCE ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 13:28:58.0814 0x1938 RpcEptMapper - ok 13:28:58.0853 0x1938 [ F24131EAD1D0B73463052BB042A37B6C, 43B5772310B200DF1914C8E4D10401A0BCE9082BDEAC34736AFB2920B39D7956 ] RpcLocator C:\WINDOWS\system32\locator.exe 13:28:58.0868 0x1938 RpcLocator - ok 13:28:58.0906 0x1938 [ 5E57B9FBB4E9C43EE5B69BEE01A1819F, A1F8D1E52AF446CEA2EB50064E3A24B713B19197D61C3EAECB81B3CCD80558E7 ] RpcSs C:\WINDOWS\system32\rpcss.dll 13:28:58.0957 0x1938 RpcSs - ok 13:28:58.0994 0x1938 [ DC66C1D262D64E30A30B68E9F21AC74B, A5ED3D31BCD68DBC00A956787517ACA167C86F5FFDAF7C9A85505FA2B705C6CB ] rspndr C:\WINDOWS\system32\drivers\rspndr.sys 13:28:59.0012 0x1938 rspndr - ok 13:28:59.0058 0x1938 [ 179E6BCF8D16AD39C137CB4FCFE015C5, A1DF499AA378BDB1CB7F95ACC0C7D6929358AF4596A47FDEDFAE115461563CD5 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys 13:28:59.0096 0x1938 rt640x64 - ok 13:28:59.0207 0x1938 [ 5ABFE8CAB411EDBAF76356F559365CD5, C3971E412B7AEDC731CBF54A166A82A05036A11E3B7674D379249E8E0CEC5C46 ] RtlWlanu C:\WINDOWS\System32\drivers\rtwlanu.sys 13:28:59.0313 0x1938 RtlWlanu - ok 13:28:59.0342 0x1938 [ 88F7703F2A4677C828124AE2110D3EBC, 529F6A5815806F2EA2235802BD28AF8D7A40E7799356BD3EC337C9E71B6B53E6 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 13:28:59.0355 0x1938 s3cap - ok 13:28:59.0378 0x1938 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] SamSs C:\WINDOWS\system32\lsass.exe 13:28:59.0392 0x1938 SamSs - ok 13:28:59.0411 0x1938 [ B467E932FE4E16E201DC7E56870CB559, 6FCE9A2DFC5D222BBEA4AA271A17B830FCF8EAE44B07BEE5FF34AE50CABCBB6A ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 13:28:59.0425 0x1938 sbp2port - ok 13:28:59.0451 0x1938 [ 3E115C63649402D321D396F8D606C9B0, F4BA7FE0E89D563A57B6865E4CF1334998987D11A0D70FF7491726A507B40DF4 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 13:28:59.0479 0x1938 SCardSvr - ok 13:28:59.0492 0x1938 [ 67EFFD3D1BB6D2B67DF7F8FDCB1A51FC, DE41539FAC730F5CFF6C8754ECFF1253AFDC1C86743AE71B61D716B7A84E85FD ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 13:28:59.0518 0x1938 ScDeviceEnum - ok 13:28:59.0533 0x1938 [ 31DDA0716EC265CA57DAF9D2295FD76F, E6F39C1B3CF81918277DB8C6E3DF9A82812E1C9063DEB1FB85FE433DC9A16CBA ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 13:28:59.0552 0x1938 scfilter - ok 13:28:59.0612 0x1938 [ 1BFAC03B6422E878EFCDA934BF4C4823, 0BA537A4B9E8020E6B709A44F1382DB3B41CEF631B847201F812152FEB303CD3 ] Schedule C:\WINDOWS\system32\schedsvc.dll 13:28:59.0671 0x1938 Schedule - ok 13:28:59.0710 0x1938 [ 320E7A02D81A468E8C1FEEFDB856AFAE, E65127D3D6B628F9D19EA509FEBD9E4DC1BF20D0C62C3C9E1D7087DF972B2AA7 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 13:28:59.0735 0x1938 SCPolicySvc - ok 13:28:59.0771 0x1938 [ 004C66464D8FE76D5DA78BE6777D61AF, 58B5C436798EEBBE7081D54B55B70DEB15331856802CD45E3FF8BDE794F06A27 ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 13:28:59.0791 0x1938 sdbus - ok 13:28:59.0814 0x1938 [ A906C527B838A4922611C63EBD250F91, 6BB0054A9C2408138BDF49D834FF99B5B9764E7747ABC15016F54FBA1D28394F ] SDRSVC C:\WINDOWS\System32\SDRSVC.dll 13:28:59.0834 0x1938 SDRSVC - ok 13:28:59.0856 0x1938 [ F4BF50A7D16A97A887BFA0F193693C42, EEBF5AAC149C72F490BAC954B25BB6882B10FC38F93CA4F4829A06702B1ECEF9 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 13:28:59.0869 0x1938 sdstor - ok 13:28:59.0885 0x1938 [ 648A299839E8F48A946C41DE270D28F5, EEC9A5FCBE3FF78FB5E0452FF1932A8B0C7399688041E22555703CB1977A4428 ] seclogon C:\WINDOWS\system32\seclogon.dll 13:28:59.0900 0x1938 seclogon - ok 13:28:59.0931 0x1938 [ 29452A9DA3E3482F0C2963312F979053, E1782D36C336C4B4C261AD665C1E9051905AA86020E08FC94069972AF4C4DB4B ] SENS C:\WINDOWS\System32\sens.dll 13:28:59.0954 0x1938 SENS - ok 13:29:00.0013 0x1938 [ 919BA7E3054E4F1D61A3524ADCE6A970, 3C382673DF5AF2F38A5AE4A268F5856B0CC9E65D52213DE6D2C06E252753B73C ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe 13:29:00.0069 0x1938 SensorDataService - ok 13:29:00.0121 0x1938 [ 01C2EEA7870FE26A4A6CCBA5421CC7E5, 9E643AB6BCBECE4F2A5FD4C96547A4E3F2BDFEFC5FE24B802467718EC69929F8 ] SensorService C:\WINDOWS\system32\SensorService.dll 13:29:00.0145 0x1938 SensorService - ok 13:29:00.0165 0x1938 [ D2FEE824B4AA0BE377F1353E5F915BF4, 00D754C62F3482BBD0EA72C896139C39D15192B2D9FCC7B755D1FB9DF9FCFD9B ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 13:29:00.0186 0x1938 SensrSvc - ok 13:29:00.0193 0x1938 [ 9DB0BBE3ABE1F49651AE51EC5BCABE58, 0B46C1F231F41766AB73EE7E9834D3CDACA602D12E702D9277E28B47417D9CA4 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 13:29:00.0206 0x1938 SerCx - ok 13:29:00.0224 0x1938 [ C4AF79C37334D995D95C22C14FDBF7FD, 4D4985921261909F2123467A22EDB102B490710F60AB935624435E5BB808A0E9 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 13:29:00.0239 0x1938 SerCx2 - ok 13:29:00.0245 0x1938 [ FC541A272F47BE03E67A9FCB87FA8C3E, 730A3616FD67E9F2832442144B2655A8EF78B9AFCB204113E73E257256491354 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 13:29:00.0259 0x1938 Serenum - ok 13:29:00.0278 0x1938 [ 2A5F5F95FCA123DCBF53B5F603B64789, DE5C9E1D88B2C180B137DA7839F3EF6C936A171ABA49F89C10EE9C73A2226F3F ] Serial C:\WINDOWS\System32\drivers\serial.sys 13:29:00.0294 0x1938 Serial - ok 13:29:00.0300 0x1938 [ C8738887228B7BFA3B1A906816A8BB12, 328283569201791891D5E9FB3028DB5B9FD93A7BEFC00C7DEBC2CC5731DE64D5 ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 13:29:00.0313 0x1938 sermouse - ok 13:29:00.0342 0x1938 [ B1CB58853153397DFFA2D13A81451D09, CC9B3B064711E9B5CB38DC1C84DC410033939848BD31BB0D12F990E8154F357E ] SessionEnv C:\WINDOWS\system32\sessenv.dll 13:29:00.0372 0x1938 SessionEnv - ok 13:29:00.0381 0x1938 [ 67832B68752CDF7FDE56949E4A2E70BF, A72320EA8575A751DF86A1EE7969AD9D548D6185F2520197262E11B79FF8222B ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 13:29:00.0395 0x1938 sfloppy - ok 13:29:00.0440 0x1938 [ F10E5536E1C753E01CF19FA4F466CE90, C9897F22B176D84CA233F864078895E3DAD4DAD090FACBB01BD6E59EE337B47C ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 13:29:00.0474 0x1938 SharedAccess - ok 13:29:00.0501 0x1938 [ 