|
Netzwerk und Hardware: Page Fault in nonpaged Area FehlerWindows 7 Hilfe zu Motherboards, CPUs, Lüfter, Raid-Controller, Digitalkameras, Treiber usw. Bitte alle relevanten Angaben zur Hardware machen. Welche Hardware habe ich? Themen zum Trojaner Entfernen oder Viren Beseitigung bitte in den Bereinigungsforen des Trojaner-Boards posten. |
20.02.2016, 08:12 | #1 |
| Page Fault in nonpaged Area Fehler Guten Tag, ich habe seit einigen Wochen das Problem das mein PC seit dem ich Win 10 drauf gespielt habe, das Problem das ich einen Bluescreen bekomme mit der Fehlermeldung Page fault in nonpaged Area.Auch nach neu aufsetzten des PC'S ist es heute wieder passiert.Als das Problem eben wieder Passierte sah ich das GData nach dem Bluescreen auf einmal 1 Datei in Quarantäne hatte die vorher nicht da war und zwar war das eine Datei namens networx.sys die ja eigentlich von Windows selber kommt liegt es vllt. daran das GData Programme blockt die Zu Windows gehören ? Anbei die FRst Datei und Addition Datei 1. Addition.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-02-2016 durchgeführt von chris (2016-02-20 08:00:48) Gestartet von C:\Users\chris\Downloads Windows 10 Home (X64) (2016-02-15 23:58:03) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2370734782-4077430557-1878014498-500 - Administrator - Disabled) chris (S-1-5-21-2370734782-4077430557-1878014498-1001 - Administrator - Enabled) => C:\Users\chris DefaultAccount (S-1-5-21-2370734782-4077430557-1878014498-503 - Limited - Disabled) Gast (S-1-5-21-2370734782-4077430557-1878014498-501 - Limited - Disabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: G DATA TOTAL PROTECTION (Enabled - Up to date) {545C8713-0744-B079-87F8-349A6D5C8CF0} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: G DATA TOTAL PROTECTION (Enabled - Up to date) {EF3D66F7-217E-BFF7-BD48-0FE816DBC64D} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: G*DATA Personal Firewall (Enabled) {6C670636-4D2B-B121-ACA7-9DAF938FCB8B} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ACP Application (Version: 2015.1204.1152.59 - Advanced Micro Devices, Inc.) Hidden AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Catalyst Control Center Next Localization BR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden Curse Client (HKU\S-1-5-21-2370734782-4077430557-1878014498-1001\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse) G DATA TOTAL PROTECTION (HKLM-x32\...\{2A1FF304-D778-49F1-B340-E4BF4CDA2EB0}) (Version: 25.1.0.10 - G DATA Software AG) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.) Google Drive (HKLM-x32\...\{EF61675D-9BBC-4EC7-B906-F13BE8D3BD20}) (Version: 1.27.1227.2094 - Google, Inc.) Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Intel(R) Driver Update Utility 2.4 (x32 Version: 2.4.0.7 - Intel) Hidden Intel(R) Smart Connect Technology 3.0 x64 (HKLM\...\{EE21578E-DE14-46D5-83D7-EA4D347B2F9A}) (Version: 3.0.30.1526 - Intel) Intel® Driver Update Utility (HKLM-x32\...\{561b5fb5-1d4d-40e8-b3e4-ad52858b217c}) (Version: 2.4.0.7 - Intel) KeePass Password Safe 2.31 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.31 - Dominik Reichl) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.6366.2068 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) NetWorx 5.5.2 (HKLM\...\NetWorx_is1) (Version: - Softperfect) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6326.1026 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.6326.1026 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6326.1026 - Microsoft Corporation) Hidden Raptr (HKLM-x32\...\Raptr) (Version: - ) Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 1.3.0 - Razer Inc.) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.28549 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6657 - Realtek Semiconductor Corp.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.14.1 - Synaptics Incorporated) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2370734782-4077430557-1878014498-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\chris\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {38C3316D-517D-4300-B2CB-D5832757EAD4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-16] (Google Inc.) Task: {3DD7ADB1-5D48-49D2-98E1-198E65CAEC87} - System32\Tasks\{FD7202F6-ABE7-4AB3-B438-0FE835152CB4} => pcalua.exe -a C:\Users\chris\Downloads\non-whql-64bit-radeon-software-crimson-16.1.1-win10-win8.1-win7-feb3.exe -d C:\Users\chris\Downloads Task: {5CAFDCB0-95BF-48D7-8273-AA4F9B648705} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2015-12-04] (Advanced Micro Devices, Inc.) Task: {77869291-36B6-4702-BEF1-A7468B840C09} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-31] (Microsoft Corporation) Task: {9636F984-154B-4B11-AA39-67BF5370FEA1} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-02-15] (Microsoft Corporation) Task: {B65A2B86-2AC2-4464-99ED-DBF02F2CED51} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-16] (Google Inc.) Task: {BB4AD814-4FCD-434F-8C84-B63E7A67463F} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-02-15] (Microsoft Corporation) Task: {E05A91C0-359E-4FA0-9E7A-06FCBA9F873D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-31] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-10-30 08:17 - 2015-10-30 08:17 - 00028672 _____ () C:\WINDOWS\SYSTEM32\efsext.dll 2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2011-06-21 07:42 - 2011-06-21 07:42 - 00034304 _____ () C:\WINDOWS\System32\sst3cl6.dll 2012-07-24 10:43 - 2012-07-24 10:43 - 00146984 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2012-07-24 10:43 - 2012-07-24 10:43 - 00058920 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2016-02-15 18:41 - 2016-01-31 05:54 - 00173248 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll 2015-11-05 01:11 - 2015-11-05 01:12 - 00188072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2015-09-22 03:44 - 2015-09-22 03:44 - 00387192 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll 2015-12-13 14:00 - 2015-12-13 14:00 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-13 14:00 - 2015-12-13 14:00 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-02-16 01:38 - 2016-02-16 01:38 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-12-18 16:59 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2015-12-18 16:59 - 2015-12-07 05:00 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-01-17 04:24 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-01-17 04:24 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-01-28 18:17 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-01-28 18:17 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-06-25 16:34 - 2015-06-25 16:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2015-06-25 16:37 - 2015-06-25 16:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-06-25 16:35 - 2015-06-25 16:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2015-06-25 16:38 - 2015-06-25 16:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2016-02-15 20:05 - 2016-01-21 12:32 - 00807936 _____ () C:\Program Files\NetWorx\sqlite.dll 2016-02-15 17:33 - 2016-02-15 17:33 - 00016384 _____ () C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.WowDb.dll 2016-02-15 17:33 - 2016-02-15 17:33 - 00035840 _____ () C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.Advertising.dll 2016-02-15 17:33 - 2016-02-15 17:33 - 00099840 _____ () C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.CMOD2.dll 2015-12-21 08:55 - 2015-12-21 08:55 - 00292352 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe 2016-02-16 01:38 - 2016-02-16 01:38 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-02-16 01:38 - 2016-02-16 01:38 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2016-02-16 01:06 - 2016-02-20 07:48 - 00619840 _____ () C:\Users\chris\AppData\Local\Temp\0Kraken71ChromaDevProps.dll 2016-02-20 07:47 - 2016-02-20 07:47 - 00098816 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32api.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00110080 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pywintypes27.dll 2016-02-20 07:47 - 2016-02-20 07:47 - 00364544 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pythoncom27.dll 2016-02-20 07:47 - 2016-02-20 07:47 - 00320512 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32com.shell.shell.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00776704 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_hashlib.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 01176576 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._core_.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00806400 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._gdi_.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00816128 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._windows_.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 01067008 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._controls_.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00733184 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._misc_.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00682496 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pysqlite2._sqlite.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00088064 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_ctypes.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00119808 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32file.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00108544 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32security.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00007168 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\hashobjs_ext.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00017920 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\thumbnails_ext.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00088064 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\usb_ext.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00167936 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32gui.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00018432 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32event.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00046080 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_socket.