|
Plagegeister aller Art und deren Bekämpfung: Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsamWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
08.03.2016, 14:49 | #1 |
| Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsam Liebe Trojaner-Forum-Mitarbeiter, ich habe vor 2-3 Wochen eine verlangsamte Rechnerleistung bemerkt. Firefox und diverse Programme starteten erstmal nicht, wenn ich sie angeklickt habe. Auch nach mehreren Klicks passierte nichts. Dann öffeten sich die besagten Programme auf einmal mehrfach. Vor 1-2 Wochen ging auch meine Webcam (im Notebook integriert) selbstständig an. Das erkannte ich an dem Licht und an dem Start des Webcamprogramms. Ich war mir ziemlich sicher, dass ich das Programm NICHT selbstständig gestartet habe. Heute wiederholte sich das. Als ich eine Tabelle in Word formatieren und nocheinmal kopieren wollte, funktioniert das nicht. Es wurden nur Teile der Tabelle kopiert. (Früher funktionierte sowas). Außerdem wollte ich eine andere Tabelle vergrößern und klickt auf Enter. Daraufhin verdoppelte sich die entsprechende Zeile nicht, sondern es wurden 2 Zeilen mit demselben Inhalt darauf. Ich bin nun sehr skeptisch und vermute irgendeinen Virus oder Trojaner auf meinem Rechner. Könnt ihr mir bitte helfen? |
08.03.2016, 16:51 | #2 |
/// TB-Ausbilder | Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsamMein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags: So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Danke für deine Mitarbeit! Zur ersten Analyse bitte FRST und TDSS-Killer ausführen: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Schritt 2 Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Bitte poste mit deiner nächsten Antwort
|
10.03.2016, 21:21 | #3 |
| Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsam Hallo Matthias,
__________________danke für deine Hilfe. Es kann sein, dass ich die Drei Tages Frist nicht wahren kann, da ich im Moment sehr viel Stress habe. Aber ich werde auf jeden Fall immer hier reinschauen. Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01 durchgeführt von LilC (Administrator) auf LILC-PC (10-03-2016 21:05:00) Gestartet von C:\Users\LilC\Desktop Geladene Profile: LilC (Verfügbare Profile: LilC) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (Emsisoft Ltd) C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (AMD) C:\Windows\System32\atieclxx.exe () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ATK) C:\Program Files\P4G\BatteryLife.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Windows\AsScrPro.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe () C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (The Eraser Project) C:\Program Files\Eraser\Eraser.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Boingo Wireless, Inc.) C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo Wi-Fi.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel_64.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (Dropbox, Inc.) C:\Users\LilC\AppData\Roaming\Dropbox\bin\Dropbox.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (asus) C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE (Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronic Corp.) HKLM\...\Run: [ASUS WebStorage] => C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe [1754448 2010-03-16] () HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [324608 2010-01-18] (Alcor Micro Corp.) HKLM\...\Run: [Setwallpaper] => c:\programdata\SetWallpaper.cmd HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [1085512 2015-01-12] (The Eraser Project) HKLM-x32\...\Run: [UpdateLBPShortCut] => C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.) HKLM-x32\...\Run: [UpdateP2GoShortCut] => C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.) HKLM-x32\...\Run: [Boingo Wi-Fi] => C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk [2429 2010-11-27] () HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [102400 2010-03-31] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [7350912 2010-02-04] (ASUS) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-01-05] (ASUS) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1597440 2010-07-02] () HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7021880 2015-12-15] (AVAST Software) HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH) HKLM-x32\...\Run: [emsisoft anti-malware] => C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe [4939800 2015-08-19] (Emsisoft Ltd) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1085656 2015-12-13] (Adobe Systems Incorporated) HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23499656 2016-01-15] (Google) HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\...\Run: [Dropbox Update] => C:\Users\LilC\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-23] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-01-15] (Google) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll [2016-02-16] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-12-15] (AVAST Software) ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\service\AsusWSShellExt64.dll [2009-11-26] (eCareme Technologies, Inc.) ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\service\AsusWSShellExt64.dll [2009-11-26] (eCareme Technologies, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2010-11-27] ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2015-01-11] ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SRS Premium Sound.lnk [2010-11-27] ShortcutTarget: SRS Premium Sound.lnk -> C:\Windows\Installer\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}\NewShortcut5_21C7B668029A47458B27645FE6E4A715.exe (Acresso Software Inc.) Startup: C:\Users\LilC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-02-18] ShortcutTarget: Dropbox.lnk -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.192.1 Tcpip\..\Interfaces\{7D20A1DF-2D9D-4908-8A1A-4CC209A4A3F4}: [DhcpNameServer] 192.168.192.1 Tcpip\..\Interfaces\{DE271914-4A83-4CE0-9820-7147C8AA58D0}: [DhcpNameServer] 192.168.192.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=MAAU&src=IE-SearchBox SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT SearchScopes: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = SearchScopes: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = BHO: Windows Live Family Safety Browser Helper Class -> {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} -> C:\Program Files\Windows Live\Family Safety\fssbho.dll [2008-12-08] (Microsoft Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-12-15] (AVAST Software) BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-09-20] (Hewlett-Packard Co.) BHO-x32: Kein Name -> {5C255C8A-E604-49b4-9D64-90988571CECB} -> Keine Datei BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-12-15] (AVAST Software) BHO-x32: Windows Live Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-02-17] (Microsoft Corporation) BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-09-20] (Hewlett-Packard Co.) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll [2008-12-02] (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8050.1202.dll [2008-12-02] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default FF NewTab: www.google.de FF Homepage: www.google.de FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-10] () FF Plugin: @garmin.com/GpsControl -> C:\Program Files\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (GARMIN Corp.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-10] () FF Plugin-x32: @garmin.com/GpsControl -> C:\Program Files (x86)\Garmin GPS Plugin\npGarmin.dll [2014-03-31] (GARMIN Corp.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8051.1204 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2008-12-04] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-02-27] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\searchplugins\hma-proxy.xml [2016-01-20] FF Extension: Leet Key - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\extensions\{3335F91D-2AEF-4097-B831-C96C60349822}.xpi [2015-08-23] FF Extension: Exif Viewer - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\extensions\exif_viewer@mozilla.doslash.org.xpi [2015-08-23] FF Extension: YouTube to MP3 - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\extensions\youtube2mp3@mondayx.de.xpi [2015-08-30] FF Extension: convert2mp3.net YouTube2MP3 Converter - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\extensions\info@convert2mp3.net.xpi [2015-08-30] FF Extension: Flash and Video Download - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2016-02-24] FF Extension: Multi YouTube mp3 - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\Extensions\d.lehr@chello.at.xpi [2015-11-27] FF Extension: YouTube Video and Audio Downloader - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\Extensions\feca4b87-3be4-43da-a1b1-137c24220968@jetpack.xpi [2016-01-05] FF Extension: ProxTube - Unblock YouTube - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\Extensions\ich@maltegoetz.de.xpi [2015-12-20] FF Extension: YouTube Unblocker - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\Extensions\youtubeunblocker@unblocker.yt [2015-06-09] [ist nicht signiert] FF Extension: Transliterator - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\Extensions\{07d43380-b306-4a08-a47a-140efd1b4700}.xpi [2015-10-09] FF Extension: Adblock Plus - C:\Users\LilC\AppData\Roaming\Mozilla\Firefox\Profiles\i6bn4a96.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-24] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-12-16] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2015-01-11] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2015-12-15] FF HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT CHR StartupUrls: Default -> "hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT" CHR Profile: C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Präsentationen) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-04-22] CHR Extension: (Google Docs) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-22] CHR Extension: (Google Drive) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-23] CHR Extension: (YouTube) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-22] CHR Extension: (Google-Suche) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-22] CHR Extension: (Google Tabellen) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-04-22] CHR Extension: (Avast Online Security) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-04-22] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-23] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-04-22] CHR Extension: (Google Wallet) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-22] CHR Extension: (Google Mail) - C:\Users\LilC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-22] CHR HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-12-15] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 a2AntiMalware; C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe [5531008 2015-08-19] (Emsisoft Ltd) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [226440 2015-12-15] (AVAST Software) R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-20] (Hewlett-Packard Co.) [Datei ist nicht signiert] R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-20] (Hewlett-Packard Co.) [Datei ist nicht signiert] R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.) [Datei ist nicht signiert] S2 MBAMService; C:\Users\LilC\Desktop\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [Datei ist nicht signiert] R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [Datei ist nicht signiert] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) U4 AvastVBoxSvc; "C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2015-12-15] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2015-12-19] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-12-15] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2015-12-15] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1065720 2016-03-05] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [464256 2016-01-20] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [155304 2015-12-15] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2015-12-15] (AVAST Software) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R1 epp64; C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\epp64.sys [138504 2015-08-07] (Emsisoft GmbH) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800192 2009-08-20] () S3 catchme; \??\C:\ComboFix\catchme.sys [X] U4 VBoxAswDrv; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-09 21:28 - 2016-02-11 19:56 - 05572032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-03-09 21:28 - 2016-02-11 19:56 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-03-09 21:28 - 2016-02-11 19:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-03-09 21:28 - 2016-02-11 19:52 - 01733592 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-03-09 21:28 - 2016-02-11 19:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-03-09 21:28 - 2016-02-11 19:48 - 01214464 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-03-09 21:28 - 2016-02-11 19:48 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-03-09 21:28 - 2016-02-11 19:48 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-03-09 21:28 - 2016-02-11 19:48 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-03-09 21:28 - 2016-02-11 19:48 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-03-09 21:28 - 2016-02-11 19:47 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-03-09 21:28 - 2016-02-11 19:45 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-03-09 21:28 - 2016-02-11 19:45 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-03-09 21:28 - 2016-02-11 19:45 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-03-09 21:28 - 2016-02-11 19:45 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-03-09 21:28 - 2016-02-11 19:44 - 03994560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-03-09 21:28 - 2016-02-11 19:44 - 03938240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-03-09 21:28 - 2016-02-11 19:44 - 01461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-03-09 21:28 - 2016-02-11 19:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-03-09 21:28 - 2016-02-11 19:44 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-03-09 21:28 - 2016-02-11 19:44 - 00422400 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-03-09 21:28 - 2016-02-11 19:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-03-09 21:28 - 2016-02-11 19:42 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-03-09 21:28 - 2016-02-11 19:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 01314328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00880128 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:41 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:38 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-03-09 21:28 - 2016-02-11 19:38 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-03-09 21:28 - 2016-02-11 19:38 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-03-09 21:28 - 2016-02-11 19:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-03-09 21:28 - 2016-02-11 19:38 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-03-09 21:28 - 2016-02-11 19:38 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-03-09 21:28 - 2016-02-11 19:38 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-03-09 21:28 - 2016-02-11 19:37 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-03-09 21:28 - 2016-02-11 19:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-03-09 21:28 - 2016-02-11 19:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-03-09 21:28 - 2016-02-11 19:35 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-03-09 21:28 - 2016-02-11 19:35 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-03-09 21:28 - 2016-02-11 19:35 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-03-09 21:28 - 2016-02-11 19:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-03-09 21:28 - 2016-02-11 19:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-03-09 21:28 - 2016-02-11 19:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 19:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 18:48 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-03-09 21:28 - 2016-02-11 18:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-03-09 21:28 - 2016-02-11 18:41 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-03-09 21:28 - 2016-02-11 18:40 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-03-09 21:28 - 2016-02-11 18:34 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-03-09 21:28 - 2016-02-11 18:34 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-03-09 21:28 - 2016-02-11 18:33 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-03-09 21:28 - 2016-02-11 18:32 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-03-09 21:28 - 2016-02-11 18:32 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-03-09 21:28 - 2016-02-11 18:32 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-03-09 21:28 - 2016-02-11 18:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-03-09 21:28 - 2016-02-11 18:32 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-03-09 21:28 - 2016-02-11 18:32 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-03-09 21:28 - 2016-02-11 18:31 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-03-09 21:28 - 2016-02-11 18:30 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 18:30 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 18:30 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-03-09 21:28 - 2016-02-11 18:30 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-03-09 21:28 - 2016-01-11 20:11 - 01684416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2016-03-09 21:27 - 2016-02-12 19:52 - 03169792 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2016-03-09 21:27 - 2016-02-12 19:52 - 00192512 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2016-03-09 21:27 - 2016-02-12 19:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2016-03-09 21:27 - 2016-02-12 19:44 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2016-03-09 21:27 - 2016-02-12 19:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2016-03-09 21:27 - 2016-02-12 19:22 - 02610688 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2016-03-09 21:27 - 2016-02-12 19:19 - 00709120 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2016-03-09 21:27 - 2016-02-12 19:18 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2016-03-09 21:27 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2016-03-09 21:27 - 2016-02-12 19:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2016-03-09 21:27 - 2016-02-12 19:18 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2016-03-09 21:27 - 2016-02-12 19:18 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2016-03-09 21:27 - 2016-02-12 19:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2016-03-09 21:27 - 2016-02-12 19:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2016-03-09 21:27 - 2016-02-12 19:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2016-03-09 21:27 - 2016-02-12 19:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2016-03-09 21:27 - 2016-02-04 18:52 - 03211264 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-03-09 21:27 - 2016-02-03 19:07 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2016-03-09 21:27 - 2015-11-19 15:07 - 00994760 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00063840 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00020832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00019808 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00017760 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00016224 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00015712 