Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 28.03.2016, 08:48   #1
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



Hallo, ich möchte mal mit eurer/deiner Hilfe einen komplette Überprüfung meines PC machen. In letzter Zeit spint mal mein E-Mail Program, mal gehen die Spiele nicht vernünftig so das ich meinen Pc neustarten muss damit es wieder geht.

Betriebssystem Win7 32bit Original
Virus Programm 360 Total Security

MfG Sumfy

FRST Text
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:05-03-2016 01
durchgeführt von Kerso (Administrator) auf KERSO-PC (28-03-2016 09:41:53)
Gestartet von C:\Users\Kerso\Downloads
Geladene Profile: Kerso (Verfügbare Profile: Kerso & UpdatusUser)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Acronis) C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
(QIHU 360 SOFTWARE CO. LIMITED) C:\Program Files\360\Total Security\safemon\QHWatchdog.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe
(Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe
(Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe
() C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
(Acronis) C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
() C:\Windows\System32\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe
(TuneUp Software) C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe
(Acronis) C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1310720 2009-06-05] (Analog Devices, Inc.)
HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311616 2015-02-24] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [327680 2013-04-16] (Saitek)
HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [122880 2013-04-16] (Saitek)
HKLM\...\Run: [QHSafeTray] => C:\Program Files\360\Total Security\safemon\QHSafeTray.exe [1065080 2016-03-03] ()
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\Run: [] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [845120 2015-02-24] (Samsung)
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3481408 2012-02-13] (DT Soft Ltd)
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {4494b6f7-652d-11e1-a170-e437487d1393} - F:\pushinst.exe
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {45f957bf-653e-11e1-a480-001c4af7cd81} - F:\start.exe /checksection
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {76f3fae7-5200-11e4-9b78-001c4af7cd81} - G:\AutoRun.exe
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {cfe79821-1571-11e3-bc47-806e6f6e6963} - G:\windows\Data\setup.exe
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  Keine Datei
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} =>  Keine Datei
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2012-08-09]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{084F8F06-61ED-4423-B821-93E335573EF6}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
SearchScopes: HKLM -> DefaultScope Wert fehlt
SearchScopes: HKU\S-1-5-21-392009458-3349232730-904554786-1000 -> {D97BDFB1-BA15-46F6-B3EE-DB7F2B112B3D} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=026c6375000000000000001c4af7cd81&r=89
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-15] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-15] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-24] ()
FF Plugin: @esn/esnlaunch,version=2.1.7 -> C:\Program Files\Battlelog Web Plugins\2.1.7\npesnlaunch.dll [Keine Datei]
FF Plugin: @esn/esnlaunch,version=2.3.0 -> C:\Program Files\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.3.2 -> C:\Program Files\Battlelog Web Plugins\2.3.2\npbattlelog.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-02-15] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-02-15] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll [2014-06-18] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll [2014-06-18] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\user.js [2016-03-04]
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: Greasemonkey - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2016-02-21]
FF Extension: Adblock Plus - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-24]
FF Extension: hd addon - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f1dcded5-3c5a-401c-b649-3c7d2e4a5347}.xpi [2016-02-24] [ist nicht signiert]
FF Extension: Skype Wizard Plus - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f930a7a4-22b0-4827-9000-385ee812ead7}.xpi [2016-03-14] [ist nicht signiert]
FF HKLM\...\Firefox\Extensions: [WebProtection@360safe.com] - C:\Program Files\360\Total Security\safemon\webprotection_firefox
FF Extension: 360 Internet Protection - C:\Program Files\360\Total Security\safemon\webprotection_firefox [2016-03-17]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\ppGoogleNaClPluginChrome.dll => Keine Datei
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\pdf.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\gcswf32.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_268.dll => Keine Datei
CHR Plugin: (Norton Confidential) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.4.6_0\npcoplgn.dll => Keine Datei
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => Keine Datei
CHR Plugin: (Winamp Application Detector) - C:\Program Files\Mozilla Firefox\plugins\npwachk.dll => Keine Datei
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll => Keine Datei
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll => Keine Datei
CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => Keine Datei
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll => Keine Datei
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw_1165635.dll => Keine Datei
CHR Profile: C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-08]
CHR Extension: (YouTube) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-02]
CHR Extension: (Google-Suche) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-08]
CHR Extension: (Google Kalender) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-12-08]
CHR Extension: (Google Docs Offline) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-08]
CHR Extension: (Google +1-Schaltfläche) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgoepmocgafhnchmokaimcmlojpnlkhp [2014-04-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-10-02]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-02]
CHR Extension: (Google Mail) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-28]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [950584 2015-11-26] (Acronis)
S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2012-05-08] () [Datei ist nicht signiert]
R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [4463960 2016-01-12] (Acronis)
S2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-01-19] (Digital Wave Ltd.)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [660992 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 mmsminisrv; C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert]
S3 Origin Client Service; C:\Program Files\Origin\OriginClientService.exe [2104840 2016-02-02] (Electronic Arts)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-01-02] ()
R2 QHActiveDefense; C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe [908408 2016-02-26] (QIHU 360 SOFTWARE CO. LIMITED)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
R2 syncagentsrv; C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7637744 2015-11-06] (Acronis)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
R2 TuneUp.UtilitiesSvc; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe [1773368 2014-03-20] (TuneUp Software)
S4 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker.sys [122448 2016-02-26] (360.cn)
R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [66128 2016-02-26] (360.cn)
R1 360Box; C:\Windows\System32\DRIVERS\360Box.sys [204368 2016-02-26] (360.cn)
S3 360Camera; C:\Windows\System32\Drivers\360Camera.sys [34888 2015-07-09] (360.cn)
R1 360SelfProtection; C:\Windows\System32\drivers\360SelfProtection.sys [179408 2016-02-26] (360安全中心)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R1 BAPIDRV; C:\Windows\System32\DRIVERS\BAPIDRV.sys [177232 2016-02-26] (360.cn)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-03-03] (DT Soft Ltd)
R1 EfiMon; C:\Windows\System32\Drivers\Efimon.sys [23248 2016-02-26] (360.cn)
U3 Fax_tsvcawiu; kein ImagePath
R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [249184 2016-01-12] (Acronis International GmbH)
S3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [265088 2007-01-26] (AVM GmbH)
R0 HookPort; C:\Windows\System32\Drivers\Hookport.sys [61776 2016-02-26] (360安全中心)
R1 hugoio; C:\Program Files\i-Menu\hugoio.sys [9760 2008-04-14] ()
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [6504 2009-05-13] ()
R1 qutmdserv; C:\Windows\System32\DRIVERS\qutmdrv.sys [302800 2016-02-26] (360.cn)
R1 qutmipc; C:\Windows\system32\drivers\qutmipc.sys [53960 2015-08-14] (360.cn)
S4 RsFx0105; C:\Windows\System32\DRIVERS\RsFx0105.sys [238696 2011-09-22] (Microsoft Corporation)
S3 SaiH0464; C:\Windows\System32\DRIVERS\SaiH0464.sys [132232 2007-05-01] (Saitek)
R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [23200 2013-04-30] (Saitek)
R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [46624 2013-04-30] (Saitek)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [685400 2016-01-12] (Acronis International GmbH)
R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [156504 2016-01-12] (Acronis International GmbH)
S3 tnd; C:\Windows\System32\DRIVERS\tnd.sys [398680 2016-01-12] (Acronis International GmbH)
R3 TuneUpUtilitiesDrv; C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys [12320 2013-12-16] (TuneUp Software)
R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [229720 2016-01-12] (Acronis International GmbH)
R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] ()
S3 HSPADataCardusbmdm; system32\DRIVERS\HSPADataCardusbmdm.sys [X]
S3 HSPADataCardusbnmea; system32\DRIVERS\HSPADataCardusbnmea.sys [X]
S3 HSPADataCardusbser; system32\DRIVERS\HSPADataCardusbser.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)
U3 ugloqpoc; \??\C:\Users\Kerso\AppData\Local\Temp\ugloqpoc.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-28 09:41 - 2016-03-28 09:42 - 00020683 _____ C:\Users\Kerso\Downloads\FRST.txt
2016-03-28 09:40 - 2016-03-28 09:41 - 00000000 ____D C:\FRST
2016-03-28 09:34 - 2016-03-28 09:35 - 22851472 _____ (Malwarebytes ) C:\Users\Kerso\Downloads\mbam-setup-2.2.1.1043.exe
2016-03-28 09:30 - 2016-03-28 09:30 - 01725440 _____ (Farbar) C:\Users\Kerso\Downloads\FRST.exe
2016-03-27 22:54 - 2016-03-27 22:54 - 00380928 _____ C:\Users\Kerso\Downloads\gmer-2.2.19882.exe
2016-03-27 07:36 - 2016-03-27 07:36 - 00000000 ____D C:\Program Files\Apple Software Update
2016-03-26 11:12 - 2016-03-26 11:12 - 00001145 _____ C:\Users\Public\Desktop\SenseWear 8.1.lnk
2016-03-26 11:12 - 2016-03-26 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BodyMedia
2016-03-26 11:12 - 2016-03-26 11:12 - 00000000 ____D C:\Program Files\BodyMedia
2016-03-26 11:03 - 2016-03-26 11:03 - 00000079 _____ C:\Windows\wininit.ini
2016-03-25 11:21 - 2016-03-25 11:21 - 00000000 ____D C:\Users\Kerso\Documents\My BodyMedia-Dateien
2016-03-24 18:07 - 2016-03-24 18:07 - 04372899 _____ C:\Users\Kerso\Downloads\bodybuggsp.apk
2016-03-24 12:02 - 2016-03-24 12:02 - 00832124 _____ C:\Users\Kerso\Desktop\Sozialversicherungsausweis Steve Schneider.pdf
2016-03-24 10:48 - 2016-03-26 11:11 - 00000000 ____D C:\Users\Kerso\Desktop\Bodimedia
2016-03-23 23:16 - 2016-03-23 23:16 - 00001001 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-03-23 23:12 - 2016-03-23 23:13 - 11255504 _____ (TeamViewer GmbH) C:\Users\Kerso\Downloads\TeamViewer083Setup-jfa.exe
2016-03-23 10:57 - 2016-03-23 10:57 - 00000000 ____D C:\Users\Kerso\BodyMedia
2016-03-21 23:01 - 2016-03-21 23:02 - 34042774 ____R C:\Users\Kerso\Desktop\unSMARTGAINZ---eine-moderne-Kom--die.pdf
2016-03-17 08:31 - 2016-03-17 08:31 - 00001107 _____ C:\Users\Public\Desktop\360 Total Security.lnk
2016-03-12 09:46 - 2016-03-12 09:46 - 00001356 _____ C:\Users\Public\Desktop\Free YouTube To MP3 Converter.lnk
2016-03-12 09:46 - 2016-03-12 09:46 - 00001199 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2016-03-12 09:46 - 2016-03-12 09:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2016-03-12 09:46 - 2016-03-12 09:46 - 00000000 ____D C:\Program Files\DVDVideoSoft
2016-03-12 09:44 - 2016-03-12 09:45 - 39412848 _____ (DVDVideoSoft Ltd. ) C:\Users\Kerso\Downloads\FreeYouTubeToMP3Converter.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 03994560 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 03938240 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-03-09 14:00 - 2016-02-11 20:44 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-03-09 14:00 - 2016-02-11 20:41 - 01310232 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-03-09 14:00 - 2016-02-11 20:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-03-09 14:00 - 2016-02-11 20:38 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-03-09 14:00 - 2016-02-11 20:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-03-09 14:00 - 2016-02-11 20:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-03-09 14:00 - 2016-02-11 20:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-03-09 14:00 - 2016-02-11 20:31 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-03-09 14:00 - 2016-02-11 20:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-03-09 14:00 - 2016-02-11 19:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-03-09 14:00 - 2016-02-11 19:37 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-03-09 14:00 - 2016-02-11 19:32 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-03-09 14:00 - 2016-02-11 19:32 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-03-09 14:00 - 2016-02-11 19:32 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-03-09 14:00 - 2016-02-11 19:31 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-03-09 14:00 - 2016-02-11 19:30 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-03-09 14:00 - 2016-02-11 19:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-03-09 14:00 - 2016-02-11 19:30 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-03-09 14:00 - 2016-02-09 11:50 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-03-09 14:00 - 2016-02-04 20:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-03-09 14:00 - 2016-02-04 19:46 - 02387456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-03-09 14:00 - 2016-02-03 19:59 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-03-09 13:59 - 2016-02-12 20:39 - 02956288 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-03-09 13:59 - 2016-02-12 20:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-03-09 13:59 - 2016-02-12 20:26 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2016-03-09 13:59 - 2016-02-12 20:07 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-03-09 13:59 - 2016-02-12 20:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-03-09 13:59 - 2016-02-12 20:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-03-09 13:59 - 2016-02-12 20:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2016-03-09 13:59 - 2016-02-09 11:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-03-09 13:59 - 2016-02-09 11:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-03-09 13:59 - 2016-02-09 11:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-03-09 13:59 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-03-09 13:59 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-03-09 13:59 - 2016-02-09 08:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-03-09 13:59 - 2016-02-08 23:05 - 20352512 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-03-09 13:59 - 2016-02-08 22:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-03-09 13:59 - 2016-02-08 22:51 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-03-09 13:59 - 2016-02-08 22:39 - 00496640 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-03-09 13:59 - 2016-02-08 22:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-03-09 13:59 - 2016-02-08 22:38 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-03-09 13:59 - 2016-02-08 22:38 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-03-09 13:59 - 2016-02-08 22:37 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-03-09 13:59 - 2016-02-08 22:34 - 02280448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-03-09 13:59 - 2016-02-08 22:32 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-03-09 13:59 - 2016-02-08 22:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-03-09 13:59 - 2016-02-08 22:30 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-03-09 13:59 - 2016-02-08 22:28 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-03-09 13:59 - 2016-02-08 22:23 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-09 13:59 - 2016-02-08 22:20 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-03-09 13:59 - 2016-02-08 22:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 13:59 - 2016-02-08 22:15 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-03-09 13:59 - 2016-02-08 22:13 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-03-09 13:59 - 2016-02-08 22:12 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-03-09 13:59 - 2016-02-08 22:11 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-03-09 13:59 - 2016-02-08 22:10 - 04611072 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-03-09 13:59 - 2016-02-08 22:10 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-03-09 13:59 - 2016-02-08 22:03 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 13012480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-03-09 13:59 - 2016-02-08 22:01 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-03-09 13:59 - 2016-02-08 22:01 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-03-09 13:59 - 2016-02-08 21:43 - 02121216 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-03-09 13:59 - 2016-02-08 21:39 - 01311744 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-03-09 13:59 - 2016-02-08 21:38 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-03-09 13:59 - 2016-02-05 20:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-03-09 13:59 - 2016-02-05 20:44 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-03-09 13:59 - 2016-02-05 20:42 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-03-09 13:59 - 2016-02-05 19:43 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-03-09 13:59 - 2016-02-05 19:43 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-03-09 13:59 - 2016-02-03 20:49 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-03-09 13:59 - 2016-02-03 20:49 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2016-03-09 13:59 - 2016-02-03 20:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-03-08 18:02 - 2016-03-08 18:15 - 00000000 ____D C:\Users\Kerso\Desktop\Rosenbohm
2016-03-01 19:43 - 2016-03-01 19:43 - 00008829 _____ C:\Users\Kerso\Desktop\Lärmbelästigung.xlsx
2016-02-29 12:18 - 2016-02-29 12:18 - 00008454 _____ C:\Users\Kerso\Desktop\Schulterplan.xlsx

