Zurück   Trojaner-Board > Web/PC > Netzwerk und Hardware

Netzwerk und Hardware: Page Fault in nonpaged Area Fehler

Windows 7 Hilfe zu Motherboards, CPUs, Lüfter, Raid-Controller, Digitalkameras, Treiber usw. Bitte alle relevanten Angaben zur Hardware machen. Welche Hardware habe ich? Themen zum Trojaner Entfernen oder Viren Beseitigung bitte in den Bereinigungsforen des Trojaner-Boards posten.

Antwort
Alt 20.02.2016, 08:12   #1
Tramu
 
Page Fault in nonpaged Area Fehler - Standard

Page Fault in nonpaged Area Fehler



Guten Tag,
ich habe seit einigen Wochen das Problem das mein PC seit dem ich Win 10 drauf gespielt habe, das Problem das ich einen Bluescreen bekomme mit der Fehlermeldung Page fault in nonpaged Area.Auch nach neu aufsetzten des PC'S ist es heute wieder passiert.Als das Problem eben wieder Passierte sah ich das GData nach dem Bluescreen auf einmal 1 Datei in Quarantäne hatte die vorher nicht da war und zwar war das eine Datei namens networx.sys die ja eigentlich von Windows selber kommt liegt es vllt. daran das GData Programme blockt die Zu Windows gehören ? Anbei die FRst Datei und Addition Datei

1. Addition.txt

Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:17-02-2016
durchgeführt von chris (2016-02-20 08:00:48)
Gestartet von C:\Users\chris\Downloads
Windows 10 Home (X64) (2016-02-15 23:58:03)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-2370734782-4077430557-1878014498-500 - Administrator - Disabled)
chris (S-1-5-21-2370734782-4077430557-1878014498-1001 - Administrator - Enabled) => C:\Users\chris
DefaultAccount (S-1-5-21-2370734782-4077430557-1878014498-503 - Limited - Disabled)
Gast (S-1-5-21-2370734782-4077430557-1878014498-501 - Limited - Disabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: G DATA TOTAL PROTECTION (Enabled - Up to date) {545C8713-0744-B079-87F8-349A6D5C8CF0}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: G DATA TOTAL PROTECTION (Enabled - Up to date) {EF3D66F7-217E-BFF7-BD48-0FE816DBC64D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: G*DATA Personal Firewall (Enabled) {6C670636-4D2B-B121-ACA7-9DAF938FCB8B}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

ACP Application (Version: 2015.1204.1152.59 - Advanced Micro Devices, Inc.) Hidden
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Catalyst Control Center Next Localization BR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2015.1204.1216.22046 - Advanced Micro Devices, Inc.) Hidden
Curse Client (HKU\S-1-5-21-2370734782-4077430557-1878014498-1001\...\101a9f93b8f0bb6f) (Version: 5.1.1.844 - Curse)
G DATA TOTAL PROTECTION (HKLM-x32\...\{2A1FF304-D778-49F1-B340-E4BF4CDA2EB0}) (Version: 25.1.0.10 - G DATA Software AG)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.)
Google Drive (HKLM-x32\...\{EF61675D-9BBC-4EC7-B906-F13BE8D3BD20}) (Version: 1.27.1227.2094 - Google, Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Intel(R) Driver Update Utility 2.4 (x32 Version: 2.4.0.7 - Intel) Hidden
Intel(R) Smart Connect Technology 3.0 x64 (HKLM\...\{EE21578E-DE14-46D5-83D7-EA4D347B2F9A}) (Version: 3.0.30.1526 - Intel)
Intel® Driver Update Utility (HKLM-x32\...\{561b5fb5-1d4d-40e8-b3e4-ad52858b217c}) (Version: 2.4.0.7 - Intel)
KeePass Password Safe 2.31 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.31 - Dominik Reichl)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 16.0.6366.2068 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
NetWorx 5.5.2 (HKLM\...\NetWorx_is1) (Version:  - Softperfect)
Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6326.1026 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (Version: 16.0.6326.1026 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6326.1026 - Microsoft Corporation) Hidden
Raptr (HKLM-x32\...\Raptr) (Version:  - )
Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 1.3.0 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.21.28549 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6657 - Realtek Semiconductor Corp.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.14.1 - Synaptics Incorporated)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.53254 - TeamViewer)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-2370734782-4077430557-1878014498-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\chris\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {38C3316D-517D-4300-B2CB-D5832757EAD4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-16] (Google Inc.)
Task: {3DD7ADB1-5D48-49D2-98E1-198E65CAEC87} - System32\Tasks\{FD7202F6-ABE7-4AB3-B438-0FE835152CB4} => pcalua.exe -a C:\Users\chris\Downloads\non-whql-64bit-radeon-software-crimson-16.1.1-win10-win8.1-win7-feb3.exe -d C:\Users\chris\Downloads
Task: {5CAFDCB0-95BF-48D7-8273-AA4F9B648705} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2015-12-04] (Advanced Micro Devices, Inc.)
Task: {77869291-36B6-4702-BEF1-A7468B840C09} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-31] (Microsoft Corporation)
Task: {9636F984-154B-4B11-AA39-67BF5370FEA1} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-02-15] (Microsoft Corporation)
Task: {B65A2B86-2AC2-4464-99ED-DBF02F2CED51} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-02-16] (Google Inc.)
Task: {BB4AD814-4FCD-434F-8C84-B63E7A67463F} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-02-15] (Microsoft Corporation)
Task: {E05A91C0-359E-4FA0-9E7A-06FCBA9F873D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-01-31] (Microsoft Corporation)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-10-30 08:17 - 2015-10-30 08:17 - 00028672 _____ () C:\WINDOWS\SYSTEM32\efsext.dll
2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2011-06-21 07:42 - 2011-06-21 07:42 - 00034304 _____ () C:\WINDOWS\System32\sst3cl6.dll
2012-07-24 10:43 - 2012-07-24 10:43 - 00146984 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
2012-07-24 10:43 - 2012-07-24 10:43 - 00058920 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll
2016-02-15 18:41 - 2016-01-31 05:54 - 00173248 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll
2015-11-05 01:11 - 2015-11-05 01:12 - 00188072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2015-09-22 03:44 - 2015-09-22 03:44 - 00387192 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll
2015-12-13 14:00 - 2015-12-13 14:00 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-12-13 14:00 - 2015-12-13 14:00 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-02-16 01:38 - 2016-02-16 01:38 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-12-18 16:59 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2015-12-18 16:59 - 2015-12-07 05:00 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-01-17 04:24 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-01-17 04:24 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-01-28 18:17 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-01-28 18:17 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-06-25 16:34 - 2015-06-25 16:34 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2015-06-25 16:37 - 2015-06-25 16:37 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-06-25 16:35 - 2015-06-25 16:35 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2015-06-25 16:38 - 2015-06-25 16:38 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2015-06-25 15:53 - 2015-06-25 15:53 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2015-06-25 15:51 - 2015-06-25 15:51 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2016-02-15 20:05 - 2016-01-21 12:32 - 00807936 _____ () C:\Program Files\NetWorx\sqlite.dll
2016-02-15 17:33 - 2016-02-15 17:33 - 00016384 _____ () C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.WowDb.dll
2016-02-15 17:33 - 2016-02-15 17:33 - 00035840 _____ () C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.Advertising.dll
2016-02-15 17:33 - 2016-02-15 17:33 - 00099840 _____ () C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\Curse.CurseClient.CMOD2.dll
2015-12-21 08:55 - 2015-12-21 08:55 - 00292352 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
2016-02-16 01:38 - 2016-02-16 01:38 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-02-16 01:38 - 2016-02-16 01:38 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2016-02-16 01:06 - 2016-02-20 07:48 - 00619840 _____ () C:\Users\chris\AppData\Local\Temp\0Kraken71ChromaDevProps.dll
2016-02-20 07:47 - 2016-02-20 07:47 - 00098816 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32api.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00110080 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pywintypes27.dll
2016-02-20 07:47 - 2016-02-20 07:47 - 00364544 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pythoncom27.dll
2016-02-20 07:47 - 2016-02-20 07:47 - 00320512 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32com.shell.shell.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00776704 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_hashlib.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 01176576 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._core_.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00806400 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._gdi_.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00816128 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._windows_.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 01067008 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._controls_.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00733184 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._misc_.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00682496 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pysqlite2._sqlite.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00088064 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_ctypes.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00119808 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32file.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00108544 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32security.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00007168 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\hashobjs_ext.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00017920 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\thumbnails_ext.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00088064 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\usb_ext.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00167936 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32gui.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00018432 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32event.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00046080 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_socket.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 01208320 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_ssl.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00128512 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_elementtree.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00127488 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\pyexpat.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00013824 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\common.time34.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00036864 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_psutil_windows.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00038912 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32inet.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00525240 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\windows._lib_cacheinvalidation.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00011264 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32crypt.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00077312 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._html2.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00027136 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_multiprocessing.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00020480 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\_yappi.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00035840 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32process.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00686080 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\unicodedata.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00078848 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._animate.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00123392 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\wx._wizard.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00024064 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32pipe.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00010240 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\select.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00025600 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32pdh.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00017408 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32profile.pyd
2016-02-20 07:47 - 2016-02-20 07:47 - 00022528 _____ () C:\Users\chris\AppData\Local\Temp\_MEI64722\win32ts.pyd
2016-01-06 02:11 - 2016-01-06 02:11 - 00137728 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2016-02-16 02:18 - 2015-08-27 22:30 - 40622592 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzSynapse\cef\libcef.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00087040 _____ () C:\Program Files (x86)\Raptr\_ctypes.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00043008 _____ () C:\Program Files (x86)\Raptr\_socket.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00805376 _____ () C:\Program Files (x86)\Raptr\_ssl.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 05812736 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtGui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00067584 _____ () C:\Program Files (x86)\Raptr\sip.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 01662464 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtCore.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00494592 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtNetwork.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00096256 _____ () C:\Program Files (x86)\Raptr\win32api.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00110592 _____ () C:\Program Files (x86)\Raptr\pywintypes26.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00010240 _____ () C:\Program Files (x86)\Raptr\select.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00356864 _____ () C:\Program Files (x86)\Raptr\_hashlib.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00036352 _____ () C:\Program Files (x86)\Raptr\win32process.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00111104 _____ () C:\Program Files (x86)\Raptr\win32file.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00044544 _____ () C:\Program Files (x86)\Raptr\_sqlite3.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 00417501 _____ () C:\Program Files (x86)\Raptr\sqlite3.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00167936 _____ () C:\Program Files (x86)\Raptr\win32gui.pyd
2014-05-14 00:26 - 2014-05-14 00:26 - 00313856 _____ () C:\Program Files (x86)\Raptr\PyQt4.QtWebKit.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00127488 _____ () C:\Program Files (x86)\Raptr\pyexpat.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00009216 _____ () C:\Program Files (x86)\Raptr\winsound.pyd
2015-10-21 21:29 - 2015-10-21 21:29 - 00113171 _____ () C:\Program Files (x86)\Raptr\libvlc.dll
2015-10-21 21:29 - 2015-10-21 21:29 - 02396691 _____ () C:\Program Files (x86)\Raptr\libvlccore.dll
2015-06-27 00:09 - 2015-06-27 00:09 - 00271872 _____ () C:\Program Files (x86)\Raptr\amd_ags.dll
2010-11-22 23:56 - 2010-11-22 23:56 - 00583680 _____ () C:\Program Files (x86)\Raptr\unicodedata.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00354304 _____ () C:\Program Files (x86)\Raptr\pythoncom26.dll
2010-11-22 23:57 - 2010-11-22 23:57 - 00263168 _____ () C:\Program Files (x86)\Raptr\win32com.shell.shell.pyd
2010-11-22 23:56 - 2010-11-22 23:56 - 00324608 _____ () C:\Program Files (x86)\Raptr\PIL._imaging.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00024064 _____ () C:\Program Files (x86)\Raptr\win32pipe.pyd
2010-11-22 23:57 - 2010-11-22 23:57 - 00141312 _____ () C:\Program Files (x86)\Raptr\gobject._gobject.pyd
2014-06-18 01:56 - 2014-06-18 01:56 - 02717595 _____ () C:\Program Files (x86)\Raptr\heliotrope._purple.pyd
2011-02-15 19:17 - 2011-02-15 19:17 - 01213633 _____ () C:\Program Files (x86)\Raptr\libxml2-2.dll
2010-11-23 00:06 - 2010-11-23 00:06 - 00055808 _____ () C:\Program Files (x86)\Raptr\zlib1.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00495680 _____ () C:\Program Files (x86)\Raptr\plugins\libaim.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 01183699 _____ () C:\Program Files (x86)\Raptr\liboscar.dll
2013-05-10 00:52 - 2013-05-10 00:52 - 00483306 _____ () C:\Program Files (x86)\Raptr\plugins\libicq.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00655356 _____ () C:\Program Files (x86)\Raptr\plugins\libirc.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 01306387 _____ () C:\Program Files (x86)\Raptr\plugins\libmsn.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00565461 _____ () C:\Program Files (x86)\Raptr\plugins\libxmpp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01640221 _____ () C:\Program Files (x86)\Raptr\libjabber.dll
2013-05-03 19:56 - 2013-05-03 19:56 - 00506276 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoo.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 01053730 _____ () C:\Program Files (x86)\Raptr\libymsg.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00497782 _____ () C:\Program Files (x86)\Raptr\plugins\libyahoojp.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00603326 _____ () C:\Program Files (x86)\Raptr\plugins\ssl-nss.dll
2013-05-03 19:57 - 2013-05-03 19:57 - 00474199 _____ () C:\Program Files (x86)\Raptr\plugins\ssl.dll
2016-02-16 02:18 - 2015-10-06 20:26 - 50656768 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll
2016-02-16 02:18 - 2015-10-06 20:26 - 01874944 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll
2016-02-16 02:18 - 2015-10-06 20:26 - 00075264 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll
2016-02-16 02:18 - 2015-08-27 22:30 - 00911360 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzSynapse\cef\libglesv2.dll
2016-02-16 02:18 - 2015-08-27 22:30 - 00134144 _____ () C:\Users\chris\AppData\Local\razer\InGameEngine\cache\RzSynapse\cef\libegl.dll
2016-02-20 07:54 - 2016-02-18 05:14 - 01630360 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libglesv2.dll
2016-02-20 07:54 - 2016-02-18 05:14 - 00085656 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.116\libegl.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\ProgramData:BDSDRMHK
AlternateDataStreams: C:\Users\All Users:BDSDRMHK
AlternateDataStreams: C:\ProgramData\Anwendungsdaten:BDSDRMHK

