|
Plagegeister aller Art und deren Bekämpfung: Komische Probleme mit LaptopWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
22.10.2015, 21:21 | #1 |
| Komische Probleme mit Laptop Gestern hab ich den Laptop in den Ruhezustand versetzt und heute wieder aufgeklappt und nichts ging mehr also hab ich ihn neugestartet und dann hat sich ca 5 min nach Neustart gefühlte 1000 mal der windows Explorer geöffnet und nach irgendwas gesucht (konnt nicht lesen was) stand halt nur Suchergebnisse neugestartet jetz nicht mehr hab ich nen virus drauf ? Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:21-10-2015 01 durchgeführt von Phillip (Administrator) auf NB-PHILLIP (22-10-2015 22:15:18) Gestartet von C:\Users\Phillip\Desktop Geladene Profile: Phillip (Verfügbare Profile: Phillip) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe (A-Volute) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avpui.exe (CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe (Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe (Samsung Electronics) C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Spotify Ltd) C:\Users\Phillip\AppData\Roaming\Spotify\SpotifyWebHelper.exe (ROCCAT GmbH Co., Ltd.) C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Isku FX Keyboard\IskuFXMonitor.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (SAMSUNG Electronics) C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe (Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe (Razer, Inc.) C:\Users\Phillip\AppData\Local\Razer\InGameEngine\cache\RzStats.Manager\RzCefRenderProcess.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (DragonflyGames, Inc.) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\S.K.I.L.L\Binaries\Win32\sf2.exe (Wellbia.com) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\S.K.I.L.L\Binaries\Win32\XIGNCODE\xxd-0.xem (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12558440 2011-07-12] (Realtek Semiconductor) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [10801944 2014-07-28] (Logitech Inc.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634872 2015-08-27] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\windows\system32\rundll32.exe C:\windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590144 2015-06-18] (Razer Inc.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2014-10-11] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-17] (Apple Inc.) HKLM-x32\...\Run: [RoccatIskuFX] => C:\Program Files (x86)\ROCCAT\Isku FX Keyboard\IskuFXMonitor.exe [540672 2014-10-19] (ROCCAT GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040 2015-10-06] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [57987712 2015-09-28] (Skype Technologies S.A.) HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd) HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\Run: [Spotify Web Helper] => C:\Users\Phillip\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912 2015-10-21] (Spotify Ltd) HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\Run: [Spotify] => C:\Users\Phillip\AppData\Roaming\Spotify\Spotify.exe [7736128 2015-10-21] (Spotify Ltd) HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\RunOnce: [Uninstall C:\Users\Phillip\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64] => C:\windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Phillip\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64" HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\MountPoints2: {6f6dc400-2ab1-11e4-945e-e8039a144256} - F:\AutoRun.exe {D2D77DC2-8299-11D1-8949-444553540000} 5.2066.1.A11B02 PID_0083 AppInit_DLLs: C:\windows\system32\nvinitx.dll => C:\windows\system32\nvinitx.dll [176904 2015-06-17] (NVIDIA Corporation) AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [155280 2015-06-17] (NVIDIA Corporation) AppInit_DLLs-x32: , C:\windows\SysWOW64\nvinit.dll => C:\windows\SysWOW64\nvinit.dll [155280 2015-06-17] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Roccat Talk.lnk [2015-10-09] ShortcutTarget: Roccat Talk.lnk -> C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe (ROCCAT GmbH Co., Ltd.) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{3a9c25ac-30c1-4408-9a5e-d0ad46f95e8e}: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{7EFF7E68-A3F8-4AD4-AF9A-3E0ED27E26F3}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung.msn.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung.msn.com HKU\S-1-5-21-578327087-4110603385-1361986703-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-578327087-4110603385-1361986703-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung.msn.com SearchScopes: HKU\S-1-5-21-578327087-4110603385-1361986703-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-04-20] (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-10-10] (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.) BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\OnlineBanking\online_banking_bho.dll [2014-04-20] (Kaspersky Lab ZAO) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\x64\IEExt\UrlAdvisor\klwtbbho.dll [2014-04-20] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll [2014-04-20] (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll [2014-10-10] (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\ssv.dll [2015-10-21] (Oracle Corporation) BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.) BHO-x32: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\OnlineBanking\online_banking_bho.dll [2014-04-20] (Kaspersky Lab ZAO) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\jp2ssv.dll [2015-10-21] (Oracle Corporation) BHO-x32: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\IEExt\UrlAdvisor\klwtbbho.dll [2014-04-20] (Kaspersky Lab ZAO) Toolbar: HKU\S-1-5-21-578327087-4110603385-1361986703-1001 -> Kein Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Keine Datei Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-10-12] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Phillip\AppData\Roaming\Mozilla\Firefox\Profiles\excqspqe.default FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_19_0_0_185.dll [2015-10-10] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-10-10] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-18] () FF Plugin-x32: @java.com/DTPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\dtplugin\npDeployJava1.dll [2015-10-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.65.2 -> C:\Program Files (x86)\Java\jre1.8.0_65\bin\plugin2\npjp2.dll [2015-10-21] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [2014-10-10] () FF Plugin-x32: @kaspersky.com/online_banking -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [2014-10-10] () FF Plugin-x32: @kaspersky.com/virtual_keyboard -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [2014-10-10] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-09] (Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-09-30] (Adobe Systems Inc.) FF Extension: Blur - C:\Users\Phillip\AppData\Roaming\Mozilla\Firefox\Profiles\excqspqe.default\Extensions\donottrackplus@abine.com.xpi [2015-07-14] FF Extension: NoScript - C:\Users\Phillip\AppData\Roaming\Mozilla\Firefox\Profiles\excqspqe.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-10-17] FF Extension: Adblock Plus - C:\Users\Phillip\AppData\Roaming\Mozilla\Firefox\Profiles\excqspqe.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-25] FF Extension: Kein Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com [2014-10-10] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com [2014-10-10] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\url_advisor@kaspersky.com [2014-10-10] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\anti_banner@kaspersky.com [2014-10-10] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com [2014-10-10] [ist nicht signiert] Chrome: ======= CHR Profile: C:\Users\Phillip\AppData\Local\Google\Chrome\User Data\Default CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.) R2 AVP15.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe [233552 2014-04-20] (Kaspersky Lab ZAO) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [967040 2015-04-06] () R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155192 2015-08-27] (NVIDIA Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-08-27] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544568 2015-08-27] (NVIDIA Corporation) R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] () R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2009-12-01] () [Datei ist nicht signiert] R2 RzSurroundVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe [4250624 2015-02-03] (A-Volute) [Datei ist nicht signiert] S3 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [457824 2014-02-20] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [141320 2014-10-10] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [243808 2014-04-10] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [793800 2014-10-10] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55904 2014-03-25] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179296 2014-03-26] (Kaspersky Lab ZAO) R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMSwissArmy; C:\windows\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-19] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-08-27] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation) S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia) S3 rtport; C:\windows\SysWOW64\drivers\rtport.sys [15144 2011-11-25] (Windows (R) 2003 DDK 3790 provider) S3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [32768 2014-06-09] (Windows (R) Win 7 DDK provider) R2 rzpmgrk; C:\windows\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.) R2 rzpnk; C:\windows\system32\drivers\rzpnk.sys [129600 2014-10-23] (Razer, Inc.) R3 RZSURROUNDVADService; C:\Windows\System32\drivers\RzSurroundVAD.sys [40640 2015-02-09] (Windows (R) Win 7 DDK provider) R2 SGDrv; C:\Windows\System32\DRIVERS\SGdrv64.sys [7680 2011-04-11] (Phoenix Technologies Ltd.) S2 TVicPort; C:\Windows\SysWow64\Drivers\TVicPort.sys [4080 1999-05-20] () S3 massfilter_hs; \??\C:\windows\system32\drivers\massfilter_hs.sys [X] S3 xhunter1; \??\C:\windows\xhunter1.sys [X] S3 zghsmdm; system32\DRIVERS\zghsmdm.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-10-22 22:15 - 2015-10-22 22:16 - 00023482 _____ C:\Users\Phillip\Desktop\FRST.txt 2015-10-22 22:15 - 2015-10-22 22:15 - 00000000 ____D C:\Users\Phillip\Desktop\FRST-OlderVersion 2015-10-22 22:14 - 2015-10-22 22:15 - 00000000 ____D C:\FRST 2015-10-20 22:45 - 2015-10-20 22:45 - 01691648 _____ C:\Users\Phillip\Downloads\adwcleaner_5.014.exe 2015-10-18 00:05 - 2015-10-18 21:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-10-15 21:38 - 2015-09-18 21:22 - 00025432 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe 2015-10-15 21:38 - 2015-09-18 21:19 - 01291264 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll 2015-10-15 21:38 - 2015-09-18 21:19 - 00766464 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll 2015-10-15 21:38 - 2015-09-18 21:19 - 00700416 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll 2015-10-15 21:38 - 2015-09-18 21:19 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll 2015-10-15 21:38 - 2015-09-18 21:19 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll 2015-10-15 21:38 - 2015-09-18 21:09 - 01163776 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll 2015-10-13 20:54 - 2015-09-25 20:07 - 03168768 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll 2015-10-13 20:54 - 2015-09-25 20:07 - 02607104 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll 2015-10-13 20:54 - 2015-09-25 20:07 - 00696320 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll 2015-10-13 20:54 - 2015-09-25 20:07 - 00192512 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll 2015-10-13 20:54 - 2015-09-25 20:07 - 00098816 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll 2015-10-13 20:54 - 2015-09-25 20:07 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll 2015-10-13 20:54 - 2015-09-25 20:07 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wups.dll 2015-10-13 20:54 - 2015-09-25 20:06 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe 2015-10-13 20:54 - 2015-09-25 20:06 - 00091136 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll 2015-10-13 20:54 - 2015-09-25 20:06 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe 2015-10-13 20:54 - 2015-09-25 20:06 - 00012288 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll 2015-10-13 20:54 - 2015-09-25 19:59 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll 2015-10-13 20:54 - 2015-09-25 19:59 - 00174080 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll 2015-10-13 20:54 - 2015-09-25 19:59 - 00093696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll 2015-10-13 20:54 - 2015-09-25 19:59 - 00030208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll 2015-10-13 20:54 - 2015-09-25 19:58 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe 2015-10-13 20:54 - 2015-09-18 21:31 - 00391784 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2015-10-13 20:54 - 2015-09-18 20:58 - 00345688 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2015-10-13 20:54 - 2015-09-16 06:48 - 25851904 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2015-10-13 20:54 - 2015-09-16 06:36 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2015-10-13 20:54 - 2015-09-16 06:36 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll 2015-10-13 20:54 - 2015-09-16 06:22 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2015-10-13 20:54 - 2015-09-16 06:21 - 02886656 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2015-10-13 20:54 - 2015-09-16 06:21 - 00585728 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2015-10-13 20:54 - 2015-09-16 06:21 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2015-10-13 20:54 - 2015-09-16 06:21 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll 2015-10-13 20:54 - 2015-09-16 06:21 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll 2015-10-13 20:54 - 2015-09-16 06:14 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2015-10-13 20:54 - 2015-09-16 06:13 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2015-10-13 20:54 - 2015-09-16 06:10 - 00616960 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2015-10-13 20:54 - 2015-09-16 06:09 - 05990912 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2015-10-13 20:54 - 2015-09-16 06:08 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2015-10-13 20:54 - 2015-09-16 06:08 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll 2015-10-13 20:54 - 2015-09-16 06:08 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2015-10-13 20:54 - 2015-09-16 06:08 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe 2015-10-13 20:54 - 2015-09-16 06:01 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2015-10-13 20:54 - 2015-09-16 05:58 - 20357632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2015-10-13 20:54 - 2015-09-16 05:58 - 00489984 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2015-10-13 20:54 - 2015-09-16 05:50 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll 2015-10-13 20:54 - 2015-09-16 05:46 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2015-10-13 20:54 - 2015-09-16 05:45 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2015-10-13 20:54 - 2015-09-16 05:45 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2015-10-13 20:54 - 2015-09-16 05:43 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2015-10-13 20:54 - 2015-09-16 05:41 - 00152064 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2015-10-13 20:54 - 2015-09-16 05:33 - 00504832 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2015-10-13 20:54 - 2015-09-16 05:33 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2015-10-13 20:54 - 2015-09-16 05:32 - 00341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec 2015-10-13 20:54 - 2015-09-16 05:32 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll 2015-10-13 20:54 - 2015-09-16 05:31 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2015-10-13 20:54 - 2015-09-16 05:31 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll 2015-10-13 20:54 - 2015-09-16 05:29 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2015-10-13 20:54 - 2015-09-16 05:29 - 00720896 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2015-10-13 20:54 - 2015-09-16 05:28 - 02279936 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2015-10-13 20:54 - 2015-09-16 05:28 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2015-10-13 20:54 - 2015-09-16 05:26 - 02126336 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2015-10-13 20:54 - 2015-09-16 05:26 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2015-10-13 20:54 - 2015-09-16 05:26 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2015-10-13 20:54 - 2015-09-16 05:24 - 00480256 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2015-10-13 20:54 - 2015-09-16 05:23 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe 2015-10-13 20:54 - 2015-09-16 05:22 - 14458368 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2015-10-13 20:54 - 2015-09-16 05:22 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2015-10-13 20:54 - 2015-09-16 05:22 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll 2015-10-13 20:54 - 2015-09-16 05:15 - 00416256 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2015-10-13 20:54 - 2015-09-16 05:11 - 02487808 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2015-10-13 20:54 - 2015-09-16 05:10 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-10-13 20:54 - 2015-09-16 05:07 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2015-10-13 20:54 - 2015-09-16 05:06 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2015-10-13 20:54 - 2015-09-16 05:05 - 04527616 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2015-10-13 20:54 - 2015-09-16 05:05 - 00279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2015-10-13 20:54 - 2015-09-16 05:04 - 00130048 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll 2015-10-13 20:54 - 2015-09-16 04:59 - 01546752 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2015-10-13 20:54 - 2015-09-16 04:58 - 12853760 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2015-10-13 20:54 - 2015-09-16 04:58 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2015-10-13 20:54 - 2015-09-16 04:56 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2015-10-13 20:54 - 2015-09-16 04:55 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2015-10-13 20:54 - 2015-09-16 04:55 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll 2015-10-13 20:54 - 2015-09-16 04:48 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2015-10-13 20:54 - 2015-09-16 04:37 - 02011136 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2015-10-13 20:54 - 2015-09-16 04:34 - 01311232 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2015-10-13 20:54 - 2015-09-16 04:32 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2015-10-13 20:54 - 2015-08-06 20:04 - 14176768 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2015-10-13 20:54 - 2015-08-06 20:03 - 01866752 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll 2015-10-13 20:54 - 2015-08-06 19:44 - 12875776 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2015-10-13 20:54 - 2015-08-06 19:44 - 01498624 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll 2015-10-13 20:52 - 2015-10-01 20:06 - 00692672 _____ (Microsoft Corporation) C:\windows\system32\winload.efi 2015-10-13 20:52 - 2015-10-01 20:04 - 00616360 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi 2015-10-13 20:52 - 2015-10-01 20:00 - 00147456 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe 2015-10-13 20:52 - 2015-10-01 20:00 - 00063488 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll 2015-10-13 20:52 - 2015-10-01 20:00 - 00059392 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll 2015-10-13 20:52 - 2015-10-01 20:00 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll 2015-10-13 20:52 - 2015-10-01 20:00 - 00017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe 2015-10-13 20:52 - 2015-10-01 19:50 - 00050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll 2015-10-13 20:52 - 2015-10-01 19:00 - 00061440 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys 2015-10-13 20:52 - 2015-09-29 05:16 - 05569472 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2015-10-13 20:52 - 2015-09-29 05:13 - 01730496 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll 2015-10-13 20:52 - 2015-09-29 05:11 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 01216512 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 01164800 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 00729088 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe 2015-10-13 