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-28 08:58 - 2013-09-28 13:49 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-03-28 08:40 - 2014-11-10 10:00 - 00000000 ____D C:\Users\Kerso\AppData\LocalLow\360WD
2016-03-28 08:40 - 2009-07-14 06:34 - 00025344 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-28 08:40 - 2009-07-14 06:34 - 00025344 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-28 08:39 - 2013-06-01 13:05 - 00000000 ____D C:\ProgramData\Origin
2016-03-28 08:34 - 2012-03-03 14:23 - 01836146 _____ C:\Windows\system32\PerfStringBackup.INI
2016-03-28 08:34 - 2009-07-14 10:47 - 00776056 _____ C:\Windows\system32\perfh007.dat
2016-03-28 08:34 - 2009-07-14 10:47 - 00179582 _____ C:\Windows\system32\perfc007.dat
2016-03-28 08:34 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\inf
2016-03-28 08:29 - 2012-03-03 14:33 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-28 08:29 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-03-27 22:46 - 2015-09-10 19:16 - 00000000 __SHD C:\ProgramData\360Quarant
2016-03-27 20:34 - 2015-01-02 12:56 - 00348360 _____ C:\Windows\system32\PnkBstrB.exe
2016-03-27 20:34 - 2015-01-02 12:56 - 00138816 _____ C:\Windows\system32\Drivers\PnkBstrK.sys
2016-03-27 20:34 - 2013-06-01 20:20 - 00348360 _____ C:\Windows\system32\PnkBstrB.xtr
2016-03-27 20:34 - 2013-06-01 14:50 - 00348928 _____ C:\Windows\system32\PnkBstrB.ex0
2016-03-27 12:07 - 2016-02-26 13:10 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2016-03-27 12:07 - 2012-05-10 06:45 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-03-27 12:04 - 2012-10-23 10:38 - 00000000 ____D C:\Users\Kerso\AppData\Local\CrashDumps
2016-03-27 07:36 - 2016-01-13 12:22 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-03-26 12:15 - 2012-07-27 19:37 - 00000000 ____D C:\Users\Kerso\AppData\Local\Google
2016-03-26 11:12 - 2012-03-03 14:25 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-03-26 11:04 - 2012-12-05 14:40 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2016-03-24 18:58 - 2013-09-28 13:49 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2016-03-24 18:58 - 2013-09-28 13:49 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2016-03-24 16:27 - 2016-01-12 16:08 - 00165072 _____ C:\Users\Kerso\AppData\Local\GDIPFONTCACHEV1.DAT
2016-03-24 10:48 - 2014-05-13 15:35 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\TS3Client
2016-03-24 09:46 - 2016-01-12 17:11 - 00549608 _____ C:\Windows\system32\FNTCACHE.DAT
2016-03-23 23:17 - 2012-08-01 12:57 - 00000000 ____D C:\Program Files\TeamViewer
2016-03-23 23:16 - 2014-04-27 18:25 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\TeamViewer
2016-03-23 10:57 - 2012-03-03 14:21 - 00000000 ____D C:\Users\Kerso
2016-03-23 10:46 - 2015-09-10 19:16 - 00000000 __SHD C:\$360Section
2016-03-17 08:35 - 2012-03-03 22:16 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\DVDVideoSoft
2016-03-17 08:31 - 2015-07-25 07:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2016-03-15 16:57 - 2012-03-04 20:17 - 00000000 ____D C:\A1-Faktura
2016-03-14 11:53 - 2012-03-03 18:52 - 00000000 ___RD C:\Users\Kerso\Desktop\Programme
2016-03-12 09:46 - 2014-11-20 18:10 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft
2016-03-10 14:33 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2016-03-10 01:40 - 2013-08-09 19:37 - 00000000 ____D C:\Windows\system32\MRT
2016-03-10 01:36 - 2012-03-03 15:00 - 141270216 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-03-09 13:13 - 2015-04-17 13:07 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2013-06-01 14:50 - 2015-01-02 13:02 - 0138056 _____ () C:\Users\Kerso\AppData\Roaming\PnkBstrK.sys
2012-12-14 14:15 - 2012-12-14 14:15 - 0004096 ____H () C:\Users\Kerso\AppData\Local\keyfile3.drm
2012-07-25 09:09 - 2016-01-12 15:28 - 0007522 _____ () C:\ProgramData\hpzinstall.log