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00014176 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00013664 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012640 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00012128 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:07 - 00011616 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00922432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00066400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00022368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00019808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00017760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00016224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00015712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00014176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00013664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00012128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2016-03-09 21:27 - 2015-11-19 15:06 - 00011616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2016-03-09 21:26 - 2016-02-03 19:58 - 00862208 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2016-03-09 21:26 - 2016-02-03 19:52 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2016-03-09 21:26 - 2016-02-03 19:49 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2016-03-09 21:26 - 2016-02-03 19:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2016-03-09 21:22 - 2016-02-09 10:57 - 14634496 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2016-03-09 21:22 - 2016-02-09 10:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2016-03-09 21:22 - 2016-02-09 10:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2016-03-09 21:22 - 2016-02-05 19:54 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-03-09 21:22 - 2016-02-05 19:54 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-03-09 21:22 - 2016-02-05 19:53 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-03-09 21:22 - 2016-02-05 19:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-03-09 21:22 - 2016-02-05 19:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-03-09 21:22 - 2016-02-05 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-03-09 21:22 - 2016-02-05 19:42 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-03-09 21:22 - 2016-02-05 18:48 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-03-09 21:22 - 2016-02-05 18:43 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-03-09 21:22 - 2016-02-05 18:43 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-03-09 21:22 - 2016-02-05 02:19 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2016-03-09 21:22 - 2016-02-04 19:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2016-03-09 21:21 - 2016-02-09 10:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2016-03-09 07:22 - 2016-02-19 20:02 - 00038336 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-03-09 07:22 - 2016-02-19 19:54 - 01168896 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-03-09 07:22 - 2016-02-19 15:07 - 01373184 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-03-09 07:22 - 2016-02-11 15:07 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-03-09 07:22 - 2016-02-09 10:57 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2016-03-09 07:22 - 2016-02-09 10:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2016-03-09 07:22 - 2016-02-09 10:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2016-03-09 07:22 - 2016-02-09 10:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2016-03-09 07:22 - 2016-02-09 10:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll 2016-03-09 07:22 - 2016-02-09 10:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx 2016-03-09 07:22 - 2016-02-09 10:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll 2016-03-09 07:22 - 2016-02-05 15:07 - 00696832 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-03-09 07:22 - 2016-02-05 15:07 - 00499200 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-03-09 07:22 - 2016-02-05 15:07 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-02-29 11:09 - 2016-02-29 11:08 - 03353086 _____ C:\Users\LilC\Desktop\UPP_MAterial_Deutsch.pdf 2016-02-29 11:07 - 2016-02-29 11:07 - 00160866 _____ C:\Users\LilC\Desktop\UPP_Deutsch.pdf 2016-02-26 08:45 - 2016-02-26 08:45 - 00045883 _____ C:\Users\LilC\Desktop\8. Verlauf.pdf 2016-02-24 18:05 - 2016-02-24 18:04 - 00100390 _____ C:\Users\LilC\Desktop\5.UB.Russisch Olga Voznnyuk.pdf 2016-02-18 14:28 - 2016-02-18 14:28 - 00000000 ____D C:\Users\LilC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2016-02-17 23:05 - 2016-02-17 23:05 - 00275144 _____ C:\Windows\Minidump\021716-32978-01.dmp 2016-02-14 12:09 - 2016-02-15 18:46 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-02-10 16:57 - 2016-01-06 20:02 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll 2016-02-10 16:57 - 2016-01-06 20:02 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll 2016-02-10 16:57 - 2016-01-06 19:41 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll 2016-02-10 16:56 - 2016-02-06 11:48 - 25839104 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-02-10 16:56 - 2016-02-06 11:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-02-10 16:56 - 2016-02-06 11:24 - 02887680 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-02-10 16:56 - 2016-02-06 11:11 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-02-10 16:56 - 2016-02-06 11:10 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-02-10 16:56 - 2016-02-06 11:01 - 20366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-02-10 16:56 - 2016-02-06 10:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-02-10 16:56 - 2016-02-06 10:43 - 02280448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-02-10 16:56 - 2016-02-06 10:38 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-02-10 16:56 - 2016-02-06 10:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-02-10 16:56 - 2016-02-06 10:32 - 14458368 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-02-10 16:56 - 2016-02-06 10:16 - 12857856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-02-10 16:56 - 2016-02-06 10:09 - 01547264 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-02-10 16:56 - 2016-02-06 09:54 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-02-10 16:56 - 2016-01-22 21:31 - 00387784 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-02-10 16:56 - 2016-01-22 21:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-02-10 16:56 - 2016-01-22 07:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-02-10 16:56 - 2016-01-22 07:41 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-02-10 16:56 - 2016-01-22 07:40 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-02-10 16:56 - 2016-01-22 07:40 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-02-10 16:56 - 2016-01-22 07:40 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-02-10 16:56 - 2016-01-22 07:40 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-02-10 16:56 - 2016-01-22 07:33 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-02-10 16:56 - 2016-01-22 07:32 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-02-10 16:56 - 2016-01-22 07:29 - 06052352 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-02-10 16:56 - 2016-01-22 07:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-02-10 16:56 - 2016-01-22 07:27 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-02-10 16:56 - 2016-01-22 07:27 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-02-10 16:56 - 2016-01-22 07:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-02-10 16:56 - 2016-01-22 07:17 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-02-10 16:56 - 2016-01-22 07:09 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-02-10 16:56 - 2016-01-22 07:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-02-10 16:56 - 2016-01-22 07:05 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-02-10 16:56 - 2016-01-22 07:04 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-02-10 16:56 - 2016-01-22 07:02 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-02-10 16:56 - 2016-01-22 07:02 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-02-10 16:56 - 2016-01-22 07:02 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-02-10 16:56 - 2016-01-22 07:01 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-02-10 16:56 - 2016-01-22 07:01 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-02-10 16:56 - 2016-01-22 07:00 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-02-10 16:56 - 2016-01-22 07:00 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-02-10 16:56 - 2016-01-22 06:55 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-02-10 16:56 - 2016-01-22 06:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-02-10 16:56 - 2016-01-22 06:51 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-02-10 16:56 - 2016-01-22 06:51 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-02-10 16:56 - 2016-01-22 06:50 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-02-10 16:56 - 2016-01-22 06:48 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-02-10 16:56 - 2016-01-22 06:47 - 00798208 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-02-10 16:56 - 2016-01-22 06:46 - 02123264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-02-10 16:56 - 2016-01-22 06:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-02-10 16:56 - 2016-01-22 06:43 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-02-10 16:56 - 2016-01-22 06:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-02-10 16:56 - 2016-01-22 06:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-02-10 16:56 - 2016-01-22 06:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-02-10 16:56 - 2016-01-22 06:35 - 04611072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-02-10 16:56 - 2016-01-22 06:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-02-10 16:56 - 2016-01-22 06:34 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-02-10 16:56 - 2016-01-22 06:33 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-02-10 16:56 - 2016-01-22 06:31 - 02597376 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-02-10 16:56 - 2016-01-22 06:27 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-02-10 16:56 - 2016-01-22 06:25 - 00687104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-02-10 16:56 - 2016-01-22 06:24 - 02050560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-02-10 16:56 - 2016-01-22 06:24 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-02-10 16:56 - 2016-01-22 06:08 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-02-10 16:56 - 2016-01-22 06:07 - 02120704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-02-10 16:56 - 2016-01-22 06:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-02-10 16:55 - 2016-01-07 18:42 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2016-02-10 16:54 - 2016-01-22 07:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2016-02-10 16:54 - 2016-01-22 07:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2016-02-10 16:54 - 2016-01-22 07:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll 2016-02-10 16:54 - 2016-01-22 07:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2016-02-10 16:54 - 2016-01-22 07:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2016-02-10 16:54 - 2016-01-16 20:01 - 02085888 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2016-02-10 16:54 - 2016-01-16 19:36 - 01413632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2016-02-10 16:53 - 2016-01-22 07:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2016-02-10 16:53 - 2016-01-22 07:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll 2016-02-10 16:52 - 2016-01-22 07:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-02-10 16:52 - 2016-01-22 07:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2016-02-10 16:52 - 2016-01-22 07:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2016-02-10 16:52 - 2016-01-22 07:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-02-10 16:52 - 2016-01-22 07:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2016-02-10 16:52 - 2016-01-22 06:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2016-02-10 16:52 - 2016-01-22 06:19 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2016-02-10 16:52 - 2016-01-22 06:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-03-10 21:05 - 2015-10-09 14:14 - 00025314 _____ C:\Users\LilC\Desktop\FRST.txt 2016-03-10 21:05 - 2015-10-09 14:14 - 00000000 ____D C:\FRST 2016-03-10 21:04 - 2015-10-20 17:58 - 00000000 ____D C:\Users\LilC\Desktop\FRST-OlderVersion 2016-03-10 21:04 - 2015-10-09 14:12 - 02374144 _____ (Farbar) C:\Users\LilC\Desktop\FRST64.exe 2016-03-10 20:46 - 2015-06-23 20:35 - 00001240 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2510528884-3436101045-2521625375-1001UA.job 2016-03-10 20:28 - 2015-08-26 16:07 - 00000000 ____D C:\Program Files (x86)\Emsisoft Anti-Malware 2016-03-10 20:19 - 2015-02-12 14:01 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-03-10 20:12 - 2010-11-27 00:28 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-03-10 14:12 - 2010-11-27 00:28 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-03-10 13:52 - 2009-07-14 05:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-03-10 13:52 - 2009-07-14 05:45 - 00010016 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-03-10 13:40 - 2009-08-04 10:51 - 00710754 _____ C:\Windows\system32\perfh007.dat 2016-03-10 13:40 - 2009-08-04 10:51 - 00153202 _____ C:\Windows\system32\perfc007.dat 2016-03-10 13:40 - 2009-07-14 06:13 - 01650044 _____ C:\Windows\system32\PerfStringBackup.INI 2016-03-10 13:40 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-03-10 13:37 - 2014-12-31 14:34 - 00000000 ___RD C:\Users\LilC\Dropbox 2016-03-10 13:37 - 2014-12-30 21:00 - 00000000 ____D C:\Users\LilC\AppData\Roaming\Dropbox 2016-03-10 13:36 - 2014-12-31 15:15 - 00000000 ___RD C:\Users\LilC\Google Drive 2016-03-10 13:34 - 2014-12-30 20:27 - 00045056 _____ C:\Windows\system32\acovcnt.exe 2016-03-10 13:32 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-03-10 13:32 - 2009-07-14 05:45 - 00301040 _____ C:\Windows\system32\FNTCACHE.DAT 2016-03-09 22:32 - 2015-01-01 13:29 - 00000000 ____D C:\Windows\system32\appraiser 2016-03-09 21:46 - 2015-06-23 20:35 - 00001188 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2510528884-3436101045-2521625375-1001Core.job 2016-03-09 21:23 - 2014-12-30 20:57 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2016-03-05 13:25 - 2014-12-31 20:01 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2016-03-05 13:15 - 2014-12-30 20:56 - 01065720 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2016-03-01 13:28 - 2016-01-23 16:38 - 00000000 ____D C:\Users\LilC\AppData\Local\ElevatedDiagnostics 2016-02-26 23:17 - 2015-04-06 23:53 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2016-02-26 23:17 - 2015-04-06 23:53 - 00000000 ___SD C:\Windows\system32\GWX 2016-02-26 17:43 - 2015-10-09 14:16 - 00057959 _____ C:\Users\LilC\Desktop\Addition.txt 2016-02-20 09:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-02-20 09:16 - 2014-12-30 20:35 - 00002237 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-02-20 09:16 - 2010-11-27 00:28 - 00002266 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-02-18 15:14 - 2015-08-04 17:39 - 00000000 ____D C:\Users\LilC\AppData\Local\Eraser 6 2016-02-17 23:05 - 2015-09-29 22:51 - 656948233 _____ C:\Windows\MEMORY.DMP 2016-02-17 23:05 - 2015-09-29 22:51 - 00000000 ____D C:\Windows\Minidump 2016-02-15 18:46 - 2014-12-30 20:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-02-14 11:33 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2016-02-11 12:12 - 2010-11-27 00:25 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-02-11 10:50 - 2015-01-01 13:29 - 00000000 ___SD C:\Windows\system32\CompatTel 2016-02-11 10:50 - 2009-07-14 08:45 - 00000000 ____D C:\Program Files\Windows Journal 2016-02-10 16:19 - 2015-02-12 14:01 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2016-02-10 16:19 - 2014-12-31 19:52 - 00796864 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-02-10 16:19 - 2014-12-31 19:52 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2010-11-27 00:30 - 2010-07-07 01:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe 2015-01-11 16:32 - 2015-01-11 17:36 - 0001932 _____ () C:\ProgramData\hpzinstall.log 2015-10-16 11:59 - 2015-10-16 11:59 - 0010257 _____ () C:\ProgramData\regid.1996-01.de.pixelplanet_57EAD6F4-30D2-44F4-919E-CFB300633310.swidtag 2010-11-27 00:25 - 2010-11-27 00:26 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log 2010-11-27 00:25 - 2010-11-27 00:25 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log Einige Dateien in TEMP: ==================== C:\Users\LilC\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpjjpexl.dll C:\Users\LilC\AppData\Local\Temp\{2D4296A4-ACFF-4AC7-BF9B-6B36406DC999}-DropboxClient_3.10.11.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-03-01 13:21 ==================== Ende von FRST.txt ============================ |
10.03.2016, 21:22 | #4 |
| Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsamCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01 durchgeführt von LilC (2016-03-10 21:06:26) Gestartet von C:\Users\LilC\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2014-12-30 19:26:37) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2510528884-3436101045-2521625375-500 - Administrator - Disabled) Gast (S-1-5-21-2510528884-3436101045-2521625375-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2510528884-3436101045-2521625375-1002 - Limited - Enabled) LilC (S-1-5-21-2510528884-3436101045-2521625375-1001 - Administrator - Enabled) => C:\Users\LilC ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Disabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.233 - Adobe Systems Incorporated) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.42.34 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.306 - Adobe Systems Incorporated) Adobe Reader XI (11.0.15) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.15 - Adobe Systems Incorporated) AIO_Scan (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{A7B8A5E9-CA44-44A0-9393-9EA0FFE4C3FB}) (Version: 1.6.17.25401 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.6.17.25401 - Alcor Micro Corp.) Hidden AMD USB Filter Driver (HKLM-x32\...\{987B04C4-B5AC-4AD6-A7E9-8D681085B850}) (Version: 1.0.15.94 - Advanced Micro Devices, Inc.) ASUS AI Recovery (HKLM-x32\...\{06585B02-F20D-4AB2-9A64-86EF2AE0F8F0}) (Version: 1.0.10 - ASUS) ASUS AP Bank (HKLM-x32\...\ASUS AP Bank_is1) (Version: 1.0.0.0 - ASUSTEK) ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS) ASUS Live Update (HKLM-x32\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.9 - ASUS) ASUS MultiFrame (HKLM-x32\...\{9D48531D-2135-49FC-BC29-ACCDA5396A76}) (Version: 1.0.0021 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{91EFE3A1-585E-4F66-B5F6-F118F56C4C47}) (Version: 1.1.35 - ASUS) ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0008 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0029 - ASUS) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.20 - asus) ASUS WebStorage (HKLM-x32\...\ASUS WebStorage) (Version: 2.0.46.1429 - eCareme Technologies, Inc.) ATI Catalyst Install Manager (HKLM\...\{C42CA929-C55C-4435-F6B2-160C10FD301E}) (Version: 3.0.769.0 - ATI Technologies, Inc.) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0003 - ASUS) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.1.2245 - AVAST Software) Big Fish Games: Game Manager (HKLM-x32\...\BFGC) (Version: 2.0.0.8 - ) Boingo Wi-Fi (HKLM-x32\...\{B653A2EC-D816-4498-A4FD-651047AB9DC9}) (Version: 1.7.0048 - Boingo Wireless, Inc.) Bookworm Deluxe (HKLM-x32\...\Bookworm Deluxe) (Version: - Oberon Media Inc.) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden C4380 (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden C4380_Help (x32 Version: 100.0.206.000 - Hewlett-Packard) Hidden ccc-core-static (x32 Version: 2010.0330.2135.36914 - ATI) Hidden Choice Guard (x32 Version: 1.2.87.0 - Microsoft Corporation) Hidden ControlDeck (HKLM-x32\...\{5B65EF64-1DFA-414A-8C94-7BB726158E21}) (Version: 1.0.8 - ASUS) Cooking Dash (HKLM-x32\...\Cooking Dash) (Version: - Oberon Media Inc.) Copy (x32 Version: 130.0.428.000 - Hewlett-Packard) Hidden Cornelsen Werkzeuge 3.5 (HKLM-x32\...\{B68E7F0B-EAE2-4A83-A1EA-B623A981D37B}) (Version: 3.5.0 - Cornelsen Verlag, Berlin) Cornelsen Werkzeuge 3.5 Privet 1 (HKLM-x32\...\{754BE6BC-675C-4C4E-A6D8-018B119614EF}) (Version: 3.5.0 - Cornelsen Verlag) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.) CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.465.000 - Hewlett-Packard) Hidden DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Dropbox (HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\...\Dropbox) (Version: 3.14.7 - Dropbox, Inc.) Emsisoft Anti-Malware (HKLM-x32\...\{5502032C-88C1-4303-99FE-B5CBD7684CEA}_is1) (Version: 10.0 - Emsisoft Ltd.) Eraser 6.2.0.2962 (HKLM\...\{C6E287F1-2E47-45F0-BB51-94F815CFFB48}) (Version: 6.2.2962 - The Eraser Project) ETDWare PS/2-x64 7.0.5.13_WHQL (HKLM\...\Elantech) (Version: 7.0.5.13 - ELAN Microelectronics Corp.) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.5 - ASUS) Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden Free YouTube to MP3 Converter version 3.12.56.301 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.56.301 - DVDVideoSoft Ltd.) Game Park Console (HKLM-x32\...\{E71E60C1-533E-45A5-8D80-E475E88D2B17}_is1) (Version: 6.2.1.1 - Oberon Media, Inc.) Garmin Communicator Plugin (HKLM-x32\...\{71DBFBF2-F7EB-4268-8485-9471D83C4E66}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries) Garmin Communicator Plugin x64 (HKLM\...\{70A381F1-C161-4D61-A20C-BE12FC6777DF}) (Version: 4.2.0 - Garmin Ltd or its subsidiaries) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.) Google Drive (HKLM-x32\...\{EF61675D-9BBC-4EC7-B906-F13BE8D3BD20}) (Version: 1.27.1227.2094 - Google, Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Governor of Poker (HKLM-x32\...\Governor of Poker) (Version: - Oberon Media Inc.) GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Hotel Dash Suite Success (HKLM-x32\...\Hotel Dash Suite Success) (Version: - Oberon Media Inc.) HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Photosmart All-In-One Driver Software 13.0 Rel. 2 (HKLM\...\{988329F4-A1A1-4D51-803C-EF2725A97627}) (Version: 13.0 - HP) HP Photosmart Essential 3.5 (HKLM\...\HP Photosmart Essential) (Version: 3.5 - HP) HP Smart Web Printing 4.51 (HKLM\...\HP Smart Web Printing) (Version: 4.51 - HP) HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP) HP Update (HKLM-x32\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard) HPPhotoGadget (x32 Version: 130.0.282.000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabel_PaperLabel (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabel_PrintOnDisc (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotoSmartDiscLabelContent1 (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden hpphotosmartdisclabelplugin (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPPhotosmartEssential (x32 Version: 2.04.0000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden IrfanView 64 (remove only) (HKLM\...\IrfanView) (Version: 4.40 - Irfan Skiljan) Jewel Quest 3 (HKLM-x32\...\Jewel Quest 3) (Version: - Oberon Media Inc.) Junk Mail filter update (x32 Version: 14.0.8050.1202 - Microsoft Corporation) Hidden K_Series_ScreenSaver_EN (HKLM-x32\...\K_Series_ScreenSaver_EN) (Version: - ) Luxor 3 (HKLM-x32\...\Luxor 3) (Version: - Oberon Media Inc.) Mahjongg dimensions (HKLM-x32\...\Mahjongg dimensions) (Version: - Oberon Media Inc.) Malwarebytes Anti-Malware Version 2.2.0.1024 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.0.1024 - Malwarebytes) MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0012-0000-0000-0000000FF1CE}_STANDARD_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Standard 2007 (HKLM-x32\...\STANDARD) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Mozilla Firefox 44.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 de)) (Version: 44.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla) Mozilla Thunderbird 31.3.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.3.0 (x86 de)) (Version: 31.3.0 - Mozilla) Mozilla Thunderbird 38.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 38.5.0 (x86 de)) (Version: 38.5.0 - Mozilla) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) Network64 (Version: 130.0.572.000 - Hewlett-Packard) Hidden OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP) ODF Add-in for Microsoft Office (HKLM-x32\...\{2BC21CD2-8053-406A-80F6-9AB61717B49D}) (Version: 4.0.5309.0 - OpenXML/ODF Translator Team) PDF24 Creator 6.9.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) PdfEditor 3.0 (Setup ohne PdfPrinter) (HKLM-x32\...\{9FB72AA3-2D6A-4FF7-B04F-E393F463732B}) (Version: 3.0.0.24 - PixelPlanet) Plants vs Zombies (HKLM-x32\...\Plants vs Zombies) (Version: - Oberon Media Inc.) PS_AIO_02_ProductContext (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden PS_AIO_02_Software (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden PS_AIO_02_Software_Min (x32 Version: 130.0.365.000 - Hewlett-Packard) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6176 - Realtek Semiconductor Corp.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP) SmartWebPrinting (x32 Version: 130.0.457.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden SRS Premium Sound Control Panel (HKLM\...\{E5CF6B9C-3ABE-43C9-9413-AD5FFC98F049}) (Version: 1.8.7700 - SRS Labs, Inc.) Status (x32 Version: 130.0.469.000 - Hewlett-Packard) Hidden Sweet Home 3D version 5.0 (HKLM\...\Sweet Home 3D_is1) (Version: 5.0 - eTeks) syncables desktop SE (HKLM-x32\...\{341697D8-9923-445E-B42A-529E5A99CB7A}) (Version: 5.5.746.11492 - syncables) Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.422.000 - Hewlett-Packard) Hidden UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0012-0000-0000-0000000FF1CE}_STANDARD_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_STANDARD_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_STANDARD_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_STANDARD_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_STANDARD_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) USB2.0 UVC VGA WebCam (HKLM\...\USB2.0 UVC VGA WebCam) (Version: 5.8.54000.204 - Sonix) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden Windows Live Anmelde-Assistent (HKLM-x32\...\{83E2CFA9-E0EB-4E08-9F85-43E577FF3D60}) (Version: 5.000.818.6 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8050.1202 - Microsoft Corporation) Windows Live Sync (HKLM-x32\...\{8C1E2925-14F8-45AA-B999-1E2A74BF5607}) (Version: 14.0.8050.1202 - Microsoft Corporation) Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.30.3 - ASUS) WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.17 - ASUS) World of Goo (HKLM-x32\...\World of Goo) (Version: - Oberon Media Inc.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2510528884-3436101045-2521625375-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\LilC\AppData\Roaming\Dropbox\bin\DropboxExt64.33.dll (Dropbox, Inc.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {17266C8F-C63D-4BA4-9CB8-B4848DD63BDD} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-03-05] (AVAST Software) Task: {1946820B-AE96-4970-922F-D886621BC183} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-02-10] (Adobe Systems Incorporated) Task: {1DFCD1D5-E2A0-4442-842E-909648E7C0E6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {2A5BCD60-8F94-4B6A-97EC-3792EAF2F7D0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {3AE5D174-03DB-4B53-9792-5B9B02FB4797} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS) Task: {4D21BBDB-2644-4610-B25B-BB3CF66BEA37} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-12-15] (AVAST Software) Task: {71B5855C-DD4C-4A4A-B0FB-6260F06F2CF1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {9534A378-6C21-42BC-80A5-1C1220517FA7} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-07-31] (ASUS) Task: {97949A1F-F59D-41BC-AE1F-BC986FEB0661} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [2007-11-30] () Task: {B2144DAF-A367-4421-BE88-F587DFA57779} - System32\Tasks\{388CEC7F-2C81-4CF2-96E5-8292834A99D5} => pcalua.exe -a E:\setup.exe -d E:\ Task: {B22BD5C8-1404-4C8C-A072-74CEFA9DF888} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2510528884-3436101045-2521625375-1001UA => C:\Users\LilC\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-23] (Dropbox, Inc.) Task: {CD4E767A-E3A4-41D0-9AF9-6ED16AE5D475} - System32\Tasks\ASUSControlDeck => C:\Program Files (x86)\ASUS\ControlDeck\ControlDeck.exe [2010-06-09] (asus) Task: {E5178D28-550E-440B-BDE7-D92B786D27BE} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-04-09] (ATK) Task: {E55B4F0D-B098-4711-8B42-ADC848C06089} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2510528884-3436101045-2521625375-1001Core => C:\Users\LilC\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-23] (Dropbox, Inc.) Task: {FE282D17-BCBD-4B0B-9C50-50B9C9A3A3CF} - System32\Tasks\avastBCLRestartS-1-5-21-2510528884-3436101045-2521625375-1001 => Firefox.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2510528884-3436101045-2521625375-1001Core.job => C:\Users\LilC\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2510528884-3436101045-2521625375-1001UA.job => C:\Users\LilC\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2010-11-27 00:45 - 2007-11-30 20:20 - 00051768 _____ () C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe 2010-04-03 04:21 - 2008-10-01 08:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2010-03-16 02:48 - 2010-03-16 02:48 - 00148816 _____ () C:\Program Files (x86)\ASUS\ASUS WebStorage\EcaremeDLL.dll 2010-11-27 00:28 - 2010-11-27 00:28 - 00030032 _____ () C:\Windows\assembly\GAC_MSIL\SqliteShared\1.0.3726.20828__0d0f4b69e50e559b\SqliteShared.dll 2010-11-27 00:28 - 2010-11-27 00:28 - 00931840 _____ () C:\Windows\assembly\GAC_64\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll 2010-01-11 19:27 - 2010-01-11 19:27 - 00017920 _____ () C:\Program Files\P4G\DevMng.dll 2010-02-04 02:14 - 2010-02-04 02:14 - 00033792 _____ () C:\Program Files\P4G\OvrClk.dll 2010-03-16 02:48 - 2010-03-16 02:48 - 01754448 _____ () C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe 2010-07-02 22:36 - 2010-07-02 22:36 - 01597440 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 2010-11-27 00:38 - 2010-11-27 00:38 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2015-12-15 22:58 - 2015-12-15 22:58 - 00103888 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-12-15 22:58 - 2015-12-15 22:58 - 00125512 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-03-10 13:27 - 2016-03-10 13:27 - 02838528 _____ () C:\Program Files\AVAST Software\Avast\defs\16031002\algo.dll 2015-12-15 22:58 - 2015-12-15 22:58 - 00469008 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2016-03-10 13:34 - 2016-03-10 13:34 - 00098816 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32api.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00110080 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\pywintypes27.dll 2016-03-10 13:34 - 2016-03-10 13:34 - 00364544 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\pythoncom27.dll 2016-03-10 13:34 - 2016-03-10 13:34 - 00320512 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32com.shell.shell.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00776704 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_hashlib.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 01176576 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._core_.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00806400 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._gdi_.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00816128 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._windows_.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 01067008 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._controls_.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00733184 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._misc_.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00682496 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\pysqlite2._sqlite.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00088064 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_ctypes.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00119808 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32file.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00108544 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32security.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00007168 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\hashobjs_ext.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00017920 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\thumbnails_ext.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00088064 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\usb_ext.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00167936 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32gui.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00018432 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32event.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00046080 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_socket.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 01208320 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_ssl.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00128512 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_elementtree.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00127488 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\pyexpat.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00013824 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\common.time34.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00036864 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_psutil_windows.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00038912 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32inet.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00525240 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\windows._lib_cacheinvalidation.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00011264 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32crypt.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00077312 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._html2.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00027136 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_multiprocessing.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00020480 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\_yappi.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00035840 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32process.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00686080 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\unicodedata.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00078848 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._animate.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00123392 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\wx._wizard.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00024064 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32pipe.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00010240 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\select.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00025600 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32pdh.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00017408 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32profile.pyd 2016-03-10 13:34 - 2016-03-10 13:34 - 00022528 _____ () C:\Users\LilC\AppData\Local\Temp\_MEI35162\win32ts.pyd 2016-02-18 14:28 - 2016-01-12 19:44 - 00034768 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2016-02-18 14:27 - 2016-01-12 19:45 - 00019408 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2015-12-13 13:11 - 2016-01-12 19:44 - 00116688 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2016-02-18 14:28 - 2016-01-12 19:44 - 00093640 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2016-02-18 14:28 - 2016-01-12 19:44 - 00018376 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\select.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00019760 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2016-02-18 14:28 - 2016-01-12 19:46 - 00105928 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32api.pyd 2015-12-13 13:11 - 2016-01-12 19:44 - 00392144 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2016-02-18 14:28 - 2016-02-16 19:39 - 00381752 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2016-02-18 14:28 - 2016-01-12 19:44 - 00692688 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2016-02-18 14:27 - 2016-02-16 19:38 - 00020816 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2016-02-18 14:28 - 2016-01-12 19:45 - 00112592 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2016-02-18 14:27 - 2016-02-16 19:38 - 01682760 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2016-02-18 14:27 - 2016-02-16 19:38 - 00020808 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00020800 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00021840 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd 2016-02-18 14:27 - 2016-02-16 19:39 - 00038696 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\fastpath.pyd 2015-12-13 13:11 - 2016-01-12 19:46 - 00020936 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2016-02-18 14:28 - 2016-01-12 19:46 - 00024528 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32event.pyd 2016-02-18 14:28 - 2016-01-12 19:47 - 00114640 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32security.pyd 2016-02-18 14:28 - 2016-01-12 19:46 - 00124880 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32file.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00021832 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd 2016-02-18 14:28 - 2016-01-12 19:46 - 00024016 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2016-02-18 14:28 - 2016-01-12 19:46 - 00175560 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32gui.pyd 2016-02-18 14:28 - 2016-01-12 19:47 - 00030160 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2016-02-18 14:28 - 2016-01-12 19:47 - 00043472 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32process.pyd 2016-02-18 14:28 - 2016-01-12 19:47 - 00028616 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32ts.pyd 2016-02-18 14:28 - 2016-01-12 19:47 - 00048592 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32service.pyd 2016-02-18 14:27 - 2016-02-16 19:39 - 00026456 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2016-02-18 14:28 - 2016-01-12 19:46 - 00057808 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2016-02-18 14:28 - 2016-01-12 19:47 - 00024016 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\win32profile.pyd 2016-02-18 14:27 - 2016-02-16 19:38 - 00117056 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00024392 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2016-02-18 14:27 - 2016-01-12 19:47 - 00036296 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\librsync.dll 2016-02-18 14:28 - 2016-02-16 19:39 - 00023376 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2016-02-18 14:28 - 2016-01-12 19:44 - 00134608 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_elementtree.pyd 2015-12-13 13:11 - 2016-01-12 19:44 - 00134088 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2016-02-18 14:27 - 2016-01-12 19:45 - 00240584 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\jpegtran.