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2016-02-15 15:49 - 2016-02-15 15:48 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-2370734782-4077430557-1878014498-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{8AE09F47-3333-41E0-A4AD-1AD6858FFEF6}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{EF60FFE3-BCF7-4742-9B97-293F5F9CE8A2}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe
FirewallRules: [{8CD96F7F-39FB-404E-9307-9422C0622694}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{85584C0F-B909-4398-A8CE-46B7B913AE82}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe
FirewallRules: [{92388A22-5A39-4410-8E94-5FBF870F5624}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{2FD66C54-DFD1-4A8C-853D-3C31869B94FA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{C18B0A77-A4C2-4A98-9D3C-34E52110B465}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{1BFF87D5-8C4C-4C00-9528-CAFE43AB72F3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{DF92C370-D4A9-4DC4-9E74-86EEA525BF9D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{47481625-CE33-4D8A-8CB7-976D11797701}] => (Allow) C:\Program Files\NetWorx\networx.exe
FirewallRules: [{208D087F-6830-47AC-889A-E7BEDB1BECFA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Wiederherstellungspunkte =========================

ACHTUNG: Systemwiederherstellung ist deaktiviert

==================== Fehlerhafte Geräte im Gerätemanager =============


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (02/20/2016 07:47:40 AM) (Source: ISCTAgent) (EventID: 1000) (User: )
Description: netDetect::AOACNetDetect::Initialize   Net Detect:  Error Loading PROSet Library Error=0x2\n

Error: (02/20/2016 12:58:26 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Subscription licensing service failed: -1073418220

Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: WmiApRplC:\WINDOWS\system32\wbem\wmiaprpl.dll8

Error: (02/19/2016 05:21:02 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description: 

Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: MSDTCC:\WINDOWS\system32\msdtcuiu.DLL8

Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: LsaC:\Windows\System32\Secur32.dll8

Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: ESENTC:\WINDOWS\system32\esentprf.dll8

Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: .NETFrameworkC:\WINDOWS\system32\mscoree.dll8

Error: (02/19/2016 05:21:02 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: WmiApRplC:\WINDOWS\system32\wbem\wmiaprpl.dll8

Error: (02/19/2016 05:21:02 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description: 


Systemfehler:
=============
Error: (02/20/2016 07:47:38 AM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x00000050 (0xffffa60500000000, 0x0000000000000000, 0xffffd00022f954c1, 0x0000000000000002)C:\WINDOWS\MEMORY.DMP9efd11b4-752a-4473-a0ca-fdfb85a855ac

Error: (02/20/2016 07:47:29 AM) (Source: disk) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR2.

Error: (02/20/2016 07:47:27 AM) (Source: disk) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR2.

Error: (02/20/2016 07:47:36 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎20.‎02.‎2016 um 07:30:19 unerwartet heruntergefahren.

Error: (02/18/2016 07:22:31 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TLK8UT9)
Description: {0002DF02-0000-0000-C000-000000000046}

Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenzugriff_3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Benutzerdatenspeicher _3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Kontaktdaten_3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/18/2016 07:22:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_3161582" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (02/18/2016 07:22:26 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar


CodeIntegrity:
===================================
  Date: 2016-02-20 07:54:04.133
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltDll64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:54:03.049
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:54:03.044
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:53:02.240
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:51:26.385
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:51:26.381
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:48:37.062
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltDll64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:48:32.760
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:48:32.741
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr\ltc_help64-106568.dll that did not meet the Store signing level requirements.