20:52 - 2015-09-29 05:10 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe 2015-10-13 20:52 - 2015-09-29 05:10 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll 2015-10-13 20:52 - 2015-09-29 05:10 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll 2015-10-13 20:52 - 2015-09-29 05:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe 2015-10-13 20:52 - 2015-09-29 05:09 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe 2015-10-13 20:52 - 2015-09-29 05:05 - 03990976 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe 2015-10-13 20:52 - 2015-09-29 05:05 - 03936192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe 2015-10-13 20:52 - 2015-09-29 05:05 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll 2015-10-13 20:52 - 2015-09-29 05:05 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll 2015-10-13 20:52 - 2015-09-29 05:02 - 01311768 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 05:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:59 - 00552960 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll 2015-10-13 20:52 - 2015-09-29 04:59 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll 2015-10-13 20:52 - 2015-09-29 04:59 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll 2015-10-13 20:52 - 2015-09-29 04:59 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll 2015-10-13 20:52 - 2015-09-29 04:59 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll 2015-10-13 20:52 - 2015-09-29 04:59 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll 2015-10-13 20:52 - 2015-09-29 04:58 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe 2015-10-13 20:52 - 2015-09-29 04:58 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptbase.dll 2015-10-13 20:52 - 2015-09-29 04:58 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe 2015-10-13 20:52 - 2015-09-29 04:58 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll 2015-10-13 20:52 - 2015-09-29 04:57 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll 2015-10-13 20:52 - 2015-09-29 04:57 - 00665088 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll 2015-10-13 20:52 - 2015-09-29 04:57 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll 2015-10-13 20:52 - 2015-09-29 04:57 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll 2015-10-13 20:52 - 2015-09-29 04:53 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll 2015-10-13 20:52 - 2015-09-29 04:53 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 04:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 03:50 - 00159232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys 2015-10-13 20:52 - 2015-09-29 03:49 - 00290816 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys 2015-10-13 20:52 - 2015-09-29 03:49 - 00129024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys 2015-10-13 20:52 - 2015-09-29 03:43 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe 2015-10-13 20:52 - 2015-09-29 03:43 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe 2015-10-13 20:52 - 2015-09-29 03:40 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 03:40 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 03:40 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-10-13 20:52 - 2015-09-29 03:40 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-10-13 20:52 - 2015-09-15 20:17 - 00157016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys 2015-10-13 20:52 - 2015-09-15 20:17 - 00097112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys 2015-10-13 20:52 - 2015-09-15 20:11 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll 2015-10-13 20:52 - 2015-09-15 20:11 - 00342016 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll 2015-10-13 20:52 - 2015-09-15 20:11 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll 2015-10-13 20:52 - 2015-09-15 20:11 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll 2015-10-13 20:52 - 2015-09-15 20:11 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll 2015-10-13 20:52 - 2015-09-15 20:11 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll 2015-10-13 20:52 - 2015-09-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe 2015-10-13 20:52 - 2015-09-15 19:36 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll 2015-10-13 20:52 - 2015-09-15 19:36 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll 2015-10-13 20:52 - 2015-09-15 19:36 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll 2015-10-13 20:52 - 2015-09-15 19:35 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll 2015-10-09 19:30 - 2015-10-09 19:30 - 00000000 ____D C:\Users\Phillip\Downloads\Gameforge Live 2015-10-09 19:26 - 2015-10-09 19:26 - 00000000 ____D C:\ProgramData\ROCCAT 2015-10-09 19:25 - 2015-10-09 19:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT 2015-10-09 19:25 - 2015-10-09 19:25 - 00000000 ____D C:\Program Files (x86)\ROCCAT 2015-10-09 19:23 - 2015-10-09 19:23 - 00000000 ____D C:\Program Files\Alienware 2015-10-09 19:11 - 2015-10-09 19:13 - 47139660 _____ C:\Users\Phillip\Downloads\ROCCAT_Isku_FX_DRV1.10_FW1.06.zip 2015-09-26 21:54 - 2015-08-11 06:52 - 00069416 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvaudcap32v.dll 2015-09-26 21:54 - 2015-08-11 06:52 - 00050472 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvvad64v.sys 2015-09-23 20:29 - 2015-09-23 20:29 - 00069952 _____ C:\Users\Phillip\AppData\Local\GDIPFONTCACHEV1.DAT 2015-09-23 20:26 - 2015-10-22 21:54 - 00004729 _____ C:\windows\setupact.log 2015-09-23 20:26 - 2015-09-23 20:26 - 00000000 _____ C:\windows\setuperr.log 2015-09-23 20:25 - 2015-10-18 21:34 - 00001416 _____ C:\windows\PFRO.log 2015-09-23 20:25 - 2015-09-23 20:26 - 00303568 _____ C:\windows\system32\FNTCACHE.DAT 2015-09-23 20:16 - 2015-08-05 19:56 - 00022528 _____ (Microsoft Corporation) C:\windows\system32\icaapi.dll 2015-09-23 20:16 - 2015-08-05 19:06 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys 2015-09-23 20:15 - 2015-07-18 15:08 - 00984448 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00901264 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00066400 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00063840 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00022368 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00020832 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00019808 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00019808 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00016224 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00016224 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00015712 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00015712 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00014176 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00014176 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00014176 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00014176 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00013664 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00013664 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-eventing-provider-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l2-1-0.dll 2015-09-23 20:15 - 2015-07-18 15:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-2-0.dll 2015-09-23 20:01 - 2015-09-23 20:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-10-22 22:15 - 2014-09-26 21:50 - 02196480 _____ (Farbar) C:\Users\Phillip\Desktop\FRST64.exe 2015-10-22 22:14 - 2012-10-27 16:48 - 00000000 ____D C:\Users\Phillip\AppData\Roaming\Skype 2015-10-22 22:07 - 2009-07-14 06:45 - 00028624 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-10-22 22:07 - 2009-07-14 06:45 - 00028624 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-10-22 22:06 - 2011-10-11 18:59 - 01658865 _____ C:\windows\WindowsUpdate.log 2015-10-22 22:03 - 2014-11-03 22:11 - 00000000 ____D C:\AdwCleaner 2015-10-22 21:58 - 2014-11-15 00:18 - 00000000 ____D C:\Users\Phillip\AppData\Local\Spotify 2015-10-22 21:58 - 2014-11-15 00:17 - 00000000 ____D C:\Users\Phillip\AppData\Roaming\Spotify 2015-10-22 21:54 - 2014-08-23 13:47 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-10-22 21:53 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT 2015-10-21 22:31 - 2014-09-24 20:03 - 00000000 ____D C:\Users\Phillip\AppData\Roaming\.minecraft 2015-10-21 20:48 - 2013-12-07 14:54 - 00000000 ____D C:\ProgramData\Oracle 2015-10-21 20:47 - 2014-01-21 18:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-10-21 20:46 - 2015-08-30 00:30 - 00000000 ____D C:\Users\Phillip\.oracle_jre_usage 2015-10-21 20:46 - 2015-01-24 02:14 - 00097888 _____ (Oracle Corporation) C:\windows\SysWOW64\WindowsAccessBridge-32.dll 2015-10-21 20:46 - 2015-01-24 02:14 - 00000000 ____D C:\Program Files (x86)\Java 2015-10-21 20:22 - 2011-10-11 03:44 - 00700134 _____ C:\windows\system32\perfh007.dat 2015-10-21 20:22 - 2011-10-11 03:44 - 00149984 _____ C:\windows\system32\perfc007.dat 2015-10-21 20:22 - 2009-07-14 07:13 - 01622300 _____ C:\windows\system32\PerfStringBackup.INI 2015-10-20 21:08 - 2014-03-08 17:39 - 00000000 ____D C:\Program Files (x86)\Steam 2015-10-20 03:24 - 2015-06-28 00:05 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2015-10-19 21:55 - 2014-01-21 19:34 - 00000000 ____D C:\Users\Phillip\AppData\Roaming\TS3Client 2015-10-19 21:19 - 2012-10-12 20:42 - 00000000 ____D C:\ProgramData\Skype 2015-10-18 21:34 - 2014-04-11 17:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-10-17 04:54 - 2014-12-12 00:00 - 00000000 ____D C:\windows\system32\appraiser 2015-10-17 04:54 - 2014-04-30 23:49 - 00000000 ___SD C:\windows\system32\CompatTel 2015-10-16 19:18 - 2015-06-28 00:05 - 00003886 _____ C:\windows\System32\Tasks\Adobe Acrobat Update Task 2015-10-15 21:20 - 2012-11-17 11:02 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-10-13 23:06 - 2013-07-22 14:22 - 00000000 ____D C:\windows\system32\MRT 2015-10-13 23:02 - 2012-10-19 17:14 - 143481208 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2015-10-13 20:40 - 2014-02-09 15:16 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2015-10-10 19:20 - 2015-04-05 01:04 - 00000000 ___SD C:\windows\system32\GWX 2015-10-10 19:13 - 2012-10-19 18:22 - 00780488 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2015-10-10 19:13 - 2012-10-19 18:22 - 00142536 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-10-10 03:01 - 2015-04-05 01:04 - 00000000 ___SD C:\windows\SysWOW64\GWX 2015-10-09 19:30 - 2014-02-04 17:05 - 00000000 _____ C:\dfu.log 2015-10-09 19:30 - 2014-02-04 17:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gameforge Live 2015-10-09 19:30 - 2014-02-04 17:04 - 00000000 ____D C:\Program Files (x86)\GameforgeLive 2015-10-09 19:25 - 2011-10-11 03:04 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2015-10-09 19:19 - 2014-09-11 20:50 - 00000000 ____D C:\ProgramData\Package Cache 2015-10-03 00:18 - 2015-06-06 00:59 - 00000000 ____D C:\Users\Phillip\AppData\Roaming\LolClient 2015-09-26 21:55 - 2014-07-22 14:55 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2015-09-26 21:54 - 2015-07-18 21:22 - 00001377 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2015-09-23 22:30 - 1981-01-01 00:00 - 00000074 ____H C:\Users\Phillip\Desktop\SicherLoeschen.ini 2015-09-23 20:09 - 2012-10-27 15:36 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-09-23 20:09 - 2012-10-27 15:36 - 00000000 ____D C:\Program Files\CCleaner ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-11-25 18:23 - 2013-08-15 18:20 - 0703117 _____ () C:\Users\Phillip\AppData\Roaming\technic-launcher.jar 2012-11-25 18:23 - 2013-01-10 18:29 - 0582227 _____ () C:\Users\Phillip\AppData\Roaming\technic-launcher.jar.bak 2014-08-03 17:21 - 2014-08-03 17:21 - 0003966 _____ () C:\Users\Phillip\AppData\Local\recently-used.xbel 2011-10-11 04:25 - 2011-10-11 04:25 - 0000109 _____ () C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log 2011-10-11 04:18 - 2011-10-11 04:19 - 0000113 _____ () C:\ProgramData\{34FBC7C4-CD31-4D93-A428-0E524EAC4586}.log 2011-10-11 04:23 - 2011-10-11 04:23 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log 2011-10-11 04:19 - 2011-10-11 04:22 - 0000106 _____ () C:\ProgramData\{80E158EA-7181-40FE-A701-301CE6BE64AB}.log 2011-10-11 04:23 - 2011-10-11 04:25 - 0000110 _____ () C:\ProgramData\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log Einige Dateien in TEMP: ==================== C:\Users\Phillip\AppData\Local\Temp\a37a788206b1bbf4af688e0ce0efe931.dll C:\Users\Phillip\AppData\Local\Temp\ed6e8e8c4b588010c8f64663407c6196.dll C:\Users\Phillip\AppData\Local\Temp\jre-8u65-windows-au.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\windows\system32\winlogon.exe => Datei ist digital signiert C:\windows\system32\wininit.exe => Datei ist digital signiert C:\windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\windows\explorer.exe => Datei ist digital signiert C:\windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\windows\system32\svchost.exe => Datei ist digital signiert C:\windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\windows\system32\services.exe => Datei ist digital signiert C:\windows\system32\User32.dll => Datei ist digital signiert C:\windows\SysWOW64\User32.dll => Datei ist digital signiert C:\windows\system32\userinit.exe => Datei ist digital signiert C:\windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\windows\system32\rpcss.dll => Datei ist digital signiert C:\windows\system32\dnsapi.dll => Datei ist digital signiert C:\windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-10-20 02:04 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:21-10-2015 01 durchgeführt von Phillip (2015-10-22 22:17:13) Gestartet von C:\Users\Phillip\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2012-10-12 18:36:30) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-578327087-4110603385-1361986703-500 - Administrator - Disabled) Gast (S-1-5-21-578327087-4110603385-1361986703-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-578327087-4110603385-1361986703-1003 - Limited - Enabled) Phillip (S-1-5-21-578327087-4110603385-1361986703-1001 - Administrator - Enabled) => C:\Users\Phillip ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Kaspersky Internet Security (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B} AS: Kaspersky Internet Security (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) „Windows Live Essentials“ (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden „Windows Live“ fotogalerija (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.009.20071 - Adobe Systems Incorporated) Adobe Flash Player 18 ActiveX (HKLM-x32\...\{B3DADA45-F0ED-48FD-946E-7E82C2229D59}) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.185 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.82 - WildTangent) Hidden AlienFX for IskuFX (HKLM-x32\...\InstallShield_{2C3FC2CC-0A8B-409E-B487-8CD54F4DC1D4}) (Version: 1.02 - Roccat GmbH) AlienFX for IskuFX (Version: 1.02 - Roccat GmbH) Hidden Apple Application Support (64-Bit) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Build-a-lot (x32 Version: 2.2.0.82 - WildTangent) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.09 - Piriform) Chuzzle Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) CyberLink Media Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.2227 - CyberLink Corp.) CyberLink Media+ Player10 (HKLM-x32\...\InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586}) (Version: 10.0.1110.00 - CyberLink Corp.) CyberLink MediaShow (HKLM-x32\...\InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}) (Version: 5.0.1130a - CyberLink Corp.) CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3802 - CyberLink Corp.) CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3306 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.1.4417 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DayZ (HKLM-x32\...\Steam App 221100) (Version: - Bohemia Interactive) DETOUR (HKLM-x32\...\Steam App 92100) (Version: - Sandswept Studios) Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.82 - WildTangent) Hidden Dr Kawashima (HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\DrKawashima) (Version: 1.0 - ) Easy File Share (HKLM-x32\...\{95BB7324-77D3-4BF3-8CF6-29F0857AC175}) (Version: 1.1.1699 - Samsung Electronics Co., Ltd.) Easy Migration (HKLM-x32\...\{AD86049C-3D9C-43E1-BE73-643F57D83D50}) (Version: 1.0 - Samsung Electronics Co., Ltd.) Easy Settings (HKLM-x32\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 1.1 - Samsung Electronics Co., Ltd.) Easy Software Manager (HKLM-x32\...\{DE256D8B-D971-456D-BC02-CB64DA24F115}) (Version: 1.1.16.14 - Samsung Electronics Co., Ltd.) Easy Support Center 1.0 (HKLM-x32\...\{F687E657-F636-44DF-8125-9FEEA2C362F5}) (Version: 1.1.36 - Samsung) Farm Frenzy (x32 Version: 2.2.0.82 - WildTangent) Hidden Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Free Pascal 2.6.2 (HKLM-x32\...\FreePascal_is1) (Version: - Free Pascal Team) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Gameforge Live 2.0.8 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.8 - Gameforge) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) GeoGebra 4.4 (HKLM-x32\...\GeoGebra 4.4) (Version: 4.4.11.0 - International GeoGebra Institute) GIMP 2.8.10 (HKLM\...\GIMP-2_is1) (Version: 2.8.10 - The GIMP Team) Goat Simulator (HKLM-x32\...\Steam App 265930) (Version: - Coffee Stain Studios) Halo: Spartan Assault (HKLM-x32\...\Steam App 277430) (Version: - Vanguard Games) Insaniquarium Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden Intel PROSet Wireless (x32 Version: - ) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2266 - Intel Corporation) Intel(R) PROSet/Wireless WiFi Software (HKLM\...\{3C41721F-AF0F-4086-AA1C-4C7F29076228}) (Version: 14.01.1000 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.1.5.1001 - Intel Corporation) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Java 8 Update 65 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218065F0}) (Version: 8.0.650.17 - Oracle Corporation) John Deere Drive Green (x32 Version: 2.2.0.82 - WildTangent) Hidden Just Cause 2 (HKLM-x32\...\Steam App 8190) (Version: - Avalanche) Just Cause 2: Multiplayer Mod (HKLM-x32\...\Steam App 259080) (Version: - JC2-MP Team) Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{653C1B5A-3287-47B1-8613-0745D4E771C4}) (Version: 15.0.0.463 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.0.463 - Kaspersky Lab) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Logitech Gaming Software 8.55 (HKLM\...\Logitech Gaming Software) (Version: 8.55.137 - Logitech Inc.) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mozilla Firefox 41.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 41.0.2 (x86 de)) (Version: 41.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 41.0.2.5765 - Mozilla) Mozilla Thunderbird 31.7.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.7.0 (x86 de)) (Version: 31.7.0 - Mozilla) Mozilla Thunderbird 38.2.0 (x86 de) (HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\Mozilla Thunderbird 38.2.0 (x86 de)) (Version: 38.2.0 - Mozilla) Need for Speed™ Most Wanted (HKLM-x32\...\{A48B9CD8-C2BA-4EC9-0081-7260D238C7CF}) (Version: - ) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.5 - Notepad++ Team) NVIDIA GeForce Experience 2.5.14.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.14.5 - NVIDIA Corporation) NVIDIA Grafiktreiber 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation) Peggle (x32 Version: 2.2.0.82 - WildTangent) Hidden Penguins! (x32 Version: 2.2.0.82 - WildTangent) Hidden Pflanzen gegen Zombies (HKLM-x32\...\Pflanzen gegen Zombies) (Version: - PopCap Games) Plants vs. Zombies (x32 Version: 2.2.0.82 - WildTangent) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Polar Golfer (x32 Version: 2.2.0.82 - WildTangent) Hidden QuickTime 7 (HKLM-x32\...\{627FFC10-CE0A-497F-BA2B-208CAC638010}) (Version: 7.77.80.95 - Apple Inc.) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.14 - Razer Inc.) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.26599 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6413 - Realtek Semiconductor Corp.) ROCCAT Isku FX Keyboard Driver (HKLM-x32\...\{DC69933C-E7B0-455D-8E54-FAC1EEF046FF}) (Version: - Roccat GmbH) Roccat Talk (HKLM-x32\...\{605D671E-1D1E-4840-84D9-BFACE17F160D}) (Version: 1.00.0013 - Roccat GmbH) S.K.I.L.L. - Special Force 2 (HKLM-x32\...\Special Force 2 Beta_is1) (Version: - ) Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition) Samsung Recovery Solution 5 (HKLM-x32\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 5.0.1.5 - Samsung) Saviors (HKLM-x32\...\Steam App 314450) (Version: - Sharpened Edge Studios) Secunia PSI (3.0.0.9016) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.9016 - Secunia) SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.14.5 - NVIDIA Corporation) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation) Skype™ 7.12 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.12.101 - Skype Technologies S.A.) Software Launcher (HKLM-x32\...