4AC12D495B3CB4275F74C68A7A017561, DC53EBD606ECCD8BCF6D618C0EB58B03F5C20F09E0F0AEDE9B8082D6B208B19A ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 13:29:00.0549 0x1938 ShellHWDetection - ok 13:29:00.0555 0x1938 [ ED058030296CF9B79C8D48BF43724323, 01DC7C2590DF48116CD1A126F207FE5DE439A53286BAE3736E22EE3D1CA80BE3 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 13:29:00.0567 0x1938 SiSRaid2 - ok 13:29:00.0600 0x1938 [ 633D3D1581E9DCCD5A2D8F039104C9A5, C44B5097016C2AEC8B41F77425FE44413562F9DCF0C0C11CA69D8178970B4706 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 13:29:00.0614 0x1938 SiSRaid4 - ok 13:29:00.0653 0x1938 [ E6035ADBA3F13ACF1BEDA7B5D50FDBBB, A840D072395F2394E3B55A080F8F17CC3A02E8BCAFE8B8EC0374ECA1EFF05C23 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 13:29:00.0672 0x1938 SkypeUpdate - ok 13:29:00.0702 0x1938 [ 35B8FC714C2E7F07F7DC7C64452153F8, 6D45EB01B5F972ED0E5520E771F007FFEE892054FABDB3DD00D3E9915D3A0A31 ] smphost C:\WINDOWS\System32\smphost.dll 13:29:00.0722 0x1938 smphost - ok 13:29:00.0767 0x1938 [ DE3A5C27EC842A113F68A2705FF63B00, B134EF63708A892B673B539F544F7980FF72838D822E8E4CCDDB359B22CB8805 ] SmsRouter C:\WINDOWS\system32\SmsRouterSvc.dll 13:29:00.0807 0x1938 SmsRouter - ok 13:29:00.0848 0x1938 [ CD1056818A6FCEF4D32BD1D6E34070D5, F5BFB61ACB220A73B0DC4487B049F52E9F9FA2D4188C001E7A5838D47CEA6343 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 13:29:00.0865 0x1938 SNMPTRAP - ok 13:29:00.0883 0x1938 [ 187B4AD4446C59F8FCC4A10F473EE3D1, 0AAD961B3D7B3484DC89CB86F3EC96CEBFABB7224A5BFB48083DE8F1805EA7B4 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 13:29:00.0908 0x1938 spaceport - ok 13:29:00.0915 0x1938 [ 2799FCA215919FDC9A87C5FCAB530828, BDE968BF26693AA4D70AB669896BCA49C6F533EA226386B35B0EA589A55227B5 ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 13:29:00.0928 0x1938 SpbCx - ok 13:29:00.0962 0x1938 [ 58C17D92AD61EC7A98B05F4FAD0D205A, B881134A1BD9194145A9D18BDB34D57E2C167F06C2A9368459D0C33E6E0D6501 ] Spooler C:\WINDOWS\System32\spoolsv.exe 13:29:01.0010 0x1938 Spooler - ok 13:29:01.0212 0x1938 [ 5C31E109943E67CFC801810C00AB63EE, 9A80D7CDA1135EBCE10E753986A59CFA3D8D49F9B0BE38FDF99880B1DD88C41D ] sppsvc C:\WINDOWS\system32\sppsvc.exe 13:29:01.0428 0x1938 sppsvc - ok 13:29:01.0456 0x1938 [ AA1F23501511EFE9CF9771F6B20E8D45, E786852D9877CCFD35444F8FC694467132F868D87A8C344FD1016FFDE74695A5 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 13:29:01.0484 0x1938 srv - ok 13:29:01.0507 0x1938 [ F5B169EDF9D5E3C7200D89D30E065D13, 12BAF3A3CB76F0900FA53681C9AD16F40308F493BA22C0F60E1E268D0D6AF825 ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 13:29:01.0547 0x1938 srv2 - ok 13:29:01.0569 0x1938 [ 2E142E027F0AA698BA4DCE49CBDB43CD, A21027BBBC75A55A8B302D028113A0683016E4C72790A8C561DDB1AE7FDB4289 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 13:29:01.0591 0x1938 srvnet - ok 13:29:01.0606 0x1938 [ BF71B3FB5B7557CB740CDB09C5FB50D9, D6F9E65FDC9C4ADAFE82D94F71A1F5960DB3BEEBF4FE5B2D087515C4FAA5F287 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 13:29:01.0632 0x1938 SSDPSRV - ok 13:29:01.0646 0x1938 [ EF1BC04215C201ADA3F7F5A2F034EA21, E1A7A0FA2032B9E7D3951100E74C04D93CD848C88D23D57FBA0BFA2816B29C61 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 13:29:01.0671 0x1938 SstpSvc - ok 13:29:01.0775 0x1938 [ C26E2C89EFB4BB39CD135B5DED804B78, 99288C6023DC6AC6554521EA671AB387ACE2AE2BCDE145C7012202842FF40841 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll 13:29:01.0898 0x1938 StateRepository - ok 13:29:01.0978 0x1938 [ 2A6EDC2FBB4B9C11BB21BE3881C7A692, 74482CA4EC2B98C069A32C224BA5449AE10A8B41BFC053A4C23B6F65113A97A4 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 13:29:02.0006 0x1938 Steam Client Service - ok 13:29:02.0068 0x1938 [ 4392321C9F3FB8D6061CCB37E85E588D, 2992E6134E5F18ED25620DC4DE01F1561CBBEAF485EEF59E4446EC12BEED29D0 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 13:29:02.0084 0x1938 Stereo Service - ok 13:29:02.0100 0x1938 [ DDE064A4298FD1FBF804D3ED691E7EDB, B0D117B1FC0DA2CB76F5F63699E2F108930B6C6721AC443111D48215ED624278 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 13:29:02.0111 0x1938 stexstor - ok 13:29:02.0157 0x1938 [ 60F04DF1AB55D6D4BDA02052DD20537E, 52996EDF2C06968DADC9BDF24E4039929B81643493C7193B8CC4A6BD1A3AE761 ] stisvc C:\WINDOWS\System32\wiaservc.dll 13:29:02.0198 0x1938 stisvc - ok 13:29:02.0225 0x1938 [ 32C95F44108C3E7DB58F773346E3C9D0, F852D8ECA06080EA6DE1A90509071965A750D9CFC9627F0D4DB8ECC57133B0B5 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 13:29:02.0239 0x1938 storahci - ok 13:29:02.0256 0x1938 [ 8883C8CE4942A99B84E1CC6EFA19738E, 60C1CDA4382F8EE70D810DBB1BCAF5F389433563FF23EEB84859612F396D8CE6 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 13:29:02.0268 0x1938 storflt - ok 13:29:02.0302 0x1938 [ AE7B7E1E95BFB9340B1956C98CA52C81, 3E0214A0C486C1CD05D9BC57E58A998A3CEADDC1D24AE2A75098F56B37069160 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 13:29:02.0316 0x1938 stornvme - ok 13:29:02.0337 0x1938 [ 63513EF3121689B3A59BD217618A2E42, DE9B89732801DEC60BD116D58CFB427F7E37F093BE8A9F6E0CAC729B5346B314 ] storqosflt C:\WINDOWS\system32\drivers\storqosflt.sys 13:29:02.0351 0x1938 storqosflt - ok 13:29:02.0401 0x1938 [ CC96FF061C772340F2ED89ABBA567ADC, 028CD44405B7FAFC7BF331DD729E44E0594A63386F48CF39D7725A58B3DE22D6 ] StorSvc C:\WINDOWS\system32\storsvc.dll 13:29:02.0430 0x1938 StorSvc - ok 13:29:02.0436 0x1938 [ 000F5CFCEF0F06DC8FD1D2F568E48AE4, C1FE485E57A1B912CE79556E0EFF03CC11362E7966D250E3AA4962DCCB8F8EE6 ] storufs C:\WINDOWS\system32\drivers\storufs.sys 13:29:02.0448 0x1938 storufs - ok 13:29:02.0453 0x1938 [ 7415087F9006D6818F85F3CBD79B1A50, C768EBB2263375D285D689FEEF546147D42D7376977424A4D6FD655CC78EA7CD ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 13:29:02.0465 0x1938 storvsc - ok 13:29:02.0494 0x1938 [ E49858EA5865A015EB78B7F7C1C07DE2, 1ADBBAC2D2E2E3C40AB0BDDE068001E76A8DAB79C54F06479F7A4567DAD7A7A8 ] svsvc C:\WINDOWS\system32\svsvc.dll 13:29:02.0514 0x1938 svsvc - ok 13:29:02.0580 0x1938 [ 802278EE4ACCE9EA1F1481DF20EB1667, E78F0DA2CA0B2C2DF3B7E3B2A22C03380FE649813EE6EB31067C5FB6727DB7BD ] swenum