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00052024 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00020800 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00021824 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\winffi.kernel32._winffi_kernel32.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00019776 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00020800 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd 2016-02-18 14:27 - 2016-02-16 19:38 - 00020280 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2016-02-18 14:28 - 2016-01-12 19:47 - 00350152 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2016-02-18 14:28 - 2016-02-16 19:39 - 00022352 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2016-02-18 14:27 - 2016-02-16 19:39 - 00084792 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2015-12-13 13:11 - 2016-02-16 19:39 - 01826096 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2016-02-18 14:28 - 2016-01-12 19:45 - 00083912 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\sip.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 03928880 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 01971504 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00531248 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00132912 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00223544 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00207672 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2016-02-18 14:27 - 2016-02-16 19:39 - 00158008 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd 2016-02-18 14:27 - 2016-02-16 19:39 - 00042808 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd 2016-02-18 14:27 - 2016-01-12 19:49 - 00017864 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\libEGL.dll 2016-02-18 14:27 - 2016-01-12 19:49 - 01631184 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2016-02-18 14:28 - 2016-02-16 19:39 - 00024904 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00546096 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2015-12-13 13:11 - 2016-02-16 19:39 - 00357680 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2016-02-18 14:28 - 2016-01-12 19:52 - 00697304 _____ () C:\Users\LilC\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-12-15 22:58 - 2015-12-15 22:58 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2010-02-24 00:14 - 2010-02-24 00:14 - 00041472 _____ () C:\Program Files (x86)\ASUS\ControlDeck\HelpFunc.dll 2010-02-24 00:14 - 2010-02-24 00:14 - 00071680 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Brightness.dll 2010-02-24 00:11 - 2010-02-24 00:11 - 00076288 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Volume.dll 2010-02-24 00:12 - 2010-02-24 00:12 - 00186880 _____ () C:\Program Files (x86)\ASUS\ControlDeck\Resolution.dll 2010-02-24 00:14 - 2010-02-24 00:14 - 00050688 _____ () C:\Program Files (x86)\ASUS\ControlDeck\P4GControl.dll 2015-11-11 03:41 - 2015-11-11 03:41 - 00756376 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\MSPTLS.DLL 2015-01-10 18:30 - 2015-01-10 18:30 - 00495616 _____ () C:\Users\LilC\AppData\Local\assembly\dl3\3NM7G1HA.ZP9\E6Q511EY.EDT\9eb99bdc\009cbe78_0838c701\Interop.Word.DLL 2015-01-10 18:30 - 2015-01-10 18:30 - 00016384 _____ () C:\Users\LilC\AppData\Local\assembly\dl3\3NM7G1HA.ZP9\E6Q511EY.EDT\b04ae321\0067763f_74c6c901\Werkzeuge35Imply.DLL 2009-04-26 14:38 - 2009-04-26 14:38 - 00016384 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Werkzeuge35Imply.dll 2009-08-12 13:16 - 2009-08-12 13:16 - 00061440 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\DataAccess.dll 2007-01-14 19:19 - 2007-01-14 19:19 - 00495616 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Interop.Word.dll 2009-04-09 14:29 - 2009-04-09 14:29 - 00016384 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\lexikon.dll 2009-08-12 14:11 - 2009-08-12 14:11 - 00032768 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Textanalyse.dll 2009-05-18 11:15 - 2009-05-18 11:15 - 00028672 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\wortschatz.dll 2009-08-19 17:59 - 2009-08-19 17:59 - 00028672 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\buchstabenmixer.dll 2009-08-19 17:59 - 2009-08-19 17:59 - 00024576 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\wörtermixer.dll 2009-08-19 17:59 - 2009-08-19 17:59 - 00024576 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Sätzemixer.dll 2009-08-12 14:11 - 2009-08-12 14:11 - 00028672 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Lückentext.dll 2009-08-19 17:59 - 2009-08-19 17:59 - 00032768 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Kreuzworträtsel.dll 2009-08-19 17:59 - 2009-08-19 17:59 - 00024576 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Wortschlange.dll 2009-05-18 11:15 - 2009-05-18 11:15 - 00020480 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\Info.dll 2009-06-01 10:59 - 2009-06-01 10:59 - 00016384 _____ () C:\ProgramData\Cornelsen\DUP Privet 1\Werkzeuge 3.5 Privet\FunctionServer.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Temp:0BACBDD9 [179] AlternateDataStreams: C:\ProgramData\Temp:12383CAE [180] AlternateDataStreams: C:\ProgramData\Temp:15734396 [187] AlternateDataStreams: C:\ProgramData\Temp:4EFA2FC7 [182] AlternateDataStreams: C:\ProgramData\Temp:51E66512 [162] AlternateDataStreams: C:\ProgramData\Temp:A9223B61 [181] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2015-10-14 16:18 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2510528884-3436101045-2521625375-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LilC\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.192.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{711B9528-90E5-4CC4-AA0D-E1EFBB0B2046}] => (Allow) LPort=5353 FirewallRules: [{BE3ED669-1502-4020-9EDB-4094C14E2D4D}] => (Allow) LPort=8182 FirewallRules: [{A7A58B0D-E0DD-48AC-A45A-B682FFDA61EE}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\wlcsdk.exe FirewallRules: [{F8A2DB07-EC00-4A10-9A05-C5A66650C35B}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{0A74F52A-E39E-4E99-AF13-2A278735B9EA}] => (Allow) svchost.exe FirewallRules: [{2C0E4D63-FA5A-4201-9C85-FF95C2469A39}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [{DB91A4F2-886F-4C31-B91C-D59928993926}] => (Allow) C:\Users\LilC\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{8004910B-DEA0-489E-997D-E629B75E7D60}] => (Allow) C:\Users\LilC\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{77102B7F-85CA-449C-9FA3-FF664ABF25FA}C:\users\LilC\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\LilC\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{98E884BD-D0A8-4311-8A32-87E7C9DA4C32}C:\users\LilC\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\LilC\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{4BA1F746-D051-4702-BFBD-B200DE8F8770}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{89061523-F62E-449B-96C9-459819226450}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{E8516218-BF91-43C6-80D4-24C52C69048C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe FirewallRules: [{E80DD3AD-8900-4950-B3EE-081B80D942D9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe FirewallRules: [{677147F9-02EB-45B5-BDC3-3D1FE220270E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{E88FA57F-9A7A-45D9-9EC1-FECF05A5D7B0}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{AB68C0D4-84AE-496A-AC35-77D108742A53}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{548746AB-5012-4211-B1E1-13411D370FDF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{F3D09673-66A1-4898-ABAC-8E716C708B1C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe FirewallRules: [{D8989FA6-E703-4471-AB65-B89D65D9AA17}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{93FE10A2-2620-4206-9342-3A3D44DDE873}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe FirewallRules: [{BD187BDC-699A-41FE-B71F-E30D4F0B9971}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{9A812D10-53D8-4035-8452-0FD89199F7A7}] => (Allow) C:\Program Files (x86)\common files\hp\digital imaging\bin\hpqphotocrm.exe FirewallRules: [{F78E4206-AA78-4FC6-ADAC-842646025342}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqsudi.exe FirewallRules: [{1295C57B-4B9D-4598-AAD2-AB338FAFE96B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpsapp.exe FirewallRules: [{CC986830-0B50-4140-A2D6-79DE423A19FC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe FirewallRules: [{5F038E40-2C7A-4D88-B860-45FC05FE1B71}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe FirewallRules: [{C781DC04-9505-403F-A68E-2349BA8B217C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqpse.exe FirewallRules: [{3B8522B0-6840-4ACB-BAEE-C612E1823E86}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{991539E6-940B-43F7-895B-FCA976086269}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{785F62D8-5B58-4C61-A067-D0A974301F71}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{400FBA9C-6F77-4A21-930D-574A4845831B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{F3F0E79F-31CF-4CFC-9DAD-91122ED46BD8}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{04BBABD2-12B1-40BC-916F-938A331DDDC7}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [{BD8C7951-A4BC-4944-9BB7-FC6A9A6B3312}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{EBAF0B89-78D8-48F8-B38C-35CC53BBF29C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{443EE7BB-400E-4A3C-99ED-2A58ACD53180}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{9524277F-B980-4F19-9FB5-DAF1C0880FD4}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{4A6ECFDE-6823-4F5D-8574-69A93DF63C64}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{9419771C-AD76-46D1-B9A8-CC996FE7AE74}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{914E614C-3C7B-470B-BD4E-6DC796C6F6A1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= 05-03-2016 13:20:57 Windows Update 09-03-2016 07:00:50 Windows Update 09-03-2016 22:31:51 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (03/10/2016 04:19:35 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_64) - Failed to compile: System.ServiceModel, Version=3.0.0.0, Culture=neutral, PublicKeyToken=b77a5c561934e089 . Error code = 0x80070020 Error: (03/09/2016 10:35:03 PM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - Failed to compile: PresentationFramework, Version=3.0.0.0, Culture=Neutral, PublicKeyToken=31bf3856ad364e35, processorArchitecture=msil . Error code = 0x80070020 Error: (03/08/2016 07:43:21 PM) (Source: MsiInstaller) (EventID: 1024) (User: LilC-PC) Description: Produkt: Adobe Reader XI (11.0.14) - Deutsch - Update "{AC76BA86-7AD7-0000-2550-7A8C40011015}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127 Error: (03/06/2016 05:57:11 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm GWXUX.exe, Version 6.3.9600.18155 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 300 Startzeit: 01d177c8d8fd96d2 Endzeit: 15 Anwendungspfad: C:\Windows\System32\GWX\GWXUX.exe Berichts-ID: 6cca2fb3-e3bc-11e5-a6f6-485b399bb061 Error: (03/05/2016 01:24:57 PM) (Source: MsiInstaller) (EventID: 1024) (User: LilC-PC) Description: Produkt: Adobe Reader XI (11.0.13) - Deutsch - Update "{AC76BA86-7AD7-0000-2550-7A8C40011014}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127 Error: (02/26/2016 07:10:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: WINWORD.EXE, Version: 12.0.6743.5000, Zeitstempel: 0x569617f9 Name des fehlerhaften Moduls: wwlib.dll, Version: 12.0.6743.5000, Zeitstempel: 0x569618ff Ausnahmecode: 0xc0000005 Fehleroffset: 0x00064741 ID des fehlerhaften Prozesses: 0xc9c Startzeit der fehlerhaften Anwendung: 0xWINWORD.EXE0 Pfad der fehlerhaften Anwendung: WINWORD.EXE1 Pfad des fehlerhaften Moduls: WINWORD.EXE2 Berichtskennung: WINWORD.EXE3 Error: (02/23/2016 09:40:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.19135, Zeitstempel: 0x56a1bbe2 Name des fehlerhaften Moduls: MSVCR90.dll, Version: 9.0.30729.6161, Zeitstempel: 0x4dace4e7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000001e1ac ID des fehlerhaften Prozesses: 0x%9 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Error: (02/22/2016 08:23:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.19135, Zeitstempel: 0x56a1bbe2 Name des fehlerhaften Moduls: MSVCR90.dll, Version: 9.0.30729.6161, Zeitstempel: 0x4dace4e7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000001e1ac ID des fehlerhaften Prozesses: 0x%9 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Error: (02/20/2016 09:38:38 AM) (Source: SideBySide) (EventID: 9) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3. Das Stammelement der Manifestdatei muss assembliert sein. Error: (02/17/2016 11:35:57 PM) (Source: SideBySide) (EventID: 9) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "1". Fehler in Manifest- oder Richtliniendatei "2" in Zeile 3. Das Stammelement der Manifestdatei muss assembliert sein. Systemfehler: ============= Error: (03/10/2016 01:29:32 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1000) (User: NT-AUTORITÄT) Description: Fehler bei der CBS-Clientinitialisierung. Letzter Fehler: 0x8007045b Error: (03/09/2016 06:07:09 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (03/08/2016 07:35:34 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 08.03.2016 um 19:33:31 unerwartet heruntergefahren. Error: (03/07/2016 10:36:49 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Error: (02/29/2016 07:34:02 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (02/29/2016 07:30:10 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: ) Description: WMPNetworkSvc0x80004005 Error: (02/28/2016 11:33:15 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800f020b fehlgeschlagen: SAMSUNG Electronics Co., Ltd. - Other hardware - SAMSUNG Mobile MTP Device Error: (02/28/2016 11:32:52 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {49BD2028-1523-11D1-AD79-00C04FD8FDFF} Error: (02/27/2016 08:47:17 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (02/26/2016 05:28:24 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: ) Description: WMPNetworkSvc0x80004005 CodeIntegrity: =================================== Date: 2015-10-14 17:13:10.890 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-10-14 17:13:10.765 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-10-14 17:13:10.609 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-10-14 17:13:10.484 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-08-23 19:41:37.212 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2015-08-23 19:41:37.103 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Speicherinformationen =========================== Prozessor: AMD Athlon(tm) II P320 Dual-Core Processor Prozentuale Nutzung des RAM: 71% Installierter physikalischer RAM: 4093.82 MB Verfügbarer physikalischer RAM: 1146.59 MB Summe virtueller Speicher: 8185.86 MB Verfügbarer virtueller Speicher: 3628.23 MB ==================== Laufwerke ================================ Drive c: (OS) (Fixed) (Total:116.44 GB) (Free:55.96 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive d: (Data) (Fixed) (Total:163.77 GB) (Free:92.89 GB) NTFS Drive e: (527491DDS_1) (CDROM) (Total:0.13 GB) (Free:0 GB) CDFS Drive f: (Volume) (Fixed) (Total:164.06 GB) (Free:60.29 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 49F2D9BD) Partition 1: (Not Active) - (Size=21.5 GB) - (Type=1C) Partition 2: (Active) - (Size=116.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=327.8 GB) - (Type=OF Extended) ==================== Ende von Addition.txt ============================ |
10.03.2016, 21:23 | #5 |
| Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsamCode:
ATTFilter 21:10:22.0878 0x14d8 TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57 21:10:50.0401 0x14d8 ============================================================ 21:10:50.0401 0x14d8 Current date / time: 2016/03/10 21:10:50.0401 21:10:50.0401 0x14d8 SystemInfo: 21:10:50.0401 0x14d8 21:10:50.0401 0x14d8 OS Version: 6.1.7601 ServicePack: 1.0 21:10:50.0401 0x14d8 Product type: Workstation 21:10:50.0402 0x14d8 ComputerName: LILC-PC 21:10:50.0403 0x14d8 UserName: LilC 21:10:50.0403 0x14d8 Windows directory: C:\Windows 21:10:50.0403 0x14d8 System windows directory: C:\Windows 21:10:50.0403 0x14d8 Running under WOW64 21:10:50.0403 0x14d8 Processor architecture: Intel x64 21:10:50.0403 0x14d8 Number of processors: 2 21:10:50.0403 0x14d8 Page size: 0x1000 21:10:50.0403 0x14d8 Boot type: Normal boot 21:10:50.0403 0x14d8 ============================================================ 21:10:52.0794 0x14d8 KLMD registered as C:\Windows\system32\drivers\48213088.sys 21:10:53.0252 0x14d8 System UUID: {58FFA3C7-D4DA-E748-F785-5428DA15238D} 21:10:54.0224 0x14d8 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 21:10:54.0229 0x14d8 ============================================================ 21:10:54.0229 0x14d8 \Device\Harddisk0\DR0: 21:10:54.0229 0x14d8 MBR partitions: 21:10:54.0229 0x14d8 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2AF98B8, BlocksNum 0xE8E1800 21:10:54.0247 0x14d8 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x113DC000, BlocksNum 0x14789800 21:10:54.0265 0x14d8 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x25B66000, BlocksNum 0x1481F800 21:10:54.0265 0x14d8 ============================================================ 21:10:54.0371 0x14d8 C: <-> \Device\Harddisk0\DR0\Partition1 21:10:54.0414 0x14d8 D: <-> \Device\Harddisk0\DR0\Partition2 21:10:54.0463 0x14d8 F: <-> \Device\Harddisk0\DR0\Partition3 21:10:54.0466 0x14d8 ============================================================ 21:10:54.0466 0x14d8 Initialize success 21:10:54.0466 0x14d8 ============================================================ 21:11:16.0252 0x0810 ============================================================ 21:11:16.0252 0x0810 Scan started 21:11:16.0252 0x0810 Mode: Manual; 21:11:16.0252 0x0810 ============================================================ 21:11:16.0252 0x0810 KSN ping started 21:11:17.0502 0x0810 KSN ping finished: true 21:11:21.0219 0x0810 ================ Scan system memory ======================== 21:11:21.0219 0x0810 System memory - ok 21:11:21.0226 0x0810 ================ Scan services ============================= 21:11:21.0454 0x0810 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 21:11:21.0481 0x0810 1394ohci - ok 21:11:21.0800 0x0810 [ 56BD9B36526D8E4A1AD642E44B0B4031, 042169644AF89ECB149C841A7B3C3C70D5EF1906B946CA6CAABEC4E21E2588B7 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe 21:11:22.0023 0x0810 a2AntiMalware - ok 21:11:22.0104 0x0810 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 21:11:22.0138 0x0810 ACPI - ok 21:11:22.0178 0x0810 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 21:11:22.0183 0x0810 AcpiPmi - ok 21:11:22.0309 0x0810 [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 21:11:22.0313 0x0810 AdobeARMservice - ok 21:11:22.0470 0x0810 [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 21:11:22.0481 0x0810 AdobeFlashPlayerUpdateSvc - ok 21:11:22.0554 0x0810 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 21:11:22.0583 0x0810 adp94xx - ok 21:11:22.0620 0x0810 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 21:11:22.0633 0x0810 adpahci - ok 21:11:22.0657 0x0810 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 21:11:22.0665 0x0810 adpu320 - ok 21:11:22.0702 0x0810 [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 21:11:22.0707 0x0810 AeLookupSvc - ok 21:11:22.0772 0x0810 [ 2D00D3DADC1D3326BA788EB071F2726E, 