\{B750B5C2-CC17-4967-905B-29F4EB986131}) (Version: 1.0.2 - Samsung) SPORE™ (HKLM-x32\...\{9DF0196F-B6B8-4C3A-8790-DE42AA530101}) (Version: 1.00.0000 - Electronic Arts) Spotify (HKU\S-1-5-21-578327087-4110603385-1361986703-1001\...\Spotify) (Version: 1.0.16.104.g3b776c9e - Spotify AB) Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Tap Heroes (HKLM-x32\...\Steam App 371570) (Version: - VaragtP) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Tom Clancy's Ghost Recon Phantoms - EU (HKLM-x32\...\Steam App 272350) (Version: - Ubisoft Singapore) Transformers: War for Cybertron (HKLM-x32\...\Steam App 42650) (Version: - High Moon Studios) User Guide (HKLM-x32\...\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}) (Version: 1.3 - ) WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.1.5 - WildTangent) WildTangent ORB Game Console (x32 Version: - WildTangent) Hidden Windows Live 程式集 (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) WIN-LOGO 2.0 (HKLM-x32\...\WIN-LOGO 2.0) (Version: - ) Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {120BCC3C-0E70-4F4B-97B3-730C36063045} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-08-17] (CyberLink) Task: {138511B7-E44F-4289-8F23-C146C7FF6A9F} - System32\Tasks\MovieColorEnhancer => C:\Program Files (x86)\Samsung\Easy Settings\MovieColorEnhancer.exe [2011-08-19] (Samsung Electronics Co., Ltd.) Task: {1BF06D66-4764-49B4-8B2C-3131B85DFE06} - System32\Tasks\{4C5E8DFE-2244-4517-857E-E2A6387CF892} => Firefox.exe hxxp://ui.skype.com/ui/0/6.6.0.106/de/abandoninstall?page=tsBing Task: {2C117F5C-4764-4A53-9809-4C6B89D7BD24} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-09-14] (Adobe Systems Incorporated) Task: {2DFCD5D1-5B79-4CB3-B559-6D97C2EC1D40} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\Easy Settings\EBM\EasyBatteryMgr4.exe [2011-08-19] (SAMSUNG Electronics co., LTD.) Task: {3346EB51-5C8B-4C2E-92BD-FCF89620D6E7} - System32\Tasks\EasyDisplayMgr => C:\Program Files (x86)\Samsung\Easy Settings\dmhkcore.exe [2011-09-06] (Samsung Electronics Co., Ltd.) Task: {769BD9CA-58B1-40D4-BBFF-6DAE9250AC48} - System32\Tasks\advSRS5 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [2011-06-24] (SEC) Task: {A4CF5630-2D45-4D87-AC3D-98420472C3CA} - System32\Tasks\SamsungSupportCenter => C:\Program Files (x86)\Samsung\Easy Support Center\SSCKbdHk.exe [2011-07-30] (SAMSUNG Electronics) Task: {B0AB2D5F-5374-4E2C-8BD0-B981E8F1F8D8} - System32\Tasks\SCCSpeedBoot => C:\Program Files (x86)\Samsung\Easy Settings\SCCSpeedBoot.exe [2011-08-22] (Samsung Electronics Co., Ltd.) Task: {B670151B-528E-464A-844E-173B3AEF7C2B} - System32\Tasks\EasyPartitionManager => C:\Windows\MSetup\BA46-12225A02\EPM.exe Task: {C1A19806-8599-4534-BC3A-06287400E46B} - System32\Tasks\Easy Software Manager Agent => C:\Program Files (x86)\Samsung\Easy Software Manager\SWMAgent.exe [2011-09-15] (Samsung) Task: {D60AF5EA-B7F4-4AA9-9886-E1C36FD71042} - System32\Tasks\SmartSetting => C:\Program Files (x86)\Samsung\Easy Settings\SmartSetting.exe [2011-09-06] (Samsung Electronics Co., Ltd.) Task: {D618E611-686C-46A8-AE2B-7AA2D1750F0F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-08-20] (Piriform Ltd) Task: {D68BA58B-8B6C-406C-ABE7-9AFDD5B1DFE7} - System32\Tasks\EasySpeedUpManager => C:\Program Files (x86)\Samsung\Easy Settings\EasySpeedUpManager.exe [2011-09-28] (Samsung Electronics) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-07-18 21:07 - 2015-06-17 11:10 - 00012104 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2015-07-18 21:09 - 2015-06-17 08:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-02-05 02:24 - 2015-02-05 02:25 - 00187072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2011-10-11 04:22 - 2009-12-01 09:21 - 00244904 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2014-07-28 20:29 - 2014-07-28 20:29 - 00866584 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2014-07-28 20:32 - 2014-07-28 20:32 - 01050904 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2014-07-28 20:29 - 2014-07-28 20:29 - 00059160 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2014-07-28 20:31 - 2014-07-28 20:31 - 00242456 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2011-07-21 07:51 - 2010-12-16 11:37 - 00094208 _____ () C:\windows\system32\IccLibDll_x64.dll 2015-03-14 07:49 - 2015-03-14 07:49 - 00291840 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe 2014-03-06 15:00 - 2014-03-06 15:00 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\kpcengine.2.3.dll 2015-07-18 21:21 - 2015-08-27 02:37 - 00011896 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-07-18 21:07 - 2015-06-17 11:10 - 00012104 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll 2011-10-11 03:12 - 2011-02-16 18:03 - 00203776 _____ () C:\Program Files (x86)\Samsung\Easy Settings\WinCRT.dll 2011-10-11 03:12 - 2006-08-12 05:48 - 00049152 _____ () C:\Program Files (x86)\Samsung\Easy Settings\HookDllPS2.dll 2015-05-20 04:29 - 2015-05-20 04:29 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2015-10-09 19:25 - 2012-07-08 16:31 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Isku FX Keyboard\hiddriver.dll 2009-11-02 07:20 - 2009-11-02 07:20 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-11-02 07:23 - 2009-11-02 07:23 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2014-11-25 22:29 - 2014-11-26 04:12 - 40622592 _____ () C:\Users\Phillip\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll 2014-11-25 22:29 - 2014-11-26 04:12 - 00911360 _____ () C:\Users\Phillip\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll 2014-11-25 22:29 - 2014-11-26 04:12 - 00134144 _____ () C:\Users\Phillip\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll 2014-04-20 01:42 - 2014-04-20 01:42 - 00468672 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\content_blocker@kaspersky.com\npcontentblocker.dll 2014-04-20 01:42 - 2014-10-10 19:50 - 00642344 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\virtual_keyboard@kaspersky.com\npvkplugin.dll 2014-04-20 01:42 - 2014-04-20 01:42 - 00347328 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\FFExt\online_banking@kaspersky.com\nponlinebanking.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Da befinden sich 7865 mehr eingeschränkte Seiten. ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-578327087-4110603385-1361986703-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Phillip\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Spotify => "C:\Users\Phillip\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Phillip\AppData\Roaming\Spotify\SpotifyWebHelper.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{094AA2F4-6D9B-44B7-A201-39ACE955ACBE}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{9A9BAF8A-902A-4A97-93F9-B626B6C39413}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{FA0EFB10-C9F5-45D6-B568-FFFF75A7C0F6}] => (Allow) C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10.exe FirewallRules: [{E6A96630-35ED-4F43-90E4-F5270AD823F0}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector\PDR8.EXE FirewallRules: [{717BC051-5D67-4A7D-9FF5-A2B4BBD51399}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C5DDCFE9-2795-4A33-87F0-53979FAA4C4B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{17234FF9-B265-4BAB-8E03-5693DFA84B71}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{885EB32E-85AF-4123-9035-77CB85FCDF01}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [TCP Query User{D5EFEF11-D80C-4D3B-B703-8F805D0F98FF}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe FirewallRules: [UDP Query User{3D1802E8-6BF4-43E9-8668-AD37B8F87FD1}C:\programdata\electronic arts\need for speed world\data\nfsw.exe] => (Block) C:\programdata\electronic arts\need for speed world\data\nfsw.exe FirewallRules: [{AEA97324-EB81-4D9C-A348-8412E8C24172}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe FirewallRules: [{70E7A498-4425-405F-B4AD-265794567119}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1544\Agent.exe FirewallRules: [{55EAF2E6-51F9-4FED-9530-C16A7DBABD83}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe FirewallRules: [{315A3C79-BCEA-48F1-A51A-1616561451D5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.1737\Agent.exe FirewallRules: [{CEC09BFD-22E8-4D48-B205-985B30A38176}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{F147AE03-ECD0-47B1-B01F-5E3F2D5948D8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{980C9C5C-5B74-406E-8777-E12F7D1186D4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{1520972D-21FE-42CA-90CF-53447100FDC6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ.exe FirewallRules: [{0150E1CD-A3C1-4681-89E2-E280B3E053D4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{37C06672-939A-4118-B158-BB863BB9AFDC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe FirewallRules: [{2C22AE2D-B08E-44BE-8F3A-3F7A4C0E32E5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{8BBB3832-AD18-45A5-A3D7-56F57DB05451}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{01C9EC47-228D-4902-BF7D-17BF54F992BF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe FirewallRules: [{B106C621-3209-4EC5-983D-29237644ED9F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GoatSimulator\Binaries\Win32\GoatGame-Win32-Shipping.exe FirewallRules: [{0CF1F3AC-D2D9-4E08-A1D9-246752F8B3EC}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe FirewallRules: [{5723A85D-D66D-4481-AD2C-493C2AB53C7B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\game_launcher.exe FirewallRules: [{CD22BBBC-9E49-4E0E-AF24-C984056D4852}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird.exe FirewallRules: [{2C016CD7-890B-4CCA-B1CB-5077B9B1C8A2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird.exe FirewallRules: [{EADF9828-808F-4062-9657-3698CFAC11E8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird_DX11.exe FirewallRules: [{A7EF75EB-924A-4092-A468-B7BAB0F38707}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Saints Row the Third\SaintsRowTheThird_DX11.exe FirewallRules: [{59FF5C7C-8189-4FF5-8922-EA6627DD58A2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Halo Spartan Assault\HaloSpartanAssault.exe FirewallRules: [{99D0B81A-6B2E-45D4-A89E-BD5336E6C730}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Halo Spartan Assault\HaloSpartanAssault.exe FirewallRules: [{68862A21-731D-4423-9CDA-684364862E52}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Transformers War for Cybertron\Binaries\TWFC.exe FirewallRules: [{C9BEDF61-4AC4-434F-990B-D0088BD4ED85}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Transformers War for Cybertron\Binaries\TWFC.exe FirewallRules: [{2F47FAC9-2D84-41BC-8771-531E85A79893}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe FirewallRules: [{F950EEE8-14F9-4287-B97B-8E5F47CB45A9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe FirewallRules: [TCP Query User{06A687AE-00E7-4148-97DC-40DC17F767DD}C:\program files (x86)\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Block) C:\program files (x86)\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [UDP Query User{65286791-1251-44E9-A810-839008EE774B}C:\program files (x86)\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Block) C:\program files (x86)\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [{9B9A3137-B4D1-45F5-87D2-A633B323402B}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{CECBF7BE-A068-4B5E-A3D1-575818F9D282}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Just Cause 2\JustCause2.exe FirewallRules: [{97B8755D-12FB-4D5A-8138-E35A5A3B96AF}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{0EBDA011-EE2B-49FE-A724-58CA283DBDE8}] => (Allow) LPort=2869 FirewallRules: [{C3F1D2D7-523C-4B3A-84E9-C348948A1AF1}] => (Allow) LPort=1900 FirewallRules: [{C747686B-2174-4D98-BC59-B33BE704E820}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{0530E0D8-082E-4DEC-9D66-BD5CD68F5EB6}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{28468D3A-3CFF-41AA-8F6A-9F8E5AA38B7C}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{B1FFE992-15C8-4A4E-8059-02D3BFE9A9E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Just Cause 2 - Multiplayer Mod\JcmpLauncher.exe FirewallRules: [{E2DCAA90-4DD4-485C-9CE4-0764A73289EB}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe FirewallRules: [{883A6744-0398-4026-8FAD-C6D57D1289A1}] => (Allow) C:\Program Files\Logitech Gaming Software\LCore.exe FirewallRules: [{D0E8FAA3-BD8A-418A-BAD9-152153C69556}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{17194790-5983-43D9-A448-A59F14450E05}] => (Allow) D:\Steamgames 2\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe FirewallRules: [{54DE3FF0-6FFB-4205-8739-7FDF9627523E}] => (Allow) D:\Steamgames 2\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe FirewallRules: [TCP Query User{4EA977EB-115D-484A-9430-CA6115CE708C}C:\users\phillip\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\phillip\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{9833E740-4207-4996-9B7D-13262227B66B}C:\users\phillip\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\phillip\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{81E94BBE-C1B7-44B7-9214-0DC1375BDC63}C:\users\phillip\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\phillip\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{5DA48725-81B5-474E-A25D-B5031546D383}C:\users\phillip\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\phillip\appdata\roaming\spotify\spotify.exe FirewallRules: [{7484DE25-762A-4DC2-8C48-468980819DB8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{02EE8A72-C3F0-4A55-B0D6-D1828B07B150}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{40E0A070-3C3C-40DF-AC0E-0704ACA402B4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{B1BB0BDC-5B0B-4B9B-B37B-302B75D149BF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\DayZ\DayZ_BE.exe FirewallRules: [{4837F45B-BD6F-4306-B527-268C5E690761}] => (Allow) D:\Steamgames 2\steamapps\common\Tap Heroes\Tap Heroes.exe FirewallRules: [{FF395C66-3E90-4CD4-8F09-9F1DF32E2971}] => (Allow) D:\Steamgames 2\steamapps\common\Tap Heroes\Tap Heroes.exe FirewallRules: [{AAD5730A-9727-404E-9DC6-A733CBC9DAB9}] => (Allow) D:\Steamgames 2\steamapps\common\DETOUR\Detour.exe FirewallRules: [{C48A717F-E8FB-4F7A-8753-59FF3E0D423D}] => (Allow) D:\Steamgames 2\steamapps\common\DETOUR\Detour.exe FirewallRules: [{0584490D-2A2A-4879-8B65-B6AA23F1CFF5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{E81C044F-06CA-4E18-98DF-7DBA55AF5216}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{88F5751C-74EE-440F-B5A7-005DB4DBAF9A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{FFBF30F1-AEE2-437F-8EB4-10DFB9551BB5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{EE08704B-2B8F-4A36-BDF0-05E5039C1437}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{6FC13882-535E-4477-8A98-2E9826A935F1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{61580CC3-7A97-4CD0-9982-3B6BAE48BC48}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{4D56050B-2153-4B9D-835A-8D8A2A2E79A9}] => (Allow) D:\Steamgames 2\steamapps\common\Saviors\Saviors.exe FirewallRules: [{C87F6C75-3C26-4D4C-B034-192F4F5EBB34}] => (Allow) D:\Steamgames 2\steamapps\common\Saviors\Saviors.exe FirewallRules: [{ED264AE2-5B83-40F9-AAA4-C982B0CDE9C9}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{7FB20A32-FFA8-489A-A2E3-CF761E2DDAB9}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\S.K.I.L.L\Binaries\Win32\sf2.exe FirewallRules: [{F2AF807A-82A6-4D0E-828E-742532A38CE4}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\S.K.I.L.L\Binaries\Win32\sf2.exe FirewallRules: [{110E3D4C-51C5-45A4-BE05-1F16A59C2F7B}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\S.K.I.L.L\Binaries\Win32\sf2.exe FirewallRules: [{A7FA4909-E654-49A8-9E9F-83064AAF5A34}] => (Allow) C:\Program Files (x86)\GameforgeLive\Games\DEU_deu\S.K.I.L.L\Binaries\Win32\sf2.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (10/22/2015 09:57:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Skype.exe, Version: 7.12.85.101, Zeitstempel: 0x56088482 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.19018, Zeitstempel: 0x5609fed4 Ausnahmecode: 0xe0faf39e Fehleroffset: 0x0000c42d ID des fehlerhaften Prozesses: 0xe30 Startzeit der fehlerhaften Anwendung: 0xSkype.exe0 Pfad der fehlerhaften Anwendung: Skype.exe1 Pfad des fehlerhaften Moduls: Skype.exe2 Berichtskennung: Skype.exe3 Error: (10/22/2015 09:56:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SWMAgent.exe, Version: 1.1.16.14, Zeitstempel: 0x4e71639d Name des fehlerhaften Moduls: SWMAgent.exe, Version: 1.1.16.14, Zeitstempel: 0x4e71639d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0001fbe8 ID des fehlerhaften Prozesses: 0x1760 Startzeit der fehlerhaften Anwendung: 0xSWMAgent.exe0 Pfad der fehlerhaften Anwendung: SWMAgent.exe1 Pfad des fehlerhaften Moduls: SWMAgent.exe2 Berichtskennung: SWMAgent.exe3 Error: (10/22/2015 09:55:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SWMAgent.exe, Version: 1.1.16.14, Zeitstempel: 0x4e71639d Name des fehlerhaften Moduls: SWMAgent.exe, Version: 1.1.16.14, Zeitstempel: 0x4e71639d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0001fbe8 ID des fehlerhaften Prozesses: 0xb20 Startzeit der fehlerhaften Anwendung: 0xSWMAgent.exe0 Pfad der fehlerhaften Anwendung: SWMAgent.exe1 Pfad des fehlerhaften Moduls: SWMAgent.exe2 Berichtskennung: SWMAgent.exe3 Error: (10/22/2015 09:55:17 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (10/22/2015 09:50:49 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 336884 Error: (10/22/2015 09:50:49 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 336884 Error: (10/22/2015 09:50:49 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (10/22/2015 09:45:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 10296 Error: (10/22/2015 09:45:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 10296 Error: (10/22/2015 09:45:22 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Systemfehler: ============= Error: (10/22/2015 10:04:06 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. Error: (10/22/2015 10:04:06 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. Error: (10/22/2015 10:04:05 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. Error: (10/22/2015 10:04:05 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "C:" den Befehl "chkdsk" aus. Error: (10/22/2015 10:04:04 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. Error: (10/22/2015 10:04:04 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "C:" den Befehl "chkdsk" aus. Error: (10/22/2015 10:04:04 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. Error: (10/22/2015 10:03:14 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. Error: (10/22/2015 10:03:13 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. Error: (10/22/2015 10:03:11 PM) (Source: Ntfs) (EventID: 55) (User: ) Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar. Führen Sie auf dem Volume "\Device\HarddiskVolume2" den Befehl "chkdsk" aus. CodeIntegrity: =================================== Date: 2014-09-11 20:48:16.274 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-11 20:48:16.264 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-11 20:48:16.254 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-11 20:48:16.254 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-11 20:45:19.544 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2014-09-11 20:45:19.444 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-2450M CPU @ 2.50GHz Prozentuale Nutzung des RAM: 36% Installierter physikalischer RAM: 8105.55 MB Verfügbarer physikalischer RAM: 5122.36 MB Summe virtueller Speicher: 16209.3 MB Verfügbarer virtueller Speicher: 12979.03 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:177 GB) (Free:15.47 GB) NTFS Drive d: () (Fixed) (Total:265.59 GB) (Free:158.8 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: A90831CD) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=177 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=265.6 GB) - (Type=OF Extended) Partition 4: (Not Active) - (Size=23.1 GB) - (Type=27) ==================== Ende von Addition.txt ============================ |
22.10.2015, 22:37 | #2 |
/// Malwareteam | Komische Probleme mit LaptopIch habe dein Thema in Arbeit und melde mich so schnell als möglich mit weiteren Anweisungen. Bitte beachte, dass alle meine Antworten zuerst von einem Ausbilder freigegeben werden müssen, bevor ich diese hier posten darf. Dies garantiert, dass Du Hilfe von einem ausgebildeten Helfer bekommst. Ich bedanke mich für deine Geduld Du hast AdwCleaner runtergeladen. Hast dus auch durchgeführt? Wenn ja, bitte die Logs posten.