  Date: 2016-02-20 07:48:32.508
  Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Common Files\G Data\AVKProxy\ExploitProtection64.dll that did not meet the Store signing level requirements.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz
Prozentuale Nutzung des RAM: 18%
Installierter physikalischer RAM: 16329.16 MB
Verfügbarer physikalischer RAM: 13258.95 MB
Summe virtueller Speicher: 19273.16 MB
Verfügbarer virtueller Speicher: 15662.52 MB

==================== Laufwerke ================================
         

Alt 20.02.2016, 08:14   #2
Tramu
 
Page Fault in nonpaged Area Fehler - Standard

Page Fault in nonpaged Area Fehler



2. Frst.txt

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:17-02-2016
durchgeführt von chris (Administrator) auf DESKTOP-TLK8UT9 (20-02-2016 08:00:19)
Gestartet von C:\Users\chris\Downloads
Geladene Profile: chris (Verfügbare Profile: chris)
Platform: Windows 10 Home Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Edge)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\AVK\AVKWCtlx64.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices) C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\AVK\AVKService.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\AVKBackup\AVKBackupService.exe
(Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\Firewall\GDFwSvcx64.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKBap64.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\AVKTray\AVKTray.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
(G DATA Software AG) C:\Program Files (x86)\G DATA\GUI\GDSC.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe
(SoftPerfect) C:\Program Files\NetWorx\networx.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Curse) C:\Users\chris\AppData\Local\Apps\2.0\NJ04WE2A.RVO\YJZQYVCY.VJZ\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE
(Razer Inc) C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe
(G DATA Software AG) C:\Program Files (x86)\G DATA\Firewall\GDFirewallTray.exe
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE
(Raptr, Inc) C:\Program Files (x86)\Raptr\raptr_im.exe
() C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
(Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe
(Razer, Inc.) C:\Users\chris\AppData\Local\Razer\InGameEngine\cache\RzStats.Manager\rzcefrenderprocess.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Razer, Inc.) C:\Users\chris\AppData\Local\Razer\InGameEngine\cache\RzSynapse\rzcefrenderprocess.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SynTPEnh] => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4867784 2015-12-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [NetWorx] => C:\Program Files\NetWorx\networx.exe [7938888 2016-02-15] (SoftPerfect)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [594240 2016-01-13] (Razer Inc.)
HKLM-x32\...\Run: [Kraken71ChromaHelper] => C:\Program Files (x86)\Razer\Razer_Kraken71Chroma_Driver\Drivers\SysAudio\Kraken71ChromaHelper.exe [1600320 2015-08-13] (Razer Inc)
HKLM-x32\...\Run: [GDFirewallTray] => C:\Program Files (x86)\G DATA\Firewall\GDFirewallTray.exe [1864312 2015-06-16] (G DATA Software AG)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-11] (Raptr, Inc)
HKLM-x32\...\Run: [KeePass 2 PreLoad] => E:\KeePass Password Safe 2\KeePass.exe [2745544 2016-01-09] (Dominik Reichl)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\system32\userinit.exe,C:\Program Files (x86)\G DATA\AVKTray\AVKTray.exe
HKU\S-1-5-21-2370734782-4077430557-1878014498-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23499656 2016-01-15] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
ShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk [2016-02-15]
ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray.exe (Intel Corporation)
Startup: C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2016-02-15] ()

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{ac0c74f9-8775-4d77-ad9e-3f130daad1c5}: [DhcpNameServer] 192.168.178.1

Internet Explorer:
==================
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-02-15] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-02-15] (Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-02-15] (Microsoft Corporation)

Edge: 
======
Edge HomeButtonPage: HKU\S-1-5-21-2370734782-4077430557-1878014498-1001 -> hxxp://google.com/

FireFox:
========
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-02-15] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-16] (Google Inc.)

Chrome: 
=======
CHR Profile: C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-02-20]
CHR Extension: (Google Docs) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-02-20]
CHR Extension: (Google Drive) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-02-20]
CHR Extension: (YouTube) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-02-20]
CHR Extension: (Google-Suche) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2016-02-20]
CHR Extension: (Google Tabellen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-02-20]
CHR Extension: (Google Docs Offline) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-02-20]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-02-20]
CHR Extension: (Google Mail) - C:\Users\chris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-02-20]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2015-12-04] (Advanced Micro Devices) [Datei ist nicht signiert]
R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2740344 2015-11-26] (G Data Software AG)
R2 AVKService; C:\Program Files (x86)\G DATA\AVK\AVKService.exe [966776 2015-06-16] (G Data Software AG)
R2 AVKWCtl; C:\Program Files (x86)\G DATA\AVK\AVKWCtlx64.exe [3842504 2015-09-16] (G Data Software AG)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2777840 2016-01-31] (Microsoft Corporation)
R2 GDBackupSvc; C:\Program Files (x86)\G DATA\AVKBackup\AVKBackupService.exe [3894904 2015-09-15] (G Data Software AG)
R3 GDFwSvc; C:\Program Files (x86)\G DATA\Firewall\GDFwSvcx64.exe [3203392 2015-09-15] (G Data Software AG)
R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [789624 2015-06-16] (G Data Software AG)
S3 GDTunerSvc; C:\Program Files (x86)\G DATA\AVKTuner\AVKTunerService.exe [2235512 2015-06-16] (G Data Software AG)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [146984 2012-07-24] ()
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [57856 2016-01-11] (Razer Inc.) [Datei ist nicht signiert]
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-05] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
S3 TSNxGService; C:\Program Files (x86)\G DATA\TSNxG\TSNxGService.exe [255608 2014-07-01] (G DATA Software)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 amdacpksd; C:\WINDOWS\system32\drivers\amdacpksd.sys [305392 2016-01-22] (Advanced Micro Devices)
S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [40720 2015-07-28] (Advanced Micro Devices, Inc.)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [102912 2015-09-18] (Advanced Micro Devices)
R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [158720 2016-02-16] (G Data Software AG)
S0 GDElam; C:\Windows\System32\DRIVERS\GDElam.sys [117904 2015-01-08] (G Data Software AG)
R3 GDKBB; C:\WINDOWS\system32\drivers\GDKBB64.sys [28672 2016-02-16] (G Data Software AG)
R3 GDKBFlt; C:\WINDOWS\system32\drivers\GDKBFlt64.sys [20992 2016-02-16] (G Data Software AG)
R1 GDMnIcpt; C:\WINDOWS\system32\drivers\MiniIcpt.sys [231936 2016-02-16] (G Data Software AG)
R3 GDPkIcpt; C:\WINDOWS\system32\drivers\PktIcpt.sys [91648 2016-02-16] (G Data Software AG)
R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [69120 2016-02-15] (G DATA Software AG)
R1 HookCentre; C:\WINDOWS\system32\drivers\HookCentre.sys [126464 2016-02-16] (G Data Software AG)
S3 huawei_update; C:\Windows\System32\drivers\ew_hwupgrade.sys [22016 2013-03-25] (Huawei Technologies Co., Ltd.)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [20968 2012-07-24] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [19944 2012-07-24] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46016 2012-07-24] ()
S1 networx; C:\Windows\System32\drivers\networx.sys [72120 2016-01-14] (NetFilterSDK.com)
S3 NVSWCFilter; C:\Windows\System32\drivers\nvswcfilter.sys [28344 2015-08-24] (Windows (R) Win 7 DDK provider)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek                                            )
S3 rzbtendpt; C:\Windows\System32\drivers\rzbtendpt.sys [51912 2015-08-13] (Razer Inc)
S3 rzdaendpt; C:\Windows\System32\drivers\rzdaendpt.sys [43720 2015-08-13] (Razer Inc)
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
S3 rzhnet; C:\Windows\System32\Drivers\rzhnet.sys [29912 2015-08-13] (Razer Inc)
S3 rzjstk; C:\Windows\System32\drivers\rzjstk.sys [36568 2015-08-13] (Razer Inc)
S3 rzkeypadendpt; C:\Windows\System32\drivers\rzkeypadendpt.sys [46280 2015-08-13] (Razer Inc)
R3 rzmpos; C:\Windows\System32\drivers\rzmpos.sys [48840 2015-08-13] (Razer Inc)
S3 rzp1endpt; C:\Windows\System32\drivers\rzp1endpt.sys [52424 2015-08-13] (Razer Inc)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-09-22] (Razer, Inc.)
R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.)
S3 rzvkeyboard; C:\Windows\System32\drivers\rzvkeyboard.sys [44232 2015-08-13] (Razer Inc)
S3 rzvmouse; C:\Windows\System32\drivers\rzvmouse.sys [42712 2015-08-13] (Razer Inc)
R0 TS4NT; C:\Windows\System32\Drivers\TS4nt.sys [100352 2016-02-15] (G DATA Software AG)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2016-02-20] ()