559048C0A15BBA83367D0F2969F48042FB1D11C9862A0BA4DF69FB15DECB8761 ] AFBAgent C:\Windows\system32\FBAgent.exe 21:11:22.0795 0x0810 AFBAgent - ok 21:11:22.0844 0x0810 [ 9A4A1EEE802BF2F878EE8EAB407B21B7, 177EB7DF4B35FE4C0E45E775A0FD5D48D39B410052E3EE18BDEEC809E152D9D8 ] AFD C:\Windows\system32\drivers\afd.sys 21:11:22.0874 0x0810 AFD - ok 21:11:22.0917 0x0810 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 21:11:22.0921 0x0810 agp440 - ok 21:11:22.0957 0x0810 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 21:11:22.0964 0x0810 ALG - ok 21:11:23.0004 0x0810 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 21:11:23.0007 0x0810 aliide - ok 21:11:23.0058 0x0810 [ EC803C6CA6D6FDEE5DE77641426E72BE, 5BFD662ADC2922005F22DEA51DA3BFB327F1A4163B3464A862FD1AF73195B536 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 21:11:23.0067 0x0810 AMD External Events Utility - ok 21:11:23.0088 0x0810 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 21:11:23.0090 0x0810 amdide - ok 21:11:23.0134 0x0810 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 21:11:23.0139 0x0810 AmdK8 - ok 21:11:23.0398 0x0810 [ 09FBE3B09F9A8B5EEA6A10D3C1D55888, 72173B2E83A98FB75908214D7FFFA36A491BDBA3F6D6B41D9435F63E5009BEBD ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys 21:11:23.0675 0x0810 amdkmdag - ok 21:11:23.0722 0x0810 [ 63B54A51E9BF3645063A1A0709F0E52A, 01D5E901839C82CFA41200494D6F1C423A23CD98F7738D79E7EE13161FA83538 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 21:11:23.0730 0x0810 amdkmdap - ok 21:11:23.0764 0x0810 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 21:11:23.0768 0x0810 AmdPPM - ok 21:11:23.0799 0x0810 [ 53D8D46D51D390ABDB54ECA623165CB7, D16A3604412D0DC3EA68320FB6980D146ED60D587AAB6B65810C038AFF1EC237 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys 21:11:23.0802 0x0810 amdsata - ok 21:11:23.0836 0x0810 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 21:11:23.0845 0x0810 amdsbs - ok 21:11:23.0864 0x0810 [ 75C51148154E34EB3D7BB84749A758D5, 8865F223CBAE166A9BF6CBCDA66F63369F151CCB449A28E95560C36AD45D0C85 ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys 21:11:23.0867 0x0810 amdxata - ok 21:11:23.0918 0x0810 [ 27DABFB4A6B0140C34DBEC713469592B, A355170D353AFBF0DE4EF53282F8404788FBBD0E2A1B7282B1B2925923E83141 ] AppID C:\Windows\system32\drivers\appid.sys 21:11:23.0923 0x0810 AppID - ok 21:11:23.0939 0x0810 [ ABC373B9C6275D45F17DB559408FFD1B, 12B355393BEBE2D1D24D7A9DA5E69E03E334899407503BC1CADCF7BE39828223 ] AppIDSvc C:\Windows\System32\appidsvc.dll 21:11:23.0943 0x0810 AppIDSvc - ok 21:11:23.0976 0x0810 [ 3EA5DA3F459F6ED19E10166965F6892F, F5618A5FA72C5E57BCFA6F2ECB840B1AEC60C72840AF3C1D94D5FCDB5ED2BF5E ] Appinfo C:\Windows\System32\appinfo.dll 21:11:23.0981 0x0810 Appinfo - ok 21:11:24.0068 0x0810 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 21:11:24.0078 0x0810 arc - ok 21:11:24.0104 0x0810 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 21:11:24.0112 0x0810 arcsas - ok 21:11:24.0173 0x0810 [ 18E5C2F937F9DEB8C282DF66A3761925, 30294C381F8C7DCB45EF9BCF572F410FF47630E12D5AA02259C6C80F07BEF495 ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe 21:11:24.0178 0x0810 ASLDRService - ok 21:11:24.0192 0x0810 [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys 21:11:24.0195 0x0810 ASMMAP64 - ok 21:11:24.0306 0x0810 [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 21:11:24.0353 0x0810 aspnet_state - ok 21:11:24.0400 0x0810 [ 7BC1F2FC2A9D79E1EBBBF6D69AC3BA1F, 236265BE3F1B2130025A3A10152893BD0D18AD8965732361058B775F010539A2 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys 21:11:24.0403 0x0810 aswHwid - ok 21:11:24.0432 0x0810 [ 68E76C1675AC171A84F5B7230652E19D, A707A4E51110B15FF7D73C95D4D9C1E457FC9D93E1479BDB67EBDDDD6AC28D8E ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys 21:11:24.0438 0x0810 aswMonFlt - ok 21:11:24.0464 0x0810 [ 2D6B49A071216796106E7804AB2BA7DC, 6A58A3B36EA05A24333482F87CFD315F73E56A64E46493E82E0FE9115E284168 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys 21:11:24.0469 0x0810 aswRdr - ok 21:11:24.0500 0x0810 [ E46B51C99BB750A81AC6A68362475A5C, 2A61C09902B39696D151B9D5E6A60FFC3CF3EA02613EC64BBAB4DEE3C78838E2 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys 21:11:24.0504 0x0810 aswRvrt - ok 21:11:24.0579 0x0810 [ 01487B49CC9289D7A1DADAD6A9A2C02F, 2BCF6F7094A0C71F0DCC47CECBBF675FEDFBCC3D7149B6E5F91F2568A342ABC5 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys 21:11:24.0646 0x0810 aswSnx - ok 21:11:24.0685 0x0810 [ 619CA9F210F0F36F8162E5B7BFDDA5CD, D0D87549BD32F575E518B510085F86D434C3B948733391A6F7959918D761F29B ] aswSP C:\Windows\system32\drivers\aswSP.sys 21:11:24.0707 0x0810 aswSP - ok 21:11:24.0744 0x0810 [ D9079E1A1C2A1F8ED5F37AF8E6CD3161, 629E3A642C5E3BEA65CDD2E08CAD69F9649A98BDA906678B51D3D2C9DB5BB253 ] aswStm C:\Windows\system32\drivers\aswStm.sys 21:11:24.0751 0x0810 aswStm - ok 21:11:24.0789 0x0810 [ 3BEC32A0B646D914921FD56AA39998C1, 8DB7CBF3DEF8EAE1D7D28C38B3A0FCD5C2A04D772078B907F35C66451355A04A ] aswVmm C:\Windows\system32\drivers\aswVmm.sys 21:11:24.0799 0x0810 aswVmm - ok 21:11:24.0834 0x0810 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 21:11:24.0837 0x0810 AsyncMac - ok 21:11:24.0870 0x0810 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 21:11:24.0873 0x0810 atapi - ok 21:11:24.0970 0x0810 [ EBEAEAA0FCA29215F12B9646376ADE39, DAA425CCB27D9AAE4D2E78A1C06722B86797E27890A5EF4EB76A07A46F979B91 ] athr C:\Windows\system32\DRIVERS\athrx.sys 21:11:25.0046 0x0810 athr - ok 21:11:25.0115 0x0810 [ 637E0753BD6DEB8EA5314A5C357EC1A0, 2B479DBBF72A2AFB3DC65A3FDA30B628BC9FB21160EBD7E1BE44404C671B1D08 ] AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys 21:11:25.0121 0x0810 AtiHdmiService - ok 21:11:25.0176 0x0810 [ 7C5D273E29DCC5505469B299C6F29163, 206CAB85CE12A3953F0861C811575DC7FD000147436219EEE334584A33370B3A ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys 21:11:25.0179 0x0810 AtiPcie - ok 21:11:25.0210 0x0810 [ 7910158929571214A959D5A6D16DD9C0, 9B4F8A3AF9E09B2F772EEF1CB8F7EAB8A226068784837F375AE97B89B0B3A383 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe 21:11:25.0216 0x0810 ATKGFNEXSrv - ok 21:11:25.0270 0x0810 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 21:11:25.0304 0x0810 AudioEndpointBuilder - ok 21:11:25.0349 0x0810 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll 21:11:25.0368 0x0810 AudioSrv - ok 21:11:25.0486 0x0810 [ F5CB8703A4F51EE30E5C090C78073AA4, 90683F39E9AA315FFB66A9F014AD1BEBF19EA62908247C133455815F6632E578 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe 21:11:25.0510 0x0810 avast! Antivirus - ok 21:11:25.0539 0x0810 AvastVBoxSvc - ok 21:11:25.0594 0x0810 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 21:11:25.0600 0x0810 AxInstSV - ok 21:11:25.0682 0x0810 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 21:11:25.0710 0x0810 b06bdrv - ok 21:11:25.0765 0x0810 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 21:11:25.0776 0x0810 b57nd60a - ok 21:11:25.0834 0x0810 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 21:11:25.0839 0x0810 BDESVC - ok 21:11:25.0856 0x0810 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 21:11:25.0857 0x0810 Beep - ok 21:11:25.0942 0x0810 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 21:11:25.0961 0x0810 BFE - ok 21:11:26.0004 0x0810 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\system32\qmgr.dll 21:11:26.0030 0x0810 BITS - ok 21:11:26.0056 0x0810 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 21:11:26.0058 0x0810 blbdrive - ok 21:11:26.0110 0x0810 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 21:11:26.0114 0x0810 bowser - ok 21:11:26.0149 0x0810 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 21:11:26.0151 0x0810 BrFiltLo - ok 21:11:26.0164 0x0810 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 21:11:26.0165 0x0810 BrFiltUp - ok 21:11:26.0215 0x0810 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys 21:11:26.0219 0x0810 BridgeMP - ok 21:11:26.0255 0x0810 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 21:11:26.0261 0x0810 Browser - ok 21:11:26.0289 0x0810 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 21:11:26.0298 0x0810 Brserid - ok 21:11:26.0321 0x0810 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 21:11:26.0324 0x0810 BrSerWdm - ok 21:11:26.0360 0x0810 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 21:11:26.0361 0x0810 BrUsbMdm - ok 21:11:26.0375 0x0810 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 21:11:26.0377 0x0810 BrUsbSer - ok 21:11:26.0390 0x0810 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 21:11:26.0394 0x0810 BTHMODEM - ok 21:11:26.0447 0x0810 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 21:11:26.0451 0x0810 bthserv - ok 21:11:26.0494 0x0810 catchme - ok 21:11:26.0520 0x0810 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 21:11:26.0523 0x0810 cdfs - ok 21:11:26.0572 0x0810 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\drivers\cdrom.sys 21:11:26.0578 0x0810 cdrom - ok 21:11:26.0624 0x0810 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 21:11:26.0628 0x0810 CertPropSvc - ok 21:11:26.0671 0x0810 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 21:11:26.0674 0x0810 circlass - ok 21:11:26.0709 0x0810 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys 21:11:26.0720 0x0810 CLFS - ok 21:11:26.0792 0x0810 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 21:11:26.0795 0x0810 clr_optimization_v2.0.50727_32 - ok 21:11:26.0831 0x0810 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 21:11:26.0835 0x0810 clr_optimization_v2.0.50727_64 - ok 21:11:26.0928 0x0810 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 21:11:26.0999 0x0810 clr_optimization_v4.0.30319_32 - ok 21:11:27.0044 0x0810 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 21:11:27.0062 0x0810 clr_optimization_v4.0.30319_64 - ok 21:11:27.0109 0x0810 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 21:11:27.0111 0x0810 CmBatt - ok 21:11:27.0152 0x0810 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 21:11:27.0153 0x0810 cmdide - ok 21:11:27.0194 0x0810 [ EC0511BB85BAA42A9734011685A6732C, 10B52F0860CCB3AA0FC34DDA5C5538BFCF7B6D40738B7756297237FD2D9E01C1 ] CNG C:\Windows\system32\Drivers\cng.sys 21:11:27.0208 0x0810 CNG - ok 21:11:27.0256 0x0810 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 21:11:27.0258 0x0810 Compbatt - ok 21:11:27.0285 0x0810 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 21:11:27.0288 0x0810 CompositeBus - ok 21:11:27.0304 0x0810 COMSysApp - ok 21:11:27.0324 0x0810 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 21:11:27.0326 0x0810 crcdisk - ok 21:11:27.0383 0x0810 [ 7BC3E861F7E8EB543A630090FAE779E0, 52A538F25C853AAC9706CD0D4EBF80B1963391AA175895CFD9D44C8ABBFCFB74 ] CryptSvc C:\Windows\system32\cryptsvc.dll 21:11:27.0390 0x0810 CryptSvc - ok 21:11:27.0475 0x0810 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 21:11:27.0495 0x0810 DcomLaunch - ok 21:11:27.0552 0x0810 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 21:11:27.0564 0x0810 defragsvc - ok 21:11:27.0599 0x0810 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 21:11:27.0603 0x0810 DfsC - ok 21:11:27.0656 0x0810 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 21:11:27.0666 0x0810 Dhcp - ok 21:11:27.0776 0x0810 [ EC3F433D00365F1A9BC3411BCA7C7140, 0852D747359DE573504EBBDB99DA26D3BFA8B3C7A4836F8E3A5AD94B5571AD5C ] DiagTrack C:\Windows\system32\diagtrack.dll 21:11:27.0814 0x0810 DiagTrack - ok 21:11:27.0857 0x0810 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 21:11:27.0859 0x0810 discache - ok 21:11:27.0897 0x0810 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\DRIVERS\disk.sys 21:11:27.0900 0x0810 Disk - ok 21:11:27.0938 0x0810 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 21:11:27.0946 0x0810 Dnscache - ok 21:11:27.0999 0x0810 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 21:11:28.0009 0x0810 dot3svc - ok 21:11:28.0066 0x0810 [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys 21:11:28.0071 0x0810 Dot4 - ok 21:11:28.0113 0x0810 [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys 21:11:28.0115 0x0810 Dot4Print - ok 21:11:28.0126 0x0810 [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys 21:11:28.0129 0x0810 dot4usb - ok 21:11:28.0174 0x0810 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 21:11:28.0184 0x0810 DPS - ok 21:11:28.0259 0x0810 [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 21:11:28.0260 0x0810 drmkaud - ok 21:11:28.0333 0x0810 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 21:11:28.0367 0x0810 DXGKrnl - ok 21:11:28.0410 0x0810 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 21:11:28.0415 0x0810 EapHost - ok 21:11:28.0601 0x0810 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 21:11:28.0689 0x0810 ebdrv - ok 21:11:28.0723 0x0810 [ 7FB33A9A2E6B6D5CA9318668B95CA69C, 5B5CDF8BF4F2C2ADBAD2A92C554C369C6A428B7DE4FEF74FE9198058C3B864A3 ] EFS C:\Windows\System32\lsass.exe 21:11:28.0729 0x0810 EFS - ok 21:11:28.0810 0x0810 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 21:11:28.0828 0x0810 ehRecvr - ok 21:11:28.0866 0x0810 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 21:11:28.0870 0x0810 ehSched - ok 21:11:28.0949 0x0810 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 21:11:28.0970 0x0810 elxstor - ok 21:11:29.0051 0x0810 [ FBEFE3D8DFEBAA85A81897B0B0EB4E1E, 67ADE442E68DE986C10BBCC4A38F76955A6DCBBE9608CB1F7F0C155C8AF0B9E3 ] epp64 C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\epp64.sys 21:11:29.0056 0x0810 epp64 - ok 21:11:29.0088 0x0810 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 21:11:29.0089 0x0810 ErrDev - ok 21:11:29.0101 0x0810 Scan was interrupted by user! 21:11:29.0101 0x0810 Waiting for KSN requests completion. In queue: 80 21:11:30.0101 0x0810 Waiting for KSN requests completion. In queue: 80 21:11:31.0220 0x0810 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 11.1.2245.1540 ), 0x41000 ( enabled : updated ) 21:11:31.0223 0x0810 FW detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 11.1.2245.1540 ), 0x40010 ( disabled ) 21:11:31.0263 0x0810 Win FW state via NFP2: enabled ( trusted ) 21:11:32.0478 0x0810 ============================================================ 21:11:32.0478 0x0810 Scan finished 21:11:32.0478 0x0810 ============================================================ 21:11:32.0494 0x1ad8 Detected object count: 0 21:11:32.0494 0x1ad8 Actual detected object count: 0 21:11:53.0206 0x1d38 ============================================================ 21:11:53.0206 0x1d38 Scan started 21:11:53.0206 0x1d38 Mode: Manual; SigCheck; TDLFS; 21:11:53.0206 0x1d38 ============================================================ 21:11:53.0206 0x1d38 KSN ping started 21:11:54.0365 0x1d38 KSN ping finished: true 21:11:54.0950 0x1d38 ================ Scan system memory ======================== 21:11:54.0950 0x1d38 System memory - ok 21:11:54.0950 0x1d38 ================ Scan services ============================= 21:11:55.0116 0x1d38 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 21:11:56.0102 0x1d38 1394ohci - ok 21:11:56.0379 0x1d38 [ 56BD9B36526D8E4A1AD642E44B0B4031, 042169644AF89ECB149C841A7B3C3C70D5EF1906B946CA6CAABEC4E21E2588B7 ] a2AntiMalware C:\Program Files (x86)\Emsisoft Anti-Malware\a2service.exe 21:11:56.0648 0x1d38 a2AntiMalware - ok 21:11:56.0726 0x1d38 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 21:11:56.0850 0x1d38 ACPI - ok 21:11:56.0883 0x1d38 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 21:11:56.0992 0x1d38 AcpiPmi - ok 21:11:57.0080 0x1d38 [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 21:11:57.0118 0x1d38 AdobeARMservice - ok 21:11:57.0230 0x1d38 [ 785FD0E36CA75D90DD50042E2594BC63, 471A5ED43A3E18A5A69C28F7F351558E90F20416D9C532ADF50888808090AE89 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 21:11:57.0282 0x1d38 AdobeFlashPlayerUpdateSvc - ok 21:11:57.0352 0x1d38 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 21:11:57.0502 0x1d38 adp94xx - ok 21:11:57.0537 0x1d38 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 21:11:57.0618 0x1d38 adpahci - ok 21:11:57.0649 0x1d38 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 21:11:57.0738 0x1d38 adpu320 - ok 21:11:57.0784 0x1d38 [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 21:11:57.0851 0x1d38 AeLookupSvc - ok 21:11:57.0885 0x1d38 [ 2D00D3DADC1D3326BA788EB071F2726E, 559048C0A15BBA83367D0F2969F48042FB1D11C9862A0BA4DF69FB15DECB8761 ] AFBAgent C:\Windows\system32\FBAgent.exe 21:11:57.0930 0x1d38 AFBAgent - ok 21:11:57.0968 0x1d38 [ 9A4A1EEE802BF2F878EE8EAB407B21B7, 177EB7DF4B35FE4C0E45E775A0FD5D48D39B410052E3EE18BDEEC809E152D9D8 ] AFD C:\Windows\system32\drivers\afd.sys 21:11:58.0160 0x1d38 AFD - ok 21:11:58.0194 0x1d38 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 21:11:58.0279 0x1d38 agp440 - ok 21:11:58.0312 0x1d38 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 21:11:58.0353 0x1d38 ALG - ok 21:11:58.0380 0x1d38 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 21:11:58.0496 0x1d38 aliide - ok 21:11:58.0545 0x1d38 [ EC803C6CA6D6FDEE5DE77641426E72BE, 5BFD662ADC2922005F22DEA51DA3BFB327F1A4163B3464A862FD1AF73195B536 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 21:11:58.0611 0x1d38 AMD External Events Utility - ok 21:11:58.0656 0x1d38 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 21:11:58.0764 0x1d38 amdide - ok 21:11:58.0797 0x1d38 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 21:11:58.0890 0x1d38 AmdK8 - ok 21:11:59.0174 0x1d38 [ 09FBE3B09F9A8B5EEA6A10D3C1D55888, 72173B2E83A98FB75908214D7FFFA36A491BDBA3F6D6B41D9435F63E5009BEBD ] amdkmdag C:\Windows\system32\DRIVERS\atikmdag.sys 21:11:59.0422 0x1d38 amdkmdag - ok 21:11:59.0535 0x1d38 [ 63B54A51E9BF3645063A1A0709F0E52A, 01D5E901839C82CFA41200494D6F1C423A23CD98F7738D79E7EE13161FA83538 ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 21:11:59.0584 0x1d38 amdkmdap - ok 21:11:59.0602 0x1d38 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 21:11:59.0690 0x1d38 AmdPPM - ok 21:11:59.0726 0x1d38 [ 53D8D46D51D390ABDB54ECA623165CB7, D16A3604412D0DC3EA68320FB6980D146ED60D587AAB6B65810C038AFF1EC237 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys 21:11:59.0794 0x1d38 amdsata - ok 21:11:59.0829 0x1d38 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 21:11:59.0941 0x1d38 amdsbs - ok 21:11:59.0966 0x1d38 [ 75C51148154E34EB3D7BB84749A758D5, 8865F223CBAE166A9BF6CBCDA66F63369F151CCB449A28E95560C36AD45D0C85 ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys 21:12:00.0043 0x1d38 amdxata - ok 21:12:00.0076 0x1d38 [ 27DABFB4A6B0140C34DBEC713469592B, A355170D353AFBF0DE4EF53282F8404788FBBD0E2A1B7282B1B2925923E83141 ] AppID C:\Windows\system32\drivers\appid.sys 21:12:00.0172 0x1d38 AppID - ok 21:12:00.0185 0x1d38 [ ABC373B9C6275D45F17DB559408FFD1B, 12B355393BEBE2D1D24D7A9DA5E69E03E334899407503BC1CADCF7BE39828223 ] AppIDSvc C:\Windows\System32\appidsvc.dll 21:12:00.0223 0x1d38 AppIDSvc - ok 21:12:00.0299 0x1d38 [ 3EA5DA3F459F6ED19E10166965F6892F, F5618A5FA72C5E57BCFA6F2ECB840B1AEC60C72840AF3C1D94D5FCDB5ED2BF5E ] Appinfo C:\Windows\System32\appinfo.dll 21:12:00.0429 0x1d38 Appinfo - ok 21:12:00.0465 0x1d38 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 21:12:00.0555 0x1d38 arc - ok 21:12:00.0580 0x1d38 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 21:12:00.0643 0x1d38 arcsas - ok 21:12:00.0797 0x1d38 [ 18E5C2F937F9DEB8C282DF66A3761925, 30294C381F8C7DCB45EF9BCF572F410FF47630E12D5AA02259C6C80F07BEF495 ] ASLDRService C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe 21:12:00.0855 0x1d38 ASLDRService - ok 21:12:00.0879 0x1d38 [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64 C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys 21:12:00.0952 0x1d38 ASMMAP64 - ok 21:12:01.0072 0x1d38 [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 