==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-19 01:54

==================== Ende vom FRST.txt ============================
         
FRST Addition Text
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:05-03-2016 01
durchgeführt von Kerso (2016-03-28 09:42:28)
Gestartet von C:\Users\Kerso\Downloads
Microsoft Windows 7 Professional  Service Pack 1 (X86) (2012-03-03 12:21:21)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-392009458-3349232730-904554786-500 - Administrator - Disabled)
Gast (S-1-5-21-392009458-3349232730-904554786-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-392009458-3349232730-904554786-1028 - Limited - Enabled)
Kerso (S-1-5-21-392009458-3349232730-904554786-1000 - Administrator - Enabled) => C:\Users\Kerso
UpdatusUser (S-1-5-21-392009458-3349232730-904554786-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: 360 Total Security (Disabled - Up to date) {2B66EE1E-E5C8-C2F7-648F-4E55AC68D37D}
AS: 360 Total Security (Disabled - Up to date) {90070FFA-C3F2-CD79-5E3F-7527D7EF99C0}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
360 Total Security (HKLM\...\360TotalSecurity) (Version: 8.2.0.1031 - 360 Security Center)
4500_G510gm_Help (Version: 000.0.439.000 - Hewlett-Packard) Hidden
4500G510gm (Version: 000.0.423.000 - Hewlett-Packard) Hidden
4500G510gm_Software_Min (Version: 000.0.423.000 - Hewlett-Packard) Hidden
A1-Faktura 1.429 (HKLM\...\A1-Faktura_is1) (Version:  - A1-Faktura)
Acronis True Image 2016 (HKLM\...\{64AB919C-28AA-4260-A147-1A88E53EE978}Visible) (Version: 19.0.6027 - Acronis)
Acronis True Image 2016 (Version: 19.0.6027 - Acronis) Hidden
Adobe Acrobat Reader DC - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Allgemeine Runtime Files (x86) (HKLM\...\{1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1) (Version: 1.0.3.4 - Sereby Corporation)
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Ashampoo Burning Studio 2014 v.12.0.5 (HKLM\...\{91B33C97-280F-B76D-E27B-E712D7041B76}_is1) (Version: 12.0.5 - Ashampoo GmbH & Co. KG)
Audacity 2.0.6 (HKLM\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version:  - AVM Berlin)
Battlefield 3™ (HKLM\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlelog Web Plugins (HKLM\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
BodyMedia SenseWear 8.1 (HKLM\...\{E6DC8662-0EF9-4942-9BD7-A15AF806D18A}) (Version: 8.01.22 - BodyMedia)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
CameraHelperMsi (Version: 13.31.1038.0 - Logitech) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 3.16 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.45.3.0297 - DT Soft Ltd)
DAoC Portal (HKLM\...\{951D4810-1C32-47D1-A5BD-7A1BFB526D94}) (Version: 2.1.0 - DAoC Portal)
DAoC Portal (HKLM\...\{EC9359B3-2548-4DB1-B322-6D71A17501F9}) (Version: 2.8.2 - Dawn of Light)
DAOC-Charplan (HKLM\...\DAOCCharplan) (Version:  - )
Dark Age of Camelot (HKLM\...\Dark Age of Camelot) (Version:  - Electronic Arts)
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.372.000 - Hewlett-Packard) Hidden
DirectX 9.0c Extra Files (x86) (HKLM\...\{8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1) (Version: 1.10.06.0 - Sereby Corporation)
DirectX for Managed Code (HKLM\...\{FDF7187F-3960-4BEC-916D-98C9A83E3A68}_is1) (Version: 1.0.0.0 - Sereby Corporation)
DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
erLT (Version: 1.20.138.34 - Logitech, Inc.) Hidden
EveHQ (HKLM\...\EveHQ) (Version:  - )
EVEMon (HKLM\...\EVEMon) (Version: 2.2.1 - battleclinic.com)
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
FormatFactory 2.90 (HKLM\...\FormatFactory) (Version: 2.90 - Free Time)
Free YouTube To MP3 Converter (HKLM\...\Free YouTube To MP3 Converter_is1) (Version: 4.1.1.119 - DVDVideoSoft Ltd.)
FreeOCR v4.2 (HKLM\...\freeocr_is1) (Version:  - )
GDR 5520 für SQL Server 2008 (KB 2977321) (HKLM\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation)
GDR 5538 für SQL Server 2008 (KB 3045305) (HKLM\...\KB3045305) (Version: 10.3.5538.0 - Microsoft Corporation)
Genesis version Genesis Launcher 1.011 (HKLM\...\{975e7799-c584-47f0-9c12-c1551f3e95f2}_is1) (Version: Genesis Launcher 1.011 - Pawel D. alias Laplume for Genesis.)
Genesis version Patch (HKLM\...\{9db86e9a-0b05-4202-a76c-5a795f698408}_is1) (Version: Patch - Pawel D. alias Laplume for Genesis.)
Google Chrome (HKLM\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.)
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
GoPro App (Version: 5.7.549 - GoPro, Inc.) Hidden
GoPro Studio 2.5.7 (HKLM\...\{b996dca2-156c-4d2c-b9a3-59fac08cef33}) (Version: 2.5.7.549 - GoPro, Inc.)
Host OpenAL (ADI) (HKLM\...\Host OpenAL (ADI)) (Version:  - )
Hotfix für Microsoft Visual Basic 2010 Express - DEU (KB2635973) (HKLM\...\{CCAC7E52-ECCE-3C4D-B1BE-BC2ACF1C1C0E}.KB2635973) (Version: 1 - Microsoft Corporation)
HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Officejet 4500 G510g-m (HKLM\...\{E5083D57-D93F-404C-A91F-1C50D67C2BEB}) (Version: 13.0 - HP)
HP Update (HKLM\...\{97486FBE-A3FC-4783-8D55-EA37E9D171CC}) (Version: 5.005.000.001 - Hewlett-Packard)
HPDiagnosticAlert (Version: 1.00.0000 - Microsoft) Hidden
I.R.I.S. OCR (HKLM\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Image Resizer Powertoy Clone for Windows (HKLM\...\{1E5F3CC6-D390-4393-A2AA-6CEC04F1705A}) (Version: 2.1 - Brice Lambson)
i-Menu 2.2 (HKLM\...\i-Menu_is1) (Version:  - AOC)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.32 - Irfan Skiljan)
Java 8 Update 73 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Lexware Info Service (HKLM\...\{15B2BC56-D179-4450-84B9-7A8D7F4CE1B9}) (Version: 2.70.00.0081 - Haufe-Lexware GmbH & Co.KG)
Logitech Vid (HKLM\...\{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}) (Version: 1.70.1044 - Logitech Inc.)
Logitech Webcam Software (HKLM\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.)
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 1.1 SP1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU (HKLM\...\{C2C284D2-6BD7-3B34-B0C5-B2CAED168DF7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Language Pack 2007 - German/Deutsch (HKLM\...\OMUI.de-de) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2008 (HKLM\...\Microsoft SQL Server 10 Release) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 Browser (HKLM\...\{4AF2248C-B3DF-46FB-9596-87F5DB193689}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{539A0EAA-E1BB-4163-9C1E-6C8BF4A17FA2}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM\...\{E9089B6A-1FDE-47F3-8D29-175F5B7A0722}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{59C245FC-343C-4FEC-B3CB-B6F12B561C20}) (Version: 10.3.5538.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 DEU (HKLM\...\{EA61F81B-5754-4B5A-9BC5-FFEDC29D1DBC}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM\...\{C668416A-9213-4058-B7F2-01A42D85559D}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{D074DC76-F6C9-440E-A1D0-1DE958417FDB}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft Visual Basic 2010 Express - DEU (HKLM\...\Microsoft Visual Basic 2010 Express - DEU) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (HKLM\...\Microsoft Visual J# 2.0 Redistributable Package) (Version:  - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM\...\{616C6F39-4CE1-3434-A665-2F6A04C09A7F}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (HKLM\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mora's Ausrüstungsplaner (HKLM\...\{8A33CE67-80FB-4469-9ED1-E5D116391F68}_is1) (Version: 1.72 - Mora)
MozBackup 1.5.1 (HKLM\...\MozBackup) (Version:  - Pavel Cvrcek)
Mozilla Firefox 44.0.2 (x86 de) (HKLM\...\Mozilla Firefox 44.0.2 (x86 de)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
Mozilla Thunderbird 38.7.1 (x86 de) (HKLM\...\Mozilla Thunderbird 38.7.1 (x86 de)) (Version: 38.7.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Mumble 1.2.11 (HKLM\...\{2C0B4F07-7DD2-4D69-9A97-77AE3A37280F}) (Version: 1.2.11 - Thorvald Natvig)
MyFreeCodec (HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MyFreeCodec) (Version:  - )
Network (Version: 130.0.374.000 - Hewlett-Packard) Hidden
NVIDIA 3D Vision Controller-Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 314.22 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.22 - NVIDIA Corporation)
NVIDIA Grafiktreiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
Origin (HKLM\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.3 - Frank Heindörfer, Philip Chinery)
Pidgin (HKLM\...\Pidgin) (Version: 2.10.11 - )
PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
pyfa version 1.12.0 (Carnyx 1.0) (HKLM\...\{3DA39096-C08D-49CD-90E0-1D177F32C8AA}_is1) (Version: 1.12.0 (Carnyx 1.0) - pyfa)
QuickTime 7 (HKLM\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.3.13034_9 - Samsung Electronics Co., Ltd.)
Samsung Kies (Version: 2.5.3.13034_9 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies3 (HKLM\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.)
Samsung_MonSetup (HKLM\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Screen+ 1.0 (HKLM\...\Screen+_is1) (Version:  - AOC)
Secure Download Manager (HKLM\...\{B15B400A-19ED-4CC7-B3E4-9295D8470CBE}) (Version: 3.0.3 - e-academy Inc.)
Service Pack 3 für SQL Server 2008 (KB2546951) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Smart Technology Programming Software 7.0.27.13 (HKLM\...\{6193D1C9-FEAC-4158-8EB5-1B1D7B0C8DA7}) (Version: 7.0.27.13 - Mad Catz)
SoundMAX (HKLM\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 6.10.1.6585 - Analog Devices)
Sql Server Customer Experience Improvement Program (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Status (Version: 130.0.373.000 - Hewlett-Packard) Hidden
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM\...\TeamViewer) (Version: 11.0.56083 - TeamViewer)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (Version: 130.0.376.000 - Hewlett-Packard) Hidden
TuneUp Utilities 2014 (de-DE) (Version: 14.0.1000.275 - TuneUp Software) Hidden
TuneUp Utilities 2014 (HKLM\...\TuneUp Utilities) (Version: 14.0.1000.275 - TuneUp Software)
TuneUp Utilities 2014 (Version: 14.0.1000.275 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 13.0.3020.2 - TuneUp Software) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
VFW_Codec32 (Version: 0.1.160.0 - GoPro, Inc.) Hidden
Virtual Cable Tester (HKLM\...\{3D654496-9C3D-4565-858C-3E551ECDA4E2}) (Version: 2.16.3.3 - Marvell)
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 DEU (HKLM\...\{CFCB8616-A5D1-4281-80E8-389F685BFAE2}) (Version: 4.0.8080.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
VoipCheapCom (HKLM\...\VoipCheapCom_is1) (Version: 3.02 build 424 - Finarea S.A. Switzerland)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices  (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012  - GoPro)
WinHTTrack Website Copier 3.47-16 (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.47.16 - HTTrack)
WinRAR 4.11 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
WinSweeper 2.1 (HKLM\...\{96E8A815-3053-4616-AAC2-865E6B1792F5}_is1) (Version:  - Solvusoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {00620981-EAE4-4F8F-AA43-E1450A8199BA} - System32\Tasks\{551C6D34-2CEC-4CBA-BAAA-2648FEEA31AA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {0CD9FEAD-0027-4D62-8B88-94B2BF96FA89} - System32\Tasks\{6C83DB7D-D5E7-44B8-BFFD-85EBDB307E50} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {0F32A227-D816-4410-BCDF-A513BF2EB72F} - System32\Tasks\{1EF633E4-103B-4D87-9AFD-6A87598438B7} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {1717CC1D-E6BA-429F-9BA6-47CF5095981B} - System32\Tasks\{C82D3CE2-1A5F-4953-A9D0-8FEEF58E9E87} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {19B57C6C-14FA-4C9C-86DD-6B13173BD0D1} - System32\Tasks\{BA36C10A-A728-4C7C-A026-DC9246E977BC} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {1BF3CA04-FC72-491D-9E21-DF99FA210FC9} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files\TuneUp Utilities 2014\OneClick.exe [2014-03-20] (TuneUp Software)
Task: {2492F805-D192-45BF-9589-BE5F220A4EDD} - System32\Tasks\{60F186F7-5825-400E-BD48-63B204A20818} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {288AF73A-E90D-4063-A360-CF3958EED6C7} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {2FD308FD-45D0-498C-A4CC-1CB29B0C9F7E} - System32\Tasks\{70698B3A-815A-48B9-851C-0E4D6C432F7E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {3F67158D-FE62-4078-9659-EC4EDB73EF81} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2016-01-29] (Oracle Corporation)
Task: {4045E1F5-2B49-4CF5-A3C1-DAB36ADB69A4} - System32\Tasks\{44D96BAD-90EB-4765-A292-31412ECFE059} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {46F6499C-5390-4B88-BFCA-DAFAFAE5C7A8} - System32\Tasks\{93A484B1-999E-4CC5-B9A0-3FDCB55B1F4C} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {492C5054-D4CD-4912-A60C-76A77AC35E54} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {4958775C-9DCE-4243-8889-3CFE00D46E72} - System32\Tasks\{B08F50BF-6CC6-42F6-ACDF-F1EABD300EEE} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {520B7510-6448-49B2-94CB-8F6CDF09D436} - System32\Tasks\{4400CEB3-0A5B-442A-9942-E437B03807E4} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {526DE9CF-15C1-4726-AA5C-A7EDB04400A0} - System32\Tasks\{1DDE9954-42F1-4A06-B4D4-2E82FD26714E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {5636E0D2-35B0-48B5-8CFA-0C9697864E88} - System32\Tasks\{2B7C12D7-A0BD-4740-9B8F-75E72AD3F6F4} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {5D030872-ED2C-40A0-B3D6-9AF0689C951D} - System32\Tasks\{9695F42F-AF74-422D-A3D5-82BCDBE1F3CA} => C:\Program Files\DAoC Portal\Portal.exe [2015-03-19] (DAoCPortal)
Task: {5EB67062-2F28-45C6-B45C-25A3183319F4} - System32\Tasks\{73284883-AA5E-48F9-861C-0710C24BFC91} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6248EE7F-1A46-44CC-9B13-8E345D695108} - System32\Tasks\{8945F8B1-484B-4B20-B327-EEC42CC1ABB3} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {63281356-1ED5-4290-9A60-5DEE14CCEB80} - System32\Tasks\{9290612B-810C-4F89-AEA4-D8AB2F1ED515} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6408D330-8133-4A01-9E74-0E2992401BC5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-27] (Google Inc.)
Task: {64D763F7-D20F-49CD-AE87-004CCCBD9D43} - System32\Tasks\{837F0162-53AB-4369-B67F-BAA1D9D48B01} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {68A637A8-E8EC-4808-83F8-FFC922DFCA16} - System32\Tasks\{74761060-03C3-4A32-B77E-57BB024446A5} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6C351D97-2017-42BD-A3FD-286D704A13BB} - System32\Tasks\{F5AC1FDC-A9E7-485C-A8D1-C14E5C609C06} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6DC10F59-B216-423F-8DE5-6CAF18F97D3B} - System32\Tasks\{A4F591FA-72C1-414D-A14A-2393968A52A2} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {7279E912-857D-45BE-800D-B357A4F0FDBB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {7C438803-AE28-494E-ADCC-4E98C81DE138} - System32\Tasks\{16ED4715-36E2-4E9E-BE6F-BE4E7F861EBB} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {835C454B-056A-4D96-A54F-53A1611988A3} - System32\Tasks\{DD4FF398-87C3-4376-BB7F-2C647A43819E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {836BD4B1-BCEF-4AE9-8E1A-C77624D49894} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2011-05-10] (Hewlett-Packard)
Task: {8D153C95-2F0E-48D0-978F-09FF4FC97493} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-24] (Adobe Systems Incorporated)
Task: {8E1A87A4-AE69-4560-AB1E-827BDCC1BB56} - System32\Tasks\{0D3D59F5-85D3-4974-9FF6-2A89DC2F0C7F} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {98B5C114-3340-4B24-BE1F-F95AC59F8989} - System32\Tasks\{A6EFBE37-DCD3-4912-9106-1ECF06273D03} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {9EA971F1-6BA9-4230-AFD8-7CEA42824C1D} - System32\Tasks\{2F274B15-575F-4FA6-B283-D44BA6C0CAD2} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {A4E3C67E-2266-4637-B034-83ECE6F2C371} - System32\Tasks\{56257B99-77D1-4194-AE17-6000778515CF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {AADBFC09-AAFD-48A0-84F7-FC696903DEC7} - System32\Tasks\{EE5253F5-B7E7-4A5C-911F-96F747A2E10A} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {ACDBF36F-7F47-4F54-BE94-1015388C4808} - System32\Tasks\{F9317F21-4583-4288-8864-F06D4FAE67CA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {B5F775DD-EF8C-47FD-ABBF-83A88A4DA2CF} - System32\Tasks\{77860B14-65FC-4D13-AC0F-61FE9A0329D0} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {BC768EDF-3DDD-4374-AF98-442B9BB4D46B} - System32\Tasks\{499343E1-6B97-42E6-B452-84618B09D34D} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {BCB12C4F-72F9-4B84-88FD-9591FA3A5360} - System32\Tasks\{2138C00A-8C8F-4010-916B-74ECCB0448FA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {C0520FBC-92E4-444C-A2A9-7C220C3BD077} - System32\Tasks\{E4EC5395-F638-4DA2-8161-7E2F03E6D161} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {C53CDCB2-866F-4D47-9502-670873450FAF} - System32\Tasks\{8321EA50-5B40-4CA6-B763-81A548F52E84} => C:\Program Files\DAoC Portal\Portal.exe [2015-03-19] (DAoCPortal)
Task: {C559AF2B-5564-448B-92B7-C5B9FB5B5222} - System32\Tasks\{50D9BDDB-317D-4A51-ACF4-FB25601AE535} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {D22A96FB-53EE-429F-A984-A9046DE6E161} - System32\Tasks\{E5FFCBE8-744D-432F-940D-99BE59614C0F} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {DAD44A2D-CDFB-45D6-ADD0-0F631834F370} - System32\Tasks\{C9543114-2F2C-4E90-A2DF-70156690F820} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {E4F08313-FC3B-4333-92C0-9FA581C166EB} - System32\Tasks\{491A6C4B-5A43-45CB-8D8B-F91861617927} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {E6F0F568-90BF-46BC-AAB9-F469C3AAE741} - System32\Tasks\{77FD2DEA-B1F0-47F5-A8F4-679DB59A4416} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {EE799461-E6E0-446F-8AC4-AD628DC8BCA1} - System32\Tasks\{25134907-9A94-4C55-AF67-D3BE0E4C0BA9} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {F978B2EA-FB04-4E87-BB6E-CD3D230D9613} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-07-27] (Google Inc.)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2015-07-25 07:55 - 2016-02-26 12:56 - 00088184 _____ () C:\Program Files\360\Total Security\deepscan\qutmload.dll
2012-03-03 14:33 - 2013-03-15 04:59 - 00078624 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2012-03-03 22:20 - 2001-10-28 18:42 - 00116224 _____ () C:\Windows\System32\pdfcmnnt.dll
2012-03-03 14:28 - 2012-02-17 21:55 - 00166912 _____ () C:\Program Files\WinRAR\rarext.dll
2015-07-25 07:55 - 2016-02-26 12:56 - 00427640 _____ () C:\Program Files\360\Total Security\MenuEx.dll
2015-07-25 07:55 - 2016-03-03 21:07 - 01065080 _____ () C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
2014-11-20 18:10 - 2016-01-19 05:02 - 00110952 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\zlib1.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00253800 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\collector.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00295272 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\stat.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00104296 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00020328 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00044392 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2015-08-11 15:36 - 2015-08-11 15:36 - 00024896 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\core_workers_shared_context.dll
2015-11-26 11:40 - 2015-11-26 11:40 - 00035760 _____ () C:\Program Files\Common Files\Acronis\Home\thread_pool.dll
2015-11-26 12:13 - 2015-11-26 12:13 - 04093976 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\atih_mms_addon.dll
2015-08-23 15:59 - 2015-08-23 15:59 - 00606672 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\sqlite3.dll
2015-11-26 12:07 - 2015-11-26 12:07 - 19884832 _____ () C:\Program Files\Acronis\TrueImageHome\ti_managers.dll
2015-11-26 11:42 - 2015-11-26 11:42 - 00445872 _____ () C:\Program Files\Common Files\Acronis\Home\ulxmlrpcpp.dll
2015-11-26 11:36 - 2015-11-26 11:36 - 00115632 _____ () C:\Program Files\Common Files\Acronis\Home\EXPAT.dll
2015-01-02 12:56 - 2015-01-02 13:16 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe
2014-03-20 15:44 - 2014-03-20 15:44 - 00568120 _____ () C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\ProgramData\TEMP:054203E4 [128]