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-02-20 08:00 - 2016-02-20 08:00 - 00016588 _____ C:\Users\chris\Downloads\FRST.txt
2016-02-20 07:59 - 2016-02-20 08:00 - 00000000 ____D C:\FRST
2016-02-20 07:59 - 2016-02-20 07:59 - 02371072 _____ (Farbar) C:\Users\chris\Downloads\FRST64.exe
2016-02-20 07:54 - 2016-02-20 07:54 - 00987728 _____ (Google Inc.) C:\Users\chris\Downloads\ChromeSetup.exe
2016-02-20 07:54 - 2016-02-20 07:54 - 00002346 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-02-20 07:54 - 2016-02-20 07:54 - 00002334 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-02-20 07:47 - 2016-02-20 07:47 - 1056886928 _____ C:\WINDOWS\MEMORY.DMP
2016-02-20 07:47 - 2016-02-20 07:47 - 00282124 _____ C:\WINDOWS\Minidump\022016-13406-01.dmp
2016-02-20 07:47 - 2016-02-20 07:47 - 00000000 ____D C:\WINDOWS\Minidump
2016-02-19 16:20 - 2016-02-19 16:20 - 00000000 ___HD C:\OneDriveTemp
2016-02-16 19:25 - 2016-02-16 19:25 - 00001484 _____ C:\Users\chris\Desktop\Netflix.lnk
2016-02-16 15:27 - 2016-02-16 15:27 - 00000000 ____D C:\Users\chris\AppData\Local\CrashDumps
2016-02-16 02:22 - 2016-02-16 02:22 - 00000000 ____D C:\Users\chris\AppData\Local\ElevatedDiagnostics
2016-02-16 02:21 - 2016-02-16 02:21 - 00003410 _____ C:\WINDOWS\System32\Tasks\{FD7202F6-ABE7-4AB3-B438-0FE835152CB4}
2016-02-16 02:21 - 2016-02-16 02:21 - 00000000 ____D C:\AMD
2016-02-16 02:20 - 2016-02-16 02:21 - 329420248 _____ (AMD Inc.) C:\Users\chris\Downloads\non-whql-64bit-radeon-software-crimson-16.1.1-win10-win8.1-win7-feb3.exe
2016-02-16 02:18 - 2016-02-16 02:18 - 00000000 ____D C:\Users\chris\AppData\Local\CEF
2016-02-16 02:16 - 2016-02-16 02:16 - 00004296 _____ C:\WINDOWS\System32\Tasks\AMD Updater
2016-02-16 01:42 - 2016-02-16 01:42 - 00001064 _____ C:\Users\Public\Desktop\World of Warcraft.lnk
2016-02-16 01:42 - 2016-02-16 01:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft
2016-02-16 01:40 - 2016-02-17 18:04 - 00000000 ____D C:\Users\chris\AppData\Local\Battle.net
2016-02-16 01:40 - 2016-02-16 01:41 - 00000000 ____D C:\Users\chris\AppData\Roaming\Battle.net
2016-02-16 01:40 - 2016-02-16 01:40 - 00000811 _____ C:\Users\Public\Desktop\Battle.net.lnk
2016-02-16 01:40 - 2016-02-16 01:40 - 00000000 ____D C:\Users\chris\AppData\Local\Blizzard Entertainment
2016-02-16 01:40 - 2016-02-16 01:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2016-02-16 01:40 - 2016-02-16 01:40 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2016-02-16 01:39 - 2016-02-16 01:39 - 01470472 _____ C:\Users\chris\Downloads\Battle net Software - CHIP-Installer.exe
2016-02-16 01:39 - 2016-02-16 01:39 - 00000000 ____D C:\ProgramData\Battle.net
2016-02-16 01:37 - 2016-02-16 01:37 - 00000000 ____D C:\Users\chris\AppData\Roaming\LolClient
2016-02-16 01:33 - 2016-02-16 01:33 - 00000670 _____ C:\Users\chris\Desktop\KeePass 2.lnk
2016-02-16 01:33 - 2016-02-16 01:33 - 00000670 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk
2016-02-16 01:32 - 2016-02-16 01:32 - 03062600 _____ (Dominik Reichl ) C:\Users\chris\Downloads\KeePass-2.31-Setup.exe
2016-02-16 01:28 - 2016-02-16 15:31 - 00000000 ____D C:\Users\chris\AppData\Roaming\KeePass
2016-02-16 01:27 - 2016-02-20 07:48 - 00000000 ___RD C:\Users\chris\Google Drive
2016-02-16 01:27 - 2016-02-16 01:27 - 00001784 _____ C:\Users\chris\Desktop\Google Drive.lnk
2016-02-16 01:26 - 2016-02-16 01:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2016-02-16 01:25 - 2016-02-20 07:54 - 00000000 ____D C:\Users\chris\AppData\Local\Google
2016-02-16 01:25 - 2016-02-20 07:54 - 00000000 ____D C:\Program Files (x86)\Google
2016-02-16 01:25 - 2016-02-20 07:47 - 00001136 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-02-16 01:25 - 2016-02-20 07:30 - 00001140 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-02-16 01:25 - 2016-02-16 01:25 - 00987728 _____ (Google Inc.) C:\Users\chris\Downloads\googledrivesync.exe
2016-02-16 01:25 - 2016-02-16 01:25 - 00004198 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-02-16 01:25 - 2016-02-16 01:25 - 00003966 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-02-16 01:23 - 2016-02-16 01:23 - 00001253 _____ C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CNext.lnk
2016-02-16 01:22 - 2016-02-16 01:22 - 01470472 _____ C:\Users\chris\Downloads\KeePass - CHIP-Installer.exe
2016-02-16 01:19 - 2016-02-16 01:19 - 00001287 _____ C:\Users\Public\Desktop\League of Legends.lnk
2016-02-16 01:19 - 2016-02-16 01:19 - 00000000 ____D C:\ProgramData\Riot Games
2016-02-16 01:19 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_1.dll
2016-02-16 01:19 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_2.dll
2016-02-16 01:19 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_39.dll
2016-02-16 01:19 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_39.dll
2016-02-16 01:19 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_39.dll
2016-02-16 01:18 - 2016-02-16 01:19 - 00000000 ____D C:\Users\chris\AppData\Roaming\Riot Games
2016-02-16 01:18 - 2016-02-16 01:18 - 30668968 _____ (Riot Games) C:\Users\chris\Downloads\LeagueofLegends_EUW_Installer_9_15_2014.exe
2016-02-16 01:18 - 2016-02-16 01:18 - 00000000 ____D C:\Users\chris\AppData\Local\AMD
2016-02-16 01:18 - 2016-02-16 01:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-02-16 01:18 - 2016-02-16 01:18 - 00000000 ____D C:\Program Files (x86)\AMD
2016-02-16 01:17 - 2016-02-15 17:55 - 00000000 ____D C:\ProgramData\Package Cache
2016-02-16 01:16 - 2016-02-16 01:16 - 322471624 _____ (AMD Inc.) C:\Users\chris\Downloads\radeon-crimson-15.12-win10-64bit.exe
2016-02-16 01:15 - 2016-02-20 07:48 - 00000000 ____D C:\Users\chris\AppData\Roaming\Raptr
2016-02-16 01:15 - 2016-02-16 01:15 - 00000000 ____D C:\Users\chris\AppData\Roaming\library_dir
2016-02-16 01:15 - 2016-02-16 01:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2016-02-16 01:15 - 2016-02-16 01:15 - 00000000 ____D C:\Program Files (x86)\Raptr
2016-02-16 01:14 - 2016-02-16 01:15 - 00192816 _____ C:\Users\chris\Downloads\raptr_installer.exe
2016-02-16 01:14 - 2016-02-16 01:14 - 00000000 _____ C:\Users\chris\Downloads\autodetectutility (2).exe.sddtuej.partial
2016-02-16 01:13 - 2016-02-16 01:13 - 03579904 _____ C:\Users\chris\Downloads\amd pro control center.msi
2016-02-16 01:12 - 2016-02-16 01:12 - 00000000 ____D C:\Users\chris\AppData\Roaming\Macromedia
2016-02-16 01:09 - 2016-02-16 01:14 - 04952336 _____ (Advanced Micro Devices, Inc.) C:\Users\chris\Downloads\autodetectutility (1).exe
2016-02-16 01:07 - 2016-02-16 01:07 - 04952336 _____ (Advanced Micro Devices, Inc.) C:\Users\chris\Downloads\autodetectutility.exe
2016-02-16 01:06 - 2016-02-16 02:18 - 00000000 ____D C:\Users\chris\AppData\Local\Razer
2016-02-16 01:05 - 2016-02-16 01:05 - 00231936 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\MiniIcpt.sys
2016-02-16 01:05 - 2016-02-16 01:05 - 00158720 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\GDBehave.sys
2016-02-16 01:05 - 2016-02-16 01:05 - 00126464 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\HookCentre.sys
2016-02-16 01:05 - 2016-02-16 01:05 - 00091648 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\PktIcpt.sys
2016-02-16 01:05 - 2016-02-16 01:05 - 00028672 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\GDKBB64.sys
2016-02-16 01:05 - 2016-02-16 01:05 - 00020992 _____ (G Data Software AG) C:\WINDOWS\system32\Drivers\GDKBFlt64.sys
2016-02-16 01:05 - 2016-02-16 01:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_GDKBFlt64_01007.Wdf
2016-02-16 01:05 - 2016-02-16 01:05 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_GDKBB64_01007.Wdf
2016-02-16 01:05 - 2016-02-16 01:05 - 00000000 ____D C:\Users\chris\AppData\Local\Razer_Inc
2016-02-16 01:05 - 2016-02-15 18:04 - 00100352 _____ (G DATA Software AG) C:\WINDOWS\system32\Drivers\TS4nt.sys
2016-02-16 01:05 - 2016-02-15 18:04 - 00069120 _____ (G DATA Software AG) C:\WINDOWS\system32\Drivers\gdwfpcd64.sys
2016-02-16 01:05 - 2016-02-15 18:04 - 00001870 _____ C:\Users\Public\Desktop\G DATA TOTAL PROTECTION.lnk
2016-02-16 01:05 - 2015-12-14 23:24 - 00130880 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpnk.sys
2016-02-16 01:05 - 2015-09-22 23:36 - 00037184 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpmgrk.sys
2016-02-16 01:04 - 2016-02-16 01:04 - 00000000 ____D C:\ProgramData\G DATA Software
2016-02-16 01:04 - 2016-02-16 01:04 - 00000000 ____D C:\Program Files (x86)\G DATA
2016-02-16 01:03 - 2016-02-20 07:52 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-02-16 01:03 - 2016-02-16 01:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2016-02-16 01:03 - 2016-02-16 01:03 - 00000000 ____D C:\Program Files\Razer Chroma SDK
2016-02-16 01:03 - 2016-02-16 01:03 - 00000000 ____D C:\Program Files (x86)\Razer Chroma SDK
2016-02-16 01:03 - 2016-02-15 18:04 - 00000000 ____D C:\ProgramData\G Data
2016-02-16 01:02 - 2016-02-16 01:03 - 268358800 _____ (G Data Software AG) C:\Users\chris\Downloads\INT_R_BASE_TP.exe
2016-02-16 01:01 - 2016-02-20 07:48 - 00000000 ___RD C:\Users\chris\OneDrive
2016-02-16 01:01 - 2016-02-16 01:01 - 00002393 _____ C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-02-16 01:01 - 2016-02-16 01:01 - 00000000 ____D C:\Users\chris\AppData\Local\MicrosoftEdge
2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\Users\chris\AppData\Local\Comms
2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\Users\chris\AppData\Local\ActiveSync
2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\ProgramData\Samsung
2016-02-16 01:00 - 2016-02-16 01:00 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-02-16 00:59 - 2016-02-16 19:25 - 00000000 ____D C:\Users\chris\AppData\Local\Packages
2016-02-16 00:59 - 2016-02-16 14:57 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Roaming\Adobe
2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Local\VirtualStore
2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Local\TileDataLayer
2016-02-16 00:59 - 2016-02-16 00:59 - 00000000 ____D C:\Users\chris\AppData\Local\Publishers
2016-02-16 00:58 - 2016-02-20 07:47 - 00000000 ____D C:\Users\chris
2016-02-16 00:58 - 2016-02-16 00:58 - 00000020 ___SH C:\Users\chris\ntuser.ini
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Vorlagen
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Startmenü
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Netzwerkumgebung
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Lokale Einstellungen
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Eigene Dateien
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Druckumgebung
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Documents\Eigene Videos
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Documents\Eigene Musik
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Documents\Eigene Bilder
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\AppData\Local\Verlauf
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\AppData\Local\Anwendungsdaten
2016-02-16 00:58 - 2016-02-16 00:58 - 00000000 _SHDL C:\Users\chris\Anwendungsdaten
2016-02-16 00:57 - 2015-10-30 08:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-02-16 00:56 - 2016-02-16 00:56 - 00000000 ____D C:\ProgramData\USOShared
2016-02-16 00:55 - 2016-02-20 07:47 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Videos
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Vorlagen
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Startmenü
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Videos
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Videos
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\Default User
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Users\All Users
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Programme
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Vorlagen
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Startmenü
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Dokumente
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2016-02-16 00:55 - 2016-02-16 00:55 - 00000000 _SHDL C:\Dokumente und Einstellungen
2016-02-16 00:54 - 2016-02-16 01:18 - 00000000 ____D C:\Program Files\AMD
2016-02-16 00:54 - 2016-02-16 01:05 - 00000000 ____D C:\ProgramData\Razer
2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 ____D C:\Program Files\Realtek
2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-02-16 00:54 - 2016-02-16 00:54 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2016-02-16 00:54 - 2016-02-15 20:23 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin
2016-02-16 00:53 - 2016-02-16 14:57 - 00332288 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-02-16 00:53 - 2016-02-16 00:53 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-02-15 20:13 - 2016-02-15 20:13 - 00000000 ____D C:\Users\chris\AppData\Roaming\DataDesign
2016-02-15 20:05 - 2016-02-15 20:05 - 04775664 _____ (Softperfect ) C:\Users\chris\Downloads\networx_setup.exe
2016-02-15 20:05 - 2016-02-15 20:05 - 00000000 ____D C:\ProgramData\SoftPerfect
2016-02-15 20:05 - 2016-02-15 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetWorx
2016-02-15 20:05 - 2016-02-15 20:05 - 00000000 ____D C:\Program Files\NetWorx
2016-02-15 20:05 - 2016-01-14 10:07 - 00072120 _____ (NetFilterSDK.com) C:\WINDOWS\system32\Drivers\networx.sys
2016-02-15 20:03 - 2016-02-15 20:04 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-02-15 20:03 - 2016-02-15 20:03 - 146614896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-02-15 20:02 - 2016-02-15 20:08 - 00000000 ____D C:\Users\chris\Documents\WISO Mein Geld
2016-02-15 20:02 - 2016-02-15 20:02 - 00000113 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc5
2016-02-15 20:00 - 2016-02-15 20:00 - 00000000 ____D C:\Program Files (x86)\StickRoot
2016-02-15 19:38 - 2016-02-15 19:38 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-02-15 19:08 - 2016-02-15 19:09 - 00438272 _____ C:\Users\chris\Documents\Database1.accdb
2016-02-15 18:44 - 2016-02-15 18:44 - 00000000 ____D C:\Users\chris\Documents\League of Legends
2016-02-15 18:43 - 2016-02-15 18:43 - 00002589 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk
2016-02-15 18:43 - 2016-02-15 18:43 - 00002585 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk
2016-02-15 18:43 - 2016-02-15 18:43 - 00002564 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk
2016-02-15 18:43 - 2016-02-15 18:43 - 00002539 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk
2016-02-15 18:43 - 2016-02-15 18:43 - 00002506 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk
2016-02-15 18:43 - 2016-02-15 18:43 - 00002503 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2016-02-15 18:43 - 2016-02-15 18:43 - 00002475 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk
2016-02-15 18:43 - 2016-02-15 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016-Tools
2016-02-15 18:41 - 2016-02-16 15:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-02-15 18:41 - 2016-02-15 18:41 - 00000000 ____D C:\Program Files\Microsoft Office 15
2016-02-15 18:37 - 2016-02-15 19:07 - 00000000 ____D C:\Users\chris\Desktop\Microsoft Office
2016-02-15 18:36 - 2016-02-15 18:36 - 03206344 _____ (Microsoft Corporation) C:\Users\chris\Downloads\Setup.X86.de-DE_O365HomePremRetail_3f83f59d-c76c-4144-972d-58a2cf1c154b_TX_DB_.exe
2016-02-15 18:13 - 2016-02-15 18:13 - 00001122 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-02-15 18:13 - 2016-02-15 18:13 - 00001110 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-02-15 18:12 - 2016-02-15 18:12 - 09662424 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup_de-jfa (1).exe
2016-02-15 18:11 - 2016-02-15 18:11 - 09509032 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup.exe
2016-02-15 18:10 - 2016-02-15 18:10 - 00000000 ____D C:\Users\Public\temp
2016-02-15 18:10 - 2016-02-15 18:10 - 00000000 ____D C:\Users\chris\AppData\Roaming\TeamViewer
2016-02-15 18:09 - 2016-02-15 18:09 - 09662424 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup_de-jfa.exe
2016-02-15 18:09 - 2016-02-15 18:09 - 01470472 _____ C:\Users\chris\Downloads\TeamViewer - CHIP-Installer.exe
2016-02-15 18:05 - 2016-02-16 14:57 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-02-15 18:04 - 2016-02-15 18:04 - 09662424 _____ (TeamViewer GmbH) C:\Users\chris\Downloads\TeamViewer_Setup_de.exe
2016-02-15 18:04 - 2016-02-15 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA TOTAL PROTECTION
2016-02-15 17:58 - 2016-02-20 07:47 - 00094656 _____ (CACE Technologies) C:\WINDOWS\system32\WPRO_41_2001woem.tmp
2016-02-15 17:58 - 2016-02-20 07:47 - 00034752 _____ C:\WINDOWS\system32\Drivers\WPRO_41_2001.sys