21:12:01.0131 0x1d38 aspnet_state - ok 21:12:01.0153 0x1d38 [ 7BC1F2FC2A9D79E1EBBBF6D69AC3BA1F, 236265BE3F1B2130025A3A10152893BD0D18AD8965732361058B775F010539A2 ] aswHwid C:\Windows\system32\drivers\aswHwid.sys 21:12:01.0230 0x1d38 aswHwid - ok 21:12:01.0263 0x1d38 [ 68E76C1675AC171A84F5B7230652E19D, A707A4E51110B15FF7D73C95D4D9C1E457FC9D93E1479BDB67EBDDDD6AC28D8E ] aswMonFlt C:\Windows\system32\drivers\aswMonFlt.sys 21:12:01.0358 0x1d38 aswMonFlt - ok 21:12:01.0393 0x1d38 [ 2D6B49A071216796106E7804AB2BA7DC, 6A58A3B36EA05A24333482F87CFD315F73E56A64E46493E82E0FE9115E284168 ] aswRdr C:\Windows\system32\drivers\aswRdr2.sys 21:12:01.0457 0x1d38 aswRdr - ok 21:12:01.0486 0x1d38 [ E46B51C99BB750A81AC6A68362475A5C, 2A61C09902B39696D151B9D5E6A60FFC3CF3EA02613EC64BBAB4DEE3C78838E2 ] aswRvrt C:\Windows\system32\drivers\aswRvrt.sys 21:12:01.0650 0x1d38 aswRvrt - ok 21:12:01.0744 0x1d38 [ 01487B49CC9289D7A1DADAD6A9A2C02F, 2BCF6F7094A0C71F0DCC47CECBBF675FEDFBCC3D7149B6E5F91F2568A342ABC5 ] aswSnx C:\Windows\system32\drivers\aswSnx.sys 21:12:01.0899 0x1d38 aswSnx - ok 21:12:01.0975 0x1d38 [ 619CA9F210F0F36F8162E5B7BFDDA5CD, D0D87549BD32F575E518B510085F86D434C3B948733391A6F7959918D761F29B ] aswSP C:\Windows\system32\drivers\aswSP.sys 21:12:02.0042 0x1d38 aswSP - ok 21:12:02.0069 0x1d38 [ D9079E1A1C2A1F8ED5F37AF8E6CD3161, 629E3A642C5E3BEA65CDD2E08CAD69F9649A98BDA906678B51D3D2C9DB5BB253 ] aswStm C:\Windows\system32\drivers\aswStm.sys 21:12:02.0110 0x1d38 aswStm - ok 21:12:02.0158 0x1d38 [ 3BEC32A0B646D914921FD56AA39998C1, 8DB7CBF3DEF8EAE1D7D28C38B3A0FCD5C2A04D772078B907F35C66451355A04A ] aswVmm C:\Windows\system32\drivers\aswVmm.sys 21:12:02.0274 0x1d38 aswVmm - ok 21:12:02.0302 0x1d38 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 21:12:02.0394 0x1d38 AsyncMac - ok 21:12:02.0427 0x1d38 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 21:12:02.0483 0x1d38 atapi - ok 21:12:02.0567 0x1d38 [ EBEAEAA0FCA29215F12B9646376ADE39, DAA425CCB27D9AAE4D2E78A1C06722B86797E27890A5EF4EB76A07A46F979B91 ] athr C:\Windows\system32\DRIVERS\athrx.sys 21:12:02.0701 0x1d38 athr - ok 21:12:02.0748 0x1d38 [ 637E0753BD6DEB8EA5314A5C357EC1A0, 2B479DBBF72A2AFB3DC65A3FDA30B628BC9FB21160EBD7E1BE44404C671B1D08 ] AtiHdmiService C:\Windows\system32\drivers\AtiHdmi.sys 21:12:02.0826 0x1d38 AtiHdmiService - ok 21:12:02.0853 0x1d38 [ 7C5D273E29DCC5505469B299C6F29163, 206CAB85CE12A3953F0861C811575DC7FD000147436219EEE334584A33370B3A ] AtiPcie C:\Windows\system32\DRIVERS\AtiPcie.sys 21:12:02.0918 0x1d38 AtiPcie - ok 21:12:02.0942 0x1d38 [ 7910158929571214A959D5A6D16DD9C0, 9B4F8A3AF9E09B2F772EEF1CB8F7EAB8A226068784837F375AE97B89B0B3A383 ] ATKGFNEXSrv C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe 21:12:02.0977 0x1d38 ATKGFNEXSrv - ok 21:12:03.0024 0x1d38 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 21:12:03.0086 0x1d38 AudioEndpointBuilder - ok 21:12:03.0137 0x1d38 [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv C:\Windows\System32\Audiosrv.dll 21:12:03.0196 0x1d38 AudioSrv - ok 21:12:03.0460 0x1d38 [ F5CB8703A4F51EE30E5C090C78073AA4, 90683F39E9AA315FFB66A9F014AD1BEBF19EA62908247C133455815F6632E578 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe 21:12:03.0515 0x1d38 avast! Antivirus - ok 21:12:03.0520 0x1d38 AvastVBoxSvc - ok 21:12:03.0557 0x1d38 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 21:12:03.0603 0x1d38 AxInstSV - ok 21:12:03.0645 0x1d38 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 21:12:03.0741 0x1d38 b06bdrv - ok 21:12:03.0773 0x1d38 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 21:12:03.0861 0x1d38 b57nd60a - ok 21:12:03.0885 0x1d38 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 21:12:03.0927 0x1d38 BDESVC - ok 21:12:03.0940 0x1d38 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 21:12:04.0052 0x1d38 Beep - ok 21:12:04.0114 0x1d38 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 21:12:04.0204 0x1d38 BFE - ok 21:12:04.0256 0x1d38 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\system32\qmgr.dll 21:12:04.0411 0x1d38 BITS - ok 21:12:04.0436 0x1d38 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 21:12:04.0522 0x1d38 blbdrive - ok 21:12:04.0678 0x1d38 [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 21:12:04.0755 0x1d38 bowser - ok 21:12:04.0800 0x1d38 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 21:12:04.0862 0x1d38 BrFiltLo - ok 21:12:04.0886 0x1d38 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 21:12:04.0949 0x1d38 BrFiltUp - ok 21:12:04.0970 0x1d38 [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP C:\Windows\system32\DRIVERS\bridge.sys 21:12:05.0083 0x1d38 BridgeMP - ok 21:12:05.0120 0x1d38 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 21:12:05.0166 0x1d38 Browser - ok 21:12:05.0198 0x1d38 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 21:12:05.0284 0x1d38 Brserid - ok 21:12:05.0318 0x1d38 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 21:12:05.0414 0x1d38 BrSerWdm - ok 21:12:05.0433 0x1d38 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 21:12:05.0495 0x1d38 BrUsbMdm - ok 21:12:05.0526 0x1d38 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 21:12:05.0593 0x1d38 BrUsbSer - ok 21:12:05.0618 0x1d38 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 21:12:05.0698 0x1d38 BTHMODEM - ok 21:12:05.0741 0x1d38 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 21:12:05.0825 0x1d38 bthserv - ok 21:12:05.0831 0x1d38 catchme - ok 21:12:05.0858 0x1d38 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 21:12:05.0944 0x1d38 cdfs - ok 21:12:05.0976 0x1d38 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\drivers\cdrom.sys 21:12:06.0048 0x1d38 cdrom - ok 21:12:06.0083 0x1d38 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 21:12:06.0145 0x1d38 CertPropSvc - ok 21:12:06.0174 0x1d38 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 21:12:06.0252 0x1d38 circlass - ok 21:12:06.0299 0x1d38 [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS C:\Windows\system32\CLFS.sys 21:12:06.0390 0x1d38 CLFS - ok 21:12:06.0459 0x1d38 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 21:12:06.0498 0x1d38 clr_optimization_v2.0.50727_32 - ok 21:12:06.0532 0x1d38 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 21:12:06.0567 0x1d38 clr_optimization_v2.0.50727_64 - ok 21:12:06.0618 0x1d38 [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 21:12:06.0657 0x1d38 clr_optimization_v4.0.30319_32 - ok 21:12:06.0678 0x1d38 [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 21:12:06.0718 0x1d38 clr_optimization_v4.0.30319_64 - ok 21:12:06.0753 0x1d38 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 21:12:06.0835 0x1d38 CmBatt - ok 21:12:06.0875 0x1d38 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 21:12:06.0952 0x1d38 cmdide - ok 21:12:07.0038 0x1d38 [ EC0511BB85BAA42A9734011685A6732C, 10B52F0860CCB3AA0FC34DDA5C5538BFCF7B6D40738B7756297237FD2D9E01C1 ] CNG C:\Windows\system32\Drivers\cng.sys 21:12:07.0159 0x1d38 CNG - ok 21:12:07.0200 0x1d38 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 21:12:07.0254 0x1d38 Compbatt - ok 21:12:07.0284 0x1d38 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 21:12:07.0354 0x1d38 CompositeBus - ok 21:12:07.0360 0x1d38 COMSysApp - ok 21:12:07.0378 0x1d38 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 21:12:07.0438 0x1d38 crcdisk - ok 21:12:07.0480 0x1d38 [ 7BC3E861F7E8EB543A630090FAE779E0, 52A538F25C853AAC9706CD0D4EBF80B1963391AA175895CFD9D44C8ABBFCFB74 ] CryptSvc C:\Windows\system32\cryptsvc.dll 21:12:07.0523 0x1d38 CryptSvc - ok 21:12:07.0582 0x1d38 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 21:12:07.0660 0x1d38 DcomLaunch - ok 21:12:07.0703 0x1d38 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 21:12:07.0773 0x1d38 defragsvc - ok 21:12:07.0807 0x1d38 [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 21:12:07.0893 0x1d38 DfsC - ok 21:12:07.0929 0x1d38 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 21:12:07.0975 0x1d38 Dhcp - ok 21:12:08.0049 0x1d38 [ EC3F433D00365F1A9BC3411BCA7C7140, 0852D747359DE573504EBBDB99DA26D3BFA8B3C7A4836F8E3A5AD94B5571AD5C ] DiagTrack C:\Windows\system32\diagtrack.dll 21:12:08.0128 0x1d38 DiagTrack - ok 21:12:08.0165 0x1d38 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 21:12:08.0266 0x1d38 discache - ok 21:12:08.0292 0x1d38 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\DRIVERS\disk.sys 21:12:08.0363 0x1d38 Disk - ok 21:12:08.0398 0x1d38 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 21:12:08.0441 0x1d38 Dnscache - ok 21:12:08.0482 0x1d38 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 21:12:08.0552 0x1d38 dot3svc - ok 21:12:08.0639 0x1d38 [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] Dot4 C:\Windows\system32\DRIVERS\Dot4.sys 21:12:08.0769 0x1d38 Dot4 - ok 21:12:08.0805 0x1d38 [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print C:\Windows\system32\DRIVERS\Dot4Prt.sys 21:12:08.0878 0x1d38 Dot4Print - ok 21:12:08.0895 0x1d38 [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb C:\Windows\system32\DRIVERS\dot4usb.sys 21:12:08.0976 0x1d38 dot4usb - ok 21:12:09.0019 0x1d38 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 21:12:09.0085 0x1d38 DPS - ok 21:12:09.0116 0x1d38 [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 21:12:09.0173 0x1d38 drmkaud - ok 21:12:09.0245 0x1d38 [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 21:12:09.0386 0x1d38 DXGKrnl - ok 21:12:09.0420 0x1d38 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 21:12:09.0490 0x1d38 EapHost - ok 21:12:09.0664 0x1d38 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 21:12:09.0799 0x1d38 ebdrv - ok 21:12:09.0844 0x1d38 [ 7FB33A9A2E6B6D5CA9318668B95CA69C, 5B5CDF8BF4F2C2ADBAD2A92C554C369C6A428B7DE4FEF74FE9198058C3B864A3 ] EFS C:\Windows\System32\lsass.exe 21:12:09.0887 0x1d38 EFS - ok 21:12:09.0963 0x1d38 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 21:12:10.0020 0x1d38 ehRecvr - ok 21:12:10.0053 0x1d38 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 21:12:10.0108 0x1d38 ehSched - ok 21:12:10.0156 0x1d38 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 21:12:10.0236 0x1d38 elxstor - ok 21:12:10.0293 0x1d38 [ FBEFE3D8DFEBAA85A81897B0B0EB4E1E, 67ADE442E68DE986C10BBCC4A38F76955A6DCBBE9608CB1F7F0C155C8AF0B9E3 ] epp64 C:\PROGRAM FILES (X86)\EMSISOFT ANTI-MALWARE\epp64.sys 21:12:10.0358 0x1d38 epp64 - ok 21:12:10.0384 0x1d38 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 21:12:10.0447 0x1d38 ErrDev - ok 21:12:10.0490 0x1d38 [ 38B0A3E42DE9B36AA56F72A5ECB62331, 3FADF2264C031E65BFF1460440C0D9532C05EBF656DD5EDD4592F437CAF40B7E ] ETD C:\Windows\system32\DRIVERS\ETD.sys 21:12:10.0573 0x1d38 ETD - ok 21:12:10.0638 0x1d38 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 21:12:10.0713 0x1d38 EventSystem - ok 21:12:10.0749 0x1d38 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 21:12:10.0888 0x1d38 exfat - ok 21:12:10.0914 0x1d38 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 21:12:11.0013 0x1d38 fastfat - ok 21:12:11.0083 0x1d38 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 21:12:11.0141 0x1d38 Fax - ok 21:12:11.0185 0x1d38 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys 21:12:11.0246 0x1d38 fdc - ok 21:12:11.0277 0x1d38 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 21:12:11.0341 0x1d38 fdPHost - ok 21:12:11.0364 0x1d38 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 21:12:11.0427 0x1d38 FDResPub - ok 21:12:11.0444 0x1d38 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 21:12:11.0491 0x1d38 FileInfo - ok 21:12:11.0511 0x1d38 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 21:12:11.0598 0x1d38 Filetrace - ok 21:12:11.0632 0x1d38 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 21:12:11.0711 0x1d38 flpydisk - ok 21:12:11.0771 0x1d38 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 21:12:11.0849 0x1d38 FltMgr - ok 21:12:11.0930 0x1d38 [ BCB16AE33AA58E0042F3EF34CFB6396A, E8ADA10DE60A94E4BABE9FCA6D0AA83B11520C092D49057E17F6C6059D35A323 ] FontCache C:\Windows\system32\FntCache.dll 21:12:12.0008 0x1d38 FontCache - ok 21:12:12.0069 0x1d38 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 21:12:12.0110 0x1d38 FontCache3.0.0.0 - ok 21:12:12.0144 0x1d38 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 21:12:12.0201 0x1d38 FsDepends - ok 21:12:12.0247 0x1d38 [ 5814011B2F6E088E29D689B5FCD49B8F, 15C09FB9A80FDDB65FB831944BEC1B81743E0B7E4469F35E9FD4142FBB673C0E ] fssfltr C:\Windows\system32\DRIVERS\fssfltr.sys 21:12:12.0302 0x1d38 fssfltr - ok 21:12:12.0381 0x1d38 [ F6717211C1EC2CDDAA81B97B0727C2E9, C1FD5A389167A826C002E28339BFCF7DC8851652647016D0DCF8585EB0B8FB28 ] fsssvc C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe 21:12:12.0427 0x1d38 fsssvc - ok 21:12:12.0454 0x1d38 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 21:12:12.0511 0x1d38 Fs_Rec - ok 21:12:12.0612 0x1d38 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 21:12:12.0682 0x1d38 fvevol - ok 21:12:12.0714 0x1d38 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 21:12:12.0775 0x1d38 gagp30kx - ok 21:12:12.0838 0x1d38 [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 21:12:12.0924 0x1d38 gpsvc - ok 21:12:13.0004 0x1d38 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 21:12:13.0040 0x1d38 gupdate - ok 21:12:13.0059 0x1d38 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 21:12:13.0093 0x1d38 gupdatem - ok 21:12:13.0126 0x1d38 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 21:12:13.0174 0x1d38 hcw85cir - ok 21:12:13.0229 0x1d38 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 21:12:13.0306 0x1d38 HdAudAddService - ok 21:12:13.0333 0x1d38 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 21:12:13.0399 0x1d38 HDAudBus - ok 21:12:13.0430 0x1d38 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 21:12:13.0487 0x1d38 HidBatt - ok 21:12:13.0514 0x1d38 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 21:12:13.0593 0x1d38 HidBth - ok 21:12:13.0615 0x1d38 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 21:12:13.0679 0x1d38 HidIr - ok 21:12:13.0713 0x1d38 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\System32\hidserv.dll 21:12:13.0776 0x1d38 hidserv - ok 21:12:13.0837 0x1d38 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 21:12:13.0917 0x1d38 HidUsb - ok 21:12:13.0957 0x1d38 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 21:12:14.0020 0x1d38 hkmsvc - ok 21:12:14.0065 0x1d38 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 21:12:14.0110 0x1d38 HomeGroupListener - ok 21:12:14.0168 0x1d38 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 21:12:14.0233 0x1d38 HomeGroupProvider - ok 21:12:14.0364 0x1d38 [ 1DAE5C46D42B02A6D5862E1482EFB390, 90B14E0A8376AE51872D89C141E88AE144B742805F94B4F7948E295322C78B9D ] hpqcxs08 C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll 21:12:14.0387 0x1d38 hpqcxs08 - detected UnsignedFile.Multi.Generic ( 1 ) 21:12:15.0601 0x1d38 Detect skipped due to KSN trusted 21:12:15.0601 0x1d38 hpqcxs08 - ok 21:12:15.0675 0x1d38 [ 99E8EEF42FE2F4AF29B08C3355DD7685, D57BC2148653DA5596FB49F1086D165B11C9F6C644608202C08305D3C8499CFE ] hpqddsvc C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll 21:12:15.0696 0x1d38 hpqddsvc - detected UnsignedFile.Multi.Generic ( 1 ) 21:12:16.0883 0x1d38 Detect skipped due to KSN trusted 21:12:16.0883 0x1d38 hpqddsvc - ok 21:12:16.0924 0x1d38 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 21:12:17.0009 0x1d38 HpSAMD - ok 21:12:17.0111 0x1d38 [ 7F57926169C1B8ABA9274EA7D4B70F18, A2BB01054737C6B0461381221D1C344951AC2BE9E5AE01E15A6871B31B62BE78 ] HPSLPSVC C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL 21:12:17.0162 0x1d38 HPSLPSVC - detected UnsignedFile.Multi.Generic ( 1 ) 21:12:18.0463 0x1d38 Detect skipped due to KSN trusted 21:12:18.0464 0x1d38 HPSLPSVC - ok 21:12:18.0572 0x1d38 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 21:12:18.0759 0x1d38 HTTP - ok 21:12:18.0828 0x1d38 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 21:12:18.0887 0x1d38 hwpolicy - ok 21:12:18.0947 0x1d38 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 21:12:19.0015 0x1d38 i8042prt - ok 21:12:19.0076 0x1d38 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 21:12:19.0166 0x1d38 iaStorV - ok 21:12:19.0315 0x1d38 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 21:12:19.0388 0x1d38 idsvc - ok 21:12:19.0399 0x1d38 IEEtwCollectorService - ok 21:12:19.0431 0x1d38 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 21:12:19.0501 0x1d38 iirsp - ok 21:12:19.0605 0x1d38 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 21:12:19.0672 0x1d38 IKEEXT - ok 21:12:19.0827 0x1d38 [ BBDA43F02A2C642A2DF191FA8C0B0052, C59EFC51D4EB6E02043EBC952AF3949391EF83C7FF5F435758291D82326A4E1C ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 21:12:19.0948 0x1d38 IntcAzAudAddService - ok 21:12:20.0014 0x1d38 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 21:12:20.0075 0x1d38 intelide - ok 21:12:20.0132 0x1d38 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 21:12:20.0206 0x1d38 intelppm - ok 21:12:20.0245 0x1d38 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 21:12:20.0312 0x1d38 IPBusEnum - ok 21:12:20.0350 0x1d38 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 21:12:20.0442 0x1d38 IpFilterDriver - ok 21:12:20.0541 0x1d38 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 21:12:20.0599 0x1d38 iphlpsvc - ok 21:12:20.0634 0x1d38 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 21:12:20.0696 0x1d38 IPMIDRV - ok 21:12:20.0742 0x1d38 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 21:12:20.0829 0x1d38 IPNAT - ok 21:12:20.0858 0x1d38 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 21:12:20.0932 0x1d38 IRENUM - ok 21:12:20.0968 0x1d38 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 21:12:21.0046 0x1d38 isapnp - ok 21:12:21.0096 0x1d38 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 21:12:21.0153 0x1d38 iScsiPrt - ok 21:12:21.0215 0x1d38 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\drivers\kbdclass.sys 21:12:21.0279 0x1d38 kbdclass - ok 21:12:21.0329 0x1d38 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\drivers\kbdhid.sys 21:12:21.0429 0x1d38 kbdhid - ok 21:12:21.0467 0x1d38 [ E63EF8C3271D014F14E2469CE75FECB4, 3A8DFA4B446AFDC35F01FD5218D0BEBC510A1E3DE9976210F00D19767D0F9069 ] kbfiltr C:\Windows\system32\DRIVERS\kbfiltr.sys 21:12:21.0522 0x1d38 kbfiltr - ok 21:12:21.0543 0x1d38 [ 7FB33A9A2E6B6D5CA9318668B95CA69C, 5B5CDF8BF4F2C2ADBAD2A92C554C369C6A428B7DE4FEF74FE9198058C3B864A3 ] KeyIso C:\Windows\system32\lsass.exe 21:12:21.0581 0x1d38 KeyIso - ok 21:12:21.0624 0x1d38 [ 211A379BAAB812A7B437319BD85B2435, 4C8B82817B735BEFC0C8E2A42C7EF547D1C179561D3C97B3067B5EA3408F9E4D ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 21:12:21.0697 0x1d38 KSecDD - ok 21:12:21.0727 0x1d38 [ CC1B3B52F33CBC1CE60867DA4E23537C, A373DBCE6A53B77F59D9C83E243E5C1A2B4C38571CA28198229730D612561978 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 21:12:21.0810 0x1d38 KSecPkg - ok 21:12:21.0854 0x1d38 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 21:12:21.0940 0x1d38 ksthunk - ok 21:12:22.0005 0x1d38 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 21:12:22.0087 0x1d38 KtmRm - ok 21:12:22.0125 0x1d38 [ 48686C29856F46443952A831424F8D6F, 05BEA2243E219575B2FBED23824DB2BE61F422C2972AC2E835C94DFC8A285BF6 ] L1C C:\Windows\system32\DRIVERS\L1C62x64.sys 21:12:22.0188 0x1d38 L1C - ok 21:12:22.0252 0x1d38 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\System32\srvsvc.dll 21:12:22.0323 0x1d38 LanmanServer - ok 21:12:22.0422 0x1d38 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 21:12:22.0507 0x1d38 LanmanWorkstation - ok 21:12:22.0674 0x1d38 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 21:12:22.0778 0x1d38 lltdio - ok 21:12:22.0822 0x1d38 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 