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 01208320 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_ssl.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00128512 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_elementtree.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00127488 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pyexpat.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00013824 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\common.time34.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00036864 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_psutil_windows.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00038912 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32inet.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00525240 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\windows._lib_cacheinvalidation.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00011264 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32crypt.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00077312 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._html2.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00027136 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_multiprocessing.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00020480 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_yappi.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00035840 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32process.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00686080 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\unicodedata.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00078848 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._animate.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00123392 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._wizard.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00024064 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32pipe.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00010240 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\select.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00025600 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32pdh.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00017408 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32profile.pyd 2016-02-20 07:47 - 2016-02-20 07:47 - 00022528 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32ts.pyd 2016-01-06 02:11 - 2016-01-06 02:11 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2016-02-16 02:18 - 2015-08-27 22:30 - 40622592 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzSynapse\cef\libcef.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd 2011-02-15 19:17 - 2011-02-15 19:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll 2010-11-22 23:57 - 2010-11-22 23:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd 2014-05-14 00:26 - 2014-05-14 00:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd 2015-10-21 21:29 - 2015-10-21 21:29 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll 2015-10-21 21:29 - 2015-10-21 21:29 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll 2015-06-27 00:09 - 2015-06-27 00:09 - 00271872 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll 2010-11-22 23:56 - 2010-11-22 23:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll 2010-11-22 23:57 - 2010-11-22 23:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd 2010-11-22 23:56 - 2010-11-22 23:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00024064 _____ () C:\Program Files (x86)\Raptr\win32pipe.pyd 2010-11-22 23:57 - 2010-11-22 23:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd 2014-06-18 01:56 - 2014-06-18 01:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd 2011-02-15 19:17 - 2011-02-15 19:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll 2010-11-23 00:06 - 2010-11-23 00:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll 2013-05-10 00:52 - 2013-05-10 00:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll 2013-05-03 19:56 - 2013-05-03 19:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll 2013-05-03 19:57 - 2013-05-03 19:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll 2016-02-16 02:18 - 2015-10-06 20:26 - 50656768 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll 2016-02-16 02:18 - 2015-10-06 20:26 - 01874944 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll 2016-02-16 02:18 - 2015-10-06 20:26 - 00075264 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll 2016-02-16 02:18 - 2015-08-27 22:30 - 00911360 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzSynapse\cef\libglesv2.dll 2016-02-16 02:18 - 2015-08-27 22:30 - 00134144 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzSynapse\cef\libegl.dll 2016-02-20 07:54 - 2016-02-18 05:14 - 01630360 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libglesv2.dll 2016-02-20 07:54 - 2016-02-18 05:14 - 00085656 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData:BDSDRMHK AlternateDataStreams: C:\Users\All Users:BDSDRMHK AlternateDataStreams: C:\ProgramData\Anwendungsdaten:BDSDRMHK ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2016-02-15 15:49 - 2016-02-15 15:48 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2370734782-4077430557-1878014498-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{8AE09F47-3333-41E0-A4AD-1AD6858FFEF6}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{EF60FFE3-BCF7-4742-9B97-293F5F9CE8A2}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{8CD96F7F-39FB-404E-9307-9422C0622694}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{85584C0F-B909-4398-A8CE-46B7B913AE82}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{92388A22-5A39-4410-8E94-5FBF870F5624}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{2FD66C54-DFD1-4A8C-853D-3C31869B94FA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{C18B0A77-A4C2-4A98-9D3C-34E52110B465}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{1BFF87D5-8C4C-4C00-9528-CAFE43AB72F3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{DF92C370-D4A9-4DC4-9E74-86EEA525BF9D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{47481625-CE33-4D8A-8CB7-976D11797701}] => (Allow) C:\Program Files\NetWorx\networx.exe FirewallRules: [{208D087F-6830-47AC-889A-E7BEDB1BECFA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (02/20/2016 07:47:40 AM) (Source: ISCTAgent) (EventID: 1000) (User: ) Description: netDetect::AOACNetDetect::Initialize Net Detect: Error Loading PROSet Library Error=0x2\n Error: (02/20/2016 12:58:26 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418220 Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: WmiApRplC:\WINDOWS\system32\wbem\wmiaprpl.dll8 Error: (02/19/2016 05:21:02 PM) (Source: PerfNet) (EventID: 2004) (User: ) Description: Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: MSDTCC:\WINDOWS\system32\msdtcuiu.DLL8 Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: LsaC:\Windows\System32\Secur32.dll8 Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: ESENTC:\WINDOWS\system32\esentprf.dll8 Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: .NETFrameworkC:\WINDOWS\system32\mscoree.dll8 Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: WmiApRplC:\WINDOWS\system32\wbem\wmiaprpl.dll8 Error: (02/19/2016 05:21:02 PM) (Source: PerfNet) (EventID: 2004) (User: ) Description: Systemfehler: ============= Error: (02/20/2016 07:47:38 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x00000050 (0xffffa60500000000, 0x0000000000000000, 0xffffd00022f954c1, 0x0000000000000002)C:\WINDOWS\MEMORY.DMP9efd11b4-752a-4473-a0ca-fdfb85a855ac Error: (02/20/2016 07:47:29 AM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR2. Error: (02/20/2016 07:47:27 AM) (Source: disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR2. Error: (02/20/2016 07:47:36 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 20.02.2016 um 07:30:19 unerwartet heruntergefahren. Error: (02/18/2016 07:22:31 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TLK8UT9) Description: {0002DF02-0000-0000-C000-000000000046} Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenzugriff_3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Benutzerdatenspeicher _3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Kontaktdaten_3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Synchronisierungshost_3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (02/18/2016 07:22:26 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar CodeIntegrity: =================================== Date: 2016-02-20 07:54:04.133 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltDll64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:54:03.049 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:54:03.044 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:53:02.240 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:51:26.385 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:51:26.381 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:48:37.062 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltDll64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:48:32.760 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:48:32.741 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr\ltc_help64-106568.dll that did not meet the Store signing level requirements. Date: 2016-02-20 07:48:32.508 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz Prozentuale Nutzung des RAM: 18% Installierter physikalischer RAM: 16329.16 MB Verfügbarer physikalischer RAM: 13258.95 MB Summe virtueller Speicher: 19273.16 MB Verfügbarer virtueller Speicher: 15662.52 MB ==================== Laufwerke ================================ |
20.02.2016, 08:14 | #2 |
| Page Fault in nonpaged Area Fehler 2. Frst.txt