2016-02-15 17:58 - 2016-02-15 17:58 - 10157936 _____ C:\Users\chris\Downloads\APP_ISCT_W784_A00_Setup-TY6HH_ZPE.exe
2016-02-15 17:58 - 2016-02-15 17:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-02-15 17:58 - 2016-02-15 17:58 - 00000000 ____D C:\Program Files\Intel
2016-02-15 17:58 - 2016-02-15 17:58 - 00000000 ____D C:\Dell
2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\Users\chris\AppData\Local\Intel
2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility
2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\ProgramData\Intel
2016-02-15 17:55 - 2016-02-15 17:55 - 00000000 ____D C:\Program Files (x86)\Intel Driver Update Utility
2016-02-15 17:54 - 2016-02-15 17:55 - 04985648 _____ (Intel) C:\Users\chris\Downloads\Intel Driver Update Utility Installer.exe
2016-02-15 17:39 - 2016-02-19 16:21 - 00000000 ____D C:\Users\chris\AppData\Roaming\TS3Client
2016-02-15 17:39 - 2016-02-15 17:39 - 00000644 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2016-02-15 17:39 - 2016-02-15 17:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2016-02-15 17:38 - 2016-02-15 17:38 - 31017664 _____ (TeamSpeak Systems GmbH) C:\Users\chris\Downloads\TeamSpeak3-Client-win64-3.0.18.2.exe
2016-02-15 17:38 - 2016-02-15 17:38 - 31017664 _____ (TeamSpeak Systems GmbH) C:\Users\chris\Downloads\TeamSpeak3-Client-win64-3.0.18.2 (1).exe
2016-02-15 17:35 - 2016-02-15 17:35 - 03330419 _____ C:\Users\chris\Downloads\elvui-8.54.zip
2016-02-15 17:34 - 2016-02-15 17:34 - 00000000 ____D C:\Users\chris\AppData\Roaming\Curse Advertising
2016-02-15 17:33 - 2016-02-20 07:48 - 00000000 ____D C:\Users\chris\AppData\Local\Deployment
2016-02-15 17:33 - 2016-02-15 17:33 - 00402696 _____ () C:\Users\chris\Downloads\setup.exe
2016-02-15 17:33 - 2016-02-15 17:33 - 00000318 _____ C:\Users\chris\Desktop\Curse Client.appref-ms
2016-02-15 17:33 - 2016-02-15 17:33 - 00000000 ____D C:\Users\chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse
2016-02-15 17:33 - 2016-02-15 17:33 - 00000000 ____D C:\Users\chris\AppData\Local\Apps\2.0
2016-02-15 15:52 - 2016-02-16 01:06 - 00000000 ____D C:\Program Files (x86)\Razer
2016-02-15 15:52 - 2016-02-16 00:57 - 00000000 ___DC C:\WINDOWS\Panther
2016-02-15 15:52 - 2016-02-15 15:52 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-02-15 15:52 - 2016-02-15 15:52 - 00000000 ____D C:\WINDOWS\Setup
2016-02-15 15:52 - 2016-02-15 15:52 - 00000000 ____D C:\WINDOWS\InfusedApps
2016-02-15 15:51 - 2016-02-20 07:52 - 00775524 _____ C:\WINDOWS\system32\perfh007.dat
2016-02-15 15:51 - 2016-02-20 07:52 - 00155338 _____ C:\WINDOWS\system32\perfc007.dat
2016-02-15 15:51 - 2016-02-15 15:51 - 00305634 _____ C:\WINDOWS\system32\perfi007.dat
2016-02-15 15:51 - 2016-02-15 15:51 - 00040390 _____ C:\WINDOWS\system32\perfd007.dat
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\de
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\0409
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\de
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\0409
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\OCR
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\MSBuild
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-02-15 15:51 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-02-15 15:49 - 2016-02-19 20:25 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-02-15 15:49 - 2016-02-19 16:56 - 00000000 ____D C:\WINDOWS\rescache
2016-02-15 15:49 - 2016-02-18 19:16 - 00000000 ___HD C:\Program Files\WindowsApps
2016-02-15 15:49 - 2016-02-16 15:05 - 00000000 ____D C:\WINDOWS\appcompat
2016-02-15 15:49 - 2016-02-16 01:07 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-02-15 15:49 - 2016-02-16 00:59 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-02-15 15:49 - 2016-02-16 00:59 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-02-15 15:49 - 2016-02-16 00:58 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-02-15 15:49 - 2016-02-16 00:57 - 00000000 ____D C:\WINDOWS\system32\FxsTmp
2016-02-15 15:49 - 2016-02-16 00:56 - 00000000 ____D C:\ProgramData\USOPrivate
2016-02-15 15:49 - 2016-02-16 00:55 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-02-15 15:49 - 2016-02-16 00:55 - 00000000 ____D C:\Program Files\Windows NT
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\Provisioning
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-02-15 15:49 - 2016-02-15 20:22 - 00000000 ____D C:\Program Files\Windows Journal
2016-02-15 15:49 - 2016-02-15 18:46 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-02-15 15:49 - 2016-02-15 18:41 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-02-15 15:49 - 2016-02-15 18:04 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-02-15 15:49 - 2016-02-15 15:53 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\system32\dsc
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\SysWOW64\Com
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\setup
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\migwiz
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\system32\Com
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\IME
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\Help
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Windows Defender
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files\Common Files\System
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-02-15 15:49 - 2016-02-15 15:51 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __SHD C:\Program Files\Windows Sidebar
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __RSD C:\WINDOWS\Media
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 __RHD C:\Users\Public\Libraries
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\SysWOW64\Nui
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\system32\Nui
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\system32\Configuration
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___SD C:\WINDOWS\Downloaded Program Files
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ___RD C:\WINDOWS\DesktopTileResources
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Web
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Vss
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\tracing
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\TAPI
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\ras
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\NDF
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\MsDtc
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\icsxml
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SystemResources
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SystemApps
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\WinMetadata
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\winevt
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\spool
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\ras
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\ProximityToast
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\PointOfService
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\MsDtc
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\Ipmi
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\IME
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\icsxml
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\ias
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\GroupPolicyUsers
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\downlevel
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\config\Journal
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\Bthprops
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\AppLocker
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\System
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SKB
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\ShellNew
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\security
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\schemas
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\SchCache
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Resources
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Registration
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\PLA
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Performance
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\ModemLogs
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\L2Schemas
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\InputMethod
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Globalization
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Cursors
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\Branding
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\addins
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\ProgramData\Comms
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files\Common Files\Services
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files (x86)\Windows NT
2016-02-15 15:49 - 2016-02-15 15:49 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-02-15 15:49 - 2016-02-15 15:48 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2016-02-15 15:49 - 2016-02-15 15:48 - 00215943 _____ C:\WINDOWS\SysWOW64\dssec.dat
2016-02-15 15:49 - 2016-02-15 15:48 - 00215943 _____ C:\WINDOWS\system32\dssec.dat
2016-02-15 15:49 - 2016-02-15 15:48 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2016-02-15 15:49 - 2016-02-15 15:48 - 00017463 _____ C:\WINDOWS\system32\Drivers\etc\services
2016-02-15 15:49 - 2016-02-15 15:48 - 00015462 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-02-15 15:49 - 2016-02-15 15:48 - 00008798 _____ C:\WINDOWS\SysWOW64\icrav03.rat
2016-02-15 15:49 - 2016-02-15 15:48 - 00008798 _____ C:\WINDOWS\system32\icrav03.rat
2016-02-15 15:49 - 2016-02-15 15:48 - 00003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam
2016-02-15 15:49 - 2016-02-15 15:48 - 00001988 _____ C:\WINDOWS\SysWOW64\ticrf.rat
2016-02-15 15:49 - 2016-02-15 15:48 - 00001988 _____ C:\WINDOWS\system32\ticrf.rat
2016-02-15 15:49 - 2016-02-15 15:48 - 00001358 _____ C:\WINDOWS\system32\Drivers\etc\protocol
2016-02-15 15:49 - 2016-02-15 15:48 - 00000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2016-02-15 15:49 - 2016-02-15 15:48 - 00000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT
2016-02-15 15:49 - 2016-02-15 15:48 - 00000741 _____ C:\WINDOWS\system32\NOISE.DAT
2016-02-15 15:49 - 2016-02-15 15:48 - 00000407 _____ C:\WINDOWS\system32\Drivers\etc\networks
2016-02-15 15:49 - 2016-02-15 15:48 - 00000389 _____ C:\WINDOWS\system32\AutoWorkplace.exe.config
2016-02-15 15:49 - 2016-02-15 15:48 - 00000219 _____ C:\WINDOWS\system.ini
2016-02-15 15:49 - 2016-02-15 15:48 - 00000092 _____ C:\WINDOWS\win.ini
2016-02-15 15:49 - 2016-02-03 20:01 - 00828920 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-02-15 15:49 - 2016-02-03 20:01 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-02-15 15:48 - 2016-02-20 07:52 - 00000000 ____D C:\WINDOWS\INF
2016-02-15 15:45 - 2016-02-15 20:04 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-02-15 15:43 - 2016-02-20 06:33 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-02-15 15:43 - 2016-02-15 20:23 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-02-15 15:43 - 2016-02-15 15:51 - 00000000 ____D C:\WINDOWS\servicing
2016-02-15 15:43 - 2016-02-15 15:49 - 00000000 ____D C:\WINDOWS\system32\SMI
2016-02-15 15:43 - 2015-10-30 07:33 - 00000164 _____ C:\WINDOWS\system32\config\FP
2016-02-12 16:29 - 2016-01-29 07:57 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-02-12 16:29 - 2016-01-29 07:33 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-02-12 16:29 - 2016-01-27 07:15 - 01557776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-02-12 16:29 - 2016-01-27 07:15 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-02-12 16:29 - 2016-01-27 07:01 - 07476064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-02-12 16:29 - 2016-01-27 07:01 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-02-12 16:29 - 2016-01-27 07:01 - 01819720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-02-12 16:29 - 2016-01-27 06:59 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-02-12 16:29 - 2016-01-27 06:57 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-02-12 16:29 - 2016-01-27 06:57 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-02-12 16:29 - 2016-01-27 06:57 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-02-12 16:29 - 2016-01-27 06:56 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-02-12 16:29 - 2016-01-27 06:55 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-02-12 16:29 - 2016-01-27 06:55 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-02-12 16:29 - 2016-01-27 06:54 - 00295264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-02-12 16:29 - 2016-01-27 06:46 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-02-12 16:29 - 2016-01-27 06:46 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-02-12 16:29 - 2016-01-27 06:45 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-02-12 16:29 - 2016-01-27 06:45 - 06605544 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-02-12 16:29 - 2016-01-27 06:44 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-02-12 16:29 - 2016-01-27 06:43 - 00359776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-02-12 16:29 - 2016-01-27 06:37 - 01998176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-02-12 16:29 - 2016-01-27 06:37 - 00576352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-02-12 16:29 - 2016-01-27 06:21 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-02-12 16:29 - 2016-01-27 06:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-02-12 16:29 - 2016-01-27 06:13 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-02-12 16:29 - 2016-01-27 06:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-02-12 16:29 - 2016-01-27 06:11 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-02-12 16:29 - 2016-01-27 06:10 - 22394368 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-02-12 16:29 - 2016-01-27 06:10 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-02-12 16:29 - 2016-01-27 06:08 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-02-12 16:29 - 2016-01-27 06:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-02-12 16:29 - 2016-01-27 06:07 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-02-12 16:29 - 2016-01-27 06:05 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-02-12 16:29 - 2016-01-27 06:05 - 18678272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-02-12 16:29 - 2016-01-27 06:05 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-02-12 16:29 - 2016-01-27 06:05 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-02-12 16:29 - 2016-01-27 06:04 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-02-12 16:29 - 2016-01-27 06:04 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-02-12 16:29 - 2016-01-27 06:03 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-02-12 16:29 - 2016-01-27 06:02 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-02-12 16:29 - 2016-01-27 06:01 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-02-12 16:29 - 2016-01-27 05:59 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-02-12 16:29 - 2016-01-27 05:58 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-02-12 16:29 - 2016-01-27 05:57 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-02-12 16:29 - 2016-01-27 05:55 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-02-12 16:29 - 2016-01-27 05:55 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-02-12 16:29 - 2016-01-27 05:54 - 24603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-02-12 16:29 - 2016-01-27 05:52 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-02-12 16:29 - 2016-01-27 05:50 - 02230784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-02-12 16:29 - 2016-01-27 05:50 - 01504768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-02-12 16:29 - 2016-01-27 05:50 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-02-12 16:29 - 2016-01-27 05:49 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-02-12 16:29 - 2016-01-27 05:48 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-02-12 16:29 - 2016-01-27 05:44 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-02-12 16:29 - 2016-01-27 05:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-02-12 16:29 - 2016-01-27 05:41 - 03592704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-02-12 16:29 - 2016-01-27 05:39 - 02275328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-02-12 16:29 - 2016-01-27 05:38 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-02-12 16:29 - 2016-01-27 05:38 - 01734656 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-02-12 16:29 - 2016-01-27 05:37 - 04894720 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-02-12 16:29 - 2016-01-27 05:36 - 02757120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-02-12 16:29 - 2016-01-27 05:32 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-02-12 16:29 - 2016-01-27 05:31 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-02-12 16:28 - 2016-01-27 06:44 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-01-31 09:10 - 2016-01-31 09:10 - 00635120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140.dll