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Da befinden sich 7865 mehr Seiten.

IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123simsen.com -> www.123simsen.com

Da befinden sich 7865 mehr Seiten.


==================== Hosts Inhalt: ==========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:04 - 2014-11-10 11:30 - 00450713 ____R C:\Windows\system32\Drivers\etc\hosts

127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com
127.0.0.1	www.123moviedownload.com

Da befinden sich 15461 zusätzliche Einträge.


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-392009458-3349232730-904554786-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Kerso\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: Datenträger ist nicht mit dem Internet verbunden.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== FirewallRules (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{FCE18AA2-B321-4EF4-ACAA-8FC82EDE2E03}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{E42BEE09-6227-4081-B4C8-193B232C28E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{81CC2A70-FBFE-4AEC-B285-245AD1568F1A}] => (Allow) C:\Program Files\Logitech\Vid\Vid.exe
FirewallRules: [{7BF10D49-7A8A-4A8D-9436-D20FD8C6FF9C}] => (Allow) C:\Program Files\Logitech\Vid\Vid.exe
FirewallRules: [{42C336AD-4905-485D-93D9-26947D44C2E0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{E7DDDEC5-07E3-4205-ACA8-2DA60F0CD4A4}C:\program files\logitech\vid\vid.exe] => (Allow) C:\program files\logitech\vid\vid.exe
FirewallRules: [UDP Query User{DC2CE410-D267-406C-99A6-0631635486C3}C:\program files\logitech\vid\vid.exe] => (Allow) C:\program files\logitech\vid\vid.exe
FirewallRules: [{56B0D358-2FF9-45E8-8066-0F297E48C240}] => (Allow) E:\setup\hpznui01.exe
FirewallRules: [{D9D0DFDB-EC22-4423-8B1D-10128874EAF1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{40269EA2-1C21-400A-97AF-2C9F5A3C4318}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{F2C57C4F-AEF9-4971-BA46-B77B504B738D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{899E56FD-24F3-47CC-A7FE-42B06DD60CC1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{7AF0099B-8D7A-48B8-9419-C054858A6709}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{68323925-CD1C-4C70-9F84-951DE1D8DACC}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{A4709936-E183-4B6C-ACE4-5D1C4F4ED1FE}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{E866DBE2-EE0B-4167-8D11-56D376FBC7C3}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{76FB3896-3724-42F0-B8BC-1BC3D6420578}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{A3C7C629-FBC3-475A-B612-C806E5609FC5}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{98E8C9DF-508F-47CF-97CC-38F015DC964A}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{BB245105-085F-48B3-AEED-3FEAA9E93677}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{5DBFBB52-7224-4428-B25B-29C4378F00CC}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{5C660AF1-EA86-406E-A4E9-F48B329FBFA4}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{87FE41E0-5A63-4333-8442-F395EEA33A43}] => (Allow) C:\Program Files\VoipCheapCom\VoipCheapCom.exe
FirewallRules: [{1A699E85-BF38-45C0-B7FC-C6D456A94CAA}] => (Allow) C:\Program Files\VoipCheapCom\VoipCheapCom.exe
FirewallRules: [{6F432294-3666-427E-9B04-E2C85402F768}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{71AADF9C-3901-4920-98CD-52D807205665}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{273F00A3-D4DE-49AC-A275-4038FB7155BE}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{5C12FA49-ABBC-4831-A7B1-879529B0A385}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{309629DC-0021-4B33-B1C9-3FC8DCF416B9}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{91599B7E-B8BC-482C-BE24-5427175AC046}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{1477A496-EADF-482E-9C8E-72D44806A0D1}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{F271A95E-8C0D-4046-804A-684548342853}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{7350B05D-7B17-4316-B3A5-BE6814C9E969}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{60F324F0-196C-4B7D-B759-94CAC79F0C74}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{58593C4D-9E78-4023-92CB-D64B6AC471C1}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{1BE064D6-16A6-4BFA-88F5-09ACF00958F8}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{9C5510E4-0496-49EB-BD5A-E29DC09E47FE}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{35F61CAC-F2B8-4E55-9C48-5559AB212D9C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{BE97D8EB-C8F3-444B-846C-69B62E47AC92}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{6A9DD1DC-E3F7-4423-B03A-81DD75A14E8B}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{EF5731E0-7B77-4FED-A11F-18AB135D69AD}] => (Allow) C:\Program Files\360\Total Security\LiveUpdate360.exe
FirewallRules: [{E27ABF97-3645-4680-90B9-2AF9DD513D37}] => (Allow) C:\Program Files\360\Total Security\LiveUpdate360.exe
FirewallRules: [{E0E5410F-643C-4755-A10E-A9A3AA941040}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{43E1B361-D11A-42F0-B7D3-28AD2EE91285}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{2AA900AD-53E0-4836-95D5-FC59C2B36C11}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{FC319A75-079C-4026-B940-66CC7A0611A4}] => (Allow) C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{E837C937-54A4-4DEE-9B50-0C56F6764BC5}] => (Allow) C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{72345560-EAD7-4F69-9C05-58B976D59B66}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [TCP Query User{D08079CF-B821-48CE-B350-DA03D02842FB}H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe] => (Allow) H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe
FirewallRules: [UDP Query User{36836FAF-2756-479F-AE2E-5EBF05A6C764}H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe] => (Allow) H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe
FirewallRules: [{B6032C31-03CB-4757-BAF6-D572C9AFA576}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{B1A7013E-2503-4AC1-A06A-A531FA52EC2A}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{F455438A-488B-4E68-9066-5F7A64CEDAB8}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{8382E8D2-9497-4138-8D31-3D1F087853AA}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{E9F37DFB-1A42-482F-B9C0-7F323D7C9E7D}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{A69213D9-505E-4709-9876-7BB18A78111E}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{60013303-77C8-41BB-B229-FD75BF8AF92B}] => (Allow) C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
FirewallRules: [{96BC79D4-C0FA-4C99-9DD5-45C6E47018BD}] => (Allow) C:\Program Files\360\Total Security\safemon\QHSafeTray.exe

==================== Wiederherstellungspunkte =========================

12-03-2016 09:45:59 DVDVideoSoftRestorePoint
16-03-2016 08:24:44 Windows Update
23-03-2016 10:20:27 Geplanter Prüfpunkt
23-03-2016 10:44:52 Installiert BodyMedia SenseWear 8.1
26-03-2016 11:11:47 Entfernt BodyMedia SenseWear 8.1
26-03-2016 11:12:37 Installiert BodyMedia SenseWear 8.1
26-03-2016 12:06:40 DirectX wurde installiert

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Officejet 4500 G510g-m
Description: Officejet 4500 G510g-m
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 4500 G510g-m
Description: Officejet 4500 G510g-m
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/26/2016 11:58:32 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: dc8

Startzeit: 01d18745293265da

Endzeit: 29

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 491d5c0f-f339-11e5-8503-001c4af7cd81

Error: (03/26/2016 11:57:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 44.0.2.5884, Zeitstempel: 0x56bbf417
Name des fehlerhaften Moduls: mozglue.dll, Version: 44.0.2.5884, Zeitstempel: 0x56bbe58e
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000ed3b
ID des fehlerhaften Prozesses: 0x1660
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3

Error: (03/24/2016 07:39:17 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1550

Startzeit: 01d185f31a33b9d9

Endzeit: 8

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 512eb2f0-f1e7-11e5-b86d-001c4af7cd81

Error: (03/22/2016 12:32:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: c58

Startzeit: 01d184257344fadb

Endzeit: 104

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 4f11e68b-f019-11e5-b8fc-001c4af7cd81

Error: (03/10/2016 08:42:19 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: Microsoft.SqlServer.Management.SmoMetadataProvider, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 . Error code = 0x80070002

Error: (03/10/2016 08:42:18 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: Microsoft.SqlServer.Management.SmoMetadataProvider, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 . Error code = 0x80070002

Error: (03/09/2016 01:13:33 PM) (Source: MsiInstaller) (EventID: 1024) (User: Kerso-PC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5C00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127

Error: (03/07/2016 10:03:47 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/29/2016 04:35:00 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/18/2016 05:47:15 PM) (Source: MsiInstaller) (EventID: 1024) (User: Kerso-PC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5B00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127


Systemfehler:
=============
Error: (03/28/2016 09:40:20 AM) (Source: FWLANUSB) (EventID: 5002) (User: )
Description: AVM FRITZ!WLAN USB Stick v1.1 : Fehlfunktion des Netzwerkadapters wurde ermittelt.

Error: (03/28/2016 08:31:45 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (03/28/2016 08:31:45 AM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (03/28/2016 08:29:40 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AVM WLAN Connection Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (03/28/2016 08:29:40 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst AVM WLAN Connection Service erreicht.

Error: (03/27/2016 07:55:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (03/27/2016 07:55:09 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (03/27/2016 07:53:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AVM WLAN Connection Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (03/27/2016 07:53:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst AVM WLAN Connection Service erreicht.