C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys 13:29:02.0592 0x1938 swenum - ok 13:29:02.0623 0x1938 [ 313D2C0DBA0B23A8302254FD317D2EC8, 20B98D6F33FEC7ACBCEED9757A3FEAD837FA7BA378BA25575A33EA45E076FC6B ] swprv C:\WINDOWS\System32\swprv.dll 13:29:02.0662 0x1938 swprv - ok 13:29:02.0700 0x1938 [ 12D0CB1DCAE6725B6CA54CC2038C4C8C, 7D224298E440B8C5FDD99A52485A6245DE5109C9A02E65AD38F1EC6DBF4AEEF2 ] Synth3dVsc C:\WINDOWS\System32\drivers\Synth3dVsc.sys 13:29:02.0714 0x1938 Synth3dVsc - ok 13:29:02.0779 0x1938 [ D5B31B2F14848015C211F1D674A82F3A, 58C18254C817693DB727090D1CC518032B3A67C5B3FC7F2F8CE4613A33790CFA ] SysMain C:\WINDOWS\system32\sysmain.dll 13:29:02.0839 0x1938 SysMain - ok 13:29:02.0878 0x1938 [ D5AAA188C70146977CFEE8D128599F3F, 9ABC30982E552EAF41FE84397EEEE5A3187444062C662D7CF35A03E3B274AFB8 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 13:29:02.0907 0x1938 SystemEventsBroker - ok 13:29:02.0951 0x1938 [ 95875059929EF91B55EA612D7967DD3D, 5F734209C8C9725376F7C146ED84999CC6D019C4C10B1795F53E72BE8853E2DD ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 13:29:02.0971 0x1938 TabletInputService - ok 13:29:03.0015 0x1938 [ FE33F417DFD9847CB571D3C7EE5FA7E3, B3C7BE7998B9B093DD969A2588EE8CEBD9771331A63D4B1D86A188317B5EE71C ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 13:29:03.0042 0x1938 TapiSrv - ok 13:29:03.0124 0x1938 [ 7EBD20284AC9BF9F0A020B86769BB074, 26D8CC9C1EE069BB617973BA7CBCFC36BAF1EABF975F395077547F930197A56A ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 13:29:03.0215 0x1938 Tcpip - ok 13:29:03.0291 0x1938 [ 7EBD20284AC9BF9F0A020B86769BB074, 26D8CC9C1EE069BB617973BA7CBCFC36BAF1EABF975F395077547F930197A56A ] Tcpip6 C:\WINDOWS\system32\drivers\tcpip.sys 13:29:03.0377 0x1938 Tcpip6 - ok 13:29:03.0408 0x1938 [ D378A1AF58AFA84BB6AC753F2C1BE9F4, 8BBA623193D51E6A8DD0627FA08C93B918EF1BA2EEBA46CDBB86FE6A1007FDEE ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 13:29:03.0426 0x1938 tcpipreg - ok 13:29:03.0450 0x1938 [ 28E1E63A1AC65E17B3194238FA2CF3BF, 9A52D6DD14BEBB7B407B2703A111D1B302F1B84AA40A14D21FCA554F395E935D ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 13:29:03.0464 0x1938 tdx - ok 13:29:03.0478 0x1938 [ CCDBD2817C10A4F631280CBB3AE44FFB, A022DEF4D3CF75F41FA26275347F4BA38A513AD32FF18385C2E756DECB61D404 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 13:29:03.0490 0x1938 terminpt - ok 13:29:03.0543 0x1938 [ A0608264209A836821D6AB8C67B108AB, 7912C75F72BCAB7426A2E00C597C8D94C185B5DD31BD6C4BE5D56FECD5B0D9EA ] TermService C:\WINDOWS\System32\termsrv.dll 13:29:03.0601 0x1938 TermService - ok 13:29:03.0612 0x1938 [ 261830B1E3650E4471E1F98850B929B7, D281B8A93315E64C7AF5002E5BFBE6AFF8B35FD6AA747AE07D7AA96F4AFAA613 ] Themes C:\WINDOWS\system32\themeservice.dll 13:29:03.0641 0x1938 Themes - ok 13:29:03.0675 0x1938 [ 8D23F0819A00C547814409B734DD3747, 0E1B25A53C84486F8A57F309F3C016114F90F5AF5E576889BD230931F38594A5 ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll 13:29:03.0709 0x1938 tiledatamodelsvc - ok 13:29:03.0732 0x1938 [ 354DAA630928CD4DA2BC84A0DA4ADA9D, AFAE4948EA4F899267DC52DF9A06450FC3E77083B563E541581DA90685C7E98C ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 13:29:03.0752 0x1938 TimeBroker - ok 13:29:03.0772 0x1938 [ F4AEDABC8F3A9D632F8206D0C7F8CA09, 6E76749CD4B857B4D930267E3CF448AF4D14FAC851873C5E71572E62CAD2FA36 ] TPM C:\WINDOWS\system32\drivers\tpm.sys 13:29:03.0789 0x1938 TPM - ok 13:29:03.0805 0x1938 [ 2D0338A3009075FCCB119CB7F3280F82, F42F3B8DA0F8B2C99892E66CDEF471A1CD30A30CF437ADFF464A2C786A6B87A6 ] TrkWks C:\WINDOWS\System32\trkwks.dll 13:29:03.0824 0x1938 TrkWks - ok 13:29:03.0886 0x1938 [ 62D6A900C5DFF2ECF131384E5A5C85AB, 1AF1FB868C59DFF452E3351EE5070B2C746DE606B9E2F1834CE2256F41ABE7A9 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 13:29:03.0903 0x1938 TrustedInstaller - ok 13:29:03.0912 0x1938 [ 676C801CAA61AADD0C918CC536A74B78, DB5DEC9445272E46D32DC2A9A99A9AE45729E424E61C679ECFD973AA88457BE6 ] TsUsbFlt C:\WINDOWS\system32\drivers\TsUsbFlt.sys 13:29:03.0926 0x1938 TsUsbFlt - ok 13:29:03.0931 0x1938 [ 2BB6CC0DD1CEE86330743B56FA9FE91F, EE71E3DEECA7599947AB09E8967FE8066348D82B4C17D8CBE800FCDE9CF4989D ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 13:29:03.0944 0x1938 TsUsbGD - ok 13:29:03.0983 0x1938 [ 14B46248612DF1B1A695040FFFBCFAFC, 8C373A3C416FC9AB3872A187E64AC7A6E69FF605BD8784E8F2B1C28C293A0495 ] tunnel C:\WINDOWS\System32\drivers\tunnel.sys 13:29:04.0002 0x1938 tunnel - ok 13:29:04.0008 0x1938 [ D0BE5EA1652D55029C9A898FB8ACFCE0, 80C4BC30B967C79B3457F43EB9B530CA2571C6158958879AC55E5A81F71CFF15 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 13:29:04.0021 0x1938 uagp35 - ok 13:29:04.0027 0x1938 [ 13C15E4B238895FE4731DB1D612EEB5F, 211E4B05AA09F7FBE2487C3241A98D1F970FEE5B9B1BAED2788B57233BFC4104 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 13:29:04.0040 0x1938 UASPStor - ok 13:29:04.0065 0x1938 [ BEBB8B55C5F99B69EEE39A9D7BADB21E, 08A094EA38AB58CC70108A3BDFDD3251897DC4B13FDDAD54C1B063137836EF34 ] UcmCx0101 C:\WINDOWS\system32\Drivers\UcmCx.sys 13:29:04.0079 0x1938 UcmCx0101 - ok 13:29:04.0109 0x1938 [ DE3EDAF609D00EA2E54986E6459796A6, 61A9AB51869F38300CC5CC5D302B962FB966F54CBB2E393954F36372B3A479FE ] UcmUcsi C:\WINDOWS\System32\drivers\UcmUcsi.sys 13:29:04.0123 0x1938 UcmUcsi - ok 13:29:04.0142 0x1938 [ FB1C1D8B96A482F3581338D6752E1D6C, 0FFAEE3E088614B3483C459513BB9D78EB76B574696FD877A3CDF6A11378F46C ] Ucx01000 C:\WINDOWS\system32\drivers\ucx01000.sys 13:29:04.0159 0x1938 Ucx01000 - ok 13:29:04.0165 0x1938 [ 4E1543ACE2F6E2846713E5123D9D4159, 1A6AFC525A80D1F19B14CDAD38790DF7293911C4D0E8301161D92201B934C3D4 ] UdeCx C:\WINDOWS\system32\drivers\udecx.sys 13:29:04.0179 0x1938 UdeCx - ok 13:29:04.0191 0x1938 [ CDCA9CC1D8293E75218D8FF85F2337A4, 173086C08DDC7625E026E425F1E2B5D6C795771BEAE9BFF6093E3592FBEBD323 ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 13:29:04.0222 0x1938 udfs - ok 13:29:04.0228 0x1938 [ BC683E19307C533C7161DB7A58051347, 5553BE3421986FDD9992EBFD883CDA151F7166C01BBFA3E9183A3C93E41D79B6 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 13:29:04.0239 0x1938 UEFI - ok 13:29:04.0260 0x1938 [ D14B42C26DE402F316D49667D15446F0, 61CC9FF03EF78631C800EFD8D587975CB94D53DB80E6F60BD13BA52EC5690D3D ] Ufx01000 C:\WINDOWS\system32\drivers\ufx01000.sys 13:29:04.0278 0x1938 Ufx01000 - ok 13:29:04.0285 0x1938 [ 192470BE4321791FBB25F379D0141D6F, AD120F8F98BD99014471CE60630B5FEE7555AB261C98B7D9819FE23C386655F7 ] UfxChipidea C:\WINDOWS\System32\drivers\UfxChipidea.sys 13:29:04.0299 0x1938 UfxChipidea - ok 13:29:04.0306 0x1938 [ F7BD838E84E6B286DBCE068EFB8C0800, A55188C8F8BDC739A7ED7D29CDCB2A17468BBB158E13D804963B31ED73449520 ] ufxsynopsys C:\WINDOWS\System32\drivers\ufxsynopsys.sys 13:29:04.0321 0x1938 ufxsynopsys - ok 13:29:04.0371 0x1938 [ C844E39B900FFA46CA8DD2BBA670A077, 0CB6232BCE47C59821DF25D6ED33E85C3E32DDAB101AA8A2C22B5401E73F5D5B ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 13:29:04.0392 0x1938 UI0Detect - ok 13:29:04.0398 0x1938 [ A25842AC180F0E8B02380ECB8ADA1AF5, AF22E7559C5EF8DC22A2B9E27FFFFF075B1D1B68A8307266BD9473E0FAF36BEF ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 13:29:04.0411 0x1938 uliagpkx - ok 13:29:04.0417 0x1938 [ 21088F43172525C7E02D335A3327F46C, B04AD471A7DFE83AB557DB4540616B7DF4A1904F8BDDCB920D449FCEE6F36FD5 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 13:29:04.0433 0x1938 umbus - ok 13:29:04.0438 0x1938 [ 294A291B5D48FE8F38DD94B7272442C5, 66C9139636760C92C1E04FCF440C432FF6C5A94E1577CAFE1D61FCF2D30472ED ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 13:29:04.0450 0x1938 UmPass - ok 13:29:04.0466 0x1938 [ 3427889AECC3B6912A0A01D095E32B98, 322AE14B74295ACFC124719BBEF8809201150A184E262EC55E26D2B45787BF9D ] UmRdpService C:\WINDOWS\System32\umrdp.dll 13:29:04.0491 0x1938 UmRdpService - ok 13:29:04.0561 0x1938 [ E41C778D6208A51F57557523E2B479B5, 509122792ACDF892CC0DC933486CD2E223DD76E526CDD81A452EF098242023D7 ] UnistoreSvc C:\WINDOWS\System32\unistore.dll 13:29:04.0625 0x1938 UnistoreSvc - ok 13:29:04.0664 0x1938 [ BD693208673F40BA21AA70B69F1D439C, E324947C2DD34386A83B09E73668F1CCED127AC91194B8BF7EC4C8E36CF8203E ] upnphost C:\WINDOWS\System32\upnphost.dll 13:29:04.0711 0x1938 upnphost - ok 13:29:04.0742 0x1938 [ A7A52EDDC3FAF183D6AC4774690ADF13, 630A0331F2EFA2DC7EFDACD08D8DF5C85BFDA30FF1525050FF54E069AFA45F6C ] UrsChipidea C:\WINDOWS\System32\drivers\urschipidea.sys 13:29:04.0759 0x1938 UrsChipidea - ok 13:29:04.0772 0x1938 [ 2EEA0897DD9E30E958B508D557F0B5E4, BE051A3AA5DFF56310FAB67AD19AC0443A3580542886EF3554EBE18F1323596F ] UrsCx01000 C:\WINDOWS\system32\drivers\urscx01000.sys 13:29:04.0786 0x1938 UrsCx01000 - ok 13:29:04.0813 0x1938 [ DC54D775A3A61E4CDE871B4E38A1459A, CC996A9D293201BBD285E7B629B12EE88574702B8AC7BB4149439D6A25A07F7E ] UrsSynopsys C:\WINDOWS\System32\drivers\urssynopsys.sys 13:29:04.0824 0x1938 UrsSynopsys - ok 13:29:04.0847 0x1938 [ 1DC6166DB6C4FEFE87D9B9105044E5BE, D19B867C0E900B596B4180390A6E4F2ECCBDF8FBD49561C23DBA7D460B8F44A9 ] usbaudio C:\WINDOWS\system32\drivers\usbaudio.sys 13:29:04.0864 0x1938 usbaudio - ok 13:29:04.0873 0x1938 [ 18B63A0980F4AA1E6D7879B253980E37, 05F96DBE0A3DE2A685DEEBA8B6838A47AEB7CE2EBE8EB6BAD67B36DCF7E73589 ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 13:29:04.0889 0x1938 usbccgp - ok 13:29:04.0907 0x1938 [ 1C60A1A3C8E1E819E16F12BAEB1C83F8, E255BD173DBF091C5EA07381862E23C1FD761489EC396E312974FBC124E1F33A ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 13:29:04.0923 0x1938 usbcir - ok 13:29:04.0939 0x1938 [ 9A3E39F85DC6E3B9F792F1095ACFF788, 66B8E137A5232E9F717907CFD49FE624AE101F4DE14E2960849DABF7A877E87A ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 13:29:04.0952 0x1938 usbehci - ok 13:29:04.0994 0x1938 [ 15FE07A404C8A0CD306661433027FFE4, 250C5B4624EF062C88F49DCFEA00BFF1771EFE8B095EC4F0B51C99BB3F80EC66 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 13:29:05.0020 0x1938 usbhub - ok 13:29:05.0062 0x1938 [ C08449092043601887A1743350888635, 5CD916649D2CD8823B89C9E7459AD76AA8E54D70B6D9F40AD4A41144E22ACBE0 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 13:29:05.0089 0x1938 USBHUB3 - ok 13:29:05.0112 0x1938 [ 72EA850B59F40C25A4FEDDA5FE84EFEB, FB4801AA1FB72FC1C41024916368823E88D53E338640E3BEA865B0F0E7B8EE91 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 13:29:05.0126 0x1938 usbohci - ok 13:29:05.0148 0x1938 [ 47B2B2DE152E25546944049CA1170BB1, DDA0A806D3108B2475AB13F584EA8CE6F0932C5E394C2C3FA691DFAB8A2BCAC0 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 13:29:05.0161 0x1938 usbprint - ok 13:29:05.0196 0x1938 [ 1F72E1A7E1858B7B3FF81522FCEBDE95, 4FAD243DA73C45CD5CA5E50F824F30EF0DC777D83957FD21FF43D8C89EC15AAC ] usbser C:\WINDOWS\System32\drivers\usbser.sys 13:29:05.0211 0x1938 usbser - ok 13:29:05.0230 0x1938 [ CD35467670DF1E6FBF36DA308F0C872B, E1F4F9B1EBD476394CBD0C934842AEE2502B030D97351B0A1E751FF23B011B57 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 13:29:05.0245 0x1938 USBSTOR - ok 13:29:05.0259 0x1938 [ DFA92EA105DD1073B43FB210EEB03DD4, D940432458F0A04F5013B48197CEA0412C8A909C50605AA21DD08271C90E2FE3 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 13:29:05.0273 0x1938 usbuhci - ok 13:29:05.0316 0x1938 [ C67A03F54A1EA683F4880A481EE5FF6C, 346185B378577FF14EFAD01ECB7DFC9AFC0D50F16DF081C3BA99AEFF710A0EE9 ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 13:29:05.0339 0x1938 USBXHCI - ok 13:29:05.0400 0x1938 [ 87E5D206DCDD7E8DB7A597DA59FB9A07, 7743172EA1B14354E2EEC1CCA0045CC2DA288F7A8643F3E8BB37BE6AAF4560AD ] UserDataSvc C:\WINDOWS\System32\userdataservice.dll 13:29:05.0472 0x1938 UserDataSvc - ok 13:29:05.0526 0x1938 [ E9E2B5FFBEFC2CDF14A6E55DD94CC823, A10C011835A65601B8FE3A30F361C224C60084A78085842ADCDA248047530CD1 ] UserManager C:\WINDOWS\System32\usermgr.dll 13:29:05.0574 0x1938 UserManager - ok 13:29:05.0615 0x1938 [ 0CFEA30C0217EE74FF853B2B0CC0BE6D, 1F0856D2D94F46D7B24B7EE18ED868C9EFAE972039D35D1FAA9058A12CF40493 ] UsoSvc C:\WINDOWS\system32\usocore.dll 13:29:05.0644 0x1938 UsoSvc - ok 13:29:05.0654 0x1938 [ 9A83FA0EC9B0DCED2CBC49DD05901920, 14D2F241235E2693C68BCCF05D83F2A1C9A7BE185C83E7C6C63EF0F654892F95 ] VaultSvc C:\WINDOWS\system32\lsass.exe 13:29:05.0667 0x1938 VaultSvc - ok 13:29:05.0673 0x1938 [ 