__________________Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-02-2016 durchgeführt von chris (Administrator) auf DESKTOP-TLK8UT9 (20-02-2016 08:00:19) Gestartet von C:\Users\chris\Downloads Geladene Profile: chris (Verfügbare Profile: chris) Platform: Windows 10 Home Version 1511 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Edge) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G DATA\AVK\AVKWCtlx64.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe (G Data Software AG) C:\Program Files (x86)\G DATA\AVK\AVKService.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (G Data Software AG) C:\Program Files (x86)\G DATA\AVKBackup\AVKBackupService.exe (Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (G Data Software AG) C:\Program Files (x86)\G DATA\Firewall\GDFwSvcx64.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe (G Data Software AG) C:\Program Files (x86)\G DATA\AVKTray\AVKTray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\GUI\GDSC.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe (SoftPerfect) C:\Program Files\NetWorx\networx.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Curse) C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE (Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\Firewall\GDFirewallTray.exe (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE (Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe (Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe (Razer, Inc.) C:\Users\chris\AppData\Local\Razer\InGameEngine\cache\RzStats.Manager\rzcefrenderprocess.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Razer, Inc.) C:\Users\chris\AppData\Local\Razer\InGameEngine\cache\RzSynapse\rzcefrenderprocess.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SynTPEnh] => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor) HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4867784 2015-12-04] (Advanced Micro Devices, Inc.) HKLM\...\Run: [NetWorx] => C:\Program Files\NetWorx\networx.exe [7938888 2016-02-15] (SoftPerfect) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [594240 2016-01-13] (Razer Inc.) HKLM-x32\...\Run: [Kraken71ChromaHelper] => C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [1600320 2015-08-13] (Razer Inc) HKLM-x32\...\Run: [GDFirewallTray] => C:\Program Files (x86)\G DATA\Firewall\GDFirewallTray.exe [1864312 2015-06-16] (G DATA Software AG) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc) HKLM-x32\...\Run: [KeePass 2 PreLoad] => E:\KeePass Password Safe 2\KeePass.exe [2745544 2016-01-09] (Dominik Reichl) HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,C:\Program Files (x86)\G DATA\AVKTray\AVKTray.exe HKU\S-1-5-21-2370734782-4077430557-1878014498-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23499656 2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk [2016-02-15] ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray.exe (Intel Corporation) Startup: C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2016-02-15] () ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{ac0c74f9-8775-4d77-ad9e-3f130daad1c5}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-02-15] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-02-15] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation) Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-2370734782-4077430557-1878014498-1001 -> hxxp://google.com/ FireFox: ======== FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-02-15] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-16] (Google Inc.) Chrome: ======= CHR Profile: C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-20] CHR Extension: (Google Docs) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-20] CHR Extension: (Google Drive) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-20] CHR Extension: (YouTube) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-20] CHR Extension: (Google-Suche) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-20] CHR Extension: (Google Tabellen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-20] CHR Extension: (Google Docs Offline) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-20] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-20] CHR Extension: (Google Mail) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-20] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2015-12-04] (Advanced Micro Devices) [Datei ist nicht signiert] R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2740344 2015-11-26] (G Data Software AG) R2 AVKService; C:\Program Files (x86)\G DATA\AVK\AVKService.exe [966776 2015-06-16] (G Data Software AG) R2 AVKWCtl; C:\Program Files (x86)\G DATA\AVK\AVKWCtlx64.exe [3842504 2015-09-16] (G Data Software AG) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2777840 2016-01-31] (Microsoft Corporation) R2 GDBackupSvc; C:\Program Files (x86)\G DATA\AVKBackup\AVKBackupService.exe [3894904 2015-09-15] (G Data Software AG) R3 GDFwSvc; C:\Program Files (x86)\G DATA\Firewall\GDFwSvcx64.exe [3203392 2015-09-15] (G Data Software AG) R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [789624 2015-06-16] (G Data Software AG) S3 GDTunerSvc; C:\Program Files (x86)\G DATA\AVKTuner\AVKTunerService.exe [2235512 2015-06-16] (G Data Software AG) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [146984 2012-07-24] () R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [57856 2016-01-11] (Razer Inc.) [Datei ist nicht signiert] R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-05] () R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH) S3 TSNxGService; C:\Program Files (x86)\G DATA\TSNxG\TSNxGService.exe [255608 2014-07-01] (G DATA Software) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 amdacpksd; C:\WINDOWS\system32\drivers\amdacpksd.sys [305392 2016-01-22] (Advanced Micro Devices) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-18] (Advanced Micro Devices) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [158720 2016-02-16] (G Data Software AG) S0 GDElam; C:\Windows\System32\DRIVERS\GDElam.sys [117904 2015-01-08] (G Data Software AG) R3 GDKBB; C:\WINDOWS\system32\drivers\GDKBB64.sys [28672 2016-02-16] (G Data Software AG) R3 GDKBFlt; C:\WINDOWS\system32\drivers\GDKBFlt64.sys [20992 2016-02-16] (G Data Software AG) R1 GDMnIcpt; C:\WINDOWS\system32\drivers\MiniIcpt.sys [231936 2016-02-16] (G Data Software AG) R3 GDPkIcpt; C:\WINDOWS\system32\drivers\PktIcpt.sys [91648 2016-02-16] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [69120 2016-02-15] (G DATA Software AG) R1 HookCentre; C:\WINDOWS\system32\drivers\HookCentre.sys [126464 2016-02-16] (G Data Software AG) S3 huawei_update; C:\Windows\System32\drivers\ew_hwupgrade.sys [22016 2013-03-25] (Huawei Technologies Co., Ltd.) R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [20968 2012-07-24] () R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [19944 2012-07-24] () R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46016 2012-07-24] () S1 networx; C:\Windows\System32\drivers\networx.sys [72120 2016-01-14] (NetFilterSDK.com) S3 NVSWCFilter; C:\Windows\System32\drivers\nvswcfilter.sys [28344 2015-08-24] (Windows (R) Win 7 DDK provider) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek ) S3 rzbtendpt; C:\Windows\System32\drivers\rzbtendpt.sys [51912 2015-08-13] (Razer Inc) S3 rzdaendpt; C:\Windows\System32\drivers\rzdaendpt.sys [43720 2015-08-13] (Razer Inc) R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc) S3 rzhnet; C:\Windows\System32\Drivers\rzhnet.sys [29912 2015-08-13] (Razer Inc) S3 rzjstk; C:\Windows\System32\drivers\rzjstk.sys [36568 2015-08-13] (Razer Inc) S3 rzkeypadendpt; C:\Windows\System32\drivers\rzkeypadendpt.sys [46280 2015-08-13] (Razer Inc) R3 rzmpos; C:\Windows\System32\drivers\rzmpos.sys [48840 2015-08-13] (Razer Inc) S3 rzp1endpt; C:\Windows\System32\drivers\rzp1endpt.sys [52424 2015-08-13] (Razer Inc) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-09-22] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.) S3 rzvkeyboard; C:\Windows\System32\drivers\rzvkeyboard.sys [44232 2015-08-13] (Razer Inc) S3 rzvmouse; C:\Windows\System32\drivers\rzvmouse.sys [42712 2015-08-13] (Razer Inc) R0 TS4NT; C:\Windows\System32\Drivers\TS4nt.sys [100352 2016-02-15] (G DATA Software AG) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2016-02-20] () ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-02-20 08:00 - 2016-02-20 08:00 - 00016588 _____ C:\Users\chris\Downloads\FRST.txt 2016-02-20 07:59 - 2016-02-20 08:00 - 00000000 ____D C:\FRST 2016-02-20 07:59 - 2016-02-20 07:59 - 02371072 _____ (Farbar) C:\Users\chris\Downloads\FRST64.exe 2016-02-20 07:54 - 2016-02-20 07:54 - 00987728 _____ (Google Inc.) C:\Users\chris\Downloads\ChromeSetup.exe 2016-02-20 07:54 - 2016-02-20 07:54 - 00002346 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-02-20 07:54 - 2016-02-20 07:54 - 00002334 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-02-20 07:47 - 2016-02-20 07:47 - 1056886928 _____ C:\WINDOWS\MEMORY.DMP 2016-02-20 07:47 - 2016-02-20 07:47 - 00282124 _____ C:\WINDOWS\Minidump\022016-13406-01.dmp 2016-02-20 07:47 - 2016-02-20 07:47 - 00000000 ____D C:\WINDOWS\Minidump 2016-02-19 16:20 - 2016-02-19 16:20 - 00000000 ___HD C:\OneDriveTemp 2016-02-16 19:25 - 2016-02-16 19:25 - 00001484 _____ C:\Users\chris\Desktop\Netflix.lnk 2016-02-16 15:27 - 2016-02-16 15:27 - 00000000 ____D C:\Users\chris\AppData\Local\CrashDumps 2016-02-16 02:22 - 2016-02-16 02:22 - 00000000 ____D C:\Users\chris\AppData\Local\ElevatedDiagnostics 2016-02-16 02:21 - 2016-02-16 02:21 - 00003410 _____ C:\WINDOWS\System32\Tasks\{FD7202F6-ABE7-4AB3-B438-0FE835152CB4} 2016-02-16 02:21 - 2016-02-16 02:21 - 00000000 ____D C:\AMD 2016-02-16 02:20 - 2016-02-16 02:21 - 329420248 _____ (AMD Inc.) C:\Users\chris\Downloads\non-whql-64bit-radeon-software-crimson-16.1.1-win10-win8.1-win7-feb3.exe 2016-02-16 02:18 - 2016-02-16 02:18 - 00000000 ____D C:\Users\chris\AppData\Local\CEF 2016-02-16 02:16 - 2016-02-16 02:16 - 00004296 _____ C:\WINDOWS\System32\Tasks\AMD Updater 2016-02-16 01:42 - 2016-02-16 01:42 - 00001064 _____ C:\Users\Public\Desktop\World of Warcraft.lnk 2016-02-16 01:42 - 2016-02-16 01:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft 2016-02-16 01:40 - 2016-02-17 18:04 - 00000000 ____D C:\Users\chris\AppData\Local\Battle.net 2016-02-16 01:40 - 2016-02-16 01:41 - 00000000 ____D C:\Users\chris\AppData\Roaming\Battle.net 2016-02-16 01:40 - 2016-02-16 01:40 - 00000811 _____ C:\Users\Public\Desktop\Battle.net.lnk 2016-02-16 01:40 - 2016-02-16 01:40 - 00000000 ____D C:\Users\chris\AppData\Local\Blizzard