Error: (03/27/2016 01:21:42 PM) (Source: FWLANUSB) (EventID: 5002) (User: )
Description: AVM FRITZ!WLAN USB Stick v1.1 : Fehlfunktion des Netzwerkadapters wurde ermittelt.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz
Prozentuale Nutzung des RAM: 46%
Installierter physikalischer RAM: 3327.12 MB
Verfügbarer physikalischer RAM: 1767.66 MB
Summe virtueller Speicher: 6652.55 MB
Verfügbarer virtueller Speicher: 4902.05 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:146.39 GB) (Free:30.68 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive d: () (Fixed) (Total:86.4 GB) (Free:37.93 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 51055104)
Partition 1: (Active) - (Size=146.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=86.4 GB) - (Type=07 NTFS)

==================== Ende vom Addition.txt ============================
         

Alt 28.03.2016, 10:16   #2
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



GMER Text
Code:
ATTFilter
GMER 2.2.19882 - hxxp://www.gmer.net
Rootkit scan 2016-03-28 11:11:25
Windows 6.1.7601 Service Pack 1 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3 WDC_WD2500KS-00MJB0 rev.02.01C03 232,89GB
Running: gmer-2.2.19882.exe; Driver: C:\Users\Kerso\AppData\Local\Temp\ugloqpoc.sys


---- System - GMER 2.2 ----

SSDT            \??\C:\Windows\system32\drivers\qutmipc.sys                                                                                                                                                                                                 ZwOpenKeyEx [0x95882620]

---- Kernel code sections - GMER 2.2 ----

.text           ntkrnlpa.exe!ZwReplaceKey + 137C                                                                                                                                                                                                            834509C4 4 Bytes  JMP 85F489B0 
.text           ntkrnlpa.exe!ZwReplaceKey + 151D                                                                                                                                                                                                            83450B65 1 Byte  [06]
.text           ntkrnlpa.exe!KiDispatchInterrupt + 5A2                                                                                                                                                                                                      8348AC12 19 Bytes  [E0, 0F, BA, F0, 07, 73, 09, ...] {LOOPNZ 0x11; MOV EDX, 0x97307f0; MOV CR4, EAX; OR AL, 0x80; MOV CR4, EAX; RET ; MOV ECX, CR3}
.text           ntkrnlpa.exe!KeRemoveQueueEx + 1383                                                                                                                                                                                                         834922B0 4 Bytes  [20, 26, 88, 95]

---- User code sections - GMER 2.2 ----

.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] ntdll.dll!LdrLoadDll                                                                                                                                                                     77B22611 5 Bytes  JMP 71DCA784 C:\Program Files\Mozilla Firefox\mozglue.dll
.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] kernel32.dll!K32GetDeviceDriverBaseNameW + 5D                                                                                                                                            76B595DE 7 Bytes  JMP 591250C2 C:\Program Files\Mozilla Firefox\xul.dll
.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] kernel32.dll!QueryPerformanceCounter + 13                                                                                                                                                76B5C5E5 7 Bytes  JMP 59125ABC C:\Program Files\Mozilla Firefox\xul.dll
.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] kernel32.dll!LoadAppInitDlls + 355                                                                                                                                                       76B5F6A6 7 Bytes  JMP 58E95747 C:\Program Files\Mozilla Firefox\xul.dll
.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] USER32.dll!CreateWindowExA                                                                                                                                                               77C4BF48 5 Bytes  JMP 5920B40F C:\Program Files\Mozilla Firefox\xul.dll
.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] USER32.dll!CreateWindowExW                                                                                                                                                               77C4EC84 5 Bytes  JMP 58E732C7 C:\Program Files\Mozilla Firefox\xul.dll
.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] USER32.dll!GetWindowInfo                                                                                                                                                                 77C54B66 5 Bytes  JMP 59C33F44 C:\Program Files\Mozilla Firefox\xul.dll
.text           C:\Program Files\Mozilla Firefox\firefox.exe[1388] GDI32.dll!GetViewportOrgEx + 26C                                                                                                                                                         76BF87DB 7 Bytes  JMP 591249EB C:\Program Files\Mozilla Firefox\xul.dll

---- User IAT/EAT - GMER 2.2 ----

IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipAlloc]                                                                                                                                                             [745524A2] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusStartup]                                                                                                                                                        [74535635] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdiplusShutdown]                                                                                                                                                       [745356F3] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipFree]                                                                                                                                                              [7455251D] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDeleteGraphics]                                                                                                                                                    [74548581] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDisposeImage]                                                                                                                                                      [74544D35] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageWidth]                                                                                                                                                     [745450DC] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipGetImageHeight]                                                                                                                                                    [745451B1] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateBitmapFromHBITMAP]                                                                                                                                           [745466DE] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCreateFromHDC]                                                                                                                                                     [745482D8] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetCompositingMode]                                                                                                                                                [74548827] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipSetInterpolationMode]                                                                                                                                              [74549088] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipDrawImageRectI]                                                                                                                                                    [7454E22B] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll
IAT             C:\Windows\Explorer.EXE[2064] @ C:\Windows\Explorer.EXE [gdiplus.dll!GdipCloneImage]                                                                                                                                                        [74544C67] C:\Windows\WinSxS\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\gdiplus.dll

---- Devices - GMER 2.2 ----

AttachedDevice  \Driver\volmgr \Device\HarddiskVolume1                                                                                                                                                                                                      fltsrv.sys
AttachedDevice  \Driver\volmgr \Device\HarddiskVolume2                                                                                                                                                                                                      fltsrv.sys

Device          \Driver\partmgr \Device\PartmgrControl                                                                                                                                                                                                      fltsrv.sys
Device          \FileSystem\Npfs \Device\NamedPipe                                                                                                                                                                                                          360Box.sys
Device          \Driver\rdyboost \Device\RdyBoost                                                                                                                                                                                                           fltsrv.sys

AttachedDevice  \FileSystem\fastfat \Fat                                                                                                                                                                                                                    fltmgr.sys
AttachedDevice  \FileSystem\fastfat \Fat                                                                                                                                                                                                                    qutmdrv.sys

---- Registry - GMER 2.2 ----

Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorsvr.dll                                                                                                                  
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorsvr.dll@\Device\HarddiskVolume1\Windows\System32\rundll32.exe                                                            0xD3 0x17 0xA3 0x1B ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorsvr.dll@\Device\HarddiskVolume1\Windows\System32\GWX\GWXConfigManager.exe                                                0x67 0xA1 0x44 0xFD ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorsvr.dll@\Device\HarddiskVolume1\Windows\System32\CompatTelRunner.exe                                                     0xC0 0x35 0xD7 0x18 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorwks.dll                                                                                                                  
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorwks.dll@\Device\HarddiskVolume1\Windows\System32\rundll32.exe                                                            0x92 0xCF 0x94 0x1B ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorwks.dll@\Device\HarddiskVolume1\Windows\System32\GWX\GWXConfigManager.exe                                                0x07 0x40 0x42 0xFD ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v1.1.4322/mscorwks.dll@\Device\HarddiskVolume1\Windows\System32\CompatTelRunner.exe                                                     0x7E 0xED 0xC8 0x18 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll                                                                                                                 
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe                                 0x70 0xCA 0xC4 0x85 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\DVDVideoSoft\Free YouTube to MP3 Converter\FreeYouTubeToMP3Converter.exe  0x3D 0xD1 0x06 0xAB ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\Common Files\DVDVideoSoft\bin\PremiumMembershipOffer.exe                  0x26 0xFF 0x3C 0xFC ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Windows\System32\sdiagnhost.exe                                                         0x43 0x7C 0xDE 0x65 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Windows\Microsoft.NET\Framework\v2.0.50727\csc.exe                                      0x75 0x98 0xFD 0x6A ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\DAoC Portal\Portal.exe                                                    0xEB 0x16 0x2A 0x8A ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Users\Kerso\AppData\Local\Temp\Rar$EXa0.911\VidJoin.exe                                 0x80 0xC4 0xDD 0x13 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Windows\System32\WindowsPowerShell\v1.0\powershell.exe                                  0x97 0x59 0x2C 0x56 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\DAoC Portal\update.Updater.exe                                            0xB3 0xBF 0x1D 0x8C ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\GoPro\Tools\GoPro Studio.exe                                              0x12 0xD4 0x51 0x24 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe                      0x04 0xBD 0x24 0x27 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Windows\Microsoft.NET\Framework\v2.0.50727\dw20.exe                                     0x84 0xD1 0xF8 0x35 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\Genesis Launcher\tmp\StartGameDll.exe                                     0x43 0x6B 0xFE 0xEF ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\GoPro\Tools\TemplateInstaller.exe                                         0xBE 0x69 0x05 0xE5 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\FreeOCR\FreeOCR.exe                                                                     0xB9 0xBB 0x86 0xAD ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\Program Files\Common Files\DVDVideoSoft\bin\BrowserHelpersInstaller.exe                 0xE7 0xD7 0x21 0xC6 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v2.0.50727/mscorwks.dll@\Device\HarddiskVolume1\PROGRA~1\ORIGIN~1\BATTLE~1\__INST~1\directx\redist\DXSETUP.exe                          0xC4 0x4B 0x31 0x3B ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll                                                                                                                      
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe                                      0x72 0xD5 0xD7 0x85 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\System32\CompatTel\wicainventory.exe                                                 0xC6 0xF2 0x31 0x19 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\System32\rundll32.exe                                                                0xC2 0x30 0x75 0xE1 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe                             0xC3 0xDD 0xA9 0x7C ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\System32\GWX\GWXConfigManager.exe                                                    0xB0 0x7A 0x3F 0xE0 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\Samsung\Kies\Kies.exe                                                          0xBB 0xA6 0x48 0x9E ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Users\Kerso\AppData\Roaming\Samsung\Kies\UpdateTemp\Updater\Kies.Update.exe                  0x34 0x1F 0xC3 0x42 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\DAoC Portal\connect.exe                                                        0xA7 0xEC 0x9C 0x2D ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\System32\aitstatic.exe                                                               0x94 0xF1 0x5A 0x3D ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.exe                                          0xDD 0x19 0xE2 0x23 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\System32\msiexec.exe                                                                 0xF8 0x71 0x65 0x94 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\EVEMon\EVEMon.exe                                                              0xD3 0x10 0x68 0x4E ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\EVEMon\EVEMon.Watchdog.exe                                                     0x0C 0x20 0x96 0x94 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\EveHQ\EveHQ.exe                                                                0x38 0x47 0xAF 0xB3 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\System32\svchost.exe                                                                 0x18 0xB6 0x0D 0x2A ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume2\a081fd4451e1be4f3a\setup.exe                                                                 0x43 0x4D 0x7C 0x75 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume2\a081fd4451e1be4f3a\x86\setup100.exe                                                          0x5C 0xD2 0x5B 0x83 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume2\a081fd4451e1be4f3a\x86\fixsqlregistrykey_x86.exe                                             0xE8 0x0F 0xDB 0x84 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\explorer.exe                                                                         0xEF 0x9C 0x17 0x56 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Windows\System32\CompatTelRunner.exe                                                         0xE8 0x84 0xF8 0x23 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Users\Kerso\AppData\Local\Temp\DMR\dmr_72.exe                                                0xCF 0xEA 0xAF 0xB8 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\Genesis Launcher\Genesis Launcher.exe                                          0x2B 0x42 0x30 0xDA ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\Genesis Launcher\Updater.exe                                                   0xD9 0x8C 0x62 0x73 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Users\Kerso\Desktop\EVE\Taco_v0.7.0b_Full\Taco v0.7.0b\Taco.exe                              0x6E 0x89 0xAB 0x5D ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Users\Kerso\Downloads\GoProStudioPC-2.5.7.549.exe                                            0xD7 0xC6 0x68 0x9F ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Program Files\GoPro\Tools\Importer\GoPro Importer.exe                                        0xE1 0xA1 0x72 0xD9 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\Module\Microsoft.NET/Framework/v4.0.30319/clr.dll@\Device\HarddiskVolume1\Users\Kerso\AppData\Local\Temp\_iu14D2O.tmp                                                  0x31 0x40 0x71 0xC7 ...
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\System\Active                                                                                                                                                          
Reg             HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\CIT\System\Active@65A64427                                                                                                                                                 1947

---- Files - GMER 2.2 ----

File            C:\ProgramData\Acronis\TrueImageHome\Logs\service_2016-03-28-10-54-23.log                                                                                                                                                                   806 bytes
         