2016-01-31 09:10 - 2016-01-31 09:10 - 00390408 _____ (Microsoft Corporation) C:\WINDOWS\system32\vccorlib140.dll
2016-01-31 09:10 - 2016-01-31 09:10 - 00333080 _____ (Microsoft Corporation) C:\WINDOWS\system32\concrt140.dll
2016-01-31 09:10 - 2016-01-31 09:10 - 00088816 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140.dll
2016-01-31 07:17 - 2016-01-31 07:17 - 00439536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140.dll
2016-01-31 07:17 - 2016-01-31 07:17 - 00267016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vccorlib140.dll
2016-01-31 07:17 - 2016-01-31 07:17 - 00243480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\concrt140.dll
2016-01-31 07:17 - 2016-01-31 07:17 - 00085232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140.dll
2016-01-28 18:18 - 2016-01-16 07:23 - 08728920 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-01-28 18:18 - 2016-01-16 07:20 - 06971752 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-01-28 18:18 - 2016-01-16 06:45 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-01-28 18:18 - 2016-01-16 06:35 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-01-28 18:17 - 2016-01-16 07:37 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-01-28 18:17 - 2016-01-16 07:36 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-01-28 18:17 - 2016-01-16 07:36 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-01-28 18:17 - 2016-01-16 07:34 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-01-28 18:17 - 2016-01-16 07:24 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-01-28 18:17 - 2016-01-16 07:23 - 00848160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-01-28 18:17 - 2016-01-16 07:23 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-01-28 18:17 - 2016-01-16 07:23 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-01-28 18:17 - 2016-01-16 07:23 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-01-28 18:17 - 2016-01-16 07:23 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-01-28 18:17 - 2016-01-16 07:21 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-01-28 18:17 - 2016-01-16 07:20 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-01-28 18:17 - 2016-01-16 07:20 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-01-28 18:17 - 2016-01-16 07:20 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-01-28 18:17 - 2016-01-16 07:19 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-01-28 18:17 - 2016-01-16 07:19 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-01-28 18:17 - 2016-01-16 07:12 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-01-28 18:17 - 2016-01-16 07:09 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-01-28 18:17 - 2016-01-16 07:08 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-01-28 18:17 - 2016-01-16 07:08 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-01-28 18:17 - 2016-01-16 06:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-01-28 18:17 - 2016-01-16 06:44 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-01-28 18:17 - 2016-01-16 06:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-01-28 18:17 - 2016-01-16 06:44 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-01-28 18:17 - 2016-01-16 06:43 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-01-28 18:17 - 2016-01-16 06:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-01-28 18:17 - 2016-01-16 06:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-01-28 18:17 - 2016-01-16 06:41 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-01-28 18:17 - 2016-01-16 06:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-01-28 18:17 - 2016-01-16 06:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-01-28 18:17 - 2016-01-16 06:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-01-28 18:17 - 2016-01-16 06:39 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-01-28 18:17 - 2016-01-16 06:38 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-01-28 18:17 - 2016-01-16 06:38 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-01-28 18:17 - 2016-01-16 06:38 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-01-28 18:17 - 2016-01-16 06:38 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-01-28 18:17 - 2016-01-16 06:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-01-28 18:17 - 2016-01-16 06:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-01-28 18:17 - 2016-01-16 06:37 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-01-28 18:17 - 2016-01-16 06:37 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-01-28 18:17 - 2016-01-16 06:36 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-01-28 18:17 - 2016-01-16 06:36 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-01-28 18:17 - 2016-01-16 06:36 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-01-28 18:17 - 2016-01-16 06:36 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-01-28 18:17 - 2016-01-16 06:36 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-01-28 18:17 - 2016-01-16 06:35 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-01-28 18:17 - 2016-01-16 06:35 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-01-28 18:17 - 2016-01-16 06:34 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-01-28 18:17 - 2016-01-16 06:34 - 00590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-01-28 18:17 - 2016-01-16 06:34 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-01-28 18:17 - 2016-01-16 06:34 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-01-28 18:17 - 2016-01-16 06:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-01-28 18:17 - 2016-01-16 06:33 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-01-28 18:17 - 2016-01-16 06:33 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-01-28 18:17 - 2016-01-16 06:33 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-01-28 18:17 - 2016-01-16 06:32 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-01-28 18:17 - 2016-01-16 06:32 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-01-28 18:17 - 2016-01-16 06:31 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-01-28 18:17 - 2016-01-16 06:31 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-01-28 18:17 - 2016-01-16 06:31 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-01-28 18:17 - 2016-01-16 06:31 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-01-28 18:17 - 2016-01-16 06:31 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-01-28 18:17 - 2016-01-16 06:30 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-01-28 18:17 - 2016-01-16 06:30 - 01053696 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-01-28 18:17 - 2016-01-16 06:30 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-01-28 18:17 - 2016-01-16 06:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-01-28 18:17 - 2016-01-16 06:30 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-01-28 18:17 - 2016-01-16 06:29 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-01-28 18:17 - 2016-01-16 06:29 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-01-28 18:17 - 2016-01-16 06:28 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-01-28 18:17 - 2016-01-16 06:28 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-01-28 18:17 - 2016-01-16 06:28 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-01-28 18:17 - 2016-01-16 06:28 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-01-28 18:17 - 2016-01-16 06:27 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-01-28 18:17 - 2016-01-16 06:26 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-01-28 18:17 - 2016-01-16 06:26 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-01-28 18:17 - 2016-01-16 06:26 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll
2016-01-28 18:17 - 2016-01-16 06:26 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-01-28 18:17 - 2016-01-16 06:25 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-01-28 18:17 - 2016-01-16 06:25 - 00457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-01-28 18:17 - 2016-01-16 06:25 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-01-28 18:17 - 2016-01-16 06:24 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-01-28 18:17 - 2016-01-16 06:24 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-01-28 18:17 - 2016-01-16 06:24 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-01-28 18:17 - 2016-01-16 06:24 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-01-28 18:17 - 2016-01-16 06:23 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-01-28 18:17 - 2016-01-16 06:23 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-01-28 18:17 - 2016-01-16 06:21 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-01-28 18:17 - 2016-01-16 06:20 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-01-28 18:17 - 2016-01-16 06:20 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-01-28 18:17 - 2016-01-16 06:20 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-01-28 18:17 - 2016-01-16 06:20 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-01-28 18:17 - 2016-01-16 06:19 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-01-28 18:17 - 2016-01-16 06:19 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-01-28 18:17 - 2016-01-16 06:19 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-01-28 18:17 - 2016-01-16 06:19 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-01-28 18:17 - 2016-01-16 06:18 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-01-28 18:17 - 2016-01-16 06:17 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-01-28 18:17 - 2016-01-16 06:16 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-01-28 18:17 - 2016-01-16 06:16 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-01-28 18:17 - 2016-01-16 06:15 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-01-28 18:17 - 2016-01-16 06:14 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-01-28 18:17 - 2016-01-16 06:14 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-01-28 18:17 - 2016-01-16 06:11 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-01-22 13:05 - 2016-01-22 13:05 - 09158496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-01-22 13:05 - 2016-01-22 13:05 - 08168856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-01-22 13:05 - 2016-01-22 13:05 - 00143080 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-01-22 13:04 - 2016-01-22 13:04 - 11011560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-01-22 13:04 - 2016-01-22 13:04 - 10919104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-01-22 13:04 - 2016-01-22 13:04 - 00130616 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-01-22 13:04 - 2016-01-22 13:04 - 00112392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-01-22 13:04 - 2016-01-22 13:04 - 00088032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-01-22 13:04 - 2016-01-22 13:04 - 00081200 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 10339016 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 08426376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 01249664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 00471352 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 00151968 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 00138416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 00128568 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 00088032 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-01-22 13:03 - 2016-01-22 13:03 - 00081192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00243736 _____ C:\WINDOWS\system32\clinfo.exe
2016-01-22 13:02 - 2016-01-22 13:02 - 00232472 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-01-22 13:02 - 2016-01-22 13:02 - 00203800 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00183312 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00136216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00122384 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00104976 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00097808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00012816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\detoured.dll
2016-01-22 13:02 - 2016-01-22 13:02 - 00012816 _____ (Microsoft Corporation) C:\WINDOWS\system32\detoured.dll
2016-01-22 13:01 - 2016-01-22 13:01 - 31385616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-01-22 13:01 - 2016-01-22 13:01 - 25848848 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-01-22 13:01 - 2016-01-22 13:01 - 00341528 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe
2016-01-22 13:01 - 2016-01-22 13:01 - 00199696 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-01-22 13:01 - 2016-01-22 13:01 - 00097816 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-01-22 13:01 - 2016-01-22 13:01 - 00089624 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-01-22 13:01 - 2016-01-22 13:01 - 00059928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe
2016-01-22 13:01 - 2016-01-22 13:01 - 00040472 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 15720464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 14310936 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 00561176 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-01-22 13:00 - 2016-01-22 13:00 - 00451088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 00254992 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-01-22 13:00 - 2016-01-22 13:00 - 00171024 _____ C:\WINDOWS\system32\atieah64.exe
2016-01-22 13:00 - 2016-01-22 13:00 - 00166416 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 00154136 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-01-22 13:00 - 2016-01-22 13:00 - 00084504 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 00078872 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 00078872 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 00071192 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-01-22 13:00 - 2016-01-22 13:00 - 00060944 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-01-22 12:59 - 2016-01-22 12:59 - 49992720 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-01-22 12:59 - 2016-01-22 12:59 - 27605008 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-01-22 12:59 - 2016-01-22 12:59 - 01281552 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-01-22 12:59 - 2016-01-22 12:59 - 00950288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-01-22 12:59 - 2016-01-22 12:59 - 00375824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-01-22 12:59 - 2016-01-22 12:59 - 00064528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-01-22 12:59 - 2016-01-22 12:59 - 00057872 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-01-22 12:59 - 2016-01-22 12:59 - 00052248 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 06651928 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 05232664 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00686608 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00571408 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00305392 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-01-22 12:57 - 2016-01-22 12:57 - 00213520 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00198672 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00143384 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00132120 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00073752 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00068112 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00059408 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-01-22 12:57 - 2016-01-22 12:57 - 00048144 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-01-22 11:31 - 2016-01-22 11:31 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-01-22 11:31 - 2016-01-22 11:31 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-01-22 11:31 - 2016-01-22 11:31 - 00683968 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-01-22 11:31 - 2016-01-22 11:31 - 00683968 _____ C:\WINDOWS\system32\atiapfxx.blb