21:12:22.0894 0x1d38 lltdsvc - ok 21:12:22.0911 0x1d38 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 21:12:22.0975 0x1d38 lmhosts - ok 21:12:23.0029 0x1d38 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 21:12:23.0088 0x1d38 LSI_FC - ok 21:12:23.0121 0x1d38 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 21:12:23.0185 0x1d38 LSI_SAS - ok 21:12:23.0210 0x1d38 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 21:12:23.0256 0x1d38 LSI_SAS2 - ok 21:12:23.0283 0x1d38 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 21:12:23.0364 0x1d38 LSI_SCSI - ok 21:12:23.0412 0x1d38 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 21:12:23.0505 0x1d38 luafv - ok 21:12:23.0564 0x1d38 [ CFBC6C6D8A492697CABD1D353EE64933, DDAA844908324740C891EB8F08E2A8BB00457063B31C4A762745C1C2415FC12D ] MBAMProtector C:\Windows\system32\drivers\mbam.sys 21:12:23.0608 0x1d38 MBAMProtector - ok 21:12:23.0772 0x1d38 [ 40C126CB15FAB7D6C66490DCA9C1AED2, B32CEE2D2409232C245427D5E9647FDF59AF1D8AB5E8A98EE2D1F1314599FD14 ] MBAMService C:\Users\LilC\Desktop\ Malwarebytes Anti-Malware \mbamservice.exe 21:12:23.0838 0x1d38 MBAMService - ok 21:12:23.0894 0x1d38 [ D61070CFAD43038DC56AEAD9BFE9CE2A, BD77AEF60E7FD2015CB14A464799304359547146C14A47F8D25274ACFA2E42D5 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys 21:12:23.0954 0x1d38 MBAMWebAccessControl - ok 21:12:23.0987 0x1d38 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 21:12:24.0029 0x1d38 Mcx2Svc - ok 21:12:24.0049 0x1d38 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 21:12:24.0113 0x1d38 megasas - ok 21:12:24.0158 0x1d38 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 21:12:24.0241 0x1d38 MegaSR - ok 21:12:24.0281 0x1d38 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 21:12:24.0361 0x1d38 MMCSS - ok 21:12:24.0387 0x1d38 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 21:12:24.0484 0x1d38 Modem - ok 21:12:24.0527 0x1d38 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 21:12:24.0591 0x1d38 monitor - ok 21:12:24.0623 0x1d38 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 21:12:24.0668 0x1d38 mouclass - ok 21:12:24.0723 0x1d38 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 21:12:24.0790 0x1d38 mouhid - ok 21:12:24.0818 0x1d38 [ 67050452C0118BAF2883928E6FCCFE47, 335FC0AEB7B47DCC7CE0CF3F424EB60ACB1327D2FF6515F04D9AC03A10FF1E31 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 21:12:24.0877 0x1d38 mountmgr - ok 21:12:24.0942 0x1d38 [ 5961C5D8EDD2E2A3B99F1782AE1AC21F, C383A4724A335737C4C7C3211AFCFB82D373267EC634BC47EE078A1C66E1F62A ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 21:12:24.0988 0x1d38 MozillaMaintenance - ok 21:12:25.0018 0x1d38 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 21:12:25.0094 0x1d38 mpio - ok 21:12:25.0131 0x1d38 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 21:12:25.0233 0x1d38 mpsdrv - ok 21:12:25.0303 0x1d38 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 21:12:25.0391 0x1d38 MpsSvc - ok 21:12:25.0431 0x1d38 [ D7ADC2B83CA0B0381F75A98351F72CEE, 05476B7CA0486DF770AE492B5A90C85E3D3E7485152EB2FA30A19EC9BE44ED81 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 21:12:25.0508 0x1d38 MRxDAV - ok 21:12:25.0554 0x1d38 [ 07F8F6B0CAEC7ADD30EBD94940A315D7, 288429A146B74E88D93C5BC19D878A42AC6F411EE31D9A6D36A2A2FFCF7B9436 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 21:12:25.0631 0x1d38 mrxsmb - ok 21:12:25.0678 0x1d38 [ 8856E45D23BFF4D977BF06D0543BCD96, 0066C061A3516A16C2477590859865E46E522A290CCE17C3EC1B69F81E466E9E ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 21:12:25.0746 0x1d38 mrxsmb10 - ok 21:12:25.0769 0x1d38 [ 8D383CED28332B5F3894658857472F47, CB3872543D08C6432CF884C11A5897637A6FC7E9AC40F424444BAAA49C9FC32A ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 21:12:25.0834 0x1d38 mrxsmb20 - ok 21:12:25.0868 0x1d38 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 21:12:25.0930 0x1d38 msahci - ok 21:12:25.0967 0x1d38 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 21:12:26.0032 0x1d38 msdsm - ok 21:12:26.0072 0x1d38 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 21:12:26.0116 0x1d38 MSDTC - ok 21:12:26.0172 0x1d38 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 21:12:26.0300 0x1d38 Msfs - ok 21:12:26.0348 0x1d38 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 21:12:26.0419 0x1d38 mshidkmdf - ok 21:12:26.0456 0x1d38 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 21:12:26.0542 0x1d38 msisadrv - ok 21:12:26.0591 0x1d38 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 21:12:26.0660 0x1d38 MSiSCSI - ok 21:12:26.0671 0x1d38 msiserver - ok 21:12:26.0725 0x1d38 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 21:12:26.0812 0x1d38 MSKSSRV - ok 21:12:26.0841 0x1d38 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 21:12:26.0914 0x1d38 MSPCLOCK - ok 21:12:26.0940 0x1d38 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 21:12:27.0043 0x1d38 MSPQM - ok 21:12:27.0083 0x1d38 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 21:12:27.0178 0x1d38 MsRPC - ok 21:12:27.0261 0x1d38 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 21:12:27.0350 0x1d38 mssmbios - ok 21:12:27.0401 0x1d38 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 21:12:27.0611 0x1d38 MSTEE - ok 21:12:27.0647 0x1d38 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 21:12:27.0746 0x1d38 MTConfig - ok 21:12:27.0837 0x1d38 [ 032D35C996F21D19A205A7C8F0B76F3C, 1A1C5BD7204BB937A05E201BCC0840B2C8E4B273D8E1D6D9407264FB4C57F014 ] MTsensor C:\Windows\system32\DRIVERS\ATK64AMD.sys 21:12:27.0917 0x1d38 MTsensor - ok 21:12:27.0968 0x1d38 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 21:12:28.0022 0x1d38 Mup - ok 21:12:28.0105 0x1d38 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 21:12:28.0190 0x1d38 napagent - ok 21:12:28.0247 0x1d38 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 21:12:28.0340 0x1d38 NativeWifiP - ok 21:12:28.0433 0x1d38 [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS C:\Windows\system32\drivers\ndis.sys 21:12:28.0584 0x1d38 NDIS - ok 21:12:28.0632 0x1d38 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 21:12:28.0717 0x1d38 NdisCap - ok 21:12:28.0770 0x1d38 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 21:12:28.0854 0x1d38 NdisTapi - ok 21:12:28.0890 0x1d38 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 21:12:28.0982 0x1d38 Ndisuio - ok 21:12:29.0028 0x1d38 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 21:12:29.0123 0x1d38 NdisWan - ok 21:12:29.0161 0x1d38 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 21:12:29.0286 0x1d38 NDProxy - ok 21:12:29.0375 0x1d38 [ D5AC41AE382738483FAFFBD7E373D49A, 68793D15566F387650E9C5010E1CA73BDE3EB4BA431EA0A1673004CAE08413B0 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll 21:12:29.0388 0x1d38 Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 ) 21:12:31.0017 0x1d38 Detect skipped due to KSN trusted 21:12:31.0017 0x1d38 Net Driver HPZ12 - ok 21:12:31.0204 0x1d38 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 21:12:31.0323 0x1d38 NetBIOS - ok 21:12:31.0372 0x1d38 [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 21:12:31.0476 0x1d38 NetBT - ok 21:12:31.0502 0x1d38 [ 7FB33A9A2E6B6D5CA9318668B95CA69C, 5B5CDF8BF4F2C2ADBAD2A92C554C369C6A428B7DE4FEF74FE9198058C3B864A3 ] Netlogon C:\Windows\system32\lsass.exe 21:12:31.0551 0x1d38 Netlogon - ok 21:12:31.0649 0x1d38 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 21:12:31.0726 0x1d38 Netman - ok 21:12:31.0764 0x1d38 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 21:12:31.0821 0x1d38 NetMsmqActivator - ok 21:12:31.0844 0x1d38 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 21:12:31.0891 0x1d38 NetPipeActivator - ok 21:12:31.0952 0x1d38 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 21:12:32.0035 0x1d38 netprofm - ok 21:12:32.0050 0x1d38 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 21:12:32.0091 0x1d38 NetTcpActivator - ok 21:12:32.0104 0x1d38 [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 21:12:32.0145 0x1d38 NetTcpPortSharing - ok 21:12:32.0191 0x1d38 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 21:12:32.0271 0x1d38 nfrd960 - ok 21:12:32.0309 0x1d38 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 21:12:32.0357 0x1d38 NlaSvc - ok 21:12:32.0383 0x1d38 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 21:12:32.0457 0x1d38 Npfs - ok 21:12:32.0492 0x1d38 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 21:12:32.0559 0x1d38 nsi - ok 21:12:32.0626 0x1d38 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 21:12:32.0720 0x1d38 nsiproxy - ok 21:12:32.0860 0x1d38 [ 47B2D0B31BDC3EBE6090228E2BA3764D, 984A4B38300954164BCBF57EC1A09C18B53779E60A26E9618B50E26016735787 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 21:12:33.0079 0x1d38 Ntfs - ok 21:12:33.0125 0x1d38 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 21:12:33.0211 0x1d38 Null - ok 21:12:33.0261 0x1d38 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 21:12:33.0331 0x1d38 nvraid - ok 21:12:33.0372 0x1d38 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 21:12:33.0449 0x1d38 nvstor - ok 21:12:33.0486 0x1d38 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 21:12:33.0556 0x1d38 nv_agp - ok 21:12:33.0672 0x1d38 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 21:12:33.0730 0x1d38 odserv - ok 21:12:33.0779 0x1d38 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 21:12:33.0849 0x1d38 ohci1394 - ok 21:12:33.0883 0x1d38 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 21:12:33.0946 0x1d38 ose - ok 21:12:34.0007 0x1d38 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 21:12:34.0076 0x1d38 p2pimsvc - ok 21:12:34.0112 0x1d38 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 21:12:34.0183 0x1d38 p2psvc - ok 21:12:34.0218 0x1d38 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys 21:12:34.0281 0x1d38 Parport - ok 21:12:34.0315 0x1d38 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 21:12:34.0376 0x1d38 partmgr - ok 21:12:34.0427 0x1d38 [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc C:\Windows\System32\pcasvc.dll 21:12:34.0489 0x1d38 PcaSvc - ok 21:12:34.0535 0x1d38 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 21:12:34.0611 0x1d38 pci - ok 21:12:34.0663 0x1d38 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 21:12:34.0747 0x1d38 pciide - ok 21:12:34.0815 0x1d38 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 21:12:34.0903 0x1d38 pcmcia - ok 21:12:34.0930 0x1d38 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 21:12:35.0010 0x1d38 pcw - ok 21:12:35.0078 0x1d38 [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 21:12:35.0154 0x1d38 PEAUTH - ok 21:12:35.0240 0x1d38 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 21:12:35.0282 0x1d38 PerfHost - ok 21:12:35.0438 0x1d38 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 21:12:35.0601 0x1d38 pla - ok 21:12:35.0704 0x1d38 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 21:12:35.0793 0x1d38 PlugPlay - ok 21:12:35.0864 0x1d38 [ 37F6046CDC630442D7DC087501FF6FC6, EFC0F3DA49839CA263CD95AE5015F4FC554D9D845A58A699C542C8C96E70ED3C ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll 21:12:35.0880 0x1d38 Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 ) 21:12:37.0094 0x1d38 Detect skipped due to KSN trusted 21:12:37.0094 0x1d38 Pml Driver HPZ12 - ok 21:12:37.0209 0x1d38 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 21:12:37.0266 0x1d38 PNRPAutoReg - ok 21:12:37.0312 0x1d38 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 21:12:37.0379 0x1d38 PNRPsvc - ok 21:12:37.0477 0x1d38 [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 21:12:37.0575 0x1d38 PolicyAgent - ok 21:12:37.0638 0x1d38 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 21:12:37.0766 0x1d38 Power - ok 21:12:37.0834 0x1d38 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 21:12:37.0964 0x1d38 PptpMiniport - ok 21:12:38.0049 0x1d38 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys 21:12:38.0176 0x1d38 Processor - ok 21:12:38.0238 0x1d38 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 21:12:38.0320 0x1d38 ProfSvc - ok 21:12:38.0370 0x1d38 [ 7FB33A9A2E6B6D5CA9318668B95CA69C, 5B5CDF8BF4F2C2ADBAD2A92C554C369C6A428B7DE4FEF74FE9198058C3B864A3 ] ProtectedStorage C:\Windows\system32\lsass.exe 21:12:38.0414 0x1d38 ProtectedStorage - ok 21:12:38.0479 0x1d38 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 21:12:38.0577 0x1d38 Psched - ok 21:12:38.0680 0x1d38 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 21:12:38.0844 0x1d38 ql2300 - ok 21:12:38.0890 0x1d38 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 21:12:38.0954 0x1d38 ql40xx - ok 21:12:39.0006 0x1d38 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 21:12:39.0069 0x1d38 QWAVE - ok 21:12:39.0097 0x1d38 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 21:12:39.0177 0x1d38 QWAVEdrv - ok 21:12:39.0204 0x1d38 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 21:12:39.0348 0x1d38 RasAcd - ok 21:12:39.0405 0x1d38 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 21:12:39.0504 0x1d38 RasAgileVpn - ok 21:12:39.0554 0x1d38 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 21:12:39.0624 0x1d38 RasAuto - ok 21:12:39.0678 0x1d38 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 21:12:39.0781 0x1d38 Rasl2tp - ok 21:12:39.0824 0x1d38 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 21:12:39.0913 0x1d38 RasMan - ok 21:12:39.0963 0x1d38 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 21:12:40.0054 0x1d38 RasPppoe - ok 21:12:40.0081 0x1d38 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 21:12:40.0181 0x1d38 RasSstp - ok 21:12:40.0228 0x1d38 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 21:12:40.0340 0x1d38 rdbss - ok 21:12:40.0375 0x1d38 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 21:12:40.0439 0x1d38 rdpbus - ok 21:12:40.0469 0x1d38 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 21:12:40.0542 0x1d38 RDPCDD - ok 21:12:40.0603 0x1d38 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 21:12:40.0676 0x1d38 RDPENCDD - ok 21:12:40.0718 0x1d38 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 21:12:40.0816 0x1d38 RDPREFMP - ok 21:12:40.0863 0x1d38 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 21:12:40.0945 0x1d38 RDPWD - ok 21:12:41.0030 0x1d38 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 21:12:41.0110 0x1d38 rdyboost - ok 21:12:41.0174 0x1d38 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 21:12:41.0244 0x1d38 RemoteAccess - ok 21:12:41.0272 0x1d38 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 21:12:41.0346 0x1d38 RemoteRegistry - ok 21:12:41.0387 0x1d38 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 21:12:41.0455 0x1d38 RpcEptMapper - ok 21:12:41.0486 0x1d38 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 21:12:41.0527 0x1d38 RpcLocator - ok 21:12:41.0588 0x1d38 [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 21:12:41.0667 0x1d38 RpcSs - ok 21:12:41.0721 0x1d38 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 21:12:41.0808 0x1d38 rspndr - ok 21:12:41.0837 0x1d38 [ 7FB33A9A2E6B6D5CA9318668B95CA69C, 5B5CDF8BF4F2C2ADBAD2A92C554C369C6A428B7DE4FEF74FE9198058C3B864A3 ] SamSs C:\Windows\system32\lsass.exe 21:12:41.0876 0x1d38 SamSs - ok 21:12:41.0916 0x1d38 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 21:12:41.0980 0x1d38 sbp2port - ok 21:12:42.0015 0x1d38 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 21:12:42.0088 0x1d38 SCardSvr - ok 21:12:42.0129 0x1d38 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 21:12:42.0202 0x1d38 scfilter - ok 21:12:42.0270 0x1d38 [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule C:\Windows\system32\schedsvc.dll 21:12:42.0369 0x1d38 Schedule - ok 21:12:42.0411 0x1d38 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 21:12:42.0475 0x1d38 SCPolicySvc - ok 21:12:42.0534 0x1d38 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 21:12:42.0739 0x1d38 SDRSVC - ok 21:12:42.0909 0x1d38 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 21:12:43.0098 0x1d38 secdrv - ok 21:12:43.0134 0x1d38 [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon C:\Windows\system32\seclogon.dll 21:12:43.0176 0x1d38 seclogon - ok 21:12:43.0218 0x1d38 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\system32\sens.dll 21:12:43.0285 0x1d38 SENS - ok 21:12:43.0329 0x1d38 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 21:12:43.0372 0x1d38 SensrSvc - ok 21:12:43.0407 0x1d38 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 21:12:43.0489 0x1d38 Serenum - ok 21:12:43.0535 0x1d38 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 21:12:43.0589 0x1d38 Serial - ok 21:12:43.0622 0x1d38 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 21:12:43.0696 0x1d38 sermouse - ok 21:12:43.0776 0x1d38 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 21:12:43.0846 0x1d38 SessionEnv - ok 21:12:43.0879 0x1d38 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 21:12:43.0933 0x1d38 sffdisk - ok 21:12:43.0960 0x1d38 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 21:12:44.0010 0x1d38 sffp_mmc - ok 21:12:44.0029 0x1d38 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 21:12:44.0093 0x1d38 sffp_sd - ok 21:12:44.0141 0x1d38 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 21:12:44.0192 0x1d38 sfloppy - ok 21:12:44.0245 0x1d38 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 21:12:44.0329 0x1d38 SharedAccess - ok 21:12:44.0385 0x1d38 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 21:12:44.0479 0x1d38 ShellHWDetection - ok 21:12:44.0616 0x1d38 [ 1BC348CF6BAA90EC8E533EF6E6A69933, 2B26F6EB701F48E092DED6A7B888F24736F2899EE81D54DD4B1E9DF7CFD36E7A ] SiSGbeLH C:\Windows\system32\DRIVERS\SiSG664.sys 21:12:44.0687 0x1d38 SiSGbeLH - ok 21:12:44.0713 0x1d38 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 21:12:44.0760 0x1d38 SiSRaid2 - ok 21:12:44.0785 0x1d38 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 21:12:44.0847 0x1d38 SiSRaid4 - ok 21:12:44.0894 0x1d38 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 21:12:44.0987 0x1d38 Smb - ok 21:12:45.0066 0x1d38 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 21:12:45.0110 0x1d38 SNMPTRAP - ok 21:12:45.0209 0x1d38 [ 2114518E55B380A3ACC28B2C27FD499A, 5EB378ECE4AD1E1C843CF21D46A5A3DE85CB8BBF1DF7292D54200F4ECFAE301A ] SNP2UVC C:\Windows\system32\DRIVERS\snp2uvc.sys 21:12:45.0374 0x1d38 SNP2UVC - ok 21:12:45.0434 0x1d38 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 21:12:45.0493 0x1d38 spldr - ok 21:12:45.0585 0x1d38 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 21:12:45.0659 0x1d38 Spooler - ok 21:12:45.0831 0x1d38 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 21:12:46.0082 0x1d38 sppsvc - ok 21:12:46.0140 0x1d38 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 21:12:46.0232 0x1d38 sppuinotify - ok 21:12:46.0315 0x1d38 [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 21:12:46.0425 0x1d38 srv - ok 21:12:46.0470 0x1d38 [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 21:12:46.0619 0x1d38 srv2 - ok 21:12:46.0677 0x1d38 [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 21:12:46.0747 0x1d38 srvnet - ok 21:12:46.0792 0x1d38 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 21:12:46.0866 0x1d38 SSDPSRV - ok 21:12:46.0889 0x1d38 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 21:12:46.0959 0x1d38 SstpSvc - ok 21:12:47.0003 0x1d38 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 21:12:47.0075 0x1d38 stexstor - ok 21:12:47.0117 0x1d38 [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam C:\Windows\system32\DRIVERS\serscan.sys 21:12:47.0178 0x1d38 StillCam - ok 21:12:47.0241 0x1d38 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 21:12:47.0319 0x1d38 stisvc - ok 21:12:47.0360 0x1d38 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 21:12:47.0413 0x1d38 swenum - ok 21:12:47.0479 0x1d38 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 21:12:47.0561 0x1d38 swprv - ok 21:12:47.0695 0x1d38 [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain C:\Windows\system32\sysmain.dll 21:12:47.0862 0x1d38 SysMain - ok 21:12:47.0911 0x1d38 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 21:12:47.0987 0x1d38 TabletInputService - ok 21:12:48.0034 0x1d38 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 21:12:48.0117 0x1d38 TapiSrv - ok 21:12:48.0163 0x1d38 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 21:12:48.0232 0x1d38 TBS - ok 21:12:48.0371 0x1d38 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 21:12:48.0601 0x1d38 Tcpip - ok 21:12:48.0726 0x1d38 [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 21:12:48.0878 0x1d38 TCPIP6 - ok 21:12:48.0943 0x1d38 [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 21:12:49.0003 0x1d38 tcpipreg - ok 21:12:49.0063 0x1d38 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 21:12:49.0137 0x1d38 TDPIPE - ok 21:12:49.0171 0x1d38 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 21:12:49.0234 0x1d38 TDTCP - ok 21:12:49.0284 0x1d38 [ AA77EB517D2F07A947294F260E3ACA83, B7A5DF3066830C0C2302B059778A67419792058A0D300C471DE40AB245EA7E58 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 21:12:49.0353 0x1d38 tdx - ok 21:12:49.0394 0x1d38 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 21:12:49.0443 0x1d38 TermDD - ok 21:12:49.0511 0x1d38 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 21:12:49.0602 0x1d38 TermService - ok 21:12:49.0662 0x1d38 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 21:12:49.0711 0x1d38 Themes - ok 21:12:49.0732 0x1d38 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 21:12:49.0797 0x1d38 THREADORDER - ok 21:12:49.0821 0x1d38 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 21:12:49.0891 0x1d38 TrkWks - ok 21:12:49.0967 0x1d38 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 21:12:50.0067 0x1d38 TrustedInstaller - ok 21:12:50.0124 0x1d38 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 21:12:50.0184 0x1d38 tssecsrv - ok 21:12:50.0237 0x1d38 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 21:12:50.0304 0x1d38 TsUsbFlt - ok 21:12:50.0376 0x1d38 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 21:12:50.0468 0x1d38 tunnel - ok 21:12:50.0512 0x1d38 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 21:12:50.0586 0x1d38 uagp35 - ok 21:12:50.0660 0x1d38 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 21:12:50.0790 0x1d38 udfs - ok 21:12:50.0862 0x1d38 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 21:12:50.0910 0x1d38 UI0Detect - ok 21:12:50.0939 0x1d38 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 21:12:50.0989 0x1d38 uliagpkx - ok 21:12:51.0055 0x1d38 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 21:12:51.0148 0x1d38 umbus - ok |