26223003DDFB347B5CF3EC0B56DB066B, 78848BE1334C05F28FA431B08225EAE8345B2C66E7D677F9936892FC941EA961 ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 13:29:05.0686 0x1938 vdrvroot - ok 13:29:05.0716 0x1938 [ 0C3F4E7684C1D72E85A98689E65A98A1, F7928D3EFC1A83125887ADA5F8E008022B58F0DBA8A711B4D60975D8CE82B595 ] vds C:\WINDOWS\System32\vds.exe 13:29:05.0764 0x1938 vds - ok 13:29:05.0776 0x1938 [ A417284BC6B5C2EEF63F2C5154473530, 55146660CDDD829630C216038E6500CFAC906E67C82881047B665BFEEB286D10 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys 13:29:05.0792 0x1938 VerifierExt - ok 13:29:05.0815 0x1938 [ 4C39C05A72EB14C0567501C7E087E564, D3DC122B7E4A5BD345517FE3A9E9E58CD3C78887F9F327AB782BADCAD0F8F2EB ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys 13:29:05.0847 0x1938 vhdmp - ok 13:29:05.0870 0x1938 [ C42206A15078596FDE8E89BB629DE342, B95F9EC2413ADE658A7CE4A9BB57A0E125C29205C24BBB120153DACAF4CF9482 ] vhf C:\WINDOWS\System32\drivers\vhf.sys 13:29:05.0883 0x1938 vhf - ok 13:29:05.0891 0x1938 [ 248D9F911A5C94CF8477125DD0C3A291, 418C7285184BCC9DE4E56175960585867A5DB21FEF761C49FF6F1AF1C07D8088 ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys 13:29:05.0908 0x1938 vmbus - ok 13:29:05.0913 0x1938 [ 3E98DD4E0CBD6B4F9CBD0E9E0EDF541E, 2B5CF364F4D1D3359FBEA8BB2E72A1FCE1277E8D893977B751D9AC10A27DF018 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys 13:29:05.0927 0x1938 VMBusHID - ok 13:29:05.0966 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll 13:29:05.0999 0x1938 vmicguestinterface - ok 13:29:06.0016 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll 13:29:06.0049 0x1938 vmicheartbeat - ok 13:29:06.0066 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll 13:29:06.0099 0x1938 vmickvpexchange - ok 13:29:06.0115 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll 13:29:06.0150 0x1938 vmicrdv - ok 13:29:06.0166 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll 13:29:06.0200 0x1938 vmicshutdown - ok 13:29:06.0216 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll 13:29:06.0249 0x1938 vmictimesync - ok 13:29:06.0267 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicvmsession C:\WINDOWS\System32\ICSvc.dll 13:29:06.0300 0x1938 vmicvmsession - ok 13:29:06.0317 0x1938 [ 977603C51C997435D59ECFE7E24E0653, 32AB9BBFFEB73F5282848748B46584238BD1B812A1435F7759180D36B33FE806 ] vmicvss C:\WINDOWS\System32\ICSvc.dll 13:29:06.0351 0x1938 vmicvss - ok 13:29:06.0358 0x1938 [ 91F165C5D71D9DCB18D4661CF10D1084, 1D55C1FF0F5D860E6DB60EEFE303C0797C98BB0B053ECC255F9B316872288818 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys 13:29:06.0371 0x1938 volmgr - ok 13:29:06.0385 0x1938 [ 17042748AC05862A0283D32575220080, A85B480CB969CB7678545D2A9EE99CBD2ADFF210FA016A43E092D0711FBB633D ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys 13:29:06.0408 0x1938 volmgrx - ok 13:29:06.0422 0x1938 [ 823A237D871CD652C6BFD47BECB6810A, 99310521451CB54C29A5DEA54C3A666F95E2A1FF0979D5F9792885A161E90C65 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys 13:29:06.0444 0x1938 volsnap - ok 13:29:06.0480 0x1938 [ 78727FA284C2095EED660D71CD3C9AEF, 323F0BD5A624DF77973F28C7CF31EC6B3A525496EBF063666623A62B1DB0EA65 ] vpci C:\WINDOWS\System32\drivers\vpci.sys 13:29:06.0494 0x1938 vpci - ok 13:29:06.0503 0x1938 [ 2415961D561E02F5E46B7C1C687A6788, 68A54B9595A0D15D410D5F1656B6EBE3B913A4BA5F71C658C9B99420E6ED327A ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys 13:29:06.0518 0x1938 vsmraid - ok 13:29:06.0572 0x1938 [ 16419CBDB04DB9FF298169AA93413822, 743AD26F08AF5EFF5DD353E75C3D659B10C3FEC2FEDABB76387B87721B5B98F8 ] VSS C:\WINDOWS\system32\vssvc.exe 13:29:06.0648 0x1938 VSS - ok 13:29:06.0664 0x1938 [ 6AE9A843AE979F2DCCA5A25C07C7A5F8, 3CEC26DE2EEC97929A0FBBD87FF75F8DC387C0988B2047074C8F069ACBEF2587 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys 13:29:06.0684 0x1938 VSTXRAID - ok 13:29:06.0700 0x1938 [ BD232C761C59FA8D8EF626CA630E2D2E, E494EFDCE8F6343F49F33F1F03DCD5DEC9CB6F349B1AD302B4D3333B5F6BD8E5 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys 13:29:06.0714 0x1938 vwifibus - ok 13:29:06.0728 0x1938 [ 3039687AB65CEE26CF478C1F42FFCD7D, 40E140C6F94B6203767A1493DF8CAE6BA1FB67FBD0C13789444F72410D0E6FF1 ] vwififlt C:\WINDOWS\system32\drivers\vwififlt.sys 13:29:06.0746 0x1938 vwififlt - ok 13:29:06.0754 0x1938 [ 37C868DDE3103130B00AD1313DAB5ACB, BF9C30817A3502F5C0673FD462B18FE1BF37963B29DF09D84B66BDCBF8ECBA81 ] vwifimp C:\WINDOWS\System32\drivers\vwifimp.sys 13:29:06.0771 0x1938 vwifimp - ok 13:29:06.0797 0x1938 [ EC9B6544C569E8D7FAB91772BD7D23F2, 06CC5F21E9A9DD35099CB3E44C3E2BF2F944CE5B71284E6A85E1B681F12BD31B ] W32Time C:\WINDOWS\system32\w32time.dll 13:29:06.0837 0x1938 W32Time - ok 13:29:06.0843 0x1938 [ FC40A7527D39F06D032A6553D22E4BF6, F572FCB5EB3DE16FD6222A5B6A43C81E3A1F838890667D9F0453F82FFCA772FF ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys 13:29:06.0857 0x1938 WacomPen - ok 13:29:06.0897 0x1938 [ 2CFE8CBE358CC4D5715E010E3B13559F, 54E9BFCE202FA123EB261C226094054950429AAFA304AA714F461B003E070BD9 ] WalletService C:\WINDOWS\system32\WalletService.dll 13:29:06.0931 0x1938 WalletService - ok 13:29:06.0938 0x1938 [ E9E22E116F810DAC98C5EC207F24C916, C518DC57CECA5174E7695F5632555FA08571D5F3A7D6B0C295BA4221AEA67C04 ] wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 13:29:06.0956 0x1938 wanarp - ok 13:29:06.0961 0x1938 [ E9E22E116F810DAC98C5EC207F24C916, C518DC57CECA5174E7695F5632555FA08571D5F3A7D6B0C295BA4221AEA67C04 ] wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys 13:29:06.0980 0x1938 wanarpv6 - ok 13:29:07.0029 0x1938 [ CF9EF65FA66B0F4982FD1FACAB3009B6, 681C1CD5DCAF87EF436B907534E98B0AB4F66BD62E46B8977A7880B854766A27 ] wbengine C:\WINDOWS\system32\wbengine.exe 13:29:07.0108 0x1938 wbengine - ok 13:29:07.0139 0x1938 [ 8F2B0ED6FCA72B34BEEA37E32D0EE106, A86C641A13FDF056B7BA13641551582199DDB08E9490003C74D999518B097C00 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll 13:29:07.0178 0x1938 WbioSrvc - ok 13:29:07.0227 0x1938 [ A40484AC27EE08DBE7F8DA5E1F6651ED, E3259694450C4F1DEC5E0EA5E23BF3A51F1819374DF47FECF70282AFD46114A1 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 