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-02-15 15:53 - 2015-12-13 14:21 - 00000000 ___HD C:\$SysReset
2016-01-22 13:05 - 2015-11-24 08:36 - 00162784 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-01-22 13:04 - 2015-11-24 08:36 - 09105552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-01-22 13:04 - 2015-11-24 08:35 - 13313544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-01-22 13:03 - 2015-11-24 08:35 - 01519232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-01-22 13:03 - 2015-11-24 08:34 - 00120192 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-01-22 13:02 - 2015-11-24 08:33 - 00874008 _____ (AMD) C:\WINDOWS\system32\coinst_15.30.dll
2016-01-22 13:01 - 2015-11-24 08:31 - 00679952 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-01-22 13:00 - 2015-11-24 08:31 - 23969808 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-01-22 13:00 - 2015-11-24 08:31 - 00151056 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-01-22 12:59 - 2015-11-24 08:30 - 00950288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-01-22 12:58 - 2015-11-24 08:29 - 22357008 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-01-22 12:58 - 2015-11-24 08:28 - 41519120 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2016-02-16 01:05 - 2016-02-16 01:05 - 0000000 _____ () C:\Users\chris\AppData\Roaming\gdfw.log
2016-02-16 01:05 - 2016-02-16 01:05 - 0000779 _____ () C:\Users\chris\AppData\Roaming\gdscan.log
2016-02-15 20:02 - 2016-02-15 20:02 - 0000113 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc

Einige Dateien in TEMP:
====================
C:\Users\chris\AppData\Local\Temp\0Kraken71ChromaDevProps.dll
C:\Users\chris\AppData\Local\Temp\raptrpatch.exe
C:\Users\chris\AppData\Local\Temp\unrar.dll


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-02-15 19:22

==================== Ende von FRST.txt ============================
         
__________________


Alt 21.02.2016, 14:03   #3
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Page Fault in nonpaged Area Fehler - Standard

Page Fault in nonpaged Area Fehler



Das klingt nach Hardware/Treiber Probleme, deswegen verschieb ich mal.
__________________
__________________

Alt 21.02.2016, 17:17   #4
Tramu
 
Page Fault in nonpaged Area Fehler - Standard

Page Fault in nonpaged Area Fehler



ok vielen Dank hoffe das mir jemand dabei helfen kann

Alt 21.02.2016, 17:46   #5
burningice
/// Malwareteam
 
Page Fault in nonpaged Area Fehler - Standard

Page Fault in nonpaged Area Fehler



Bitte lade dir die neuste Version von WhoCrashed auf deinen Computer: WhoCrashed Download
  • Installiere es
  • Starte es als Administrator
  • Klicke oben links auf den Button "Analyze"
  • Scrolle herunter, die Bereiche Crash Dump Analysis und Conclusion bitte ins Forum kopieren

Bitte poste dein Ergebnis zwischen Code-Tags
Wenn ein Log zu lange ist, teile ihn bitte auf mehrere Antworten.

Code-Tags?

Drücke einfach die # in Antwortfenster und füge den Log dazwischen ein



__________________
Mfg,
Rafael

~ I'm storm. I'm calm. I'm fire. I'm ice. I'm burningice. ~

Unterstütze uns mit einer Spende
......... Lob, Kritik oder Wünsche .........
.......... Folge uns auf Facebook ..........

Alt 22.02.2016, 05:24   #6
Tramu
 
Page Fault in nonpaged Area Fehler - Standard

Page Fault in nonpaged Area Fehler



Hi,

Code:
ATTFilter
Crash Dump Analysis
--------------------------------------------------------------------------------

Crash dump directory: C:\WINDOWS\Minidump

Crash dumps are enabled on your computer.

No valid crash dumps have been found on your computer
         

Code:
ATTFilter
Crash dumps are enabled but no valid crash dumps have been found. In case you are experiencing system crashes, it may be that crash dumps are prevented from being written out. Check out the following article for possible causes: If crash dumps are not written out.
         
Edit: ich habe in der Zwischenzeit auch noch ein paar Änderungen vorgenommen mithilfe des Programmes CrystalDisk habe ich herausgefunden das Meine HDD wohl einige Fehler hat deswegen habe ich diese gestern abgeklemmt.Vllt lag es daran

Beste Grüße

Alt 23.02.2016, 19:23   #7
felix1
/// Helfer-Team
 
Page Fault in nonpaged Area Fehler - Standard

Page Fault in nonpaged Area Fehler



Zitat:
Zitat von Tramu Beitrag anzeigen
Hi,

Edit: ich habe in der Zwischenzeit auch noch ein paar Änderungen vorgenommen mithilfe des Programmes CrystalDisk habe ich herausgefunden das Meine HDD wohl einige Fehler hat deswegen habe ich diese gestern abgeklemmt.Vllt lag es daran

Beste Grüße
Wenn Du die HDD abgeklemmt hast, wirst Du natürlich auch keine Ergebnisse posten können.
__________________
LG

Der Felix

Keine Hilfe per PN und E-Mail

Antwort

Themen zu Page Fault in nonpaged Area Fehler
anbei, auf einmal, aufsetzten, block, blockt, bluescree, bluescreen, datei, device driver, fehler, fehlermeldung, gdata, gehören, guten, heute, memory.dmp, namens, neu, neu aufsetzten, office 2016, office 365, onedrive, problem, programme, quara, quarantäne, win, windows, windowsapps, woche, wochen




Ähnliche Themen: Page Fault in nonpaged Area Fehler


  1. Why do I see this Page
    Plagegeister aller Art und deren Bekämpfung - 10.04.2013 (5)
  2. Write Fault Error bei Windows Vista
    Log-Analyse und Auswertung - 04.10.2012 (1)
  3. System Message - Write Fault Error / system error hard disk failure detected
    Plagegeister aller Art und deren Bekämpfung - 20.09.2012 (9)
  4. Write Fault Error und alle Daten weg
    Plagegeister aller Art und deren Bekämpfung - 12.09.2012 (1)
  5. System Message - write fault error
    Log-Analyse und Auswertung - 17.08.2012 (1)
  6. System message - write fault error
    Log-Analyse und Auswertung - 09.08.2012 (23)
  7. Data Recovery - S.M.A.R.T. Check/Repair write fault error
    Plagegeister aller Art und deren Bekämpfung - 17.07.2012 (5)
  8. Trojan.Start.Page & Hijack.Start.Page
    Log-Analyse und Auswertung - 24.06.2012 (1)
  9. Error we are sorry the payment page was Not opened correctly. Please go back to the merchant page to
    Plagegeister aller Art und deren Bekämpfung - 09.11.2011 (7)
  10. Bluescreen (Paged Fault In Nonpaged Area)
    Alles rund um Windows - 10.09.2011 (2)
  11. wallpaper-area sichere seite?
    Plagegeister aller Art und deren Bekämpfung - 06.06.2010 (0)
  12. HiJackThis File und AVG Virus fault. Probleme mit Trojanern vorhanden.
    Log-Analyse und Auswertung - 25.10.2008 (3)
  13. PAge?
    Mülltonne - 29.07.2006 (0)
  14. wer kann mich von der internetstartseite search-area.com befreien?
    Log-Analyse und Auswertung - 02.03.2005 (14)
  15. search-area.com startseite......
    Log-Analyse und Auswertung - 01.03.2005 (1)

Zum Thema Page Fault in nonpaged Area Fehler - Guten Tag, ich habe seit einigen Wochen das Problem das mein PC seit dem ich Win 10 drauf gespielt habe, das Problem das ich einen Bluescreen bekomme mit der Fehlermeldung - Page Fault in nonpaged Area Fehler...
Archiv
Du betrachtest: Page Fault in nonpaged Area Fehler auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.