Entertainment 2016-02-16 01:40 - 2016-02-16 01:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2016-02-16 01:40 - 2016-02-16 01:40 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2016-02-16 01:39 - 2016-02-16 01:39 - 01470472 _____ C:\Users\chris\Downloads\Battle net Software - CHIP-Installer.exe 2016-02-16 01:39 - 2016-02-16 01:39 - 00000000 ____D C:\ProgramData\Battle.net 2016-02-16 01:37 - 2016-02-16 01:37 - 00000000 ____D C:\Users\chris\AppData\Roaming\LolClient 2016-02-16 01:33 - 2016-02-16 01:33 - 00000670 _____ C:\Users\chris\Desktop\KeePass 2.lnk 2016-02-16 01:33 - 2016-02-16 01:33 - 00000670 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2016-02-16 01:32 - 2016-02-16 01:32 - 03062600 _____ (Dominik Reichl ) C:\Users\chris\Downloads\KeePass-2.31-Setup.exe 2016-02-16 01:28 - 2016-02-16 15:31 - 00000000 ____D C:\Users\chris\AppData\Roaming\KeePass 2016-02-16 01:27 - 2016-02-20 07:48 - 00000000 ___RD C:\Users\chris\Google Drive 2016-02-16 01:27 - 2016-02-16 01:27 - 00001784 _____ C:\Users\chris\Desktop\Google Drive.lnk 2016-02-16 01:26 - 2016-02-16 01:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2016-02-16 01:25 - 2016-02-20 07:54 - 00000000 ____D C:\Users\chris\AppData\Local\Google 2016-02-16 01:25 - 2016-02-20 07:54 - 00000000 ____D C:\Program Files (x86)\Google 2016-02-16 01:25 - 2016-02-20 07:47 - 00001136 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-02-16 01:25 - 2016-02-20 07:30 - 00001140 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-02-16 01:25 - 2016-02-16 01:25 - 00987728 _____ (Google Inc.) C:\Users\chris\Downloads\googledrivesync.exe 2016-02-16 01:25 - 2016-02-16 01:25 - 00004198 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2016-02-16 01:25 - 2016-02-16 01:25 - 00003966 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2016-02-16 01:23 - 2016-02-16 01:23 - 00001253 _____ C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CNext.lnk 2016-02-16 01:22 - 2016-02-16 01:22 - 01470472 _____ C:\Users\chris\Downloads\KeePass - CHIP-Installer.exe 2016-02-16 01:19 - 2016-02-16 01:19 - 00001287 _____ C:\Users\Public\Desktop\League of Legends.lnk 2016-02-16 01:19 - 2016-02-16 01:19 - 00000000 ____D C:\ProgramData\Riot Games 2016-02-16 01:19 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll 2016-02-16 01:19 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll 2016-02-16 01:19 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll 2016-02-16 01:19 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll 2016-02-16 01:19 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll 2016-02-16 01:18 - 2016-02-16 01:19 - 00000000 ____D C:\Users\chris\AppData\Roaming\Riot Games 2016-02-16 01:18 - 2016-02-16 01:18 - 30668968 _____ (Riot Games) C:\Users\chris\Downloads\LeagueofLegends_EUW_Installer_9_15_2014.exe 2016-02-16 01:18 - 2016-02-16 01:18 - 00000000 ____D C:\Users\chris\AppData\Local\AMD 2016-02-16 01:18 - 2016-02-16 01:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings 2016-02-16 01:18 - 2016-02-16 01:18 - 00000000 ____D C:\Program Files (x86)\AMD 2016-02-16 01:17 - 2016-02-15 17:55 - 00000000 ____D C:\ProgramData\Package Cache 2016-02-16 01:16 - 2016-02-16 01:16 - 322471624 _____ (AMD Inc.) C:\Users\chris\Downloads\radeon-crimson-15.12-win10-64bit.exe 2016-02-16 01:15 - 2016-02-20 07:48 - 00000000 ____D C:\Users\chris\AppData\Roaming\Raptr 2016-02-16 01:15 - 2016-02-16 01:15 - 00000000 ____D C:\Users\chris\AppData\Roaming\library_dir 2016-02-16 01:15 - 2016-02-16 01:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2016-02-16 01:15 - 2016-02-16 01:15 - 00000000 ____D C:\Program Files (x86)\Raptr 2016-02-16 01:14 - 2016-02-16 01:15 - 00192816 _____ C:\Users\chris\Downloads\raptr_installer.exe 2016-02-16 01:14 - 2016-02-16 01:14 - 00000000 _____ C:\Users\chris\Downloads\autodetectutility (2).exe.sddtuej.partial 2016-02-16 01:13 - 2016-02-16 01:13 - 03579904 _____ C:\Users\chris\Downloads\amd pro control center.msi 2016-02-16 01:12 - 2016-02-16 01:12 - 00000000 ____D C:\Users\chris\AppData\Roaming\Macromedia 2016-02-16 01:09 - 2016-02-16 01:14 - 04952336 _____ (Advanced Micro Devices, Inc.) C:\Users\chris\Downloads\autodetectutility (1).exe 2016-02-16 01:07 - 2016-02-16 01:07 - 04952336 _____ (Advanced Micro Devices, Inc.) C:\Users\chris\Downloads\autodetectutility.exe 2016-02-16 01:06 - 2016-02-16 02:18 - 00000000 ____D C:\Users\chris\AppData\Local\Razer 2016-02-16 01:05 - 2016-02-16 01:05 - 00231936 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\MiniIcpt.sys 2016-02-16 01:05 - 2016-02-16 01:05 - 00158720 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\GDBehave.sys 2016-02-16 01:05 - 2016-02-16 01:05 - 00126464 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\HookCentre.sys 2016-02-16 01:05 - 2016-02-16 01:05 - 00091648 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\PktIcpt.sys 2016-02-16 01:05 - 2016-02-16 01:05 - 00028672 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\GDKBB64.sys 2016-02-16 01:05 - 2016-02-16 01:05 - 00020992 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\GDKBFlt64.sys 2016-02-16 01:05 - 2016-02-16 01:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_GDKBFlt64_01007.Wdf 2016-02-16 01:05 - 2016-02-16 01:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_GDKBB64_01007.Wdf 2016-02-16 01:05 - 2016-02-16 01:05 - 00000000 ____D C:\Users\chris\AppData\Local\Razer_Inc 2016-02-16 01:05 - 2016-02-15 18:04 - 00100352 _____ (G DATA Software AG) C:\WINDOWS\system32\Drivers\TS4nt.sys 2016-02-16 01:05 - 2016-02-15 18:04 - 00069120 _____ (G DATA Software AG) C:\WINDOWS\system32\Drivers\gdwfpcd64.sys 2016-02-16 01:05 - 2016-02-15 18:04 - 00001870 _____ C:\Users\Public\Desktop\G DATA TOTAL PROTECTION.lnk 2016-02-16 01:05 - 2015-12-14 23:24 - 00130880 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpnk.sys 2016-02-16 01:05 - 2015-09-22 23:36 - 00037184 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpmgrk.sys 2016-02-16 01:04 - 2016-02-16 01:04 - 00000000 ____D C:\ProgramData\G DATA Software 2016-02-16 01:04 - 2016-02-16 01:04 - 00000000 ____D C:\Program Files (x86)\G DATA 2016-02-16 01:03 - 2016-02-20 07:52 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-02-16 01:03 - 2016-02-16 01:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2016-02-16 01:03 - 2016-02-16 01:03 - 00000000 ____D C:\Program Files\Razer Chroma SDK 2016-02-16 01:03 - 2016-02-16 01:03 - 00000000 ____D C:\Program Files (x86)\Razer Chroma SDK 2016-02-16 01:03 - 2016-02-15 18:04 - 00000000 ____D C:\ProgramData\G Data 2016-02-16 01:02 - 2016-02-16 01:03 - 268358800 _____ (G Data Software AG) C:\Users\chris\Downloads\INT_R_BASE_TP.exe 2016-02-16 01:01 - 2016-02-20 07:48 - 00000000 ___RD C:\Users\chris\OneDrive 2016-02-16 01:01 - 2016-02-16 01:01 - 00002393 _____ C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-02-16 01:01 - 2016-02-16 01:01 - 00000000 ____D C:\Users\chris\AppData\Local\MicrosoftEdge 2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\Users\chris\AppData\Local\Comms 2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\Users\chris\AppData\Local\ActiveSync 2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\ProgramData\Samsung 2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2016-02-16 00:59 - 2016-02-16 19:25 - 00000000 ____D C:\Users\chris\AppData\Local\Packages 2016-02-16 00:59 - 2016-02-16 14:57 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Roaming\Adobe 2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Local\VirtualStore 2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Local\TileDataLayer 2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Local\Publishers 2016-02-16 00:58 - 2016-02-20 07:47 - 00000000 ____D C:\Users\chris 2016-02-16 00:58 - 2016-02-16 00:58 - 00000020 ___SH C:\Users\chris\ntuser.ini 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Vorlagen 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Startmenü 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Netzwerkumgebung 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Lokale Einstellungen 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Eigene Dateien 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Druckumgebung 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Documents\Eigene Videos 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Documents\Eigene Musik 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Documents\Eigene Bilder 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\AppData\Local\Verlauf 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\AppData\Local\Anwendungsdaten 2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Anwendungsdaten 2016-02-16 00:57 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2016-02-16 00:56 - 2016-02-16 00:56 - 00000000 ____D C:\ProgramData\USOShared 2016-02-16 00:55 - 2016-02-20 07:47 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Vorlagen 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Startmenü 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\All Users 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Programme 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Vorlagen 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Startmenü 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Dokumente 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Dokumente und Einstellungen 2016-02-16 00:54 - 2016-02-16 01:18 - 00000000 ____D C:\Program Files\AMD 2016-02-16 00:54 - 2016-02-16 01:05 - 00000000 ____D C:\ProgramData\Razer 2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 ____D C:\Program Files\Realtek 2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies 2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 _____ C:\WINDOWS\ativpsrm.bin 2016-02-16 00:54 - 2016-02-15 20:23 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin 2016-02-16 00:53 - 2016-02-16 14:57 - 00332288 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-02-16 00:53 - 2016-02-16 00:53 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2016-02-15 20:13 - 2016-02-15 20:13 - 00000000 ____D C:\Users\chris\AppData\Roaming\DataDesign 2016-02-15 20:05 - 2016-02-15 20:05 - 04775664 _____ (Softperfect ) C:\Users\chris\Downloads\networx_setup.exe 2016-02-15 20:05 - 