__________________ Geändert von Deathkid535 (22.10.2015 um 22:46 Uhr) |
23.10.2015, 00:40 | #3 |
| Komische Probleme mit LaptopCode:
ATTFilter # AdwCleaner v5.014 - Bericht erstellt am 23/10/2015 um 01:39:26 # Aktualisiert am 18/10/2015 von Xplode # Datenbank : 2015-10-18.5 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64) # Benutzername : Phillip - NB-PHILLIP # Gestartet von : C:\Users\Phillip\Downloads\adwcleaner_5.014.exe # Option : Suchlauf # Unterstützung : hxxp://toolslib.net/forum ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLLs ] ***** ***** [ Verknüpfungen ] ***** ***** [ Geplante Tasks ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Internetbrowser ] ***** ************************* C:\AdwCleanerDebug.txt - [55 Bytes] - [05/12/2014 19:58:45] ########## EOF - C:\AdwCleaner\AdwCleaner[S26].txt - [737 Bytes] ########## |
23.10.2015, 10:25 | #4 |
/// Malwareteam | Komische Probleme mit Laptop Hi, Schritt # 1: MBAR Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers Schritt # 2: TDSS-Killer Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Schritt # 3: Bitte Posten
|
23.10.2015, 14:16 | #5 |
| Komische Probleme mit Laptop TDSS Code:
ATTFilter 14:22:06.0004 0x0fd8 TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57 14:22:09.0546 0x0fd8 ============================================================ 14:22:09.0546 0x0fd8 Current date / time: 2015/10/23 14:22:09.0546 14:22:09.0546 0x0fd8 SystemInfo: 14:22:09.0546 0x0fd8 14:22:09.0546 0x0fd8 OS Version: 6.1.7601 ServicePack: 1.0 14:22:09.0546 0x0fd8 Product type: Workstation 14:22:09.0546 0x0fd8 ComputerName: NB-PHILLIP 14:22:09.0546 0x0fd8 UserName: Phillip 14:22:09.0546 0x0fd8 Windows directory: C:\windows 14:22:09.0546 0x0fd8 System windows directory: C:\windows 14:22:09.0546 0x0fd8 Running under WOW64 14:22:09.0546 0x0fd8 Processor architecture: Intel x64 14:22:09.0546 0x0fd8 Number of processors: 4 14:22:09.0546 0x0fd8 Page size: 0x1000 14:22:09.0547 0x0fd8 Boot type: Normal boot 14:22:09.0547 0x0fd8 ============================================================ 14:22:09.0848 0x0fd8 KLMD registered as C:\windows\system32\drivers\81153142.sys 14:22:10.0524 0x0fd8 System UUID: {D27A2160-EB4E-2F5F-9A5B-06DA4C3D7685} 14:22:11.0171 0x0fd8 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 14:22:11.0232 0x0fd8 ============================================================ 14:22:11.0232 0x0fd8 \Device\Harddisk0\DR0: 14:22:11.0247 0x0fd8 MBR partitions: 14:22:11.0247 0x0fd8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 14:22:11.0247 0x0fd8 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x16200000 14:22:11.0259 0x0fd8 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x16233000, BlocksNum 0x2132F000 14:22:11.0259 0x0fd8 ============================================================ 14:22:11.0382 0x0fd8 C: <-> \Device\Harddisk0\DR0\Partition2 14:22:11.0947 0x0fd8 D: <-> \Device\Harddisk0\DR0\Partition3 14:22:11.0947 0x0fd8 ============================================================ 14:22:11.0947 0x0fd8 Initialize success 14:22:11.0947 0x0fd8 ============================================================ 14:23:08.0698 0x10cc ============================================================ 14:23:08.0698 0x10cc Scan started 14:23:08.0698 0x10cc Mode: Manual; SigCheck; TDLFS; 14:23:08.0698 0x10cc ============================================================ 14:23:08.0698 0x10cc KSN ping started 14:23:11.0441 0x10cc KSN ping finished: true 14:23:12.0777 0x10cc ================ Scan system memory ======================== 14:23:12.0777 0x10cc System memory - ok 14:23:12.0778 0x10cc ================ Scan services ============================= 14:23:13.0143 0x10cc [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\windows\system32\drivers\1394ohci.sys 14:23:13.0201 0x10cc 1394ohci - ok 14:23:13.0281 0x10cc [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\windows\system32\drivers\ACPI.sys 14:23:13.0302 0x10cc ACPI - ok 14:23:13.0335 0x10cc [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\windows\system32\drivers\acpipmi.sys 14:23:13.0350 0x10cc AcpiPmi - ok 14:23:13.0578 0x10cc [ F6CEFEF46986DE02A3AE5D93AE32B5DC, 903EC5A7B40F4F6B2F3378EFFE8DF28667B88061CDF681C44F2E4FE39B62959E ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 14:23:13.0595 0x10cc AdobeARMservice - ok 14:23:13.0726 0x10cc [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\windows\system32\drivers\adp94xx.sys 14:23:13.0747 0x10cc adp94xx - ok 14:23:13.0790 0x10cc [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\windows\system32\drivers\adpahci.sys 14:23:13.0807 0x10cc adpahci - ok 14:23:13.0852 0x10cc [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\windows\system32\drivers\adpu320.sys 14:23:13.0866 0x10cc adpu320 - ok 14:23:13.0921 0x10cc [ 83BFCCAC53795E8A5055A93672D0C46C, B2B03473D950A5BA9DE59D81E7B14C1FAFF17B2A4D8A5808588F5CC21D63B291 ] AeLookupSvc C:\windows\System32\aelupsvc.dll 14:23:13.0940 0x10cc AeLookupSvc - ok 14:23:14.0083 0x10cc [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\windows\system32\drivers\afd.sys 14:23:14.0107 0x10cc AFD - ok 14:23:14.0152 0x10cc [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\windows\system32\drivers\agp440.sys 14:23:14.0165 0x10cc agp440 - ok 14:23:14.0231 0x10cc [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\windows\System32\alg.exe 14:23:14.0246 0x10cc ALG - ok 14:23:14.0337 0x10cc [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\windows\system32\drivers\aliide.sys 14:23:14.0352 0x10cc aliide - ok 14:23:14.0417 0x10cc [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\windows\system32\drivers\amdide.sys 14:23:14.0428 0x10cc amdide - ok 14:23:14.0509 0x10cc [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\windows\system32\drivers\amdk8.sys 14:23:14.0528 0x10cc AmdK8 - ok 14:23:14.0544 0x10cc [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\windows\system32\drivers\amdppm.sys 14:23:14.0563 0x10cc AmdPPM - ok 14:23:14.0622 0x10cc [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\windows\system32\drivers\amdsata.sys 14:23:14.0636 0x10cc amdsata - ok 14:23:14.0735 0x10cc [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\windows\system32\drivers\amdsbs.sys 14:23:14.0753 0x10cc amdsbs - ok 14:23:14.0785 0x10cc [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\windows\system32\drivers\amdxata.sys 14:23:14.0800 0x10cc amdxata - ok 14:23:14.0896 0x10cc [ 27DABFB4A6B0140C34DBEC713469592B, A355170D353AFBF0DE4EF53282F8404788FBBD0E2A1B7282B1B2925923E83141 ] AppID C:\windows\system32\drivers\appid.sys 14:23:14.0948 0x10cc AppID - ok 14:23:14.0985 0x10cc [ ABC373B9C6275D45F17DB559408FFD1B, 12B355393BEBE2D1D24D7A9DA5E69E03E334899407503BC1CADCF7BE39828223 ] AppIDSvc C:\windows\System32\appidsvc.dll 14:23:15.0010 0x10cc AppIDSvc - ok 14:23:15.0054 0x10cc [ 3EA5DA3F459F6ED19E10166965F6892F, F5618A5FA72C5E57BCFA6F2ECB840B1AEC60C72840AF3C1D94D5FCDB5ED2BF5E ] Appinfo C:\windows\System32\appinfo.dll 14:23:15.0078 0x10cc Appinfo - ok 14:23:15.0239 0x10cc [ 6EB87FDB59AABF6D19C927492DEA0D36, 36168F8CC75D16917A30FA1FACF57659BC2ADF870D20DEE93F851D5348E605BB ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 14:23:15.0251 0x10cc Apple Mobile Device Service - ok 14:23:15.0311 0x10cc [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\windows\system32\drivers\arc.sys 14:23:15.0323 0x10cc arc - ok 14:23:15.0360 0x10cc [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\windows\system32\drivers\arcsas.sys 14:23:15.0377 0x10cc arcsas - ok 14:23:15.0753 0x10cc [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 14:23:15.0817 0x10cc aspnet_state - ok 14:23:15.0885 0x10cc [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\windows\system32\DRIVERS\asyncmac.sys 14:23:15.0922 0x10cc AsyncMac - ok 14:23:15.0988 0x10cc [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\windows\system32\drivers\atapi.sys 14:23:15.0998 0x10cc atapi - ok 14:23:16.0105 0x10cc [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\windows\System32\Audiosrv.dll 14:23:16.0136 0x10cc AudioEndpointBuilder - ok 14:23:16.0170 0x10cc [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\windows\System32\Audiosrv.dll 14:23:16.0198 0x10cc AudioSrv - ok 14:23:16.0468 0x10cc [ 058734C95991F6BEBF3D3075B8776234, D94A0E5893723C0F30D8215F001039AE9D903BF8EC3782D9583DEFD9B304B0CA ] AVP15.0.0 C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\avp.exe 14:23:16.0490 0x10cc AVP15.0.0 - ok 14:23:16.0560 0x10cc [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\windows\System32\AxInstSV.dll 14:23:16.0581 0x10cc AxInstSV - ok 14:23:16.0665 0x10cc [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\windows\system32\drivers\bxvbda.sys 14:23:16.0689 0x10cc b06bdrv - ok 14:23:16.0801 0x10cc [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\windows\system32\DRIVERS\b57nd60a.sys 14:23:16.0839 0x10cc b57nd60a - ok 14:23:16.0889 0x10cc [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\windows\System32\bdesvc.dll 14:23:16.0907 0x10cc BDESVC - ok 14:23:16.0983 0x10cc [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\windows\system32\drivers\Beep.sys 14:23:17.0017 0x10cc Beep - ok 14:23:17.0332 0x10cc [ 086E6CB12A7BE3A08D7D9F9543AFED77, D04920CB0B6AC074E2070952D6E16AC35270A3145A80672ED8A6953DAF622A9D ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe 14:23:17.0364 0x10cc BEService - ok 14:23:17.0563 0x10cc [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\windows\System32\bfe.dll 14:23:17.0592 0x10cc BFE - ok 14:23:17.0758 0x10cc [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\windows\System32\qmgr.dll 14:23:17.0814 0x10cc BITS - ok 14:23:17.0850 0x10cc [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\windows\system32\DRIVERS\blbdrive.sys 14:23:17.0867 0x10cc blbdrive - ok 14:23:18.0083 0x10cc [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 14:23:18.0104 0x10cc Bonjour Service - ok 14:23:18.0161 0x10cc [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\windows\system32\DRIVERS\bowser.sys 14:23:18.0178 0x10cc bowser - ok 14:23:18.0214 0x10cc [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\windows\system32\drivers\BrFiltLo.sys 14:23:18.0228 0x10cc BrFiltLo - ok 14:23:18.0281 0x10cc [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\windows\system32\drivers\BrFiltUp.sys 14:23:18.0298 0x10cc BrFiltUp - ok 14:23:18.0354 0x10cc [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\windows\System32\browser.dll 14:23:18.0370 0x10cc Browser - ok 14:23:18.0416 0x10cc [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\windows\System32\Drivers\Brserid.sys 14:23:18.0434 0x10cc Brserid - ok 14:23:18.0447 0x10cc [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\windows\System32\Drivers\BrSerWdm.sys 14:23:18.0462 0x10cc BrSerWdm - ok 14:23:18.0481 0x10cc [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\windows\System32\Drivers\BrUsbMdm.sys 14:23:18.0496 0x10cc BrUsbMdm - ok 14:23:18.0508 0x10cc [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\windows\System32\Drivers\BrUsbSer.sys 14:23:18.0520 0x10cc BrUsbSer - ok 14:23:18.0597 0x10cc [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum C:\windows\system32\drivers\BthEnum.sys 14:23:18.0622 0x10cc BthEnum - ok 14:23:18.0626 0x10cc [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\windows\system32\drivers\bthmodem.sys 14:23:18.0642 0x10cc BTHMODEM - ok 14:23:18.0683 0x10cc [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan C:\windows\system32\DRIVERS\bthpan.sys 14:23:18.0700 0x10cc BthPan - ok 14:23:18.0756 0x10cc [ 738D0E9272F59EB7A1449C3EC118E6C4, FE3D32C2A5E4DC21376A0F89C0B2EE024ECF1A3FB99213CC9BBC986ADF7AF080 ] BTHPORT C:\windows\System32\Drivers\BTHport.sys 14:23:18.0781 0x10cc BTHPORT - ok 14:23:18.0837 0x10cc [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\windows\system32\bthserv.dll 14:23:18.0874 0x10cc bthserv - ok 14:23:18.0896 0x10cc [ F188B7394D81010767B6DF3178519A37, 576304E92FD94908F093A6AB5F4D328F25829BE32EC3CA0D29EBFDF5DE83539B ] BTHUSB C:\windows\System32\Drivers\BTHUSB.sys 14:23:18.0909 0x10cc BTHUSB - ok 14:23:19.0395 0x10cc [ 68BD23A0AD9E934F037A1D8A1929D1E2, 7104B04435930D085D01779065C8F293A265800D90C9DEFB19C998D9326E44E7 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe 14:23:19.0440 0x10cc c2cautoupdatesvc - ok 14:23:19.0792 0x10cc [ 13297729C696656F990A5DBA53023129, EB2B34B04B79756199DBBBDE99ACBB576D20C7C0AF3E4F3C0CF0040948216AAC ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe 14:23:19.0844 0x10cc c2cpnrsvc - ok 14:23:19.0894 0x10cc [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\windows\system32\DRIVERS\cdfs.sys 14:23:19.0930 0x10cc cdfs - ok 14:23:19.0992 0x10cc [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\windows\system32\DRIVERS\cdrom.sys 14:23:20.0008 0x10cc cdrom - ok 14:23:20.0075 0x10cc [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\windows\System32\certprop.dll 14:23:20.0130 0x10cc CertPropSvc - ok 14:23:20.0202 0x10cc [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\windows\system32\drivers\circlass.sys 14:23:20.0218 0x10cc circlass - ok 14:23:20.0344 0x10cc [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\windows\system32\CLFS.sys 14:23:20.0364 0x10cc CLFS - ok 14:23:20.0569 0x10cc [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 14:23:20.0600 0x10cc clr_optimization_v2.0.50727_32 - ok 14:23:20.0727 0x10cc [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 14:23:20.0759 0x10cc clr_optimization_v2.0.50727_64 - ok 14:23:21.0258 0x10cc [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 14:23:21.0437 0x10cc clr_optimization_v4.0.30319_32 - ok 14:23:21.0544 0x10cc [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 14:23:21.0559 0x10cc clr_optimization_v4.0.30319_64 - ok 14:23:21.0643 0x10cc [ E13A438F9E51DD034730678E33B73290, 3BB111DFDAEAB8DA6124600C7F6E080C2950A0BB420803FC12560343E1A9280A ] clwvd C:\windows\system32\DRIVERS\clwvd.sys 14:23:21.0653 0x10cc clwvd - ok 14:23:21.0706 0x10cc [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\windows\system32\DRIVERS\CmBatt.sys 14:23:21.0722 0x10cc CmBatt - ok 14:23:21.0761 0x10cc [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\windows\system32\drivers\cmdide.sys 14:23:21.0773 0x10cc cmdide - ok 14:23:21.0983 0x10cc [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG C:\windows\system32\Drivers\cng.sys 14:23:22.0008 0x10cc CNG - ok 14:23:22.0076 0x10cc [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\windows\system32\DRIVERS\compbatt.sys 14:23:22.0087 0x10cc Compbatt - ok 14:23:22.0125 0x10cc [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\windows\system32\DRIVERS\CompositeBus.sys 14:23:22.0140 0x10cc CompositeBus - ok 14:23:22.0165 0x10cc COMSysApp - ok 14:23:22.0189 0x10cc [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\windows\system32\drivers\crcdisk.sys 14:23:22.0200 0x10cc crcdisk - ok 14:23:22.0293 0x10cc [ 7BC3E861F7E8EB543A630090FAE779E0, 52A538F25C853AAC9706CD0D4EBF80B1963391AA175895CFD9D44C8ABBFCFB74 ] CryptSvc C:\windows\system32\cryptsvc.dll 14:23:22.0309 0x10cc CryptSvc - ok 14:23:22.0639 0x10cc [ B4D1D62A09F09CB2DFD55628350CDAFB, 7DD3CE77D88B5AFAC4B6187F4CA6D50B7BD3398207163B2A1E4C76467801FF28 ] cvhsvc C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE 14:23:22.0668 0x10cc cvhsvc - ok 14:23:22.0872 0x10cc [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\windows\system32\rpcss.dll 14:23:22.0917 0x10cc DcomLaunch - ok 14:23:23.0060 0x10cc [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\windows\System32\defragsvc.dll 14:23:23.0100 0x10cc defragsvc - ok 14:23:23.0184 0x10cc [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\windows\system32\Drivers\dfsc.sys 14:23:23.0220 0x10cc DfsC - ok 14:23:23.0336 0x10cc [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\windows\system32\dhcpcore.dll 14:23:23.0358 0x10cc Dhcp - ok 14:23:23.0848 0x10cc [ EC3F433D00365F1A9BC3411BCA7C7140, 0852D747359DE573504EBBDB99DA26D3BFA8B3C7A4836F8E3A5AD94B5571AD5C ] DiagTrack C:\windows\system32\diagtrack.dll 14:23:23.0892 0x10cc DiagTrack - ok 14:23:23.0928 0x10cc [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\windows\system32\drivers\discache.sys 14:23:23.0961 0x10cc discache - ok 14:23:24.0086 0x10cc [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\windows\system32\drivers\disk.sys 14:23:24.0102 0x10cc Disk - ok 14:23:24.0204 0x10cc [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\windows\System32\dnsrslvr.dll 14:23:24.0224 0x10cc Dnscache - ok 14:23:24.0289 0x10cc [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\windows\System32\dot3svc.dll 14:23:24.0338 0x10cc dot3svc - ok 14:23:24.0385 0x10cc [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\windows\system32\dps.dll 14:23:24.0422 0x10cc DPS - ok 14:23:24.0512 0x10cc [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\windows\system32\drivers\drmkaud.sys 14:23:24.0525 0x10cc drmkaud - ok 14:23:24.0664 0x10cc [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\windows\System32\drivers\dxgkrnl.sys 14:23:24.0697 0x10cc DXGKrnl - ok 14:23:24.0774 0x10cc [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\windows\System32\eapsvc.dll 14:23:24.0811 0x10cc EapHost - ok 14:23:25.0427 0x10cc [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\windows\system32\drivers\evbda.sys 14:23:25.0514 0x10cc ebdrv - ok 14:23:25.0563 0x10cc [ 5424EC756808C1002457033D969115C7, 85B86C3DF9BCF4BA085C4978BE36A38D0079CE24C5C61FB754286E476EB77741 ] EFS C:\windows\System32\lsass.exe 14:23:25.0578 0x10cc EFS - ok 14:23:25.0709 0x10cc [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\windows\ehome\ehRecvr.exe 14:23:25.0757 0x10cc ehRecvr - ok 14:23:25.0780 0x10cc [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\windows\ehome\ehsched.exe 14:23:25.0798 0x10cc ehSched - ok 14:23:26.0119 0x10cc [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\windows\system32\drivers\elxstor.sys 14:23:26.0146 0x10cc elxstor - ok 14:23:26.0168 0x10cc [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\windows\system32\drivers\errdev.sys 14:23:26.0181 0x10cc ErrDev - ok 14:23:26.0334 0x10cc [ 98B103D1D5C426A10219437E36E03FE8, 06B4780B54E55E7C3F1D65C7D78F6AD5DC7489DEDB5E464DD28DE7E07DBAEEC5 ] ETD C:\windows\system32\DRIVERS\ETD.sys 14:23:26.0348 0x10cc ETD - ok 14:23:26.0471 0x10cc [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\windows\system32\es.dll 14:23:26.0514 0x10cc EventSystem - ok 14:23:26.0600 0x10cc [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\windows\system32\drivers\exfat.sys 14:23:26.0636 0x10cc exfat - ok 14:23:26.0681 0x10cc [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\windows\system32\drivers\fastfat.sys 14:23:26.0718 0x10cc fastfat - ok 14:23:26.0921 0x10cc [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\windows\system32\fxssvc.exe 14:23:26.0976 0x10cc Fax - ok 14:23:27.0034 0x10cc [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\windows\system32\drivers\fdc.sys 14:23:27.0051 0x10cc fdc - ok 14:23:27.0090 0x10cc [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\windows\system32\fdPHost.dll 14:23:27.0126 0x10cc fdPHost - ok 14:23:27.0146 0x10cc [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\windows\system32\fdrespub.dll 14:23:27.0182 0x10cc FDResPub - ok 14:23:27.0209 0x10cc [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\windows\system32\drivers\fileinfo.sys 14:23:27.0221 0x10cc FileInfo - ok 14:23:27.0267 0x10cc [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\windows\system32\drivers\filetrace.sys 14:23:27.0301 0x10cc Filetrace - ok 14:23:27.0334 0x10cc [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\windows\system32\drivers\flpydisk.sys 14:23:27.0347 0x10cc flpydisk - ok 14:23:27.0435 0x10cc [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\windows\system32\drivers\fltmgr.sys 14:23:27.0453 0x10cc FltMgr - ok 14:23:27.0729 0x10cc [ D5A775990A7C202A037378FDBCDB6141, 27AD242914FAFB7A27B3045C0F0F6AFE6873FE331A51D8BB29A63B5D84C72EFB ] FontCache C:\windows\system32\FntCache.dll 14:23:27.0769 0x10cc FontCache - ok 14:23:27.0838 0x10cc [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 14:23:27.0848 0x10cc FontCache3.0.0.0 - ok 14:23:27.0864 0x10cc [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\windows\system32\drivers\FsDepends.sys 14:23:27.0875 0x10cc FsDepends - ok 14:23:27.0912 0x10cc [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\windows\system32\drivers\Fs_Rec.sys 14:23:27.0922 0x10cc Fs_Rec - ok 14:23:28.0024 0x10cc [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\windows\system32\DRIVERS\fvevol.sys 14:23:28.0046 0x10cc fvevol - ok 14:23:28.0094 0x10cc [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\windows\system32\drivers\gagp30kx.sys 14:23:28.0110 0x10cc gagp30kx - ok 14:23:28.0200 0x10cc [ 521A469CAF61F00E1DE081CC2099C1D6, 5BF39C9797A28674203D5C3D5D942978B9C66F658A43D7696B4BE3E8A7880EB9 ] GameConsoleService C:\Program Files (x86)\WildGames\Game Console - WildGames\GameConsoleService.exe 14:23:28.0217 0x10cc GameConsoleService - ok 14:23:28.0265 0x10cc [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM C:\windows\system32\DRIVERS\GEARAspiWDM.sys 14:23:28.0274 0x10cc GEARAspiWDM - ok 14:23:28.0466 0x10cc [ 21931B9C5FDE6087F47F710AC1BE16E9, A727A8922A9769AAC77F5D85ED3475853655E9483C8DA091653D0B1F3D479398 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe 14:23:28.0502 0x10cc GfExperienceService - ok 14:23:28.0592 0x10cc [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\windows\System32\gpsvc.dll 14:23:28.0642 0x10cc gpsvc - ok 14:23:28.0750 0x10cc [ 1E6438D4EA6E1174A3B3B1EDC4DE660B, F9995CFEC7BBFE10B06EEE04CA6B49658275C43096E57747BFF9C2C31A0F9011 ] hamachi C:\windows\system32\DRIVERS\hamachi.sys 14:23:28.0759 0x10cc hamachi - ok 14:23:28.0789 0x10cc [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\windows\system32\drivers\hcw85cir.sys 14:23:28.0802 0x10cc hcw85cir - ok 14:23:28.0926 0x10cc [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\windows\system32\drivers\HdAudio.sys 14:23:28.0950 0x10cc HdAudAddService - ok 14:23:28.0999 0x10cc [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\windows\system32\DRIVERS\HDAudBus.sys 14:23:29.0017 0x10cc HDAudBus - ok 14:23:29.0043 0x10cc [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\windows\system32\drivers\HidBatt.sys 14:23:29.0056 0x10cc HidBatt - ok 14:23:29.0063 0x10cc [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\windows\system32\drivers\hidbth.sys 14:23:29.0082 0x10cc HidBth - ok 14:23:29.0114 0x10cc [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\windows\system32\drivers\hidir.sys 14:23:29.0132 0x10cc HidIr - ok 14:23:29.0160 0x10cc [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\windows\system32\hidserv.dll 14:23:29.0196 0x10cc hidserv - ok 14:23:29.0252 0x10cc [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\windows\system32\DRIVERS\hidusb.sys 14:23:29.0318 0x10cc HidUsb - ok 14:23:29.0363 0x10cc [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\windows\system32\kmsvc.dll 14:23:29.0400 0x10cc hkmsvc - ok 14:23:29.0443 0x10cc [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\windows\system32\ListSvc.dll 14:23:29.0462 0x10cc HomeGroupListener - ok 14:23:29.0497 0x10cc [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\windows\system32\provsvc.dll 14:23:29.0514 0x10cc HomeGroupProvider - ok 14:23:29.0586 0x10cc [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\windows\system32\drivers\HpSAMD.sys 14:23:29.0599 0x10cc HpSAMD - ok 14:23:29.0659 0x10cc [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\windows\system32\drivers\HTTP.sys 14:23:29.0688 0x10cc HTTP - ok 14:23:29.0707 0x10cc [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\windows\system32\drivers\hwpolicy.sys 14:23:29.0718 0x10cc hwpolicy - ok 14:23:29.0787 0x10cc [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\windows\system32\DRIVERS\i8042prt.sys 14:23:29.0801 0x10cc i8042prt - ok 14:23:29.0926 0x10cc [ 53CC5BF8B5A219119953C7ABB19A7705, F342A9732978D893729EA2591CB72E5F5BD1B3E6C9E4DBFFE54EC866E534A8C0 ] iaStor C:\windows\system32\DRIVERS\iaStor.sys 14:23:29.0945 0x10cc iaStor - ok 14:23:30.0007 0x10cc [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\windows\system32\drivers\iaStorV.sys 14:23:30.0029 0x10cc iaStorV - ok 14:23:30.0141 0x10cc [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 14:23:30.0188 0x10cc idsvc - ok 14:23:30.0209 0x10cc IEEtwCollectorService - ok 14:23:31.0154 0x10cc [ 8CB8667F5A3B5515F2585F3254F3AAF7, 068E3E513AFF0ADAAB5EB5C019F13DD6D0BF4E8D69B98CFFCBA0368E04674CA8 ] igfx C:\windows\system32\DRIVERS\igdkmd64.sys 14:23:31.0453 0x10cc igfx - ok 14:23:31.0548 0x10cc [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\windows\system32\drivers\iirsp.sys 14:23:31.0563 0x10cc iirsp - ok 14:23:31.0862 0x10cc [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\windows\System32\ikeext.dll 14:23:31.0894 0x10cc IKEEXT - ok 14:23:32.0103 0x10cc [ 8E05ADB4B809B478B2EC65A1A1633DEB, E5404FD4D2A7EAADA0FA8BB5ABC3AEEE36CACBC3D765C3B101FC6BE7EEE81EA8 ] IntcAzAudAddService C:\windows\system32\drivers\RTKVHD64.sys 14:23:32.0183 0x10cc IntcAzAudAddService - ok 14:23:32.0368 0x10cc [ FC727061C0F47C8059E88E05D5C8E381, C7A3782F5D86C7FDE57AA1F2EE81638C5FC3072ACC6E572BA2EC7B3CFF389800 ] IntcDAud C:\windows\system32\DRIVERS\IntcDAud.sys 14:23:32.0386 0x10cc IntcDAud - ok 14:23:32.0415 0x10cc [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\windows\system32\drivers\intelide.sys 14:23:32.0426 0x10cc intelide - ok 14:23:32.0471 0x10cc [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\windows\system32\DRIVERS\intelppm.sys 14:23:32.0485 0x10cc intelppm - ok 14:23:32.0569 0x10cc [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\windows\system32\ipbusenum.dll 14:23:32.0606 0x10cc IPBusEnum - ok 14:23:32.0621 0x10cc [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\windows\system32\DRIVERS\ipfltdrv.sys 14:23:32.0655 0x10cc IpFilterDriver - ok 14:23:32.0700 0x10cc [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\windows\System32\iphlpsvc.dll 14:23:32.0726 0x10cc iphlpsvc - ok 14:23:32.0732 0x10cc [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\windows\system32\drivers\IPMIDrv.sys 14:23:32.0746 0x10cc IPMIDRV - ok 14:23:32.0764 0x10cc [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\windows\system32\drivers\ipnat.sys 14:23:32.0799 0x10cc IPNAT - ok 14:23:32.0912 0x10cc [ 7FAE5B6CDB18B0B2E81F32869F595022, D873A7EE94749E1700E8F6B8BB7B485AE1B0B83388D63BE06335720498D4794F ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 14:23:32.0934 0x10cc iPod Service - ok 14:23:32.0983 0x10cc [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\windows\system32\drivers\irenum.sys 14:23:33.0002 0x10cc IRENUM - ok 14:23:33.0076 0x10cc [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\windows\system32\drivers\isapnp.sys 14:23:33.0091 0x10cc isapnp - ok 14:23:33.0178 0x10cc [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\windows\system32\drivers\msiscsi.sys 14:23:33.0194 0x10cc iScsiPrt - ok 14:23:33.0231 0x10cc [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\windows\system32\DRIVERS\kbdclass.sys 14:23:33.0242 0x10cc kbdclass - ok 14:23:33.0266 0x10cc [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\windows\system32\DRIVERS\kbdhid.sys 14:23:33.0279 0x10cc kbdhid - ok 14:23:33.0295 0x10cc [ 5424EC756808C1002457033D969115C7, 85B86C3DF9BCF4BA085C4978BE36A38D0079CE24C5C61FB754286E476EB77741 ] KeyIso C:\windows\system32\lsass.exe 14:23:33.0308 0x10cc KeyIso - ok 14:23:33.0621 0x10cc [ 67D1F7FA1DF9502DE12027D7C7782863, BCB92C1C11A7576FD7E91B160CBC3FB5A0C31FE028305021D7C10EC40C4D5013 ] kl1 C:\windows\system32\DRIVERS\kl1.sys 14:23:33.0641 0x10cc kl1 - ok 14:23:33.0811 0x10cc [ 2A88EFE87B5F23BA47FF7AF2DEAEB98F, 8D702249A462F8A233B594DF1B7C843A2C90F8A0D4FA7358B096020FF2C3E115 ] klflt C:\windows\system32\DRIVERS\klflt.sys 14:23:33.0823 0x10cc klflt - ok 14:23:33.0888 0x10cc [ 7ED6B6805B3E1BC9DC2418F1C5C920B4, 7FF90C32C95E2141A3D3B378DDE8035C8C6EB811C087A9AF7D20C735CB74142A ] klhk C:\windows\system32\DRIVERS\klhk.sys 14:23:33.0903 0x10cc klhk - ok 14:23:33.0963 0x10cc [ CD81447AB991F3E7F1FCF59CEA07D1E0, FB6EDDCA703952FAD7FEE24A75DB5C957C45C83B17D4871D1009CA24450CB040 ] KLIF C:\windows\system32\DRIVERS\klif.sys 14:23:33.0992 0x10cc KLIF - ok 14:23:34.0066 0x10cc [ FEAD1F401CBE9383A642877A6EA1398F, 0529A96D406DAB1C0715692441BDBC1C05123EB62005B806A8EFF5B0B6DCD5DB ] KLIM6 C:\windows\system32\DRIVERS\klim6.sys 14:23:34.0076 0x10cc KLIM6 - ok 14:23:34.0138 0x10cc [ 3FAE739F2AFEA18BCBB9C5E7DC6E889D, 5990C074BCB8E2172AE0A2AC0A31E6636B3C3EF0A5BB1F593E62D22D53FC5BF0 ] klkbdflt C:\windows\system32\DRIVERS\klkbdflt.sys 14:23:34.0148 0x10cc klkbdflt - ok 14:23:34.0195 0x10cc [ 72CF64FBF38CD681FA7F37176047E967, BE5683C119DCEF7E678EE477D6CADF873E32D42372A253B7E86B8C335DF28E1C ] klmouflt C:\windows\system32\DRIVERS\klmouflt.sys 14:23:34.0208 0x10cc klmouflt - ok 14:23:34.0331 0x10cc [ 8C0EC95AD65A0DE3D6C040591D02BF02, 272FB83752B73684FA7BDBE256FAFD56138E4755AAEFED9E7EF8F0E3D0ACFAF2 ] klpd C:\windows\system32\DRIVERS\klpd.sys 14:23:34.0341 0x10cc klpd - ok 14:23:34.0373 0x10cc [ 5BB9E329FE48904108BBBF9C73073920, 402E88770C12C9E8D809D2A8C130CA9E5083CDB1D50C38D4CE2F0D24F2D32E82 ] kltdi C:\windows\system32\DRIVERS\kltdi.sys 14:23:34.0385 0x10cc kltdi - ok 14:23:34.0443 0x10cc [ D043624FE4AE0A4894A785097C02EF09, 2259CA9BAC73902D291176AB689C101CACE115A8A1C2E6824CC66E928FA27552 ] kneps C:\windows\system32\DRIVERS\kneps.sys 14:23:34.0459 0x10cc kneps - ok 14:23:34.0502 0x10cc [ 3A8C03156C3E31E70EF84E48CA179B46, E25E43D53BB6EE1B5F34C95B4FAD111B37A36367B8D047B10FC614DEE13658E2 ] KSecDD C:\windows\system32\Drivers\ksecdd.sys 14:23:34.0518 0x10cc KSecDD - ok 14:23:34.0535 0x10cc [ C6330F7C2E92A00E6773E82F79078AFC, D8B851BF4FCE85F2A269F0B46BC7EC5A118FCFDACE8460E7B54C1A7CE306774A ] KSecPkg C:\windows\system32\Drivers\ksecpkg.sys 14:23:34.0549 0x10cc KSecPkg - ok 14:23:34.0625 0x10cc [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\windows\system32\drivers\ksthunk.sys 14:23:34.0658 0x10cc ksthunk - ok 14:23:34.0706 0x10cc [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\windows\system32\msdtckrm.dll 14:23:34.0765 0x10cc KtmRm - ok 14:23:34.0873 0x10cc [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\windows\system32\srvsvc.dll 14:23:34.0911 0x10cc LanmanServer - ok 14:23:34.0947 0x10cc [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\windows\System32\wkssvc.dll 14:23:34.0982 0x10cc LanmanWorkstation - ok 14:23:35.0045 0x10cc [ FA529FB35694C24BF98A9EF67C1CD9D0, 7B3C587C38CF13D514140F0A55E58997D6071D1DEFD97E274E3F490660AC6075 ] LGBusEnum C:\windows\system32\drivers\LGBusEnum.sys 14:23:35.0054 0x10cc LGBusEnum - ok 14:23:35.0081 0x10cc [ 94AF1384A67B9FCF5651E70BC9D4C526, 9C025F7BBB5BBE9DAF3DEF2F6385CE77C8F413912C4D16930814F6D19B62B367 ] LGSHidFilt C:\windows\system32\DRIVERS\LGSHidFilt.Sys 14:23:35.0091 0x10cc LGSHidFilt - ok 14:23:35.0134 0x10cc [ 94B29CE153765E768F004FB3440BE2B0, E74C01CEBDA589CDDE35CBCBAA18700E3742DD3B48A90DB3630992467FFC5024 ] LGVirHid C:\windows\system32\drivers\LGVirHid.sys 14:23:35.0143 0x10cc LGVirHid - ok 14:23:35.0181 0x10cc [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\windows\system32\DRIVERS\lltdio.sys 14:23:35.0214 0x10cc lltdio - ok 14:23:35.0284 0x10cc [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\windows\System32\lltdsvc.dll 14:23:35.0324 0x10cc lltdsvc - ok 14:23:35.0338 0x10cc [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\windows\System32\lmhsvc.dll 14:23:35.0371 0x10cc lmhosts - ok 14:23:35.0400 0x10cc [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\windows\system32\drivers\lsi_fc.sys 14:23:35.0413 0x10cc LSI_FC - ok 14:23:35.0450 0x10cc [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\windows\system32\drivers\lsi_sas.sys 14:23:35.0464 0x10cc LSI_SAS - ok 14:23:35.0474 0x10cc [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\windows\system32\drivers\lsi_sas2.sys 14:23:35.0485 0x10cc LSI_SAS2 - ok 14:23:35.0509 0x10cc [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\windows\system32\drivers\lsi_scsi.sys 14:23:35.0522 0x10cc LSI_SCSI - ok 14:23:35.0555 0x10cc [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\windows\system32\drivers\luafv.sys 14:23:35.0595 0x10cc luafv - ok 14:23:36.0193 0x10cc [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64 C:\windows\system32\DRIVERS\lvuvc64.sys 14:23:36.0322 0x10cc LVUVC64 - ok 14:23:36.0378 0x10cc massfilter_hs - ok 14:23:36.0458 0x10cc [ 