13:29:07.0265 0x1938 Wcmsvc - ok 13:29:07.0299 0x1938 [ 8E7FD07D2C82ACBCA52C4100C20F6542, FB2CD88557ABB5EBE6555CD4E41BF4BDC6FE6BCF26288338F2FB034B966FCBD3 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll 13:29:07.0333 0x1938 wcncsvc - ok 13:29:07.0346 0x1938 [ 9C776ED423CD03F8ABD54C2557E34416, 282C1208977070EC0280D5ABA0E03A847AEAEE31F35CDAA3C7A02D8477614EB1 ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll 13:29:07.0363 0x1938 WcsPlugInService - ok 13:29:07.0373 0x1938 [ C8BA574B3BA6AE88741AC86B1FE3C1DC, B2422CDE3A6A27B52D270D24298FF69D91D389C68456EC1805BA30AA59BAB839 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 13:29:07.0387 0x1938 WdBoot - ok 13:29:07.0428 0x1938 [ 927AD29D7F91B9A0C5294932374DA15E, ABB2722EF4153771D15683B5CE603D2B7D8A585357F64A3DC26114F37BE2906E ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys 13:29:07.0463 0x1938 Wdf01000 - ok 13:29:07.0506 0x1938 [ C5BB7C612B4C852836BEA39593BA5F46, 1E2B123F34500C2A8E983AAAF7F14E409B88DC396A655F19F3E7F15D0C51A762 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 13:29:07.0527 0x1938 WdFilter - ok 13:29:07.0542 0x1938 [ 9E0442D3880438D006D95C6F63C27274, DB1ED2BCF9986495EFA8A0B3B0156119F2E4F77AE9BDC6377ADF3A6B53C658F6 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 13:29:07.0566 0x1938 WdiServiceHost - ok 13:29:07.0573 0x1938 [ 9E0442D3880438D006D95C6F63C27274, DB1ED2BCF9986495EFA8A0B3B0156119F2E4F77AE9BDC6377ADF3A6B53C658F6 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 13:29:07.0596 0x1938 WdiSystemHost - ok 13:29:07.0631 0x1938 [ 9B2039C5673EEBF1D4E34ABC0AFB88C7, BBC85546BD86B9027426DAF148194CFE992B80FF89311B28BE0BD82C88630E8C ] wdiwifi C:\WINDOWS\system32\DRIVERS\wdiwifi.sys 13:29:07.0671 0x1938 wdiwifi - ok 13:29:07.0694 0x1938 [ BD193A7BD34B2E829FAF56306FEE3B09, ADD746D198E21242CEFA01840952B792074EFC473113CD3E7F1ABBA6A4E26AF6 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 13:29:07.0708 0x1938 WdNisDrv - ok 13:29:07.0738 0x1938 WdNisSvc - ok 13:29:07.0750 0x1938 [ 6A3B5013D5C7840E8CABD63DD021C112, 371CCEEAC7816CFE79ACA8A218CDA16469D9567CB63CC9D18C55FF047011EF25 ] WebClient C:\WINDOWS\System32\webclnt.dll 13:29:07.0779 0x1938 WebClient - ok 13:29:07.0795 0x1938 [ EED4043BC3C2D00067411730EE118354, 5E268DA4DB78C06D8F181E9408B4769F8A12C38DA52C1E986EE0CEE1101E9485 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 13:29:07.0820 0x1938 Wecsvc - ok 13:29:07.0831 0x1938 [ 6ECD7A49AFC6533821BEEA1876CEB21D, 2E972245F56F589EF1AB9DABB9214B9DE6E290878735476323A3357D8CDFC71F ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 13:29:07.0850 0x1938 WEPHOSTSVC - ok 13:29:07.0868 0x1938 [ 09B434867028AF4895A87959EA668686, 26A7DB82E42DCBF3A77092D58AC6392754FD7C538B9EAAEFA88E9AF81DFE8E96 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 13:29:07.0908 0x1938 wercplsupport - ok 13:29:07.0924 0x1938 [ DE4E417B867841EE55114E588098B8D5, 878708C93FC1D919E2B9E1C5F94A0EAFC5F28BDAA58D3F29DEEDC8EC3F72D9ED ] WerSvc C:\WINDOWS\System32\WerSvc.dll 13:29:07.0951 0x1938 WerSvc - ok 13:29:07.0955 0x1938 wfpcapture - ok 13:29:07.0967 0x1938 [ DBF5255B759212E5217A2748567A0B5C, 5E81A9289EC39702179038B686A35FADF9974651E74222F3354B4CBE919887B0 ] WFPLWFS C:\WINDOWS\system32\drivers\wfplwfs.sys 13:29:07.0983 0x1938 WFPLWFS - ok 13:29:07.0990 0x1938 [ 4CD8826BB8320741842A9E53E48AF2BC, 97B22D9DCD0FD31D3A801946173369B0E70B1850576682C8A8180874A61CAD1A ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 13:29:08.0008 0x1938 WiaRpc - ok 13:29:08.0036 0x1938 [ 4375BCBA419D19695CF566082CEF27D3, 6F86FA14B41A03F2BA51B8702F3D59B85FD488405601FA177495E4B7C576850D ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys 13:29:08.0048 0x1938 WIMMount - ok 13:29:08.0060 0x1938 WinDefend - ok 13:29:08.0076 0x1938 [ 037BC6DE5F58D4A74A5BB0C12DCECDCA, 92921A2615A41C434BADEB33594DABC166FC9418FBD311A3B2022410B14BFDAC ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys 13:29:08.0091 0x1938 WindowsTrustedRT - ok 13:29:08.0104 0x1938 [ 70BCD70BD53F2FE660ED94B025A043EB, B23B96DCAB30C62CB1651B3A2292155AEE8217CE3120574F5158D5E7DA09DE56 ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys 13:29:08.0117 0x1938 WindowsTrustedRTProxy - ok 13:29:08.0167 0x1938 [ 8921ECEC2C7D1B1333D77325C60D3AEA, 67C6B6A92B34D99165B5591D0730322C31E967E599BA44924249BF5AD505C132 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll 13:29:08.0219 0x1938 WinHttpAutoProxySvc - ok 13:29:08.0249 0x1938 [ 7792AE5403BF8975B6460DFC3428D129, D88F77E973D58C2CA629CC9249877A34ABF31CA1DC2A570666921A8A0DC8DEC7 ] WinMad C:\WINDOWS\System32\drivers\winmad.sys 13:29:08.0261 0x1938 WinMad - ok 13:29:08.0334 0x1938 [ 73B5230F03DC7002A70F11EA1B0BAA37, DFE8BBE52B58589686E402ACED51021E298A491F907EBA5689DF9DAFC3002BA5 ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 13:29:08.0356 0x1938 Winmgmt - ok 13:29:08.0452 0x1938 [ 2FE85D6AFF90F56A78743CC93B9CA684, B515765C4EE64E7EC16BD6AF037C084CCA6E81180AEF59E18F260406ABE6DF58 ] WinRM C:\WINDOWS\system32\WsmSvc.dll 13:29:08.0576 0x1938 WinRM - ok 13:29:08.0606 0x1938 [ 811F30EB6EE8318C4171CB95AE30B9BD, 765F6BEA3D35D523B5D7ED7356EC0C97A48066A5C4D77C1E6EDAC6F220153385 ] WINUSB C:\WINDOWS\System32\drivers\WinUSB.SYS 13:29:08.0622 0x1938 WINUSB - ok 13:29:08.0629 0x1938 [ DF00381AB8665D48DE3FF794BC6760AB, 749AC7048601061A34BFF507B574AF028FC662C0A98692E7331E667D105EC09D ] WinVerbs C:\WINDOWS\System32\drivers\winverbs.sys 13:29:08.0641 0x1938 WinVerbs - ok 13:29:08.0720 0x1938 [ 3C096082A9232B7CEE4653B9C9031769, CFD4C7D0874097ED70735FD99206F21C12749B7956C4B5D4287F160EC6A21DCC ] WlanSvc C:\WINDOWS\System32\wlansvc.dll 13:29:08.0826 0x1938 WlanSvc - ok 13:29:08.0919 0x1938 [ 0968D575D9108497A6DC37749D4A6C4F, 8BFEDBE642DA0FD8AC1E60180C192527F3D36E43089090A7BB6D8B27AB6E4F7F ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll 13:29:09.0019 0x1938 wlidsvc - ok 13:29:09.0030 0x1938 [ 623ED8E10DFEEAB7AE2CD11A0451DB79, 7DDE15F22FD24556D4765F6CFD0F8E2F27370A89A962919646DE2613B33D43D6 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys 13:29:09.0044 0x1938 WmiAcpi - ok 13:29:09.0061 0x1938 [ B2BB87531C4127ED4120E9BF5566827F, 