2016-02-15 20:05 - 00000000 ____D C:\ProgramData\SoftPerfect 2016-02-15 20:05 - 2016-02-15 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetWorx 2016-02-15 20:05 - 2016-02-15 20:05 - 00000000 ____D C:\Program Files\NetWorx 2016-02-15 20:05 - 2016-01-14 10:07 - 00072120 _____ (NetFilterSDK.com) C:\WINDOWS\system32\Drivers\networx.sys 2016-02-15 20:03 - 2016-02-15 20:04 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-02-15 20:03 - 2016-02-15 20:03 - 146614896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-02-15 20:02 - 2016-02-15 20:08 - 00000000 ____D C:\Users\chris\Documents\WISO Mein Geld 2016-02-15 20:02 - 2016-02-15 20:02 - 00000113 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc5 2016-02-15 20:00 - 2016-02-15 20:00 - 00000000 ____D C:\Program Files (x86)\StickRoot 2016-02-15 19:38 - 2016-02-15 19:38 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-02-15 19:08 - 2016-02-15 19:09 - 00438272 _____ C:\Users\chris\Documents\Database1.accdb 2016-02-15 18:44 - 2016-02-15 18:44 - 00000000 ____D C:\Users\chris\Documents\League of Legends 2016-02-15 18:43 - 2016-02-15 18:43 - 00002589 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2016-02-15 18:43 - 2016-02-15 18:43 - 00002585 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2016-02-15 18:43 - 2016-02-15 18:43 - 00002564 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2016-02-15 18:43 - 2016-02-15 18:43 - 00002539 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2016-02-15 18:43 - 2016-02-15 18:43 - 00002506 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2016-02-15 18:43 - 2016-02-15 18:43 - 00002503 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2016-02-15 18:43 - 2016-02-15 18:43 - 00002475 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2016-02-15 18:43 - 2016-02-15 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools 2016-02-15 18:41 - 2016-02-16 15:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-02-15 18:41 - 2016-02-15 18:41 - 00000000 ____D C:\Program Files\Microsoft Office 15 2016-02-15 18:37 - 2016-02-15 19:07 - 00000000 ____D C:\Users\chris\Desktop\Microsoft Office 2016-02-15 18:36 - 2016-02-15 18:36 - 03206344 _____ (Microsoft Corporation) C:\Users\chris\Downloads\Setup.X86.de-DE_O365HomePremRetail_3f83f59d-c76c-4144-972d-58a2cf1c154b_TX_DB_.exe 2016-02-15 18:13 - 2016-02-15 18:13 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk 2016-02-15 18:13 - 2016-02-15 18:13 - 00001110 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk 2016-02-15 18:12 - 2016-02-15 18:12 - 09662424 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup_de-jfa (1).exe 2016-02-15 18:11 - 2016-02-15 18:11 - 09509032 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup.exe 2016-02-15 18:10 - 2016-02-15 18:10 - 00000000 ____D C:\Users\Public\temp 2016-02-15 18:10 - 2016-02-15 18:10 - 00000000 ____D C:\Users\chris\AppData\Roaming\TeamViewer 2016-02-15 18:09 - 2016-02-15 18:09 - 09662424 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup_de-jfa.exe 2016-02-15 18:09 - 2016-02-15 18:09 - 01470472 _____ C:\Users\chris\Downloads\TeamViewer - CHIP-Installer.exe 2016-02-15 18:05 - 2016-02-16 14:57 - 00000000 ____D C:\Program Files (x86)\TeamViewer 2016-02-15 18:04 - 2016-02-15 18:04 - 09662424 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup_de.exe 2016-02-15 18:04 - 2016-02-15 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA TOTAL PROTECTION 2016-02-15 17:58 - 2016-02-20 07:47 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp 2016-02-15 17:58 - 2016-02-20 07:47 - 00034752 _____ C:\WINDOWS\system32\Drivers\WPRO_41_2001.sys 2016-02-15 17:58 - 2016-02-15 17:58 - 10157936 _____ C:\Users\chris\Downloads\APP_ISCT_W784_A00_Setup-TY6HH_ZPE.exe 2016-02-15 17:58 - 2016-02-15 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2016-02-15 17:58 - 2016-02-15 17:58 - 00000000 ____D C:\Program Files\Intel 2016-02-15 17:58 - 2016-02-15 17:58 - 00000000 ____D C:\Dell 2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\Users\chris\AppData\Local\Intel 2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility 2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\ProgramData\Intel 2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\Program Files (x86)\Intel Driver Update Utility 2016-02-15 17:54 - 2016-02-15 17:55 - 04985648 _____ (Intel) C:\Users\chris\Downloads\Intel Driver Update Utility Installer.exe 2016-02-15 17:39 - 2016-02-19 16:21 - 00000000 ____D C:\Users\chris\AppData\Roaming\TS3Client 2016-02-15 17:39 - 2016-02-15 17:39 - 00000644 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2016-02-15 17:39 - 2016-02-15 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2016-02-15 17:38 - 2016-02-15 17:38 - 31017664 _____ (TeamSpeak Systems GmbH) C:\Users\chris\Downloads\TeamSpeak3-Client-win64-3.0.18.2.exe 2016-02-15 17:38 - 2016-02-15 17:38 - 31017664 _____ (TeamSpeak Systems GmbH) C:\Users\chris\Downloads\TeamSpeak3-Client-win64-3.0.18.2 (1).exe 2016-02-15 17:35 - 2016-02-15 17:35 - 03330419 _____ C:\Users\chris\Downloads\elvui-8.54.zip 2016-02-15 17:34 - 2016-02-15 17:34 - 00000000 ____D C:\Users\chris\AppData\Roaming\Curse Advertising 2016-02-15 17:33 - 2016-02-20 07:48 - 00000000 ____D C:\Users\chris\AppData\Local\Deployment 2016-02-15 17:33 - 2016-02-15 17:33 - 00402696 _____ () C:\Users\chris\Downloads\setup.exe 2016-02-15 17:33 - 2016-02-15 17:33 - 00000318 _____ C:\Users\chris\Desktop\Curse Client.appref-ms 2016-02-15 17:33 - 2016-02-15 17:33 - 00000000 ____D C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse 2016-02-15 17:33 - 2016-02-15 17:33 - 00000000 ____D C:\Users\chris\AppData\Local\Apps\2.0 2016-02-15 15:52 - 2016-02-16 01:06 - 00000000 ____D C:\Program Files (x86)\Razer 2016-02-15 15:52 - 2016-02-16 00:57 - 00000000 ___DC C:\WINDOWS\Panther 2016-02-15 15:52 - 2016-02-15 15:52 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2016-02-15 15:52 - 2016-02-15 15:52 - 00000000 ____D C:\WINDOWS\Setup 2016-02-15 15:52 - 2016-02-15 15:52 - 00000000 ____D C:\WINDOWS\InfusedApps 2016-02-15 15:51 - 2016-02-20 07:52 - 00775524 _____ C:\WINDOWS\system32\perfh007.dat 2016-02-15 15:51 - 2016-02-20 07:52 - 00155338 _____ C:\WINDOWS\system32\perfc007.dat 2016-02-15 15:51 - 2016-02-15 15:51 - 00305634 _____ C:\WINDOWS\system32\perfi007.dat 2016-02-15 15:51 - 2016-02-15 15:51 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\de 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\0409 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\winrm 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\WCN 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\slmgr 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\de 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\0409 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\OCR 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\DigitalLocker 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Reference Assemblies 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\MSBuild 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-02-15 15:49 - 2016-02-19 20:25 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-02-15 15:49 - 2016-02-19 16:56 - 00000000 ____D C:\WINDOWS\rescache 2016-02-15 15:49 - 2016-02-18 19:16 - 00000000 ___HD C:\Program Files\WindowsApps 2016-02-15 15:49 - 2016-02-16 15:05 - 00000000 ____D C:\WINDOWS\appcompat 2016-02-15 15:49 - 2016-02-16 01:07 - 00000000 ___RD C:\WINDOWS\DevicesFlow 2016-02-15 15:49 - 2016-02-16 00:59 - 00000000 ___RD C:\WINDOWS\PrintDialog 2016-02-15 15:49 - 2016-02-16 00:59 - 00000000 ___RD C:\WINDOWS\MiracastView 2016-02-15 15:49 - 2016-02-16 00:58 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2016-02-15 15:49 - 2016-02-16 00:57 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2016-02-15 15:49 - 2016-02-16 00:56 - 00000000 ____D C:\ProgramData\USOPrivate 2016-02-15 15:49 - 2016-02-16 00:55 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-02-15 15:49 - 2016-02-16 00:55 - 00000000 ____D C:\Program Files\Windows NT 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ___SD C:\WINDOWS\system32\F12 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\Dism 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\Provisioning 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\Program Files\Windows Journal 2016-02-15 15:49 - 2016-02-15 18:46 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-02-15 15:49 - 2016-02-15 18:41 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-02-15 15:49 - 2016-02-15 18:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP 2016-02-15 15:49 - 2016-02-15 15:53 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\system32\dsc 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\setup 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\Com 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\setup 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\MUI 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\migwiz 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\Com 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\IME 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\Help 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Windows Defender 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Common Files\System 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __SHD C:\Program Files\Windows Sidebar 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __RSD C:\WINDOWS\Media 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __RHD C:\Users\Public\Libraries 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\system32\Nui 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\system32\Configuration 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___RD C:\WINDOWS\Offline Web Pages 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___RD C:\WINDOWS\DesktopTileResources 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Web 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Vss 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\tracing 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\TAPI 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\ras 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\IME 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SystemResources 