__________________


Alt 28.03.2016, 10:34   #3
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



TDSSKiller 1 text
Code:
ATTFilter
11:24:36.0036 0x0ed8  TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
11:24:36.0052 0x0ed8  ============================================================
11:24:36.0052 0x0ed8  Current date / time: 2016/03/28 11:24:36.0052
11:24:36.0052 0x0ed8  SystemInfo:
11:24:36.0052 0x0ed8  
11:24:36.0052 0x0ed8  OS Version: 6.1.7601 ServicePack: 1.0
11:24:36.0052 0x0ed8  Product type: Workstation
11:24:36.0052 0x0ed8  ComputerName: KERSO-PC
11:24:36.0052 0x0ed8  UserName: Kerso
11:24:36.0052 0x0ed8  Windows directory: C:\Windows
11:24:36.0052 0x0ed8  System windows directory: C:\Windows
11:24:36.0052 0x0ed8  Processor architecture: Intel x86
11:24:36.0052 0x0ed8  Number of processors: 2
11:24:36.0052 0x0ed8  Page size: 0x1000
11:24:36.0052 0x0ed8  Boot type: Normal boot
11:24:36.0052 0x0ed8  ============================================================
11:24:36.0052 0x0ed8  BG loaded
11:24:36.0832 0x0ed8  System UUID: {9FCCE873-23F8-9C0D-C070-746612ADE521}
11:24:37.0409 0x0ed8  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x2653E, SectorsPerTrack: 0x11, TracksPerCylinder: 0xB7, Type 'K0', Flags 0x00000040
11:24:37.0409 0x0ed8  ============================================================
11:24:37.0409 0x0ed8  \Device\Harddisk0\DR0:
11:24:37.0409 0x0ed8  MBR partitions:
11:24:37.0409 0x0ed8  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x124C6000
11:24:37.0409 0x0ed8  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x124F8800, BlocksNum 0xACCC800
11:24:37.0409 0x0ed8  ============================================================
11:24:37.0596 0x0ed8  C: <-> \Device\Harddisk0\DR0\Partition1
11:24:37.0721 0x0ed8  D: <-> \Device\Harddisk0\DR0\Partition2
11:24:37.0721 0x0ed8  ============================================================
11:24:37.0721 0x0ed8  Initialize success
11:24:37.0721 0x0ed8  ============================================================
11:25:06.0889 0x1240  ============================================================
11:25:06.0889 0x1240  Scan started
11:25:06.0889 0x1240  Mode: Manual; SigCheck; TDLFS; 
11:25:06.0889 0x1240  ============================================================
11:25:06.0889 0x1240  KSN ping started
11:25:06.0920 0x1240  KSN ping finished: false
11:25:08.0855 0x1240  ================ Scan system memory ========================
11:25:08.0855 0x1240  System memory - ok
11:25:08.0855 0x1240  ================ Scan services =============================
11:25:09.0011 0x1240  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
11:25:19.0135 0x1240  1394ohci - ok
11:25:19.0197 0x1240  [ 67EEDA53FE051D669B5C1ED153C3EE1E, 4852D77F14E7446BA257553EBDF5E7533C51C50BC2B61FE741CFB68993205E8F ] 360AntiHacker   C:\Windows\system32\Drivers\360AntiHacker.sys
11:25:19.0213 0x1240  360AntiHacker - ok
11:25:19.0260 0x1240  [ 50CF5732238CEAFF392609A60A3FBEE9, 7D37F090665086DABE06C7F164FF4C69BC85A4F2B76A6D4C4A76C9D23AE9A2FC ] 360AvFlt        C:\Windows\system32\DRIVERS\360AvFlt.sys
11:25:19.0275 0x1240  360AvFlt - ok
11:25:19.0322 0x1240  [ 14115129D9E3B5D0E83D8163ED4A80FF, 0CA44F3C5F28B1DE4D90820481B7EF7C4E9508AECCC6B072B2B0813747D440D5 ] 360Box          C:\Windows\system32\DRIVERS\360Box.sys
11:25:19.0338 0x1240  360Box - ok
11:25:19.0400 0x1240  [ 2255330A69644F179D0438666EEF1861, 29D10CBD372001332B49CD6248F7DFEDB7A707C8281AFFFFEE6F971D679A4973 ] 360Camera       C:\Windows\system32\Drivers\360Camera.sys
11:25:19.0416 0x1240  360Camera - ok
11:25:19.0478 0x1240  [ 7819483C88B956339B1322D5A847493C, 638746CE520128C677834BFE3486C10232BD41B5EB16D5591A0C3218E94477EF ] 360SelfProtection C:\Windows\system32\drivers\360SelfProtection.sys
11:25:19.0478 0x1240  360SelfProtection - ok
11:25:19.0525 0x1240  [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI            C:\Windows\system32\drivers\ACPI.sys
11:25:19.0541 0x1240  ACPI - ok
11:25:19.0603 0x1240  [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
11:25:19.0665 0x1240  AcpiPmi - ok
11:25:19.0775 0x1240  [ D4C8A30DDF0501A8F0C58F4AF3A86BD1, AD4E098CB77DBAA3EF9E8B7E66943103CF5DBF37AEE64E348928A9986831312D ] AcrSch2Svc      C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
11:25:19.0790 0x1240  AcrSch2Svc - ok
11:25:19.0821 0x1240  [ 23F78687CBF3972704650A799420BFA8, B657281C80C0138FC79CB161D230316B5A96CDC3A775961A2916F32C3A43C2C9 ] ADIHdAudAddService C:\Windows\system32\drivers\ADIHdAud.sys
11:25:19.0884 0x1240  ADIHdAudAddService - ok
11:25:19.0931 0x1240  [ F84C9DEE4698DF3C1D76801B7B1B55D7, 071A3938ED7B9E20E30E873011C8039382C7EFE90D39EC8C0F3E457B2873406E ] Adobe LM Service C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
11:25:19.0962 0x1240  Adobe LM Service - detected UnsignedFile.Multi.Generic ( 1 )
11:25:20.0071 0x1240  Adobe LM Service ( UnsignedFile.Multi.Generic ) - warning
11:25:20.0118 0x1240  [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:25:20.0118 0x1240  AdobeARMservice - ok
11:25:20.0180 0x1240  [ A9D55370A0CBADD1E1E2B4796ACD26DF, 9FD0C2B1206321B34D97FF3D01C5C811022DA76DA667DB6ECCF2746437A706A2 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
11:25:20.0196 0x1240  AdobeFlashPlayerUpdateSvc - ok
11:25:20.0227 0x1240  [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
11:25:20.0258 0x1240  adp94xx - ok
11:25:20.0274 0x1240  [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
11:25:20.0305 0x1240  adpahci - ok
11:25:20.0321 0x1240  [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
11:25:20.0336 0x1240  adpu320 - ok
11:25:20.0367 0x1240  [ 4DC6B0772D1698F04FC79053A21C8260, 010D4660DB9F7BC49C72691B5D9936EAB6F4A0799374B4019B97343B517D86F4 ] AEADIFilters    C:\Windows\system32\AEADISRV.EXE
11:25:20.0399 0x1240  AEADIFilters - ok
11:25:20.0430 0x1240  [ 39AEAECE9F42407F176FE130D790BFBE, 19010DF87BDC1884268098CC04B4B15ECB710C94054A57157C0F9B7A795BDB28 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
11:25:20.0461 0x1240  AeLookupSvc - ok
11:25:20.0633 0x1240  [ B048C87A82322C06F0F22C7627D60B57, CA24E2007340F2C773137D3B709D5EED58B37BE19901D44A96FB77C8D063AE54 ] afcdpsrv        C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
11:25:20.0726 0x1240  afcdpsrv - ok
11:25:20.0773 0x1240  [ 93B49FA857F7036A4EFF32371F6E7391, B9B2867D9A80E7F028E9D7C6ABCB9EC5198ACE28CEE101C5A846666B356B2843 ] AFD             C:\Windows\system32\drivers\afd.sys
11:25:20.0867 0x1240  AFD - ok
11:25:20.0913 0x1240  [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440          C:\Windows\system32\drivers\agp440.sys
11:25:20.0929 0x1240  agp440 - ok
11:25:20.0945 0x1240  [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx         C:\Windows\system32\DRIVERS\djsvs.sys
11:25:20.0960 0x1240  aic78xx - ok
11:25:20.0991 0x1240  [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG             C:\Windows\System32\alg.exe
11:25:21.0038 0x1240  ALG - ok
11:25:21.0069 0x1240  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide          C:\Windows\system32\drivers\aliide.sys
11:25:21.0069 0x1240  aliide - ok
11:25:21.0101 0x1240  [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
11:25:21.0116 0x1240  amdagp - ok
11:25:21.0116 0x1240  [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide          C:\Windows\system32\drivers\amdide.sys
11:25:21.0132 0x1240  amdide - ok
11:25:21.0147 0x1240  [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
11:25:21.0194 0x1240  AmdK8 - ok
11:25:21.0210 0x1240  [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
11:25:21.0241 0x1240  AmdPPM - ok
11:25:21.0257 0x1240  [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
11:25:21.0288 0x1240  amdsata - ok
11:25:21.0319 0x1240  [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
11:25:21.0319 0x1240  amdsbs - ok
11:25:21.0335 0x1240  [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
11:25:21.0350 0x1240  amdxata - ok
11:25:21.0381 0x1240  [ FE4F2ADE5DBB3B888E9EB0A1FBA1F152, B17053A912C73835A2E80176D79885B530E15240B988125114B6B877C903D61C ] AppID           C:\Windows\system32\drivers\appid.sys
11:25:21.0428 0x1240  AppID - ok
11:25:21.0444 0x1240  [ A4DA304773AC1396792C5DE1D1EB601A, ECD23FF67FB1C4B94DBE23F6724E2DA0917CE0E479DE9C9F790A8635A2234950 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
11:25:21.0475 0x1240  AppIDSvc - ok
11:25:21.0506 0x1240  [ 133A7896E643D139443B47FDBFA327C7, 371FC602B531DF1EFDCEEC3A2F5497A0D0BE7F558B0583F572862C69A65BD454 ] Appinfo         C:\Windows\System32\appinfo.dll
11:25:21.0537 0x1240  Appinfo - ok
11:25:21.0569 0x1240  [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt         C:\Windows\System32\appmgmts.dll
11:25:21.0584 0x1240  AppMgmt - ok
11:25:21.0600 0x1240  [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc             C:\Windows\system32\DRIVERS\arc.sys
11:25:21.0631 0x1240  arc - ok
11:25:21.0647 0x1240  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
11:25:21.0662 0x1240  arcsas - ok
11:25:21.0756 0x1240  [ 537B2948976F5D9B5767B74A63EBB395, 1A14F8B582E74AD15B612EDA5B707AA3CB0B2A107ED14572B4232EAA7383B634 ] aspnet_state    C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
11:25:21.0834 0x1240  aspnet_state - ok
11:25:21.0849 0x1240  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
11:25:21.0943 0x1240  AsyncMac - ok
11:25:21.0959 0x1240  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi           C:\Windows\system32\drivers\atapi.sys
11:25:21.0974 0x1240  atapi - ok
11:25:22.0021 0x1240  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
11:25:22.0083 0x1240  AudioEndpointBuilder - ok
11:25:22.0115 0x1240  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
11:25:22.0130 0x1240  Audiosrv - ok
11:25:22.0177 0x1240  [ C6F4C466B654C1BE98AF31418BB5AC30, 62AA4456F8E22A6E508EB44DE4309615057117AAF923C13BBED15AA39630E76B ] AVM WLAN Connection Service C:\Program Files\avmwlanstick\WlanNetService.exe
11:25:22.0177 0x1240  AVM WLAN Connection Service - detected UnsignedFile.Multi.Generic ( 1 )
11:25:22.0177 0x1240  AVM WLAN Connection Service ( UnsignedFile.Multi.Generic ) - warning
11:25:22.0208 0x1240  [ 263CF9D248FD5E020A1333ED4F7EAA88, 04F944C2B284172A7917389A83C525FA9A3ACB026F370EB886B48759FE81A5E1 ] avmeject        C:\Windows\system32\drivers\avmeject.sys
11:25:22.0239 0x1240  avmeject - detected UnsignedFile.Multi.Generic ( 1 )
11:25:22.0239 0x1240  avmeject ( UnsignedFile.Multi.Generic ) - warning
11:25:22.0255 0x1240  [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV        C:\Windows\System32\AxInstSV.dll
11:25:22.0317 0x1240  AxInstSV - ok
11:25:22.0380 0x1240  [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbdx.sys
11:25:22.0442 0x1240  b06bdrv - ok
11:25:22.0458 0x1240  [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
11:25:22.0489 0x1240  b57nd60x - ok
11:25:22.0567 0x1240  [ F0B381D09C00C939CD20F95A404B39ED, 4B303117B7CED81AEEA98CD4B8E1F527A8C3823DC3C2162DD84EE2893B603975 ] BAPIDRV         C:\Windows\system32\DRIVERS\BAPIDRV.sys
11:25:22.0567 0x1240  BAPIDRV - ok
11:25:22.0614 0x1240  [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC          C:\Windows\System32\bdesvc.dll
11:25:22.0661 0x1240  BDESVC - ok
11:25:22.0676 0x1240  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep            C:\Windows\system32\drivers\Beep.sys
11:25:22.0707 0x1240  Beep - ok
11:25:22.0754 0x1240  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE             C:\Windows\System32\bfe.dll
11:25:22.0785 0x1240  BFE - ok
11:25:22.0848 0x1240  [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS            C:\Windows\System32\qmgr.dll