1DDC0F00F215D77D3698F81B56D4488F384E9D017267840EDFA4846742B99B6A ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe 13:29:09.0081 0x1938 wmiApSrv - ok 13:29:09.0106 0x1938 WMPNetworkSvc - ok 13:29:09.0146 0x1938 [ 78CA1FF6FE37EEFAFF99DD1C956AF60A, 883C7890C83BAB3B846A0C969D7B67031BD2EF65FA58A0620DD0CD1655C5B2C5 ] Wof C:\WINDOWS\system32\drivers\Wof.sys 13:29:09.0165 0x1938 Wof - ok 13:29:09.0248 0x1938 [ C7503A49364DB2AF7A7DE177B233081F, 85DC6D8B5631E51FCF395A884F58571A96C8C55C38CA9ABEBD9C75BABAD21E38 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 13:29:09.0338 0x1938 workfolderssvc - ok 13:29:09.0375 0x1938 [ 388F2A3C771B8BEE76FD1AAF9614D08E, C064EC6136CC20C4EE19C86E91CA071974933BB52C9EF8521DF4AFD060FED4A2 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys 13:29:09.0388 0x1938 wpcfltr - ok 13:29:09.0423 0x1938 [ A6FCFE1F691B4A4D266F5D487FADB9FE, 2135D0C13C1295A2F76885E380CD72CB71CEB8E0D9F1C183A35935B27737D423 ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 13:29:09.0442 0x1938 WPDBusEnum - ok 13:29:09.0472 0x1938 [ 37DCE976B3935380F2F6E39ABB6BF40D, B14E875F6D6503DF0DB6D9D2363316073AEEF394D830EA2270A0DCDA56E1CEC4 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 13:29:09.0484 0x1938 WpdUpFltr - ok 13:29:09.0494 0x1938 [ 80F0154FD4293E562D54E97811E03499, EDE920F7F95EFBE542FE3CE066B6F7CDE3B9A37DDF3411DC86EACE9EEF294C1D ] WpnService C:\WINDOWS\system32\WpnService.dll 13:29:09.0510 0x1938 WpnService - ok 13:29:09.0542 0x1938 [ 3CD22DD5A790CF7C24D65455E565EA83, 49DB06DF6F38940E7F8691C16586A78BB20E702FD48A34E50987C06B08BDF4DB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys 13:29:09.0560 0x1938 ws2ifsl - ok 13:29:09.0573 0x1938 [ EBA916109A176714E6A7BD152387F13C, 7B38B1708B83271ADA8D1CEC7F5F0A75C7F2572185C0961EFC749D5DF16A03F0 ] wscsvc C:\WINDOWS\System32\wscsvc.dll 13:29:09.0597 0x1938 wscsvc - ok 13:29:09.0614 0x1938 [ E392DFAF6D0DEFC812ECC727A61F91C5, C28B6CC8AD034157CE92C7F098A9C12ADED2769E6AF954A9AAD10CC0E811DD2A ] WSDPrintDevice C:\WINDOWS\System32\drivers\WSDPrint.sys 13:29:09.0629 0x1938 WSDPrintDevice - ok 13:29:09.0639 0x1938 [ 0902C63D8C836EA4D0876FCD8D627701, 0173F83CF8DA9C6D40C64CE88BF1A40EB634008D3D48F74E4E3BBBB11F1CA8D1 ] WSDScan C:\WINDOWS\system32\DRIVERS\WSDScan.sys 13:29:09.0653 0x1938 WSDScan - ok 13:29:09.0657 0x1938 WSearch - ok 13:29:09.0772 0x1938 [ 9EB85802AB625970E05879D15DE56335, B7DCE5E1924A5CEE76CC07FF3B8CEDBBD0DDBB4C4ED0A3BFB8D1ABCAD7C0AA23 ] WSService C:\WINDOWS\System32\WSService.dll 13:29:09.0894 0x1938 WSService - ok 13:29:09.0977 0x1938 [ B70FF53144AC4B3C7D98BFB7D7C239BD, 996F6253F24C6D734B777988CDE03CD3A32FFBAD6D7A198F1C590B762CD8DC0E ] wuauserv C:\WINDOWS\system32\wuaueng.dll 13:29:10.0083 0x1938 wuauserv - ok 13:29:10.0096 0x1938 [ 835F60262E7E310080EA05F6752BF248, 3010B731DF3D52B56EA16FD29B66F5D3AB9412E49CA4C547BAAECA3225C5DC40 ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 13:29:10.0114 0x1938 WudfPf - ok 13:29:10.0138 0x1938 [ 4E848DE29E4279C7F25EF5B34ED94FDD, FD7B0673F4CFA6EB66D7212288223419BFFA02EBF1F1D85F155B5397C6FB21E9 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 13:29:10.0161 0x1938 WUDFRd - ok 13:29:10.0176 0x1938 [ 44CF3130AEC8914705487C4AEF756A19, 30B09E32DEC02141F9B99ED012E441056C1663A72E4130EF4221ECC0ED87BF4B ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll 13:29:10.0196 0x1938 wudfsvc - ok 13:29:10.0206 0x1938 [ 4E848DE29E4279C7F25EF5B34ED94FDD, FD7B0673F4CFA6EB66D7212288223419BFFA02EBF1F1D85F155B5397C6FB21E9 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 13:29:10.0228 0x1938 WUDFWpdFs - ok 13:29:10.0237 0x1938 [ 4E848DE29E4279C7F25EF5B34ED94FDD, FD7B0673F4CFA6EB66D7212288223419BFFA02EBF1F1D85F155B5397C6FB21E9 ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 13:29:10.0259 0x1938 WUDFWpdMtp - ok 13:29:10.0314 0x1938 [ D23F211E1AA0787EFEC373D172D4A1C2, 6CCAB272D121C9946B2CF6B19F50E09946F0187713D54BFBD371B5C017367204 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 13:29:10.0377 0x1938 WwanSvc - ok 13:29:10.0427 0x1938 [ 9BDC2AFCEF4CF1C630D728DE1DBD495A, 5CE19974380CCEC46C181315B349E9A7CE757E19118EC5978A2293D63268BA66 ] XblAuthManager C:\WINDOWS\System32\XblAuthManager.dll 13:29:10.0481 0x1938 XblAuthManager - ok 13:29:10.0527 0x1938 [ 3EDB6162310EA223890C2DF44C68358B, 12053291809CA9C38A30EA4B2DE7115F535531F0925220C63B0312979F9CC707 ] XblGameSave C:\WINDOWS\System32\XblGameSave.dll 13:29:10.0589 0x1938 XblGameSave - ok 13:29:10.0627 0x1938 [ 30021D1E0407B71E8D5D4F8DAE4E656A, EE2E366A1CC033C068176C7E9F876FFA0EF86A15A482B6964E170DE863CFF542 ] xboxgip C:\WINDOWS\System32\drivers\xboxgip.sys 13:29:10.0650 0x1938 xboxgip - ok 13:29:10.0700 0x1938 [ 729B70C81F207541BC6A4ABAE3A8D594, 31F9BC41169D28B397C0D988C367C32FA9A95289E68AB8F38061DA478752A765 ] XboxNetApiSvc C:\WINDOWS\system32\XboxNetApiSvc.dll 13:29:10.0761 0x1938 XboxNetApiSvc - ok 13:29:10.0793 0x1938 [ 533221B647F52E06A53AA51A80AAE25F, 139448F8083A4F4CA37CB341416A2F1C0E73A796A61E89B8F137B0F44C4E8BD5 ] xhunter1 C:\WINDOWS\xhunter1.sys 13:29:10.0801 0x1938 xhunter1 - ok 13:29:10.0816 0x1938 [ 6851673B90D8CB332439E0339F81A6B6, 4E95F1A63E6DD58BB5BD6FC1D9784837D5E6F5BCF870C7ECC92DCA1AF20B6A4C ] xinputhid C:\WINDOWS\System32\drivers\xinputhid.sys 13:29:10.0830 0x1938 xinputhid - ok 13:29:10.0852 0x1938 [ AC33AF4F81D903E80825503FED63F9F9, 4203868A81E755E8598556F0415889FDDA173717E529970D5C8796743AE961B8 ] xspirit C:\WINDOWS\xspirit.sys 13:29:10.0858 0x1938 xspirit - ok 13:29:10.0859 0x1938 ================ Scan global =============================== 13:29:10.0903 0x1938 [ C6BC6E49A7F76AA2BBA58CD08196755F, D02B6B285899E966D19323566A4780D51303D00E66674D7FF4B61991430A69A6 ] C:\WINDOWS\system32\basesrv.dll 13:29:10.0938 0x1938 [ 70EC9717DC3A1CDF79C703A145E0E5B7, D5ABF42063DFF799FD4099D8A347256CC79B89582B987B3DEE240AFA5BA421BE ] C:\WINDOWS\system32\winsrv.dll 13:29:10.0979 0x1938 [ F435AFA375ACBAEE44324DD464EDCC11, 815DE470439AE5D96348BEBF971A14FBDCA1D36F31CA0D25F69E5F41817D43D5 ] C:\WINDOWS\system32\sxssrv.dll 13:29:11.0002 0x1938 [ BB3D8E1C108F7244613FF3993291A922, 1642AF23F200D46F54239C3BA743F1D5ADDC6A32D5F6481264D0C1D7F3E9D533 ] C:\WINDOWS\system32\services.exe 