47701ECA633574E122687693B5C5D35C, 1DB12767462347504956450FAD0D90B6E682E2E8959A6C5DF3792C3C3DA289B1 ] mbamchameleon C:\windows\system32\drivers\mbamchameleon.sys 14:23:36.0470 0x10cc mbamchameleon - ok 14:23:36.0578 0x10cc [ A8D28D5B3E2A528D1EF0E338E44F2820, 40D1EFDD253BC0A0D984A5AD8A2721C3E83B15F14D538204714E6D5B00D92CEB ] MBAMProtector C:\windows\system32\drivers\mbam.sys 14:23:36.0589 0x10cc MBAMProtector - ok 14:23:36.0768 0x10cc [ 83C982A395D00BAFF6515FB38424EA76, 0E1B66F84A483D47550347D4A9426B95A066DB5104C4284F606A16768A11DB0C ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 14:23:36.0803 0x10cc MBAMService - ok 14:23:36.0889 0x10cc [ 78488AF2AB2111D67B3C4044707A519B, 7AA71B9C4C7949A1A21F60EF7CCEDE0079794990696B60557B5DC86F4D47223A ] MBAMSwissArmy C:\windows\system32\drivers\MBAMSwissArmy.sys 14:23:36.0903 0x10cc MBAMSwissArmy - ok 14:23:36.0995 0x10cc [ AE757332EA130E94E646621CC695B52A, E688CF34A4206F32B5C7301119D8459C3456FC178FA1DAA6215CE15F2C824C43 ] MBAMWebAccessControl C:\windows\system32\drivers\mwac.sys 14:23:37.0005 0x10cc MBAMWebAccessControl - ok 14:23:37.0069 0x10cc [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\windows\system32\Mcx2Svc.dll 14:23:37.0085 0x10cc Mcx2Svc - ok 14:23:37.0132 0x10cc [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\windows\system32\drivers\megasas.sys 14:23:37.0143 0x10cc megasas - ok 14:23:37.0181 0x10cc [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\windows\system32\drivers\MegaSR.sys 14:23:37.0197 0x10cc MegaSR - ok 14:23:37.0249 0x10cc [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64 C:\windows\system32\DRIVERS\HECIx64.sys 14:23:37.0259 0x10cc MEIx64 - ok 14:23:37.0315 0x10cc [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\windows\system32\mmcss.dll 14:23:37.0350 0x10cc MMCSS - ok 14:23:37.0378 0x10cc [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\windows\system32\drivers\modem.sys 14:23:37.0411 0x10cc Modem - ok 14:23:37.0455 0x10cc [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\windows\system32\DRIVERS\monitor.sys 14:23:37.0477 0x10cc monitor - ok 14:23:37.0511 0x10cc [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\windows\system32\DRIVERS\mouclass.sys 14:23:37.0524 0x10cc mouclass - ok 14:23:37.0539 0x10cc [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\windows\system32\DRIVERS\mouhid.sys 14:23:37.0552 0x10cc mouhid - ok 14:23:37.0618 0x10cc [ 67050452C0118BAF2883928E6FCCFE47, 335FC0AEB7B47DCC7CE0CF3F424EB60ACB1327D2FF6515F04D9AC03A10FF1E31 ] mountmgr C:\windows\system32\drivers\mountmgr.sys 14:23:37.0632 0x10cc mountmgr - ok 14:23:37.0801 0x10cc [ C34AB4280614658903BE848CE79ACDB5, 9A943D9B3CF941DAE4EA4E2771B5EC5DA37AB16AD43095EF092B4259D62FF810 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 14:23:37.0814 0x10cc MozillaMaintenance - ok 14:23:37.0873 0x10cc [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\windows\system32\drivers\mpio.sys 14:23:37.0888 0x10cc mpio - ok 14:23:37.0927 0x10cc [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\windows\system32\drivers\mpsdrv.sys 14:23:37.0962 0x10cc mpsdrv - ok 14:23:38.0118 0x10cc [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\windows\system32\mpssvc.dll 14:23:38.0173 0x10cc MpsSvc - ok 14:23:38.0213 0x10cc [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV C:\windows\system32\drivers\mrxdav.sys 14:23:38.0229 0x10cc MRxDAV - ok 14:23:38.0277 0x10cc [ ACB6782973BD93760D597FC7BB37E692, 9B6EC2858D236DCE61FD5E0247F4D947A5DC484C9C0AABFDAF8270ABA392E787 ] mrxsmb C:\windows\system32\DRIVERS\mrxsmb.sys 14:23:38.0292 0x10cc mrxsmb - ok 14:23:38.0341 0x10cc [ 262BF7BB7D0E44CFAA9B12A1E0A6EDF1, CCC3A4CE929C7C8B07C1038BBE8425590CE14F5C37E1D5608978A3AD2F41519C ] mrxsmb10 C:\windows\system32\DRIVERS\mrxsmb10.sys 14:23:38.0361 0x10cc mrxsmb10 - ok 14:23:38.0384 0x10cc [ 8C0376974AA28398FF501E78C04ACB30, 81CE67BE933F67F760A72BF9B581F33BC151D98970765FE4425450A2EF450409 ] mrxsmb20 C:\windows\system32\DRIVERS\mrxsmb20.sys 14:23:38.0402 0x10cc mrxsmb20 - ok 14:23:38.0448 0x10cc [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\windows\system32\drivers\msahci.sys 14:23:38.0459 0x10cc msahci - ok 14:23:38.0507 0x10cc [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\windows\system32\drivers\msdsm.sys 14:23:38.0520 0x10cc msdsm - ok 14:23:38.0539 0x10cc [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\windows\System32\msdtc.exe 14:23:38.0556 0x10cc MSDTC - ok 14:23:38.0598 0x10cc [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\windows\system32\drivers\Msfs.sys 14:23:38.0631 0x10cc Msfs - ok 14:23:38.0643 0x10cc [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\windows\System32\drivers\mshidkmdf.sys 14:23:38.0676 0x10cc mshidkmdf - ok 14:23:38.0710 0x10cc [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\windows\system32\drivers\msisadrv.sys 14:23:38.0722 0x10cc msisadrv - ok 14:23:38.0803 0x10cc [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\windows\system32\iscsiexe.dll 14:23:38.0842 0x10cc MSiSCSI - ok 14:23:38.0845 0x10cc msiserver - ok 14:23:39.0005 0x10cc [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\windows\system32\drivers\MSKSSRV.sys 14:23:39.0048 0x10cc MSKSSRV - ok 14:23:39.0065 0x10cc [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\windows\system32\drivers\MSPCLOCK.sys 14:23:39.0097 0x10cc MSPCLOCK - ok 14:23:39.0114 0x10cc [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\windows\system32\drivers\MSPQM.sys 14:23:39.0149 0x10cc MSPQM - ok 14:23:39.0178 0x10cc [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\windows\system32\drivers\MsRPC.sys 14:23:39.0196 0x10cc MsRPC - ok 14:23:39.0225 0x10cc [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\windows\system32\DRIVERS\mssmbios.sys 14:23:39.0236 0x10cc mssmbios - ok 14:23:39.0261 0x10cc [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\windows\system32\drivers\MSTEE.sys 14:23:39.0293 0x10cc MSTEE - ok 14:23:39.0470 0x10cc [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\windows\system32\drivers\MTConfig.sys 14:23:39.0484 0x10cc MTConfig - ok 14:23:39.0500 0x10cc [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\windows\system32\Drivers\mup.sys 14:23:39.0513 0x10cc Mup - ok 14:23:39.0553 0x10cc [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\windows\system32\qagentRT.dll 14:23:39.0601 0x10cc napagent - ok 14:23:39.0646 0x10cc [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\windows\system32\DRIVERS\nwifi.sys 14:23:39.0670 0x10cc NativeWifiP - ok 14:23:39.0764 0x10cc [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\windows\system32\drivers\ndis.sys 14:23:39.0796 0x10cc NDIS - ok 14:23:39.0852 0x10cc [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\windows\system32\DRIVERS\ndiscap.sys 14:23:39.0888 0x10cc NdisCap - ok 14:23:39.0935 0x10cc [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\windows\system32\DRIVERS\ndistapi.sys 14:23:39.0968 0x10cc NdisTapi - ok 14:23:40.0007 0x10cc [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\windows\system32\DRIVERS\ndisuio.sys 14:23:40.0039 0x10cc Ndisuio - ok 14:23:40.0064 0x10cc [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\windows\system32\DRIVERS\ndiswan.sys 14:23:40.0100 0x10cc NdisWan - ok 14:23:40.0125 0x10cc [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\windows\system32\drivers\NDProxy.sys 14:23:40.0160 0x10cc NDProxy - ok 14:23:40.0178 0x10cc [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\windows\system32\DRIVERS\netbios.sys 14:23:40.0214 0x10cc NetBIOS - ok 14:23:40.0225 0x10cc [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\windows\system32\DRIVERS\netbt.sys 14:23:40.0266 0x10cc NetBT - ok 14:23:40.0306 0x10cc [ 5424EC756808C1002457033D969115C7, 85B86C3DF9BCF4BA085C4978BE36A38D0079CE24C5C61FB754286E476EB77741 ] Netlogon C:\windows\system32\lsass.exe 14:23:40.0319 0x10cc Netlogon - ok 14:23:40.0382 0x10cc [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\windows\System32\netman.dll 14:23:40.0441 0x10cc Netman - ok 14:23:40.0509 0x10cc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:40.0523 0x10cc NetMsmqActivator - ok 14:23:40.0551 0x10cc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:40.0566 0x10cc NetPipeActivator - ok 14:23:40.0592 0x10cc [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\windows\System32\netprofm.dll 14:23:40.0637 0x10cc netprofm - ok 14:23:40.0655 0x10cc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:40.0670 0x10cc NetTcpActivator - ok 14:23:40.0678 0x10cc [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 14:23:40.0692 0x10cc NetTcpPortSharing - ok 14:23:41.0412 0x10cc [ AC69618DE5BCCE8747C9AB0AAE1003C1, D975963FA338AB58684BE0556633F3A846D5360FAD1A5E11BB7A273474DFB64D ] NETwNs64 C:\windows\system32\DRIVERS\NETwNs64.sys 14:23:41.0629 0x10cc NETwNs64 - ok 14:23:41.0693 0x10cc [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\windows\system32\drivers\nfrd960.sys 14:23:41.0704 0x10cc nfrd960 - ok 14:23:41.0768 0x10cc [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\windows\System32\nlasvc.dll 14:23:41.0803 0x10cc NlaSvc - ok 14:23:41.0829 0x10cc [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\windows\system32\drivers\Npfs.sys 14:23:41.0863 0x10cc Npfs - ok 14:23:41.0890 0x10cc [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\windows\system32\nsisvc.dll 14:23:41.0934 0x10cc nsi - ok 14:23:41.0991 0x10cc [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\windows\system32\drivers\nsiproxy.sys 14:23:42.0024 0x10cc nsiproxy - ok 14:23:42.0167 0x10cc [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\windows\system32\drivers\Ntfs.sys 14:23:42.0219 0x10cc Ntfs - ok 14:23:42.0246 0x10cc [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\windows\system32\drivers\Null.sys 14:23:42.0285 0x10cc Null - ok 14:23:43.0157 0x10cc [ BF769EC1CC472FAD4C6EAEEB96ED857E, BBF8BA2B703BF4C36DFC7F69B4D8E477C8162BEC492C6C5D1A7751C19305ABE8 ] nvlddmkm C:\windows\system32\DRIVERS\nvlddmkm.sys 14:23:43.0421 0x10cc nvlddmkm - ok 14:23:43.0725 0x10cc [ 72DD6225BA6055472522195F96473639, 27C8F847B247645061C0CD6DFCC986DA27638A9DFE686040160DFDCF7B3A6E72 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 14:23:43.0783 0x10cc NvNetworkService - ok 14:23:43.0813 0x10cc [ 3BC9A2A516D1215330FFE012B38F850C, A38EFA03A1009A9F3BA593D49779785C03FA3726BF8DC10563AA51C508CABD22 ] nvpciflt C:\windows\system32\DRIVERS\nvpciflt.sys 14:23:43.0823 0x10cc nvpciflt - ok 14:23:43.0890 0x10cc [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\windows\system32\drivers\nvraid.sys 14:23:43.0907 0x10cc nvraid - ok 14:23:44.0015 0x10cc [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\windows\system32\drivers\nvstor.sys 14:23:44.0030 0x10cc nvstor - ok 14:23:44.0218 0x10cc [ 4680DDDDDBA1CB1D56D49B4A6134155C, BF6E538BC10B23F6D93143F5C48155245852798D4846F401E0DA70A5BCFC74E1 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys 14:23:44.0230 0x10cc NvStreamKms - ok 14:23:44.0876 0x10cc [ E14F52B60581EE71849CD45186892046, 72B3E92CD34489306AB7D794C4C1F67513DE80C72A847DCF7A3EEFE2254762D0 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe 14:23:45.0012 0x10cc NvStreamSvc - ok 14:23:45.0104 0x10cc [ 039ACFA07F59DB2109BB6A2C0FA2C0D9, E641179FCDB83BBFFADDDECD646F69D667F494BFC41FCE1F035EE78A944C6D5B ] nvsvc C:\windows\system32\nvvsvc.exe 14:23:45.0137 0x10cc nvsvc - ok 14:23:45.0224 0x10cc [ 35DFC12FD7E44B7CB8CCD7E5A2B3975A, 36E0E39646636F6E027691E5C3903C51479B3F707BDEA40F460FD27E357DA14E ] nvvad_WaveExtensible C:\windows\system32\drivers\nvvad64v.sys 14:23:45.0235 0x10cc nvvad_WaveExtensible - ok 14:23:45.0274 0x10cc [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\windows\system32\drivers\nv_agp.sys 14:23:45.0288 0x10cc nv_agp - ok 14:23:45.0304 0x10cc [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\windows\system32\drivers\ohci1394.sys 14:23:45.0319 0x10cc ohci1394 - ok 14:23:45.0381 0x10cc [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 14:23:45.0394 0x10cc ose - ok 14:23:45.0831 0x10cc [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 14:23:45.0956 0x10cc osppsvc - ok 14:23:46.0064 0x10cc [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\windows\system32\pnrpsvc.dll 14:23:46.0084 0x10cc p2pimsvc - ok 14:23:46.0235 0x10cc [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\windows\system32\p2psvc.dll 14:23:46.0270 0x10cc p2psvc - ok 14:23:46.0329 0x10cc [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\windows\system32\drivers\parport.sys 14:23:46.0344 0x10cc Parport - ok 14:23:46.0374 0x10cc [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\windows\system32\drivers\partmgr.sys 14:23:46.0386 0x10cc partmgr - ok 14:23:46.0458 0x10cc [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\windows\System32\pcasvc.dll 14:23:46.0476 0x10cc PcaSvc - ok 14:23:46.0497 0x10cc [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\windows\system32\drivers\pci.sys 14:23:46.0512 0x10cc pci - ok 14:23:46.0565 0x10cc [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\windows\system32\drivers\pciide.sys 14:23:46.0578 0x10cc pciide - ok 14:23:46.0642 0x10cc [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\windows\system32\drivers\pcmcia.sys 14:23:46.0660 0x10cc pcmcia - ok 14:23:46.0762 0x10cc [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\windows\system32\drivers\pcw.sys 14:23:46.0774 0x10cc pcw - ok 14:23:46.0990 0x10cc [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\windows\system32\drivers\peauth.sys 14:23:47.0019 0x10cc PEAUTH - ok 14:23:47.0395 0x10cc [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\windows\SysWow64\perfhost.exe 14:23:47.0415 0x10cc PerfHost - ok 14:23:47.0496 0x10cc [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\windows\system32\pla.dll 14:23:47.0564 0x10cc pla - ok 14:23:47.0670 0x10cc [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\windows\system32\umpnpmgr.dll 14:23:47.0693 0x10cc PlugPlay - ok 14:23:47.0725 0x10cc [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\windows\system32\pnrpauto.dll 14:23:47.0738 0x10cc PNRPAutoReg - ok 14:23:47.0829 0x10cc [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\windows\system32\pnrpsvc.dll 14:23:47.0851 0x10cc PNRPsvc - ok 14:23:47.0899 0x10cc [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\windows\System32\ipsecsvc.dll 14:23:47.0942 0x10cc PolicyAgent - ok 14:23:47.0999 0x10cc [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\windows\system32\umpo.dll 14:23:48.0039 0x10cc Power - ok 14:23:48.0098 0x10cc [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\windows\system32\DRIVERS\raspptp.sys 14:23:48.0134 0x10cc PptpMiniport - ok 14:23:48.0160 0x10cc [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\windows\system32\drivers\processr.sys 14:23:48.0173 0x10cc Processor - ok 14:23:48.0258 0x10cc [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\windows\system32\profsvc.dll 14:23:48.0279 0x10cc ProfSvc - ok 14:23:48.0305 0x10cc [ 5424EC756808C1002457033D969115C7, 85B86C3DF9BCF4BA085C4978BE36A38D0079CE24C5C61FB754286E476EB77741 ] ProtectedStorage C:\windows\system32\lsass.exe 14:23:48.0320 0x10cc ProtectedStorage - ok 14:23:48.0353 0x10cc [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\windows\system32\DRIVERS\pacer.sys 14:23:48.0389 0x10cc Psched - ok 14:23:48.0475 0x10cc [ DD3FD48D69F5FBBB21D46D1514C1C2DB, 2B188E3AC4BD9B608D375DD550507717852C2AF7C0F99FFED90098999B9D4F01 ] PSI C:\windows\system32\DRIVERS\psi_mf_amd64.sys 14:23:48.0485 0x10cc PSI - ok 14:23:48.0631 0x10cc [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\windows\system32\drivers\ql2300.sys 14:23:48.0676 0x10cc ql2300 - ok 14:23:48.0714 0x10cc [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\windows\system32\drivers\ql40xx.sys 14:23:48.0728 0x10cc ql40xx - ok 14:23:48.0768 0x10cc [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\windows\system32\qwave.dll 14:23:48.0791 0x10cc QWAVE - ok 14:23:48.0834 0x10cc [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\windows\system32\drivers\qwavedrv.sys 14:23:48.0852 0x10cc QWAVEdrv - ok 14:23:48.0867 0x10cc [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\windows\system32\DRIVERS\rasacd.sys 14:23:48.0901 0x10cc RasAcd - ok 14:23:48.0966 0x10cc [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\windows\system32\DRIVERS\AgileVpn.sys 