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SystemApps 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\WinMetadata 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\winevt 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\spool 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\ras 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\ProximityToast 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\PointOfService 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\MsDtc 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\Ipmi 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\InputMethod 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\IME 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\icsxml 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\ias 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\downlevel 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\config\Journal 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\Bthprops 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\AppLocker 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\System 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SKB 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\ShellNew 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\security 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\schemas 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SchCache 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Resources 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Registration 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\PLA 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Performance 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\ModemLogs 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\L2Schemas 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\InputMethod 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Globalization 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Cursors 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Branding 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\addins 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\ProgramData\Comms 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files\Windows Portable Devices 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files\Windows Multimedia Platform 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files\Common Files\Services 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files (x86)\Windows NT 2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2016-02-15 15:49 - 2016-02-15 15:48 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2016-02-15 15:49 - 2016-02-15 15:48 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat 2016-02-15 15:49 - 2016-02-15 15:48 - 00215943 _____ C:\WINDOWS\system32\dssec.dat 2016-02-15 15:49 - 2016-02-15 15:48 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2016-02-15 15:49 - 2016-02-15 15:48 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services 2016-02-15 15:49 - 2016-02-15 15:48 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2016-02-15 15:49 - 2016-02-15 15:48 - 00008798 _____ C:\WINDOWS\SysWOW64\icrav03.rat 2016-02-15 15:49 - 2016-02-15 15:48 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat 2016-02-15 15:49 - 2016-02-15 15:48 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam 2016-02-15 15:49 - 2016-02-15 15:48 - 00001988 _____ C:\WINDOWS\SysWOW64\ticrf.rat 2016-02-15 15:49 - 2016-02-15 15:48 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat 2016-02-15 15:49 - 2016-02-15 15:48 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol 2016-02-15 15:49 - 2016-02-15 15:48 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json 2016-02-15 15:49 - 2016-02-15 15:48 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT 2016-02-15 15:49 - 2016-02-15 15:48 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT 2016-02-15 15:49 - 2016-02-15 15:48 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks 2016-02-15 15:49 - 2016-02-15 15:48 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config 2016-02-15 15:49 - 2016-02-15 15:48 - 00000219 _____ C:\WINDOWS\system.ini 2016-02-15 15:49 - 2016-02-15 15:48 - 00000092 _____ C:\WINDOWS\win.ini 2016-02-15 15:49 - 2016-02-03 20:01 - 00828920 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-02-15 15:49 - 2016-02-03 20:01 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-02-15 15:48 - 2016-02-20 07:52 - 00000000 ____D C:\WINDOWS\INF 2016-02-15 15:45 - 2016-02-15 20:04 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-02-15 15:43 - 2016-02-20 06:33 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2016-02-15 15:43 - 2016-02-15 20:23 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2016-02-15 15:43 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\servicing 2016-02-15 15:43 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\SMI 2016-02-15 15:43 - 2015-10-30 07:33 - 00000164 _____ C:\WINDOWS\system32\config\FP 2016-02-12 16:29 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-02-12 16:29 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-02-12 16:29 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2016-02-12 16:29 - 2016-01-27 07:15 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-02-12 16:29 - 2016-01-27 07:01 - 07476064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-02-12 16:29 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2016-02-12 16:29 - 2016-01-27 07:01 - 01819720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-02-12 16:29 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-02-12 16:29 - 2016-01-27 06:57 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-02-12 16:29 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2016-02-12 16:29 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-02-12 16:29 - 2016-01-27 06:56 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-02-12 16:29 - 2016-01-27 06:55 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2016-02-12 16:29 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe 2016-02-12 16:29 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-02-12 16:29 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-02-12 16:29 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-02-12 16:29 - 2016-01-27 06:45 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-02-12 16:29 - 2016-01-27 06:45 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2016-02-12 16:29 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe 2016-02-12 16:29 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-02-12 16:29 - 2016-01-27 06:37 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-02-12 16:29 - 2016-01-27 06:37 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-02-12 16:29 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll 2016-02-12 16:29 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll 2016-02-12 16:29 - 2016-01-27 06:13 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2016-02-12 16:29 - 2016-01-27 06:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2016-02-12 16:29 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll 2016-02-12 16:29 - 2016-01-27 06:10 - 22394368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-02-12 16:29 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll 2016-02-12 16:29 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-02-12 16:29 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll 2016-02-12 16:29 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll 2016-02-12 16:29 - 2016-01-27 06:05 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-02-12 16:29 - 2016-01-27 06:05 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-02-12 16:29 - 2016-01-27 06:05 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-02-12 16:29 - 2016-01-27 06:05 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2016-02-12 16:29 - 2016-01-27 06:04 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-02-12 16:29 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll 2016-02-12 16:29 - 2016-01-27 06:03 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll 2016-02-12 16:29 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll 2016-02-12 16:29 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2016-02-12 16:29 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll 2016-02-12 16:29 - 2016-01-27 05:58 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-02-12 16:29 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-02-12 16:29 - 2016-01-27 05:55 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-02-12 16:29 - 2016-01-27 05:55 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-02-12 16:29 - 2016-01-27 05:54 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-02-12 16:29 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2016-02-12 16:29 - 2016-01-27 05:50 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-02-12 16:29 - 2016-01-27 05:50 - 01504768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-02-12 16:29 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-02-12 16:29 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-02-12 16:29 - 2016-01-27 05:48 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-02-12 16:29 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll 2016-02-12 16:29 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-02-12 16:29 - 2016-01-27 05:41 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-02-12 16:29 - 2016-01-27 05:39 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-02-12 16:29 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-02-12 16:29 - 2016-01-27 05:38 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-02-12 16:29 - 2016-01-27 05:37 - 04894720 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-02-12 16:29 - 2016-01-27 05:36 - 02757120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-02-12 16:29 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-02-12 16:29 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll 2016-02-12 16:28 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-01-31 09:10 - 2016-01-31 09:10 - 00635120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll 2016-01-31 09:10 - 