13:29:11.0013 0x1938 [ Global ] - ok 13:29:11.0014 0x1938 ================ Scan MBR ================================== 13:29:11.0017 0x1938 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 13:29:11.0210 0x1938 \Device\Harddisk0\DR0 - ok 13:29:11.0222 0x1938 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1 13:29:11.0486 0x1938 \Device\Harddisk1\DR1 - ok 13:29:11.0487 0x1938 ================ Scan VBR ================================== 13:29:11.0489 0x1938 [ 266E3EDC09FEABC18FBB7A6B5DB4708D ] \Device\Harddisk0\DR0\Partition1 13:29:11.0518 0x1938 \Device\Harddisk0\DR0\Partition1 - ok 13:29:11.0522 0x1938 [ 26CE5983684AB83DAD66C9E6E079ABA3 ] \Device\Harddisk0\DR0\Partition2 13:29:11.0524 0x1938 \Device\Harddisk0\DR0\Partition2 - ok 13:29:11.0528 0x1938 [ B124A19AA822429CB8061602DF0D0C16 ] \Device\Harddisk1\DR1\Partition1 13:29:11.0563 0x1938 \Device\Harddisk1\DR1\Partition1 - ok 13:29:11.0564 0x1938 ================ Scan generic autorun ====================== 13:29:11.0827 0x1938 [ A15FF7FFA54109281D5742D396271DFC, 2551B6203E594087858FA514FD73DC652AEC45AAAADDFC50240F4AC2BF5C1879 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe 13:29:12.0052 0x1938 RTHDVCPL - ok 13:29:12.0171 0x1938 [ 8F82FFC6CD0F4C83F4565E1A40332CCD, 45D17603664CBE2C4236AEDB3C21D585C8225A3D3B1118365EE2C6BFDB8A7890 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 13:29:12.0244 0x1938 NvBackend - ok 13:29:12.0263 0x1938 [ 5DED2A3F11AE916C8F2724947E736261, 35402466FE6D02CC85A27171F55D9F7FD0AAF018D3CC410E46F0B43DCE7EA080 ] C:\WINDOWS\system32\rundll32.exe 13:29:12.0289 0x1938 ShadowPlay - ok 13:29:12.0482 0x1938 [ 02B8BC2531917B205D509E6D8661DAFF, 9466DADD36A6B7FA4FB2C84B3F268CCEE65AA05D6DC93E70DE6F47F98D396B06 ] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe 13:29:12.0632 0x1938 LogMeIn Hamachi Ui - ok 13:29:12.0729 0x1938 [ C68131A3D92F18601234AC44C092F9B9, E5911425E38D4C491DA4FB768EE2648ACB734A55FC8CF84BD1289200C8BD6446 ] C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe 13:29:12.0748 0x1938 ADSKAppManager - ok 13:29:12.0790 0x1938 [ 4F9DD96AECDC12373D4203253D665C6D, 871FF2367ACD5F9A378FED53574BF28A8129224C4B7C4AF074809ED7CF870904 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 13:29:12.0806 0x1938 SunJavaUpdateSched - ok 13:29:13.0087 0x1938 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 13:29:13.0346 0x1938 OneDriveSetup - ok 13:29:13.0580 0x1938 [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe 13:29:13.0793 0x1938 OneDriveSetup - ok 13:29:13.0865 0x1938 [ B676139909FFFA8A7148AC84FB554A40, 03EC766C570B5BE2AA9C932472B465EE37F0F1D88D2167E20DD5D4B729C6C723 ] C:\Program Files (x86)\Overwolf\Overwolf.exe 13:29:13.0872 0x1938 Overwolf - ok 13:29:14.0027 0x1938 [ 3D5D4137594D2EBA8868EAD504B89366, D5FEB5B8303B083A79A4617E59B2FB34FAD71BE72F3F8DD6E4B69B3D03FE658A ] C:\Program Files\DAEMON Tools Lite\DTAgent.exe 13:29:14.0150 0x1938 DAEMON Tools Lite Automount - ok 13:29:14.0260 0x1938 [ C2D2FFD27F46815951C9562F0A2EC864, 892A5DC5C3D797E3FD36230710BA9AF43ADA5CDFD19A03268D20D5A9DA3CCB3A ] C:\Users\Marlon\AppData\Local\Microsoft\OneDrive\OneDrive.exe 13:29:14.0281 0x1938 OneDrive - ok 13:29:14.0304 0x1938 Skype - ok 13:29:14.0484 0x1938 [ D6E2ED7F1F7BE7CCB8676491BF950B57, CBF07EE746F2C27ACC532E83ADC43FBE954DC3C598C4333F13B1A7615AEA9AD5 ] C:\Users\Marlon\AppData\Local\Akamai\netsession_win.exe 13:29:14.0612 0x1938 Akamai NetSession Interface - ok 13:29:14.0620 0x1938 Waiting for KSN requests completion. In queue: 164 13:29:15.0621 0x1938 Waiting for KSN requests completion. In queue: 164 13:29:16.0622 0x1938 Waiting for KSN requests completion. In queue: 164 13:29:16.0984 0x1844 Object required for P2P: [ 7EBD20284AC9BF9F0A020B86769BB074 ] Tcpip 13:29:17.0623 0x1938 Waiting for KSN requests completion. In queue: 150 13:29:18.0624 0x1938 Waiting for KSN requests completion. In queue: 150 13:29:19.0422 0x1844 Object send P2P result: true 13:29:19.0423 0x1844 Object required for P2P: [ 7EBD20284AC9BF9F0A020B86769BB074 ] Tcpip6 13:29:19.0624 0x1938 Waiting for KSN requests completion. In queue: 149 13:29:20.0624 0x1938 Waiting for KSN requests completion. In queue: 149 13:29:21.0625 0x1938 Waiting for KSN requests completion. In queue: 149 13:29:21.0870 0x1844 Object send P2P result: true 13:29:21.0888 0x1844 Object required for P2P: [ 0968D575D9108497A6DC37749D4A6C4F ] wlidsvc 13:29:22.0626 0x1938 Waiting for KSN requests completion. In queue: 40 13:29:23.0626 0x1938 Waiting for KSN requests completion. In queue: 40 13:29:24.0322 0x1844 Object send P2P result: true 13:29:24.0681 0x1938 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.10240.16384 ), 0x61100 ( enabled : updated ) 13:29:24.0685 0x1938 Win FW state via NFP2: enabled ( trusted ) 13:29:27.0079 0x1938 ============================================================ 13:29:27.0079 0x1938 Scan finished 13:29:27.0079 0x1938 ============================================================ 13:29:27.0090 0x18ac Detected object count: 0 13:29:27.0090 0x18ac Actual detected object count: 0 |
05.10.2015, 14:38 | #7 |
/// TB-Ausbilder | Bei Download stürzt PC ab oder Internetverbindung bricht ab Servus, wir machen kurz ein paar Kontrollen, um Malware auszuschließen: Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2 Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 3 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4
Bitte poste mit deiner nächsten Antwort
|
08.10.2015, 16:43 | #8 |
/// TB-Ausbilder | Bei Download stürzt PC ab oder Internetverbindung bricht ab Fehlende Rückmeldung Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten. PM an mich falls Du denoch weiter machen willst. Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist. Jeder andere bitte hier klicken und einen eigenen Thread erstellen! |
Themen zu Bei Download stürzt PC ab oder Internetverbindung bricht ab |
abstürzen, besonders, download, durchgeführt, erkannt, gen, geschlossen, großes, hardware, hoffe, interne, internet, internetverbindung, link, maus, minute, minuten, monate, nicht mehr, problem, sekunden, speed, steam, stürzt, tastatur, usb, verbindung |