14:23:49.0000 0x10cc RasAgileVpn - ok 14:23:49.0047 0x10cc [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\windows\System32\rasauto.dll 14:23:49.0086 0x10cc RasAuto - ok 14:23:49.0128 0x10cc [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\windows\system32\DRIVERS\rasl2tp.sys 14:23:49.0163 0x10cc Rasl2tp - ok 14:23:49.0269 0x10cc [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\windows\System32\rasmans.dll 14:23:49.0313 0x10cc RasMan - ok 14:23:49.0350 0x10cc [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\windows\system32\DRIVERS\raspppoe.sys 14:23:49.0387 0x10cc RasPppoe - ok 14:23:49.0429 0x10cc [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\windows\system32\DRIVERS\rassstp.sys 14:23:49.0463 0x10cc RasSstp - ok 14:23:49.0601 0x10cc [ 67EAD2898F681B4ECA6E385AA39C8539, BD3D46234DD4FB6232CFF073E75CA8E35E06B416D205DCD6564E30D7548ED6F6 ] Razer Game Scanner Service C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 14:23:49.0614 0x10cc Razer Game Scanner Service - ok 14:23:49.0635 0x10cc [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\windows\system32\DRIVERS\rdbss.sys 14:23:49.0673 0x10cc rdbss - ok 14:23:49.0724 0x10cc [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\windows\system32\drivers\rdpbus.sys 14:23:49.0742 0x10cc rdpbus - ok 14:23:49.0768 0x10cc [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\windows\system32\DRIVERS\RDPCDD.sys 14:23:49.0804 0x10cc RDPCDD - ok 14:23:49.0850 0x10cc [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\windows\system32\drivers\rdpencdd.sys 14:23:49.0884 0x10cc RDPENCDD - ok 14:23:49.0909 0x10cc [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\windows\system32\drivers\rdprefmp.sys 14:23:49.0942 0x10cc RDPREFMP - ok 14:23:50.0130 0x10cc [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\windows\system32\drivers\rdpvideominiport.sys 14:23:50.0144 0x10cc RdpVideoMiniport - ok 14:23:50.0229 0x10cc [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\windows\system32\drivers\RDPWD.sys 14:23:50.0246 0x10cc RDPWD - ok 14:23:50.0312 0x10cc [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\windows\system32\drivers\rdyboost.sys 14:23:50.0327 0x10cc rdyboost - ok 14:23:50.0377 0x10cc [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\windows\System32\mprdim.dll 14:23:50.0416 0x10cc RemoteAccess - ok 14:23:50.0505 0x10cc [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\windows\system32\regsvc.dll 14:23:50.0544 0x10cc RemoteRegistry - ok 14:23:50.0628 0x10cc [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM C:\windows\system32\DRIVERS\rfcomm.sys 14:23:50.0652 0x10cc RFCOMM - ok 14:23:50.0828 0x10cc [ F12A68ED55053940CADD59CA5E3468DD, 75331E6DA4E30717085E7D8131989241EBC492DC3EE455546F91DA9DFFFD2BFC ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 14:23:50.0840 0x10cc RichVideo - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:53.0187 0x10cc Detect skipped due to KSN trusted 14:23:53.0187 0x10cc RichVideo - ok 14:23:53.0240 0x10cc [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\windows\System32\RpcEpMap.dll 14:23:53.0275 0x10cc RpcEptMapper - ok 14:23:53.0301 0x10cc [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\windows\system32\locator.exe 14:23:53.0314 0x10cc RpcLocator - ok 14:23:53.0379 0x10cc [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\windows\system32\rpcss.dll 14:23:53.0423 0x10cc RpcSs - ok 14:23:53.0492 0x10cc [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\windows\system32\DRIVERS\rspndr.sys 14:23:53.0526 0x10cc rspndr - ok 14:23:53.0589 0x10cc [ F4C374B1C46DE294B573BB43723AC3F6, 9B8A40BF54262A1949661596CB753D0B591E94577470ED44D498042BD3EA7C10 ] RTL8167 C:\windows\system32\DRIVERS\Rt64win7.sys 14:23:53.0608 0x10cc RTL8167 - ok 14:23:53.0738 0x10cc [ 4CA0DBA9E224473D664C25E411F5A3BD, 71423A66165782EFB4DB7BE6CE48DDB463D9F65FD0F266D333A6558791D158E5 ] rtport C:\windows\SysWOW64\drivers\rtport.sys 14:23:53.0748 0x10cc rtport - ok 14:23:53.0857 0x10cc [ 2ADA9F126235A56EDC9F90C888E4D142, 4CE692D045F6F8A7A1D309376648E81066F6EBAF94580F2ED0B0FFC1FE6FE44E ] RZMAELSTROMVADService C:\windows\system32\drivers\RzMaelstromVAD.sys 14:23:53.0868 0x10cc RZMAELSTROMVADService - ok 14:23:53.0980 0x10cc [ F17F84511E7DFDEEAB646F0699A006D7, 5237937841FBD1F99A5D6161DEBA26182DDAF617CA98946EE7DB0AB67FC149EA ] rzpmgrk C:\windows\system32\drivers\rzpmgrk.sys 14:23:53.0990 0x10cc rzpmgrk - ok 14:23:54.0099 0x10cc [ FEF60A37301E1F5A3020FA3487FB2CD7, 0C925468C3376458D0E1EC65E097BD1A81A03901035C0195E8F6EF904EF3F901 ] rzpnk C:\windows\system32\drivers\rzpnk.sys 14:23:54.0111 0x10cc rzpnk - ok 14:23:54.0162 0x10cc [ 6F59DE8AD8A6946D9133550BA481E6AD, CE4DE15872C0E9694793FC73710A4C6A163A335C2BD44FF2EFC3B553A465B40E ] RZSURROUNDVADService C:\windows\system32\drivers\RzSurroundVAD.sys 14:23:54.0175 0x10cc RZSURROUNDVADService - ok 14:23:54.0652 0x10cc [ 4B4A98A85F40EDDB22F61D645FD9441B, 9A7692263B03C48A28AA6C1A881F1B0F5DE72ECF4BB18D080CADDDBBEC694069 ] RzSurroundVADStreamingService C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe 14:23:54.0764 0x10cc RzSurroundVADStreamingService - detected UnsignedFile.Multi.Generic ( 1 ) 14:23:57.0165 0x10cc Detect skipped due to KSN trusted 14:23:57.0166 0x10cc RzSurroundVADStreamingService - ok 14:23:57.0217 0x10cc [ 62DB6CC4B0818F1B5F3441241B098F12, 7A53B3FBA3F82EDE6FA688E531FBE7EC9E1AE329090C0AFE0DCD64F65BD90F21 ] SABI C:\windows\system32\Drivers\SABI.sys 14:23:57.0231 0x10cc SABI - ok 14:23:57.0256 0x10cc [ 5424EC756808C1002457033D969115C7, 85B86C3DF9BCF4BA085C4978BE36A38D0079CE24C5C61FB754286E476EB77741 ] SamSs C:\windows\system32\lsass.exe 14:23:57.0271 0x10cc SamSs - ok 14:23:57.0305 0x10cc [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\windows\system32\drivers\sbp2port.sys 14:23:57.0318 0x10cc sbp2port - ok 14:23:57.0370 0x10cc [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\windows\System32\SCardSvr.dll 14:23:57.0411 0x10cc SCardSvr - ok 14:23:57.0432 0x10cc [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\windows\system32\DRIVERS\scfilter.sys 14:23:57.0463 0x10cc scfilter - ok 14:23:57.0584 0x10cc [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule C:\windows\system32\schedsvc.dll 14:23:57.0623 0x10cc Schedule - ok 14:23:57.0680 0x10cc [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\windows\System32\certprop.dll 14:23:57.0713 0x10cc SCPolicySvc - ok 14:23:57.0771 0x10cc [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\windows\System32\SDRSVC.dll 14:23:57.0788 0x10cc SDRSVC - ok 14:23:57.0855 0x10cc [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\windows\system32\drivers\secdrv.sys 14:23:57.0872 0x10cc secdrv - ok 14:23:57.0891 0x10cc [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\windows\system32\seclogon.dll 14:23:57.0935 0x10cc seclogon - ok 14:23:58.0208 0x10cc [ 398A81D590424441B2F5C5C08073CADB, 1E064DFCC49EB0D8A4150276BF796B9DFA030C451570A170EC940F8CBAAD80F3 ] Secunia PSI Agent C:\Program Files (x86)\Secunia\PSI\PSIA.exe 14:23:58.0246 0x10cc Secunia PSI Agent - ok 14:23:58.0328 0x10cc [ 8C2D3A80FC90A860F0F24DEB67471481, CE4D17B63149C44B4CD5CB7776FD4705DC675F6D2D077D53BE15578294EBC9D4 ] Secunia Update Agent C:\Program Files (x86)\Secunia\PSI\sua.exe 14:23:58.0352 0x10cc Secunia Update Agent - ok 14:23:58.0426 0x10cc [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\windows\System32\sens.dll 14:23:58.0461 0x10cc SENS - ok 14:23:58.0528 0x10cc [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\windows\system32\sensrsvc.dll 14:23:58.0541 0x10cc SensrSvc - ok 14:23:58.0592 0x10cc [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\windows\system32\drivers\serenum.sys 14:23:58.0607 0x10cc Serenum - ok 14:23:58.0634 0x10cc [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\windows\system32\drivers\serial.sys 14:23:58.0653 0x10cc Serial - ok 14:23:58.0694 0x10cc [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\windows\system32\drivers\sermouse.sys 14:23:58.0708 0x10cc sermouse - ok 14:23:58.0753 0x10cc [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\windows\system32\sessenv.dll 14:23:58.0788 0x10cc SessionEnv - ok 14:23:58.0805 0x10cc [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\windows\system32\drivers\sffdisk.sys 14:23:58.0820 0x10cc sffdisk - ok 14:23:58.0839 0x10cc [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\windows\system32\drivers\sffp_mmc.sys 14:23:58.0854 0x10cc sffp_mmc - ok 14:23:58.0863 0x10cc [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\windows\system32\drivers\sffp_sd.sys 14:23:58.0878 0x10cc sffp_sd - ok 14:23:58.0889 0x10cc [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\windows\system32\drivers\sfloppy.sys 14:23:58.0902 0x10cc sfloppy - ok 14:23:59.0043 0x10cc [ 21AB491BBCC8C1B26FDC402A374AB196, DD973C9963C840200D153A15078152D499639730D065BB8122C6BE65D4372300 ] Sftfs C:\windows\system32\DRIVERS\Sftfslh.sys 14:23:59.0071 0x10cc Sftfs - ok 14:23:59.0165 0x10cc [ 4E1BB8A9CCDB4BAF41F7F9A930EB121D, D994B20DACEB187BEB6530309E2185040B58105E4FD5AC1DA435712F9DE027D0 ] sftlist C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe 14:23:59.0187 0x10cc sftlist - ok 14:23:59.0215 0x10cc [ 3B8D43FEEFF7A187534DDDFD675FE123, 9308D5C552FE3AF1121A3F7B7595547C6B892FF500377953F3B623511D84698C ] Sftplay C:\windows\system32\DRIVERS\Sftplaylh.sys 14:23:59.0231 0x10cc Sftplay - ok 14:23:59.0257 0x10cc [ F1D1B1DC7A8765A09D7640FBF8D20970, 72E59B04BC44DAFFB88987C16CF3F9DC35438B15879E102FD83013673E0DB66F ] Sftredir C:\windows\system32\DRIVERS\Sftredirlh.sys 14:23:59.0268 0x10cc Sftredir - ok 14:23:59.0302 0x10cc [ B3B9ADE7F8C4AF0C20E712E040588543, 9A6BB11DA046BF6F0239952871263E148FAE91FB21065613645114B5FA054EC5 ] Sftvol C:\windows\system32\DRIVERS\Sftvollh.sys 14:23:59.0314 0x10cc Sftvol - ok 14:23:59.0336 0x10cc [ CECFDE5D3701B2D914862F5E6C3DFE18, E7627F90630C306324A39DC3C652B37D255F90636AC19D3302EE5B85BD504BD5 ] sftvsa C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe 14:23:59.0350 0x10cc sftvsa - ok 14:23:59.0394 0x10cc [ 2FE1CD3AA602414841DB10AD96C95A5E, 1A2489DF37C13B578E69AA0D3D5DB3627C77750C45D78BB2872E29DD10253326 ] SGDrv C:\windows\system32\DRIVERS\SGdrv64.sys 14:23:59.0405 0x10cc SGDrv - ok 14:23:59.0533 0x10cc [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\windows\System32\ipnathlp.dll 14:23:59.0575 0x10cc SharedAccess - ok 14:23:59.0631 0x10cc [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\windows\System32\shsvcs.dll 14:23:59.0682 0x10cc ShellHWDetection - ok 14:23:59.0726 0x10cc [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\windows\system32\drivers\SiSRaid2.sys 14:23:59.0737 0x10cc SiSRaid2 - ok 14:23:59.0767 0x10cc [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\windows\system32\drivers\sisraid4.sys 14:23:59.0779 0x10cc SiSRaid4 - ok 14:23:59.0991 0x10cc [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 14:24:00.0010 0x10cc SkypeUpdate - ok 14:24:00.0044 0x10cc [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\windows\system32\DRIVERS\smb.sys 14:24:00.0078 0x10cc Smb - ok 14:24:00.0132 0x10cc [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\windows\System32\snmptrap.exe 14:24:00.0147 0x10cc SNMPTRAP - ok 14:24:00.0177 0x10cc [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\windows\system32\drivers\spldr.sys 14:24:00.0188 0x10cc spldr - ok 14:24:00.0244 0x10cc [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\windows\System32\spoolsv.exe 14:24:00.0270 0x10cc Spooler - ok 14:24:00.0912 0x10cc [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\windows\system32\sppsvc.exe 14:24:01.0038 0x10cc sppsvc - ok 14:24:01.0059 0x10cc [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\windows\system32\sppuinotify.dll 14:24:01.0093 0x10cc sppuinotify - ok 14:24:01.0155 0x10cc [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\windows\system32\DRIVERS\srv.sys 14:24:01.0177 0x10cc srv - ok 14:24:01.0251 0x10cc [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\windows\system32\DRIVERS\srv2.sys 14:24:01.0277 0x10cc srv2 - ok 14:24:01.0344 0x10cc [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\windows\system32\DRIVERS\srvnet.sys 14:24:01.0360 0x10cc srvnet - ok 14:24:01.0413 0x10cc [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\windows\System32\ssdpsrv.dll 14:24:01.0451 0x10cc SSDPSRV - ok 14:24:01.0488 0x10cc [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\windows\system32\sstpsvc.dll 14:24:01.0523 0x10cc SstpSvc - ok 14:24:01.0695 0x10cc [ D31201BD8782752BD69DBE1E5DDF9AC5, 98B72690B4E6CC1B694C655DD31CB1FB56B76B62A32CFB748AF78F4C072D9740 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 14:24:01.0724 0x10cc Steam Client Service - ok 14:24:01.0767 0x10cc [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\windows\system32\drivers\stexstor.sys 14:24:01.0777 0x10cc stexstor - ok 14:24:01.0898 0x10cc [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\windows\System32\wiaservc.dll 14:24:01.0930 0x10cc stisvc - ok 14:24:01.0952 0x10cc [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\windows\system32\DRIVERS\swenum.sys 14:24:01.0962 0x10cc swenum - ok 14:24:02.0022 0x10cc [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\windows\System32\swprv.dll 14:24:02.0071 0x10cc swprv - ok 14:24:02.0247 0x10cc [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain C:\windows\system32\sysmain.dll 14:24:02.0319 0x10cc SysMain - ok 14:24:02.0377 0x10cc [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\windows\System32\TabSvc.dll 14:24:02.0397 0x10cc TabletInputService - ok 14:24:02.0475 0x10cc [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\windows\System32\tapisrv.dll 14:24:02.0515 0x10cc TapiSrv - ok 14:24:02.0554 0x10cc [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\windows\System32\tbssvc.dll 14:24:02.0589 0x10cc TBS - ok 14:24:02.0829 0x10cc [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\windows\system32\drivers\tcpip.sys 14:24:02.0883 0x10cc Tcpip - ok 14:24:03.0006 0x10cc [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\windows\system32\DRIVERS\tcpip.sys 14:24:03.0060 0x10cc TCPIP6 - ok 14:24:03.0101 0x10cc [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\windows\system32\drivers\tcpipreg.sys 14:24:03.0114 0x10cc tcpipreg - ok 14:24:03.0140 0x10cc [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\windows\system32\drivers\tdpipe.sys 14:24:03.0153 0x10cc TDPIPE - ok 14:24:03.0191 0x10cc [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\windows\system32\drivers\tdtcp.sys 14:24:03.0203 0x10cc TDTCP - ok 14:24:03.0299 0x10cc [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx C:\windows\system32\DRIVERS\tdx.sys 14:24:03.0313 0x10cc tdx - ok 14:24:03.0340 0x10cc [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\windows\system32\DRIVERS\termdd.sys 14:24:03.0351 0x10cc TermDD - ok 14:24:03.0417 0x10cc [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\windows\System32\termsrv.dll 14:24:03.0446 0x10cc TermService - ok 14:24:03.0469 0x10cc [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\windows\system32\themeservice.dll 14:24:03.0487 0x10cc Themes - ok 14:24:03.0518 0x10cc [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\windows\system32\mmcss.dll 14:24:03.0556 0x10cc THREADORDER - ok 14:24:03.0570 0x10cc [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\windows\System32\trkwks.dll 14:24:03.0606 0x10cc TrkWks - ok 14:24:03.0699 0x10cc [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\windows\servicing\TrustedInstaller.exe 14:24:03.0737 0x10cc TrustedInstaller - ok 14:24:03.0771 0x10cc [ 19BEDA57F3E0A06B8D5EB6D619BD5624, 952D5FAFD662C93628C12A6F7EB8E240A44216C0A15CBD2F5016BC357CBFE821 ] tssecsrv C:\windows\system32\DRIVERS\tssecsrv.sys 14:24:03.0785 0x10cc tssecsrv - ok 14:24:03.0826 0x10cc [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\windows\system32\drivers\tsusbflt.sys 14:24:03.0840 0x10cc TsUsbFlt - ok 14:24:03.0869 0x10cc [ AD64450A4ABE076F5CB34CC08EEACB07, B5C386635441A19178E7FEEE299BA430C8D72F9110866C13A216B12A1080AD12 ] TsUsbGD C:\windows\system32\drivers\TsUsbGD.sys 14:24:03.0881 0x10cc TsUsbGD - ok 14:24:03.0956 0x10cc [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\windows\system32\DRIVERS\tunnel.sys 14:24:03.0991 0x10cc tunnel - ok 14:24:04.0087 0x10cc TVicPort - ok 14:24:04.0105 0x10cc [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\windows\system32\drivers\uagp35.sys 14:24:04.0117 0x10cc uagp35 - ok 14:24:04.0171 0x10cc [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\windows\system32\DRIVERS\udfs.sys 14:24:04.0211 0x10cc udfs - ok 14:24:04.0265 0x10cc [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\windows\system32\UI0Detect.exe 14:24:04.0293 0x10cc UI0Detect - ok 14:24:04.0310 0x10cc [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\windows\system32\drivers\uliagpkx.sys 14:24:04.0321 0x10cc uliagpkx - ok 14:24:04.0362 0x10cc [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\windows\system32\DRIVERS\umbus.sys 14:24:04.0379 0x10cc umbus - ok 14:24:04.0384 0x10cc [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\windows\system32\drivers\umpass.sys 14:24:04.0399 0x10cc UmPass - ok 14:24:04.0488 0x10cc [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\windows\System32\upnphost.dll 14:24:04.0530 0x10cc upnphost - ok 14:24:04.0639 0x10cc [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\windows\system32\drivers\usbaudio.sys 14:24:04.0655 0x10cc usbaudio - ok 14:24:04.0696 0x10cc [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\windows\system32\DRIVERS\usbccgp.sys 14:24:04.0710 0x10cc usbccgp - ok 14:24:04.0763 0x10cc [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\windows\system32\drivers\usbcir.sys 14:24:04.0777 0x10cc usbcir - ok 14:24:04.0826 0x10cc [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\windows\system32\drivers\usbehci.sys 14:24:04.0839 0x10cc usbehci - ok 14:24:04.0940 0x10cc [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\windows\system32\DRIVERS\usbhub.sys 14:24:04.0961 0x10cc usbhub - ok 14:24:05.0015 0x10cc [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\windows\system32\drivers\usbohci.sys 14:24:05.0030 0x10cc usbohci - ok 14:24:05.0075 0x10cc [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\windows\system32\DRIVERS\usbprint.sys 14:24:05.0090 0x10cc usbprint - ok 14:24:05.0171 0x10cc [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan C:\windows\system32\DRIVERS\usbscan.sys 14:24:05.0184 0x10cc usbscan - ok 14:24:05.0217 0x10cc [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\windows\system32\DRIVERS\USBSTOR.SYS 14:24:05.0231 0x10cc USBSTOR - ok 14:24:05.0270 0x10cc [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\windows\system32\drivers\usbuhci.sys 14:24:05.0283 0x10cc usbuhci - ok 14:24:05.0377 0x10cc [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\windows\System32\Drivers\usbvideo.sys 14:24:05.0395 0x10cc usbvideo - ok 14:24:05.0443 0x10cc [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\windows\System32\uxsms.dll 14:24:05.0478 0x10cc UxSms - ok 14:24:05.0510 0x10cc [ 5424EC756808C1002457033D969115C7, 85B86C3DF9BCF4BA085C4978BE36A38D0079CE24C5C61FB754286E476EB77741 ] VaultSvc C:\windows\system32\lsass.exe 14:24:05.0524 0x10cc VaultSvc - ok 14:24:05.0569 0x10cc [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\windows\system32\drivers\vdrvroot.sys 14:24:05.0580 0x10cc vdrvroot - ok 14:24:05.0657 0x10cc [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\windows\System32\vds.exe 14:24:05.0702 0x10cc vds - ok 14:24:05.0723 0x10cc [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\windows\system32\DRIVERS\vgapnp.sys 14:24:05.0738 0x10cc vga - ok 14:24:05.0772 0x10cc [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\windows\System32\drivers\vga.sys 14:24:05.0808 0x10cc VgaSave - ok 14:24:05.0872 0x10cc [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\windows\system32\drivers\vhdmp.sys 14:24:05.0887 0x10cc vhdmp - ok 14:24:05.0932 0x10cc [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\windows\system32\drivers\viaide.sys 14:24:05.0944 0x10cc viaide - ok 14:24:05.0983 0x10cc [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\windows\system32\drivers\volmgr.sys 14:24:05.0995 0x10cc volmgr - ok 14:24:06.0023 0x10cc [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\windows\system32\drivers\volmgrx.sys 14:24:06.0041 0x10cc volmgrx - ok 14:24:06.0127 0x10cc [ DF8126BD41180351A093A3AD2FC8903B, AEFF4AA89CDDAAAD43CDE17C6B6EB2A397A0AC1651CBD51B889161EC2BC6527A ] volsnap C:\windows\system32\drivers\volsnap.sys 14:24:06.0144 0x10cc volsnap - ok 14:24:06.0203 0x10cc [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\windows\system32\drivers\vsmraid.sys 14:24:06.0219 0x10cc vsmraid - ok 14:24:06.0349 0x10cc [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\windows\system32\vssvc.exe 14:24:06.0418 0x10cc VSS - ok 14:24:06.0438 0x10cc [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\windows\system32\DRIVERS\vwifibus.sys 14:24:06.0450 0x10cc vwifibus - ok 14:24:06.0492 0x10cc [ 13A0DECD1794DE60A8427862C8669D27, 4024AF9F2F052BC80C85F5B9A671499C20AF38838206CC649E6EFE37C380D3BF ] vwififlt C:\windows\system32\DRIVERS\vwififlt.sys 14:24:06.0504 0x10cc vwififlt - ok 14:24:06.0536 0x10cc [ 49003B357D101CDC474937437ECF5ABC, D3EC570D616DC39FE6BF02DA1CD6C30CD07C27CC5B4B6FD6DACB5D8A4F1596A6 ] vwifimp C:\windows\system32\DRIVERS\vwifimp.sys 14:24:06.0548 0x10cc vwifimp - ok 14:24:06.0621 0x10cc [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\windows\system32\w32time.dll 14:24:06.0663 0x10cc W32Time - ok 14:24:06.0691 0x10cc [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\windows\system32\drivers\wacompen.sys 14:24:06.0704 0x10cc WacomPen - ok 14:24:06.0741 0x10cc [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\windows\system32\DRIVERS\wanarp.sys 14:24:06.0775 0x10cc WANARP - ok 14:24:06.0801 0x10cc [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\windows\system32\DRIVERS\wanarp.sys 14:24:06.0834 0x10cc Wanarpv6 - ok 14:24:06.0986 0x10cc [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\windows\system32\wbengine.exe 14:24:07.0035 0x10cc wbengine - ok 14:24:07.0086 0x10cc [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\windows\System32\wbiosrvc.dll 14:24:07.0108 0x10cc WbioSrvc - ok 14:24:07.0165 0x10cc [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\windows\System32\wcncsvc.dll 14:24:07.0192 0x10cc wcncsvc - ok 14:24:07.0215 0x10cc [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\windows\System32\WcsPlugInService.dll 14:24:07.0229 0x10cc WcsPlugInService - ok 14:24:07.0294 0x10cc [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\windows\system32\drivers\wd.sys 14:24:07.0305 0x10cc Wd - ok 14:24:07.0368 0x10cc [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\windows\system32\drivers\Wdf01000.sys 14:24:07.0397 0x10cc Wdf01000 - ok 14:24:07.0432 0x10cc [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\windows\system32\wdi.dll 14:24:07.0448 0x10cc WdiServiceHost - ok 14:24:07.0453 0x10cc [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\windows\system32\wdi.dll 14:24:07.0469 0x10cc WdiSystemHost - ok 14:24:07.0543 0x10cc [ 4E89FC53493704BF835F0300DC201C34, FB3080725E144D93512DED81047D21C0582BC3412250EFF37E039108D7351F53 ] WebClient C:\windows\System32\webclnt.dll 14:24:07.0562 0x10cc WebClient - ok 14:24:07.0612 0x10cc [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\windows\system32\wecsvc.dll 14:24:07.0655 0x10cc Wecsvc - ok 14:24:07.0677 0x10cc [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\windows\System32\wercplsupport.dll 14:24:07.0712 0x10cc wercplsupport - ok 14:24:07.0753 0x10cc [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\windows\System32\WerSvc.dll 14:24:07.0789 0x10cc WerSvc - ok 14:24:07.0823 0x10cc [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\windows\system32\DRIVERS\wfplwf.sys 14:24:07.0855 0x10cc WfpLwf - ok 14:24:07.0888 0x10cc [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\windows\system32\drivers\wimmount.sys 14:24:07.0898 0x10cc WIMMount - ok 14:24:07.0925 0x10cc WinDefend - ok 14:24:07.0954 0x10cc WinHttpAutoProxySvc - ok 14:24:08.0084 0x10cc [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\windows\system32\wbem\WMIsvc.dll 14:24:08.0121 0x10cc Winmgmt - ok 14:24:08.0300 0x10cc [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\windows\system32\WsmSvc.dll 14:24:08.0361 0x10cc WinRM - ok 14:24:08.0520 0x10cc [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\windows\System32\wlansvc.dll 14:24:08.0560 0x10cc Wlansvc - ok 14:24:08.0944 0x10cc [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 14:24:09.0006 0x10cc wlidsvc - ok 14:24:09.0031 0x10cc [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\windows\system32\drivers\wmiacpi.sys 14:24:09.0043 0x10cc WmiAcpi - ok 14:24:09.0123 0x10cc [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\windows\system32\wbem\WmiApSrv.exe 14:24:09.0141 0x10cc wmiApSrv - ok 14:24:09.0193 0x10cc WMPNetworkSvc - ok 14:24:09.0262 0x10cc [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\windows\System32\wpcsvc.dll 14:24:09.0276 0x10cc WPCSvc - ok 14:24:09.0306 0x10cc [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\windows\system32\wpdbusenum.dll 14:24:09.0326 0x10cc WPDBusEnum - ok 14:24:09.0365 0x10cc [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\windows\system32\drivers\ws2ifsl.sys 14:24:09.0398 0x10cc ws2ifsl - ok 14:24:09.0430 0x10cc [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\windows\System32\wscsvc.dll 14:24:09.0450 0x10cc wscsvc - ok 14:24:09.0456 0x10cc WSearch - ok 14:24:09.0747 0x10cc [ 291778E1A36716182AFBC1731B2DFEAB, C0B928CCCE8C496C90C42E0D294BAB51DC67C02B0D20CFB6A16B0AE1F51CC497 ] wuauserv C:\windows\system32\wuaueng.dll 14:24:09.0821 0x10cc wuauserv - ok 14:24:09.0853 0x10cc [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\windows\system32\drivers\WudfPf.sys 14:24:09.0867 0x10cc WudfPf - ok 14:24:09.0932 0x10cc [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\windows\system32\DRIVERS\WUDFRd.sys 14:24:09.0948 0x10cc WUDFRd - ok 14:24:10.0007 0x10cc [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\windows\System32\WUDFSvc.dll 14:24:10.0022 0x10cc wudfsvc - ok 14:24:10.0088 0x10cc [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\windows\System32\wwansvc.dll 14:24:10.0107 0x10cc WwanSvc - ok 14:24:10.0165 0x10cc xhunter1 - ok 14:24:10.0249 0x10cc [ 4A5CE13408945E525503B5F73D29B9C5, D58BB31AF17752508EA67931BF170CE46877DC204FC5DA7EED5A078AEB0CA0FD ] xnacc C:\windows\system32\DRIVERS\xnacc.sys 14:24:10.0281 0x10cc xnacc - ok 14:24:10.0328 0x10cc zghsmdm - ok 14:24:10.0411 0x10cc ================ Scan global =============================== 14:24:10.0462 0x10cc [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\windows\system32\basesrv.dll 14:24:10.0562 0x10cc [ 4AD1C61152A0199E3D7F9A82C07AC629, A4A42C7757EB084EE368A6BC4EBAB0C47BE41B0B4119A6AECD1B8E3332A7C5D5 ] C:\windows\system32\winsrv.dll 14:24:10.0602 0x10cc [ 4AD1C61152A0199E3D7F9A82C07AC629, A4A42C7757EB084EE368A6BC4EBAB0C47BE41B0B4119A6AECD1B8E3332A7C5D5 ] C:\windows\system32\winsrv.dll 14:24:10.0639 0x10cc [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\windows\system32\sxssrv.dll 14:24:10.0713 0x10cc [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\windows\system32\services.exe 14:24:10.0720 0x10cc [ Global ] - ok 14:24:10.0721 0x10cc ================ Scan MBR ================================== 14:24:10.0735 0x10cc [ 2E5DEBB2116B3417023E0D6562D7ED07 ] \Device\Harddisk0\DR0 14:24:11.0355 0x10cc \Device\Harddisk0\DR0 - ok 14:24:11.0359 0x10cc ================ Scan VBR ================================== 14:24:11.0376 0x10cc [ C0074F5509A90A8A9316377AC0729464 ] \Device\Harddisk0\DR0\Partition1 14:24:11.0392 0x10cc \Device\Harddisk0\DR0\Partition1 - ok 14:24:11.0410 0x10cc [ D7089683512038A43C27EB302E6A85A4 ] \Device\Harddisk0\DR0\Partition2 14:24:11.0412 0x10cc \Device\Harddisk0\DR0\Partition2 - ok 14:24:11.0433 0x10cc [ 32022B10B5D6C76D1040CE276D2B2FD4 ] \Device\Harddisk0\DR0\Partition3 14:24:11.0460 0x10cc \Device\Harddisk0\DR0\Partition3 - ok 14:24:11.0463 0x10cc ================ Scan generic autorun ====================== 14:24:12.0770 0x10cc [ 71BC8F95B5E5AFA85D66881EAF919C6F, AF88E6BDA52BAAAEBC640F21BB7C16F3ED3F4127EFA48E0752A55C3D807D0CA3 ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 14:24:13.0068 0x10cc RtHDVCpl - ok 14:24:13.0105 0x10cc [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe 14:24:13.0150 0x10cc Logitech Download Assistant - ok 14:24:14.0172 0x10cc [ 95671F4BE988BC043F5828BB7E02CBD0, 7B7572CB569161C44BD63AAF9DEF2C806974576AE9ABFF94ED5A950EFFB3D222 ] C:\Program Files\Logitech Gaming Software\LCore.exe 14:24:14.0434 0x10cc Launch LCore - ok 14:24:14.0709 0x10cc [ 463C40BFC0FB8FF59049E2CA78695A40, 8D693A061A19E47CCADEEC844D4ACF59B5CD3CE97452018807884D2ACBEDA7FF ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 14:24:14.0781 0x10cc NvBackend - ok 14:24:14.0803 0x10cc [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\windows\system32\rundll32.exe 14:24:14.0820 0x10cc ShadowPlay - ok 14:24:14.0987 0x10cc [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 14:24:15.0053 0x10cc Sidebar - ok 14:24:15.0099 0x10cc [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 14:24:15.0118 0x10cc mctadmin - ok 14:24:15.0154 0x10cc [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 14:24:15.0193 0x10cc Sidebar - ok 14:24:15.0207 0x10cc [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 14:24:15.0225 0x10cc mctadmin - ok 14:24:15.0270 0x10cc Skype - ok 14:24:15.0808 0x10cc [ FB5B78A3DE88FD3B725DA574497BC225, 0096C3ED0E29153E6A9E84C121B79A170FEDFE521AEA1BC602BC536E1795E5F3 ] C:\Program Files\CCleaner\CCleaner64.exe 14:24:16.0010 0x10cc CCleaner Monitoring - ok 14:24:16.0427 0x10cc [ 9D0D72B696B8CDF9AE368E542FD042CE, 8CD19E8B609041A6C226D57D40509175827C75DEF93378B53A814060BB7A9E0B ] C:\Users\Phillip\AppData\Roaming\Spotify\SpotifyWebHelper.exe 14:24:16.0481 0x10cc Spotify Web Helper - ok 14:24:17.0171 0x10cc [ DC8DC7ED86A259614D3B2186B2F841EB, 6F305431EE35849D637AF41F213B716D936311015483422FA294E9435B82AB2A ] C:\Users\Phillip\AppData\Roaming\Spotify\Spotify.exe 14:24:17.0366 0x10cc Spotify - ok 14:24:17.0429 0x10cc [ 5746BD7E255DD6A8AFA06F7C42C1BA41, DB06C3534964E3FC79D2763144BA53742D7FA250CA336F4A0FE724B75AAFF386 ] C:\windows\system32\cmd.exe 14:24:17.0489 0x10cc Uninstall C:\Users\Phillip\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64 - ok 14:24:17.0490 0x10cc Waiting for KSN requests completion. In queue: 147 14:24:18.0490 0x10cc Waiting for KSN requests completion. In queue: 147 14:24:19.0490 0x10cc Waiting for KSN requests completion. In queue: 147 14:24:19.0916 0x15c0 Object required for P2P: [ DC8DC7ED86A259614D3B2186B2F841EB ] C:\Users\Phillip\AppData\Roaming\Spotify\Spotify.exe 14:24:20.0491 0x10cc Waiting for KSN requests completion. In queue: 2 14:24:21.0491 0x10cc Waiting for KSN requests completion. In queue: 2 14:24:22.0425 0x15c0 Object send P2P result: true 14:24:22.0529 0x10cc AV detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\wmiav.exe ( 15.0.0.463 ), 0x41000 ( enabled : updated ) 14:24:22.0560 0x10cc FW detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\wmifw.exe ( 15.0.0.463 ), 0x41010 ( enabled ) 14:24:24.0980 0x10cc ============================================================ 14:24:24.0980 0x10cc Scan finished 14:24:24.0980 0x10cc ============================================================ 14:24:24.0987 0x04c4 Detected object count: 0 14:24:24.0988 0x04c4 Actual detected object count: 0 Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2015.10.23.03 rootkit: v2015.10.16.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.18059 Phillip :: NB-PHILLIP [administrator] 23.10.2015 14:19:44 mbar-log-2015-10-23 (14-19-44).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 20 Time elapsed: 1 minute(s), 9 second(s) [aborted] Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) |
25.10.2015, 18:37 | #6 |
/// Malwareteam | Komische Probleme mit Laptop Ist das Problem seitdem nochmal aufgetreten?
__________________ --> Komische Probleme mit Laptop |
Themen zu Komische Probleme mit Laptop |
bonjour, defender, dnsapi.dll, ebanking, explorer, firefox, google, home, installation, kaspersky, launch, mozilla, neustart, prozesse, realtek, registry, rundll, scan, security, services.exe, software, svchost.exe, system, teamspeak, temp, virus, windows, winlogon.exe |