2016-01-31 09:10 - 00390408 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll 2016-01-31 09:10 - 2016-01-31 09:10 - 00333080 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll 2016-01-31 09:10 - 2016-01-31 09:10 - 00088816 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll 2016-01-31 07:17 - 2016-01-31 07:17 - 00439536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll 2016-01-31 07:17 - 2016-01-31 07:17 - 00267016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll 2016-01-31 07:17 - 2016-01-31 07:17 - 00243480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll 2016-01-31 07:17 - 2016-01-31 07:17 - 00085232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll 2016-01-28 18:18 - 2016-01-16 07:23 - 08728920 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-01-28 18:18 - 2016-01-16 07:20 - 06971752 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-01-28 18:18 - 2016-01-16 06:45 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-01-28 18:18 - 2016-01-16 06:35 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-01-28 18:17 - 2016-01-16 07:37 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll 2016-01-28 18:17 - 2016-01-16 07:36 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-01-28 18:17 - 2016-01-16 07:36 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-01-28 18:17 - 2016-01-16 07:34 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-01-28 18:17 - 2016-01-16 07:24 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll 2016-01-28 18:17 - 2016-01-16 07:23 - 00848160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-01-28 18:17 - 2016-01-16 07:23 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll 2016-01-28 18:17 - 2016-01-16 07:23 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-01-28 18:17 - 2016-01-16 07:23 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2016-01-28 18:17 - 2016-01-16 07:23 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2016-01-28 18:17 - 2016-01-16 07:21 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2016-01-28 18:17 - 2016-01-16 07:20 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll 2016-01-28 18:17 - 2016-01-16 07:20 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll 2016-01-28 18:17 - 2016-01-16 07:20 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2016-01-28 18:17 - 2016-01-16 07:19 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-01-28 18:17 - 2016-01-16 07:19 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-01-28 18:17 - 2016-01-16 07:12 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-01-28 18:17 - 2016-01-16 07:09 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-01-28 18:17 - 2016-01-16 07:08 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-01-28 18:17 - 2016-01-16 07:08 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2016-01-28 18:17 - 2016-01-16 06:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys 2016-01-28 18:17 - 2016-01-16 06:44 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-01-28 18:17 - 2016-01-16 06:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll 2016-01-28 18:17 - 2016-01-16 06:44 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll 2016-01-28 18:17 - 2016-01-16 06:43 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll 2016-01-28 18:17 - 2016-01-16 06:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll 2016-01-28 18:17 - 2016-01-16 06:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll 2016-01-28 18:17 - 2016-01-16 06:41 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2016-01-28 18:17 - 2016-01-16 06:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll 2016-01-28 18:17 - 2016-01-16 06:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe 2016-01-28 18:17 - 2016-01-16 06:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe 2016-01-28 18:17 - 2016-01-16 06:39 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll 2016-01-28 18:17 - 2016-01-16 06:38 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-01-28 18:17 - 2016-01-16 06:38 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-01-28 18:17 - 2016-01-16 06:38 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll 2016-01-28 18:17 - 2016-01-16 06:38 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll 2016-01-28 18:17 - 2016-01-16 06:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-01-28 18:17 - 2016-01-16 06:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll 2016-01-28 18:17 - 2016-01-16 06:37 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2016-01-28 18:17 - 2016-01-16 06:37 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll 2016-01-28 18:17 - 2016-01-16 06:36 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2016-01-28 18:17 - 2016-01-16 06:36 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll 2016-01-28 18:17 - 2016-01-16 06:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-01-28 18:17 - 2016-01-16 06:36 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll 2016-01-28 18:17 - 2016-01-16 06:36 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll 2016-01-28 18:17 - 2016-01-16 06:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-01-28 18:17 - 2016-01-16 06:35 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll 2016-01-28 18:17 - 2016-01-16 06:34 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2016-01-28 18:17 - 2016-01-16 06:34 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll 2016-01-28 18:17 - 2016-01-16 06:34 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2016-01-28 18:17 - 2016-01-16 06:34 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-01-28 18:17 - 2016-01-16 06:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll 2016-01-28 18:17 - 2016-01-16 06:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll 2016-01-28 18:17 - 2016-01-16 06:33 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll 2016-01-28 18:17 - 2016-01-16 06:33 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll 2016-01-28 18:17 - 2016-01-16 06:32 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2016-01-28 18:17 - 2016-01-16 06:32 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe 2016-01-28 18:17 - 2016-01-16 06:31 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-01-28 18:17 - 2016-01-16 06:31 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-01-28 18:17 - 2016-01-16 06:31 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll 2016-01-28 18:17 - 2016-01-16 06:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2016-01-28 18:17 - 2016-01-16 06:31 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe 2016-01-28 18:17 - 2016-01-16 06:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-01-28 18:17 - 2016-01-16 06:30 - 01053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-01-28 18:17 - 2016-01-16 06:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-01-28 18:17 - 2016-01-16 06:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll 2016-01-28 18:17 - 2016-01-16 06:30 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll 2016-01-28 18:17 - 2016-01-16 06:29 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe 2016-01-28 18:17 - 2016-01-16 06:29 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll 2016-01-28 18:17 - 2016-01-16 06:28 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2016-01-28 18:17 - 2016-01-16 06:28 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-01-28 18:17 - 2016-01-16 06:28 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll 2016-01-28 18:17 - 2016-01-16 06:28 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll 2016-01-28 18:17 - 2016-01-16 06:27 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-01-28 18:17 - 2016-01-16 06:26 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2016-01-28 18:17 - 2016-01-16 06:26 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll 2016-01-28 18:17 - 2016-01-16 06:26 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll 2016-01-28 18:17 - 2016-01-16 06:26 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2016-01-28 18:17 - 2016-01-16 06:25 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2016-01-28 18:17 - 2016-01-16 06:25 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-01-28 18:17 - 2016-01-16 06:25 - 00235008 _____ C:\WINDOWS\system32\MTF.dll 2016-01-28 18:17 - 2016-01-16 06:24 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2016-01-28 18:17 - 2016-01-16 06:24 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-01-28 18:17 - 2016-01-16 06:24 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll 2016-01-28 18:17 - 2016-01-16 06:24 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2016-01-28 18:17 - 2016-01-16 06:23 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-01-28 18:17 - 2016-01-16 06:23 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-01-28 18:17 - 2016-01-16 06:21 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-01-28 18:17 - 2016-01-16 06:20 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-01-28 18:17 - 2016-01-16 06:20 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-01-28 18:17 - 2016-01-16 06:20 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2016-01-28 18:17 - 2016-01-16 06:20 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll 2016-01-28 18:17 - 2016-01-16 06:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2016-01-28 18:17 - 2016-01-16 06:19 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll 2016-01-28 18:17 - 2016-01-16 06:19 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll 2016-01-28 18:17 - 2016-01-16 06:19 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll 2016-01-28 18:17 - 2016-01-16 06:18 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2016-01-28 18:17 - 2016-01-16 06:17 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2016-01-28 18:17 - 2016-01-16 06:16 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-01-28 18:17 - 2016-01-16 06:16 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2016-01-28 18:17 - 2016-01-16 06:15 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2016-01-28 18:17 - 2016-01-16 06:14 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-01-28 18:17 - 2016-01-16 06:14 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-01-28 18:17 - 2016-01-16 06:11 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2016-01-22 13:05 - 2016-01-22 13:05 - 09158496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2016-01-22 13:05 - 2016-01-22 13:05 - 08168856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2016-01-22 13:05 - 2016-01-22 13:05 - 00143080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2016-01-22 13:04 - 2016-01-22 13:04 - 11011560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2016-01-22 13:04 - 2016-01-22 13:04 - 10919104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2016-01-22 13:04 - 2016-01-22 13:04 - 00130616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2016-01-22 13:04 - 2016-01-22 13:04 - 00112392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2016-01-22 13:04 - 2016-01-22 13:04 - 00088032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2016-01-22 13:04 - 2016-01-22 13:04 - 00081200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 10339016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 08426376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 01249664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 00471352 _____ C:\WINDOWS\system32\amdmiracast.