10.03.2016, 21:24 | #6 |
| teil 2 von tdssCode:
ATTFilter 21:12:51.0189 0x1d38 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 21:12:51.0246 0x1d38 UmPass - ok 21:12:51.0335 0x1d38 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 21:12:51.0432 0x1d38 upnphost - ok 21:12:51.0482 0x1d38 [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 21:12:51.0551 0x1d38 usbccgp - ok 21:12:51.0605 0x1d38 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 21:12:51.0689 0x1d38 usbcir - ok 21:12:51.0728 0x1d38 [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 21:12:51.0798 0x1d38 usbehci - ok 21:12:51.0853 0x1d38 [ 2C780746DC44A28FE67004DC58173F05, 9E0596CE35C7430A31A7E77B4D12A1F521B9ED8EB0614E6FB38403AC614C3EE3 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys 21:12:51.0911 0x1d38 usbfilter - ok 21:12:51.0968 0x1d38 [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 21:12:52.0060 0x1d38 usbhub - ok 21:12:52.0108 0x1d38 [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys 21:12:52.0157 0x1d38 usbohci - ok 21:12:52.0212 0x1d38 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 21:12:52.0281 0x1d38 usbprint - ok 21:12:52.0358 0x1d38 [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 21:12:52.0408 0x1d38 usbscan - ok 21:12:52.0449 0x1d38 [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR C:\Windows\system32\drivers\USBSTOR.SYS 21:12:52.0533 0x1d38 USBSTOR - ok 21:12:52.0652 0x1d38 [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 21:12:52.0723 0x1d38 usbuhci - ok 21:12:52.0782 0x1d38 [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo C:\Windows\System32\Drivers\usbvideo.sys 21:12:52.0860 0x1d38 usbvideo - ok 21:12:52.0902 0x1d38 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 21:12:52.0970 0x1d38 UxSms - ok 21:12:53.0017 0x1d38 [ 7FB33A9A2E6B6D5CA9318668B95CA69C, 5B5CDF8BF4F2C2ADBAD2A92C554C369C6A428B7DE4FEF74FE9198058C3B864A3 ] VaultSvc C:\Windows\system32\lsass.exe 21:12:53.0056 0x1d38 VaultSvc - ok 21:12:53.0144 0x1d38 VBoxAswDrv - ok 21:12:53.0207 0x1d38 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 21:12:53.0269 0x1d38 vdrvroot - ok 21:12:53.0349 0x1d38 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 21:12:53.0443 0x1d38 vds - ok 21:12:53.0494 0x1d38 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 21:12:53.0547 0x1d38 vga - ok 21:12:53.0568 0x1d38 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 21:12:53.0647 0x1d38 VgaSave - ok 21:12:53.0691 0x1d38 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 21:12:53.0763 0x1d38 vhdmp - ok 21:12:53.0811 0x1d38 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 21:12:53.0872 0x1d38 viaide - ok 21:12:53.0900 0x1d38 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 21:12:53.0968 0x1d38 volmgr - ok 21:12:54.0022 0x1d38 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 21:12:54.0099 0x1d38 volmgrx - ok 21:12:54.0148 0x1d38 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 21:12:54.0229 0x1d38 volsnap - ok 21:12:54.0276 0x1d38 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 21:12:54.0346 0x1d38 vsmraid - ok 21:12:54.0455 0x1d38 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 21:12:54.0569 0x1d38 VSS - ok 21:12:54.0610 0x1d38 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 21:12:54.0700 0x1d38 vwifibus - ok 21:12:54.0752 0x1d38 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 21:12:54.0832 0x1d38 vwififlt - ok 21:12:54.0876 0x1d38 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 21:12:54.0930 0x1d38 vwifimp - ok 21:12:54.0987 0x1d38 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 21:12:55.0092 0x1d38 W32Time - ok 21:12:55.0156 0x1d38 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 21:12:55.0207 0x1d38 WacomPen - ok 21:12:55.0265 0x1d38 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 21:12:55.0360 0x1d38 WANARP - ok 21:12:55.0396 0x1d38 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 21:12:55.0471 0x1d38 Wanarpv6 - ok 21:12:55.0590 0x1d38 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 21:12:55.0713 0x1d38 wbengine - ok 21:12:55.0766 0x1d38 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 21:12:55.0818 0x1d38 WbioSrvc - ok 21:12:55.0868 0x1d38 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 21:12:55.0944 0x1d38 wcncsvc - ok 21:12:55.0973 0x1d38 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 21:12:56.0028 0x1d38 WcsPlugInService - ok 21:12:56.0066 0x1d38 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\DRIVERS\wd.sys 21:12:56.0149 0x1d38 Wd - ok 21:12:56.0220 0x1d38 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 21:12:56.0322 0x1d38 Wdf01000 - ok 21:12:56.0366 0x1d38 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 21:12:56.0426 0x1d38 WdiServiceHost - ok 21:12:56.0446 0x1d38 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 21:12:56.0491 0x1d38 WdiSystemHost - ok 21:12:56.0529 0x1d38 [ 4E89FC53493704BF835F0300DC201C34, FB3080725E144D93512DED81047D21C0582BC3412250EFF37E039108D7351F53 ] WebClient C:\Windows\System32\webclnt.dll 21:12:56.0603 0x1d38 WebClient - ok 21:12:56.0646 0x1d38 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 21:12:56.0732 0x1d38 Wecsvc - ok 21:12:56.0764 0x1d38 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 21:12:56.0852 0x1d38 wercplsupport - ok 21:12:56.0887 0x1d38 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 21:12:56.0962 0x1d38 WerSvc - ok 21:12:57.0027 0x1d38 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 21:12:57.0102 0x1d38 WfpLwf - ok 21:12:57.0149 0x1d38 [ 52DED146E4797E6CCF94799E8E22BB2A, 57A29260D81AA3AD3F8C29E9CFA7CE3970D7A8BF673ADD9B256EE76C7DEC080E ] WimFltr C:\Windows\system32\DRIVERS\wimfltr.sys 21:12:57.0238 0x1d38 WimFltr - ok 21:12:57.0269 0x1d38 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 21:12:57.0316 0x1d38 WIMMount - ok 21:12:57.0376 0x1d38 WinDefend - ok 21:12:57.0428 0x1d38 WinHttpAutoProxySvc - ok 21:12:57.0498 0x1d38 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 21:12:57.0569 0x1d38 Winmgmt - ok 21:12:57.0699 0x1d38 [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM C:\Windows\system32\WsmSvc.dll 21:12:57.0850 0x1d38 WinRM - ok 21:12:57.0941 0x1d38 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\drivers\WinUsb.sys 21:12:58.0007 0x1d38 WinUsb - ok 21:12:58.0075 0x1d38 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 21:12:58.0164 0x1d38 Wlansvc - ok 21:12:58.0208 0x1d38 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 21:12:58.0271 0x1d38 WmiAcpi - ok 21:12:58.0340 0x1d38 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 21:12:58.0389 0x1d38 wmiApSrv - ok 21:12:58.0443 0x1d38 WMPNetworkSvc - ok 21:12:58.0475 0x1d38 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 21:12:58.0529 0x1d38 WPCSvc - ok 21:12:58.0612 0x1d38 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 21:12:58.0716 0x1d38 WPDBusEnum - ok 21:12:58.0749 0x1d38 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 21:12:58.0839 0x1d38 ws2ifsl - ok 21:12:58.0882 0x1d38 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\system32\wscsvc.dll 21:12:58.0932 0x1d38 wscsvc - ok 21:12:58.0951 0x1d38 WSearch - ok 21:12:59.0119 0x1d38 [ 86F11B85102AFA6A1A6101DCE2F09386, 68A0F0E628C8F33FDAC114876DA8ED14776DD74E80AC5A6A52257E19DE011091 ] wuauserv C:\Windows\system32\wuaueng.dll 21:12:59.0309 0x1d38 wuauserv - ok 21:12:59.0363 0x1d38 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 21:12:59.0444 0x1d38 WudfPf - ok 21:12:59.0505 0x1d38 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 21:12:59.0579 0x1d38 WUDFRd - ok 21:12:59.0620 0x1d38 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 21:12:59.0664 0x1d38 wudfsvc - ok 21:12:59.0718 0x1d38 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 21:12:59.0790 0x1d38 WwanSvc - ok 21:12:59.0869 0x1d38 ================ Scan global =============================== 21:12:59.0893 0x1d38 [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll 21:12:59.0924 0x1d38 [ DE4812AB2E6926D0FF2423F3B774585A, 77604B47F2A91F77DDF778D8D362A0145636ED060596760ED55D76DD12E04B79 ] C:\Windows\system32\winsrv.dll 21:12:59.0968 0x1d38 [ DE4812AB2E6926D0FF2423F3B774585A, 77604B47F2A91F77DDF778D8D362A0145636ED060596760ED55D76DD12E04B79 ] C:\Windows\system32\winsrv.dll 21:13:00.0001 0x1d38 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 21:13:00.0034 0x1d38 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 21:13:00.0057 0x1d38 [ Global ] - ok 21:13:00.0060 0x1d38 ================ Scan MBR ================================== 21:13:00.0078 0x1d38 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 21:13:00.0807 0x1d38 \Device\Harddisk0\DR0 - ok 21:13:00.0809 0x1d38 ================ Scan VBR ================================== 21:13:00.0827 0x1d38 [ 1297AED538BC10459C81CC0332322D47 ] \Device\Harddisk0\DR0\Partition1 21:13:00.0832 0x1d38 \Device\Harddisk0\DR0\Partition1 - ok 21:13:00.0852 0x1d38 [ 488E33FB82D43912A18336A93DB19E35 ] \Device\Harddisk0\DR0\Partition2 21:13:00.0856 0x1d38 \Device\Harddisk0\DR0\Partition2 - ok 21:13:00.0884 0x1d38 [ FD5BACABA9A33091DCC52D86E3DB58C2 ] \Device\Harddisk0\DR0\Partition3 21:13:00.0887 0x1d38 \Device\Harddisk0\DR0\Partition3 - ok 21:13:00.0887 0x1d38 ================ Scan generic autorun ====================== 21:13:00.0888 0x1d38 ETDWare - ok 21:13:01.0039 0x1d38 [ 9DEA654E4D9820958D6B4D1EBAF2F31E, 526599AE6A3949AC43EAFA3A5F881A50BBC6549F3F3A0F00E2309E210ABFF40C ] C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe 21:13:01.0145 0x1d38 ASUS WebStorage - ok 21:13:01.0197 0x1d38 [ 635ED55F49AE9FEFAD01FC212CAB065A, 4F23E8B408CED1F60AD7E782E62B705B13935B23DA2FD55EE24028EDBF387214 ] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe 21:13:01.0235 0x1d38 AmIcoSinglun64 - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:02.0412 0x1d38 Detect skipped due to KSN trusted 21:13:02.0412 0x1d38 AmIcoSinglun64 - ok 21:13:02.0486 0x1d38 Setwallpaper - ok 21:13:02.0683 0x1d38 [ 5511B28C8937C4265AEBFFFFA9B03F04, 81B948E27AE4FB6BCAF64619030228DC61F914C3250652BC4E91F2E233E19991 ] C:\Program Files\Eraser\Eraser.exe 21:13:02.0773 0x1d38 Eraser - ok 21:13:02.0834 0x1d38 [ 4EFCDF3DB1BBA69C09622991280C4ACB, A86D4694BCFFF3C0FAF07C56A410A8317A953FB581CDCDBED5CAF735A0E2AC0D ] C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe 21:13:02.0872 0x1d38 UpdateLBPShortCut - ok 21:13:02.0908 0x1d38 [ 4EFCDF3DB1BBA69C09622991280C4ACB, A86D4694BCFFF3C0FAF07C56A410A8317A953FB581CDCDBED5CAF735A0E2AC0D ] C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe 21:13:02.0947 0x1d38 UpdateP2GoShortCut - ok 21:13:02.0998 0x1d38 [ 7E20B2381426F4B23600A803F31781B9, 8BB723B3FC39BF993E921DC0AE4EB4336418C52FB7349F96D95FC8BEFF5B85DE ] C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk 21:13:03.0050 0x1d38 Boingo Wi-Fi - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:04.0378 0x1d38 Boingo Wi-Fi ( UnsignedFile.Multi.Generic ) - warning 21:13:04.0378 0x1d38 Force sending object to P2P due to detect: C:\Program Files (x86)\Boingo\Boingo Wi-Fi\Boingo.lnk 21:13:05.0693 0x1d38 Object send P2P result: true 21:13:07.0049 0x1d38 [ C96C2572F524F6141B7B491C864B5231, BE62FAC8EC8353C88186535400B7482FEE86FB687EF928A7550724C2B9E303CD ] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe 21:13:07.0079 0x1d38 StartCCC - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:08.0299 0x1d38 Detect skipped due to KSN trusted 21:13:08.0299 0x1d38 StartCCC - ok 21:13:08.0647 0x1d38 [ C32B36D2168AEA9D4FA77C0A4F56379D, 0EC6D743F381014874119536DF3E9AE2D20678A602D73CF5012FB1E047AB5F77 ] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe 21:13:08.0998 0x1d38 ATKOSD2 - ok 21:13:09.0040 0x1d38 [ 6FCA49B4085C32D1CC738C16142C0CDD, A72D682B055E9D0CDD5D44240B9C37AFDFA4312B909464DE7B6A06C4C043BE5C ] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe 21:13:09.0084 0x1d38 ATKMEDIA - ok 21:13:09.0097 0x1d38 [ 5AEBF6FA9805C9101220AA4FB4FA17E7, A9B2FC41380211A6C44E839A95676A5BA868CEEBB56D83A780230434C2A20836 ] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe 21:13:09.0159 0x1d38 HControlUser - ok 21:13:09.0250 0x1d38 [ F477F57732AFFC5460FCC5302DC08394, 56E759A54243CCEE3E67AE8CF5D52AC91DA64FD8E4B6CC4A9FC5CFF046735812 ] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 21:13:09.0333 0x1d38 Wireless Console 3 - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:10.0538 0x1d38 Detect skipped due to KSN trusted 21:13:10.0538 0x1d38 Wireless Console 3 - ok 21:13:10.0892 0x1d38 [ 8A312D5764B4FC4C55CEDDEED4652CF1, C4E726C9C77614CD32D5B76DA2E9A049EC490C2392D9A94B84712BCBF47BA7C6 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe 21:13:11.0256 0x1d38 AvastUI.exe - ok 21:13:11.0359 0x1d38 [ 72860972F8196EBB3C896F53D2B95470, 95C046A66DD0089377867F073CADCE585B7C69CA23E724DCAD9D896BF01E023D ] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe 21:13:11.0383 0x1d38 hpqSRMon - detected UnsignedFile.Multi.Generic ( 1 ) 21:13:12.0590 0x1d38 Detect skipped due to KSN trusted 21:13:12.0590 0x1d38 hpqSRMon - ok 21:13:12.0671 0x1d38 [ 21293443961A4E2597453EE7A9347F22, FDA88181C975C251E56D5A38E5473F45B9CB4E1258A6E93320D34D656AB1E6ED ] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe 21:13:12.0719 0x1d38 HP Software Update - ok 21:13:12.0765 0x1d38 [ 2199723879C9F75A709680E2935C052F, DDD5B5CC86463284D9137372CB8541D1258AC020EA811F1AD3735809F314B086 ] C:\Program Files (x86)\PDF24\pdf24.exe 21:13:12.0822 0x1d38 PDFPrint - ok 21:13:13.0062 0x1d38 [ C3353DAFE40811879BCCB98ED8FE4F09, 90BEBEA274DF2D962EE58690715A4D8F51D25153E588C76FC00CAD4E1FDD942F ] C:\Program Files (x86)\Emsisoft Anti-Malware\a2guard.exe 21:13:13.0336 0x1d38 emsisoft anti-malware - ok 21:13:13.0473 0x1d38 [ 4EAF6F8F0B3BE33A0E3877EB7FFD48D4, CD89A31004E3E5A3253554CABF70B89D4F2FCBC40161FFA9E633CD85261A2769 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe 21:13:13.0552 0x1d38 Adobe ARM - ok 21:13:13.0598 0x1d38 GoogleDriveSync - ok 21:13:13.0705 0x1d38 [ 7C6D524C78A1722AD987B9E47AC1FEE2, FFDC6C92ABB547D0DCD2621EC423C755A78079B061A41FA1751A56799D1A79A5 ] C:\Users\LilC\AppData\Local\Dropbox\Update\DropboxUpdate.exe 21:13:13.0747 0x1d38 Dropbox Update - ok 21:13:13.0749 0x1d38 Waiting for KSN requests completion. In queue: 9 21:13:14.0749 0x1d38 Waiting for KSN requests completion. In queue: 9 21:13:15.0749 0x1d38 Waiting for KSN requests completion. In queue: 9 21:13:16.0749 0x1d38 Waiting for KSN requests completion. In queue: 9 21:13:17.0749 0x1d38 Waiting for KSN requests completion. In queue: 9 21:13:18.0749 0x1d38 Waiting for KSN requests completion. In queue: 9 21:13:19.0749 0x1d38 Waiting for KSN requests completion. In queue: 9 21:13:20.0082 0x1a0c Object required for P2P: [ 8A312D5764B4FC4C55CEDDEED4652CF1 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe 21:13:20.0749 0x1d38 Waiting for KSN requests completion. In queue: 6 21:13:21.0432 0x1a0c Object send P2P result: true 21:13:21.0432 0x1a0c Object required for P2P: [ 4EAF6F8F0B3BE33A0E3877EB7FFD48D4 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe 21:13:21.0749 0x1d38 Waiting for KSN requests completion. In queue: 2 21:13:22.0744 0x1a0c Object send P2P result: true 21:13:22.0784 0x1d38 AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 11.1.2245.1540 ), 0x41000 ( enabled : updated ) 21:13:22.0787 0x1d38 FW detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 11.1.2245.1540 ), 0x40010 ( disabled ) 21:13:22.0794 0x1d38 Win FW state via NFP2: enabled ( trusted ) 21:13:24.0013 0x1d38 ============================================================ 21:13:24.0013 0x1d38 Scan finished 21:13:24.0013 0x1d38 ============================================================ 21:13:24.0027 0x0f78 Detected object count: 1 21:13:24.0027 0x0f78 Actual detected object count: 1 21:14:16.0927 0x0f78 Boingo Wi-Fi ( UnsignedFile.Multi.Generic ) - skipped by user 21:14:16.0927 0x0f78 Boingo Wi-Fi ( UnsignedFile.Multi.Generic ) - User select action: Skip |
11.03.2016, 21:08 | #7 |
/// TB-Ausbilder | Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsam Servus, Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2 Downloade Dir bitte Malwarebytes Anti-Malware
Schritt 3 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 4
Bitte poste mit deiner nächsten Antwort
|
16.03.2016, 16:20 | #8 |
/// TB-Ausbilder | Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsam Fehlende Rückmeldung Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten. PM an mich falls Du denoch weiter machen willst. Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist. Jeder andere bitte hier klicken und einen eigenen Thread erstellen! |
Themen zu Webcam schaltet sich an, verlangsamte PC Leistung, Word verhält sich seltsam |
andere, diverse, firefox, formatiere, formatieren, funktioniert, gestartet, inhalt, kopieren, leistung, licht, liebe, notebook, programme, schaltet, seltsam, starte, tabelle, troja, vergrößern, virus, webcam, woche, wochen, zeilen |