11:25:22.0973 0x1240  BITS - ok
11:25:22.0973 0x1240  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
11:25:22.0988 0x1240  blbdrive - ok
11:25:23.0019 0x1240  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
11:25:23.0051 0x1240  bowser - ok
11:25:23.0066 0x1240  [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
11:25:23.0113 0x1240  BrFiltLo - ok
11:25:23.0144 0x1240  [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
11:25:23.0160 0x1240  BrFiltUp - ok
11:25:23.0191 0x1240  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser         C:\Windows\System32\browser.dll
11:25:23.0222 0x1240  Browser - ok
11:25:23.0238 0x1240  [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
11:25:23.0285 0x1240  Brserid - ok
11:25:23.0300 0x1240  [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
11:25:23.0316 0x1240  BrSerWdm - ok
11:25:23.0347 0x1240  [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
11:25:23.0363 0x1240  BrUsbMdm - ok
11:25:23.0378 0x1240  [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
11:25:23.0409 0x1240  BrUsbSer - ok
11:25:23.0425 0x1240  [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
11:25:23.0456 0x1240  BTHMODEM - ok
11:25:23.0472 0x1240  [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv         C:\Windows\system32\bthserv.dll
11:25:23.0503 0x1240  bthserv - ok
11:25:23.0519 0x1240  [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
11:25:23.0534 0x1240  cdfs - ok
11:25:23.0565 0x1240  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
11:25:23.0565 0x1240  cdrom - ok
11:25:23.0597 0x1240  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc     C:\Windows\System32\certprop.dll
11:25:23.0628 0x1240  CertPropSvc - ok
11:25:23.0643 0x1240  [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
11:25:23.0675 0x1240  circlass - ok
11:25:23.0706 0x1240  [ 33A60554882FDF59CDA3E1806370BBA1, 3DE5451E1CB84AAEBD03F54BEFC670C401447B4881A8B022748B6ECF0F500F01 ] CLFS            C:\Windows\system32\CLFS.sys
11:25:23.0721 0x1240  CLFS - ok
11:25:23.0799 0x1240  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:25:23.0799 0x1240  clr_optimization_v2.0.50727_32 - ok
11:25:23.0831 0x1240  [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:25:23.0940 0x1240  clr_optimization_v4.0.30319_32 - ok
11:25:23.0955 0x1240  [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
11:25:23.0955 0x1240  CmBatt - ok
11:25:23.0971 0x1240  [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
11:25:23.0987 0x1240  cmdide - ok
11:25:24.0018 0x1240  [ 780FFC005741C9316576086155E55F56, D863E5657F1468410BBDD657D5EA8A2FDDB70FED459CDE3178CB8FDB910058EC ] CNG             C:\Windows\system32\Drivers\cng.sys
11:25:24.0049 0x1240  CNG - ok
11:25:24.0065 0x1240  [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
11:25:24.0080 0x1240  Compbatt - ok
11:25:24.0096 0x1240  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
11:25:24.0127 0x1240  CompositeBus - ok
11:25:24.0143 0x1240  COMSysApp - ok
11:25:24.0158 0x1240  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
11:25:24.0158 0x1240  crcdisk - ok
11:25:24.0205 0x1240  [ 33F67BBCC3C0499D3F3382473114CFA8, FDDCC41CE005B7C1BEBB6F4ACA9A3F10E5972792ADFD7D294E70A0B781460981 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
11:25:24.0236 0x1240  CryptSvc - ok
11:25:24.0267 0x1240  [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC             C:\Windows\system32\drivers\csc.sys
11:25:24.0299 0x1240  CSC - ok
11:25:24.0345 0x1240  [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService      C:\Windows\System32\cscsvc.dll
11:25:24.0377 0x1240  CscService - ok
11:25:24.0408 0x1240  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch      C:\Windows\system32\rpcss.dll
11:25:24.0455 0x1240  DcomLaunch - ok
11:25:24.0486 0x1240  [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc       C:\Windows\System32\defragsvc.dll
11:25:24.0517 0x1240  defragsvc - ok
11:25:24.0533 0x1240  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
11:25:24.0564 0x1240  DfsC - ok
11:25:24.0595 0x1240  [ 7A5FB3E4E0D77740D56E516EE6B2DC2B, 5B4636EC04903D2E512AC8FB98A484F7CEBE4EE0A081CF897CD13E8491C0D8CC ] dg_ssudbus      C:\Windows\system32\DRIVERS\ssudbus.sys
11:25:24.0611 0x1240  dg_ssudbus - ok
11:25:24.0626 0x1240  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp            C:\Windows\system32\dhcpcore.dll
11:25:24.0673 0x1240  Dhcp - ok
11:25:24.0751 0x1240  [ 0A3386E3CF9C5D089D695AC5A35F4C6F, D610071493EB95FCE39E24C457A0B5BBA131193159E43FDC1E8EDABB9C7AB81A ] DiagTrack       C:\Windows\system32\diagtrack.dll
11:25:24.0782 0x1240  DiagTrack - ok
11:25:24.0907 0x1240  [ DEE4A1F675EC604E9641B1A03CF1816F, A0AC84713DDFD9A94B8558DFA26B278FB29833C5663451CC582ACA85B29CBFD8 ] DigitalWave.Update.Service C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
11:25:24.0923 0x1240  DigitalWave.Update.Service - ok
11:25:24.0954 0x1240  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache        C:\Windows\system32\drivers\discache.sys
11:25:24.0985 0x1240  discache - ok
11:25:24.0985 0x1240  [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
11:25:25.0001 0x1240  Disk - ok
11:25:25.0032 0x1240  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache        C:\Windows\System32\dnsrslvr.dll
11:25:25.0079 0x1240  Dnscache - ok
11:25:25.0094 0x1240  [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc         C:\Windows\System32\dot3svc.dll
11:25:25.0125 0x1240  dot3svc - ok
11:25:25.0157 0x1240  [ B5E479EB83707DD698F66953E922042C, 82891A4699F180A20EB25A0EC49A7E008B007A374BAA3279483AC1C95D125FE8 ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
11:25:25.0188 0x1240  Dot4 - ok
11:25:25.0219 0x1240  [ CAEFD09B6A6249C53A67D55A9A9FCABF, A76C951EA8A830E5BA22D8D393A946BBAEEDB76478539F647E58199B383F786B ] Dot4Print       C:\Windows\system32\DRIVERS\Dot4Prt.sys
11:25:25.0235 0x1240  Dot4Print - ok
11:25:25.0266 0x1240  [ CF491FF38D62143203C065260567E2F7, 4315FD8FC88CF627EBE469A2DF0F280B17C95D3004FC7A93D6F8E47F0D91A037 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
11:25:25.0297 0x1240  dot4usb - ok
11:25:25.0328 0x1240  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS             C:\Windows\system32\dps.dll
11:25:25.0359 0x1240  DPS - ok
11:25:25.0391 0x1240  [ A3F684B866A7D89AE396276CE7AFD416, 1E4C034B7B106FA403B13842A199D88A33B492A577B58CDDAE0B4706266B9565 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
11:25:25.0422 0x1240  drmkaud - ok
11:25:25.0453 0x1240  [ 687AF6BB383885FF6A64071B189A7F3E, 1C751B8DD27F63E88D0223A8434CED7589AC00EC6275938C59D1B954F0354F78 ] dtsoftbus01     C:\Windows\system32\DRIVERS\dtsoftbus01.sys
11:25:25.0469 0x1240  dtsoftbus01 - ok
11:25:25.0515 0x1240  [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
11:25:25.0531 0x1240  DXGKrnl - ok
11:25:25.0578 0x1240  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost         C:\Windows\System32\eapsvc.dll
11:25:25.0593 0x1240  EapHost - ok
11:25:25.0890 0x1240  [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv           C:\Windows\system32\DRIVERS\evbdx.sys
11:25:25.0983 0x1240  ebdrv - ok
11:25:26.0015 0x1240  [ 94C668C7A654EFCAB6689AA45BAF2A4F, 43103D9751109ABF113948C6613789FBBE8F6164CEB7A44185760A765814BA48 ] EfiMon          C:\Windows\system32\Drivers\Efimon.sys
11:25:26.0030 0x1240  EfiMon - ok
11:25:26.0046 0x1240  [ 67A49E0BA4E7BEB62CB9EF073D923C85, 91DF097D552399FA14873FEEEB0B55C6594A9DC1D4084F45425B1AB9833B9C32 ] EFS             C:\Windows\System32\lsass.exe
11:25:26.0061 0x1240  EFS - ok
11:25:26.0139 0x1240  [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
11:25:26.0202 0x1240  ehRecvr - ok
11:25:26.0217 0x1240  [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched         C:\Windows\ehome\ehsched.exe
11:25:26.0264 0x1240  ehSched - ok
11:25:26.0311 0x1240  [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
11:25:26.0342 0x1240  elxstor - ok
11:25:26.0358 0x1240  [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
11:25:26.0389 0x1240  ErrDev - ok
11:25:26.0420 0x1240  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem     C:\Windows\system32\es.dll
11:25:26.0467 0x1240  EventSystem - ok
11:25:26.0483 0x1240  [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat           C:\Windows\system32\drivers\exfat.sys
11:25:26.0498 0x1240  exfat - ok
11:25:26.0529 0x1240  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
11:25:26.0561 0x1240  fastfat - ok
11:25:26.0607 0x1240  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax             C:\Windows\system32\fxssvc.exe
11:25:26.0654 0x1240  Fax - ok
11:25:26.0670 0x1240  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
11:25:26.0701 0x1240  fdc - ok
11:25:26.0732 0x1240  [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost         C:\Windows\system32\fdPHost.dll
11:25:26.0763 0x1240  fdPHost - ok
11:25:26.0795 0x1240  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub        C:\Windows\system32\fdrespub.dll
11:25:26.0826 0x1240  FDResPub - ok
11:25:26.0826 0x1240  [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
11:25:26.0841 0x1240  FileInfo - ok
11:25:26.0857 0x1240  [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
11:25:26.0873 0x1240  Filetrace - ok
11:25:26.0919 0x1240  [ FA17EC51C7BB8A43FDBE6B700E74ADC1, AF8226957180CD1E87D62FA83156DF45A436125439F470A4FD52872C18B40018 ] file_tracker    C:\Windows\system32\DRIVERS\file_tracker.sys
11:25:26.0935 0x1240  file_tracker - ok
11:25:26.0966 0x1240  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
11:25:26.0997 0x1240  flpydisk - ok
11:25:27.0013 0x1240  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
11:25:27.0029 0x1240  FltMgr - ok
11:25:27.0060 0x1240  [ 3232D86D817D1E081C30B13B47E3EFDD, 4500301CCA4E7BD5EE481D6068C36D9CC4CEA99E6685A7A8D95022AA536D9F5C ] fltsrv          C:\Windows\system32\DRIVERS\fltsrv.sys
11:25:27.0075 0x1240  fltsrv - ok
11:25:27.0122 0x1240  [ 23D3F12CA9DEB6EF02DEDC621EC661AC, AA3718715ADFE1666757BCD79D5A8DC591C2C5185802F51A27C119C4C30F360A ] FontCache       C:\Windows\system32\FntCache.dll
11:25:27.0153 0x1240  FontCache - ok
11:25:27.0231 0x1240  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:25:27.0231 0x1240  FontCache3.0.0.0 - ok
11:25:27.0247 0x1240  [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
11:25:27.0263 0x1240  FsDepends - ok
11:25:27.0278 0x1240  [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
11:25:27.0294 0x1240  Fs_Rec - ok
11:25:27.0309 0x1240  [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
11:25:27.0325 0x1240  fvevol - ok
11:25:27.0356 0x1240  [ FF12FA487265DA2AC7DE4BE53F72FF1A, 9B9F29CC36D0C7681676F708270038D38CEA21AD82F4937DBDAE45F0D667786E ] FWLANUSB        C:\Windows\system32\DRIVERS\fwlanusb.sys
11:25:27.0403 0x1240  FWLANUSB - ok
11:25:27.0434 0x1240  [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
11:25:27.0434 0x1240  gagp30kx - ok
11:25:27.0481 0x1240  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc           C:\Windows\System32\gpsvc.dll
11:25:27.0512 0x1240  gpsvc - ok
11:25:27.0575 0x1240  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
11:25:27.0590 0x1240  gupdate - ok
11:25:27.0590 0x1240  [ 506708142BC63DABA64F2D3AD1DCD5BF, 9C36A08D9E7932FF4DA7B5F24E6B42C92F28685B8ABE964C870E8D7670FD531A ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
11:25:27.0606 0x1240  gupdatem - ok
11:25:27.0621 0x1240  [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
11:25:27.0653 0x1240  hcw85cir - ok
11:25:27.0684 0x1240  [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
11:25:27.0715 0x1240  HdAudAddService - ok