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 00151968 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 00138416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 00128568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 00088032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2016-01-22 13:03 - 2016-01-22 13:03 - 00081192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00243736 _____ C:\WINDOWS\system32\clinfo.exe 2016-01-22 13:02 - 2016-01-22 13:02 - 00232472 _____ C:\WINDOWS\system32\dgtrayicon.exe 2016-01-22 13:02 - 2016-01-22 13:02 - 00203800 _____ C:\WINDOWS\system32\hsa-thunk64.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00183312 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00136216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00122384 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00104976 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00097808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00012816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll 2016-01-22 13:02 - 2016-01-22 13:02 - 00012816 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll 2016-01-22 13:01 - 2016-01-22 13:01 - 31385616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2016-01-22 13:01 - 2016-01-22 13:01 - 25848848 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2016-01-22 13:01 - 2016-01-22 13:01 - 00341528 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe 2016-01-22 13:01 - 2016-01-22 13:01 - 00199696 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2016-01-22 13:01 - 2016-01-22 13:01 - 00097816 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll 2016-01-22 13:01 - 2016-01-22 13:01 - 00089624 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll 2016-01-22 13:01 - 2016-01-22 13:01 - 00059928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe 2016-01-22 13:01 - 2016-01-22 13:01 - 00040472 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 15720464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 14310936 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 00561176 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2016-01-22 13:00 - 2016-01-22 13:00 - 00451088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 00254992 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2016-01-22 13:00 - 2016-01-22 13:00 - 00171024 _____ C:\WINDOWS\system32\atieah64.exe 2016-01-22 13:00 - 2016-01-22 13:00 - 00166416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 00154136 _____ C:\WINDOWS\SysWOW64\atieah32.exe 2016-01-22 13:00 - 2016-01-22 13:00 - 00084504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 00078872 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 00078872 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 00071192 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2016-01-22 13:00 - 2016-01-22 13:00 - 00060944 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2016-01-22 12:59 - 2016-01-22 12:59 - 49992720 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2016-01-22 12:59 - 2016-01-22 12:59 - 27605008 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll 2016-01-22 12:59 - 2016-01-22 12:59 - 01281552 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2016-01-22 12:59 - 2016-01-22 12:59 - 00950288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll 2016-01-22 12:59 - 2016-01-22 12:59 - 00375824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2016-01-22 12:59 - 2016-01-22 12:59 - 00064528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2016-01-22 12:59 - 2016-01-22 12:59 - 00057872 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2016-01-22 12:59 - 2016-01-22 12:59 - 00052248 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 06651928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 05232664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00686608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00571408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00305392 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys 2016-01-22 12:57 - 2016-01-22 12:57 - 00213520 _____ C:\WINDOWS\system32\amdgfxinfo64.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00198672 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00143384 _____ C:\WINDOWS\system32\amdhdl64.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00132120 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00073752 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00068112 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00059408 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll 2016-01-22 12:57 - 2016-01-22 12:57 - 00048144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll 2016-01-22 11:31 - 2016-01-22 11:31 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap 2016-01-22 11:31 - 2016-01-22 11:31 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap 2016-01-22 11:31 - 2016-01-22 11:31 - 00683968 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb 2016-01-22 11:31 - 2016-01-22 11:31 - 00683968 _____ C:\WINDOWS\system32\atiapfxx.blb ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-02-15 15:53 - 2015-12-13 14:21 - 00000000 ___HD C:\$SysReset 2016-01-22 13:05 - 2015-11-24 08:36 - 00162784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2016-01-22 13:04 - 2015-11-24 08:36 - 09105552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2016-01-22 13:04 - 2015-11-24 08:35 - 13313544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2016-01-22 13:03 - 2015-11-24 08:35 - 01519232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2016-01-22 13:03 - 2015-11-24 08:34 - 00120192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll 2016-01-22 13:02 - 2015-11-24 08:33 - 00874008 _____ (AMD) C:\WINDOWS\system32\coinst_15.30.dll 2016-01-22 13:01 - 2015-11-24 08:31 - 00679952 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2016-01-22 13:00 - 2015-11-24 08:31 - 23969808 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2016-01-22 13:00 - 2015-11-24 08:31 - 00151056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2016-01-22 12:59 - 2015-11-24 08:30 - 00950288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2016-01-22 12:58 - 2015-11-24 08:29 - 22357008 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll 2016-01-22 12:58 - 2015-11-24 08:28 - 41519120 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-02-16 01:05 - 2016-02-16 01:05 - 0000000 _____ () C:\Users\chris\AppData\Roaming\gdfw.log 2016-02-16 01:05 - 2016-02-16 01:05 - 0000779 _____ () C:\Users\chris\AppData\Roaming\gdscan.log 2016-02-15 20:02 - 2016-02-15 20:02 - 0000113 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc Einige Dateien in TEMP: ==================== C:\Users\chris\AppData\Local\Temp\0Kraken71ChromaDevProps.dll C:\Users\chris\AppData\Local\Temp\raptrpatch.exe C:\Users\chris\AppData\Local\Temp\unrar.dll ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-02-15 19:22 ==================== Ende von FRST.txt ============================ |
21.02.2016, 14:03 | #3 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Page Fault in nonpaged Area Fehler Das klingt nach Hardware/Treiber Probleme, deswegen verschieb ich mal.
__________________
__________________ |
21.02.2016, 17:17 | #4 |
| Page Fault in nonpaged Area Fehler ok vielen Dank hoffe das mir jemand dabei helfen kann |
21.02.2016, 17:46 | #5 |
/// Malwareteam | Page Fault in nonpaged Area Fehler Bitte lade dir die neuste Version von WhoCrashed auf deinen Computer: WhoCrashed Download
Bitte poste dein Ergebnis zwischen Code-Tags Wenn ein Log zu lange ist, teile ihn bitte auf mehrere Antworten. Code-Tags? Drücke einfach die # in Antwortfenster und füge den Log dazwischen ein
__________________ Mfg, Rafael ~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~ Unterstütze uns mit einer Spende ......... Lob, Kritik oder Wünsche ......... .......... Folge uns auf Facebook .......... |
22.02.2016, 05:24 | #6 |
| Page Fault in nonpaged Area Fehler Hi, Code:
ATTFilter Crash Dump Analysis -------------------------------------------------------------------------------- Crash dump directory: C:\WINDOWS\Minidump Crash dumps are enabled on your computer. No valid crash dumps have been found on your computer Code:
ATTFilter Crash dumps are enabled but no valid crash dumps have been found. In case you are experiencing system crashes, it may be that crash dumps are prevented from being written out. Check out the following article for possible causes: If crash dumps are not written out. Beste Grüße |
23.02.2016, 19:23 | #7 |
/// Helfer-Team | Page Fault in nonpaged Area Fehler Wenn Du die HDD abgeklemmt hast, wirst Du natürlich auch keine Ergebnisse posten können.
__________________ LG Der Felix Keine Hilfe per PN und E-Mail |
Themen zu Page Fault in nonpaged Area Fehler |
anbei, auf einmal, aufsetzten, block, blockt, bluescree, bluescreen, datei, device driver, fehler, fehlermeldung, gdata, gehören, guten, heute, memory.dmp, namens, neu, neu aufsetzten, office 2016, office 365, onedrive, problem, programme, quara, quarantäne, win, windows, windowsapps, woche, wochen |