11:25:27.0746 0x1240  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
11:25:27.0777 0x1240  HDAudBus - ok
11:25:27.0777 0x1240  [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
11:25:27.0809 0x1240  HidBatt - ok
11:25:27.0824 0x1240  [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
11:25:27.0824 0x1240  HidBth - ok
11:25:27.0855 0x1240  [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
11:25:27.0871 0x1240  HidIr - ok
11:25:27.0902 0x1240  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv         C:\Windows\system32\hidserv.dll
11:25:27.0933 0x1240  hidserv - ok
11:25:27.0965 0x1240  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
11:25:28.0011 0x1240  HidUsb - ok
11:25:28.0027 0x1240  [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc          C:\Windows\system32\kmsvc.dll
11:25:28.0058 0x1240  hkmsvc - ok
11:25:28.0105 0x1240  [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
11:25:28.0152 0x1240  HomeGroupListener - ok
11:25:28.0183 0x1240  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
11:25:28.0199 0x1240  HomeGroupProvider - ok
11:25:28.0230 0x1240  [ 814F51D629C7AEEBB33B9F673D07BD35, 6895E412A226FFAEB7B6D37768A98021A3934AA9A27EF0C5DAFF4B8E76AB2C84 ] HookPort        C:\Windows\system32\Drivers\Hookport.sys
11:25:28.0245 0x1240  HookPort - ok
11:25:28.0308 0x1240  [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05, 7B3F117C1D606DDA7623BEC0BFBC362C33A12213E899F049AC56A55826984134 ] hpqcxs08        C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
11:25:28.0323 0x1240  hpqcxs08 - detected UnsignedFile.Multi.Generic ( 1 )
11:25:28.0323 0x1240  hpqcxs08 ( UnsignedFile.Multi.Generic ) - warning
11:25:28.0339 0x1240  [ F3F72A2A86C22610BCA5439FA789DD52, DA5A8F09DCC512AA1558863AD4FAC12F72DD83CA8FB4D8D9831E4AFBB6B3C616 ] hpqddsvc        C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
11:25:28.0355 0x1240  hpqddsvc - detected UnsignedFile.Multi.Generic ( 1 )
11:25:28.0355 0x1240  hpqddsvc ( UnsignedFile.Multi.Generic ) - warning
11:25:28.0386 0x1240  [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
11:25:28.0386 0x1240  HpSAMD - ok
11:25:28.0433 0x1240  [ 568E44F6DCFA173F3670172B69379891, D619B908770E308BE3978DD619CA0ADC229685971FC99379AA5620BE5F7C5F1C ] HPSLPSVC        C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL
11:25:28.0448 0x1240  HPSLPSVC - detected UnsignedFile.Multi.Generic ( 1 )
11:25:28.0448 0x1240  HPSLPSVC ( UnsignedFile.Multi.Generic ) - warning
11:25:28.0464 0x1240  HSPADataCardusbmdm - ok
11:25:28.0464 0x1240  HSPADataCardusbnmea - ok
11:25:28.0464 0x1240  HSPADataCardusbser - ok
11:25:28.0511 0x1240  [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] HTTP            C:\Windows\system32\drivers\HTTP.sys
11:25:28.0557 0x1240  HTTP - ok
11:25:28.0604 0x1240  [ 7DECCB2612255F4B538976AD25DA0D29, 0D8AA433FEE23459B390D81E3D923F639CB717891A16BE76FE0E84D61DFFFE8A ] hugoio          C:\Program Files\i-Menu\hugoio.sys
11:25:28.0620 0x1240  hugoio - ok
11:25:28.0620 0x1240  [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
11:25:28.0635 0x1240  hwpolicy - ok
11:25:28.0667 0x1240  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
11:25:28.0682 0x1240  i8042prt - ok
11:25:28.0713 0x1240  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
11:25:28.0729 0x1240  iaStorV - ok
11:25:28.0807 0x1240  [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:25:28.0854 0x1240  idsvc - ok
11:25:28.0854 0x1240  IEEtwCollectorService - ok
11:25:28.0885 0x1240  [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
11:25:28.0901 0x1240  iirsp - ok
11:25:28.0947 0x1240  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT          C:\Windows\System32\ikeext.dll
11:25:28.0963 0x1240  IKEEXT - ok
11:25:28.0994 0x1240  [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide        C:\Windows\system32\drivers\intelide.sys
11:25:29.0025 0x1240  intelide - ok
11:25:29.0057 0x1240  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
11:25:29.0072 0x1240  intelppm - ok
11:25:29.0103 0x1240  [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
11:25:29.0135 0x1240  IPBusEnum - ok
11:25:29.0150 0x1240  [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:25:29.0166 0x1240  IpFilterDriver - ok
11:25:29.0197 0x1240  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
11:25:29.0244 0x1240  iphlpsvc - ok
11:25:29.0259 0x1240  [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
11:25:29.0275 0x1240  IPMIDRV - ok
11:25:29.0322 0x1240  [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
11:25:29.0337 0x1240  IPNAT - ok
11:25:29.0353 0x1240  [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
11:25:29.0384 0x1240  IRENUM - ok
11:25:29.0400 0x1240  [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
11:25:29.0400 0x1240  isapnp - ok
11:25:29.0447 0x1240  [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
11:25:29.0462 0x1240  iScsiPrt - ok
11:25:29.0462 0x1240  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
11:25:29.0478 0x1240  kbdclass - ok
11:25:29.0509 0x1240  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
11:25:29.0525 0x1240  kbdhid - ok
11:25:29.0525 0x1240  [ 67A49E0BA4E7BEB62CB9EF073D923C85, 91DF097D552399FA14873FEEEB0B55C6594A9DC1D4084F45425B1AB9833B9C32 ] KeyIso          C:\Windows\system32\lsass.exe
11:25:29.0540 0x1240  KeyIso - ok
11:25:29.0556 0x1240  [ E908304E1F96BD79025A57D6C0E42F62, A1783750101F1FD73132E18AD4E3FC0073FC45BFF5F14B83F1FD4BC13D1D2D45 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
11:25:29.0571 0x1240  KSecDD - ok
11:25:29.0603 0x1240  [ 550B730505D7C9A1DB89427456C0F5C7, F7AEF196D5CFDF6AAA05378819462981618A05E43A0B88EAB416F910DD2A6517 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
11:25:29.0603 0x1240  KSecPkg - ok
11:25:29.0649 0x1240  [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm           C:\Windows\system32\msdtckrm.dll
11:25:29.0696 0x1240  KtmRm - ok
11:25:29.0727 0x1240  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer    C:\Windows\system32\srvsvc.dll
11:25:29.0759 0x1240  LanmanServer - ok
11:25:29.0774 0x1240  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
11:25:29.0805 0x1240  LanmanWorkstation - ok
11:25:29.0821 0x1240  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
11:25:29.0868 0x1240  lltdio - ok
11:25:29.0899 0x1240  [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
11:25:29.0946 0x1240  lltdsvc - ok
11:25:29.0961 0x1240  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts         C:\Windows\System32\lmhsvc.dll
11:25:29.0977 0x1240  lmhosts - ok
11:25:29.0993 0x1240  [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
11:25:30.0008 0x1240  LSI_FC - ok
11:25:30.0024 0x1240  [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
11:25:30.0024 0x1240  LSI_SAS - ok
11:25:30.0039 0x1240  [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
11:25:30.0055 0x1240  LSI_SAS2 - ok
11:25:30.0071 0x1240  [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
11:25:30.0071 0x1240  LSI_SCSI - ok
11:25:30.0102 0x1240  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv           C:\Windows\system32\drivers\luafv.sys
11:25:30.0149 0x1240  luafv - ok
11:25:30.0180 0x1240  [ ED643E777BA3F7151EF3F0FB6BE4F7F0, 94B96367ECF2140299F36D93C00C9FE666953BEA6A1253EEEAAC439A682D38CA ] LVRS            C:\Windows\system32\DRIVERS\lvrs.sys
11:25:30.0211 0x1240  LVRS - ok
11:25:30.0960 0x1240  [ 5BC80451109A8DD7F2DDD35BCE2929A3, F97BAD2D43D1E199841BAE5707424B49B4451CD486F249646E898FC7CC7AB4C8 ] LVUVC           C:\Windows\system32\DRIVERS\lvuvc.sys
11:25:31.0085 0x1240  LVUVC - ok
11:25:31.0100 0x1240  massfilter - ok
11:25:31.0131 0x1240  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
11:25:31.0147 0x1240  Mcx2Svc - ok
11:25:31.0163 0x1240  [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
11:25:31.0178 0x1240  megasas - ok
11:25:31.0194 0x1240  [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
11:25:31.0209 0x1240  MegaSR - ok
11:25:31.0225 0x1240  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS           C:\Windows\system32\mmcss.dll
11:25:31.0256 0x1240  MMCSS - ok
11:25:31.0615 0x1240  [ D9652739D1007B9B5CE34CEF38E095C5, 20AFFEA3B2E7F254A58CDD9F4F9D51D94710C20E98A650BE33FD446A474D7D12 ] mmsminisrv      C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
11:25:31.0724 0x1240  mmsminisrv - ok
11:25:31.0740 0x1240  [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem           C:\Windows\system32\drivers\modem.sys
11:25:31.0787 0x1240  Modem - ok
11:25:31.0818 0x1240  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
11:25:31.0818 0x1240  monitor - ok
11:25:31.0849 0x1240  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
11:25:31.0865 0x1240  mouclass - ok
11:25:31.0865 0x1240  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
11:25:31.0880 0x1240  mouhid - ok
11:25:31.0911 0x1240  [ BAD9C0366134BA181514E9263C8CE606, 7976B2D3DC283ACDBC21C7D197C0E2A650E6555F6569283302766B17D736BDB8 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
11:25:31.0927 0x1240  mountmgr - ok
11:25:31.0958 0x1240  [ 5961C5D8EDD2E2A3B99F1782AE1AC21F, C383A4724A335737C4C7C3211AFCFB82D373267EC634BC47EE078A1C66E1F62A ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
11:25:31.0974 0x1240  MozillaMaintenance - ok
11:25:31.0989 0x1240  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio            C:\Windows\system32\drivers\mpio.sys
11:25:32.0005 0x1240  mpio - ok
11:25:32.0021 0x1240  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
11:25:32.0052 0x1240  mpsdrv - ok
11:25:32.0083 0x1240  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc          C:\Windows\system32\mpssvc.dll
11:25:32.0114 0x1240  MpsSvc - ok
11:25:32.0145 0x1240  [ 6430A074F6E32176FBEF2DEB110AE952, 0161B3CBCF427F5F9C47EDBA7F6848D9D6EB58B7EF203881E0D288B5ABAEEB98 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
11:25:32.0161 0x1240  MRxDAV - ok
11:25:32.0192 0x1240  [ BA4369E0CA60B1674A66041C36E8754C, 3A4707BCF6D7F30FDAA083E0C03F8CA81F543CFDCFDAF54E99137058DFAC591D ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
11:25:32.0239 0x1240  mrxsmb - ok
11:25:32.0255 0x1240  [ 02086CA09812392E51A369727BC442BB, 0694CF908EAE8A8999CE099C6948AE067005F04C381BA85D768394519475D7B8 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:25:32.0255 0x1240  mrxsmb10 - ok
11:25:32.0301 0x1240  [ 083D60E62F91F9DAA8C1F46C756CA5EE, C9D3F6C740DCE4A765416DD114AAD41BD656007807D33B5D30B2A47C8D8B685B ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:25:32.0333 0x1240  mrxsmb20 - ok
11:25:32.0348 0x1240  [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci          C:\Windows\system32\drivers\msahci.sys
11:25:32.0364 0x1240  msahci - ok
11:25:32.0379 0x1240  [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
11:25:32.0395 0x1240  msdsm - ok
11:25:32.0395 0x1240  [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC           C:\Windows\System32\msdtc.exe
11:25:32.0426 0x1240  MSDTC - ok
11:25:32.0457 0x1240  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs            C:\Windows\system32\drivers\Msfs.sys
11:25:32.0489 0x1240  Msfs - ok
11:25:32.0489 0x1240  [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
11:25:32.0535 0x1240  mshidkmdf - ok
11:25:32.0535 0x1240  [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
11:25:32.0551 0x1240  msisadrv - ok
11:25:32.0567 0x1240  [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
11:25:32.0598 0x1240  MSiSCSI - ok
11:25:32.0598 0x1240  msiserver - ok
11:25:32.0613 0x1240  [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
11:25:32.0660 0x1240  MSKSSRV - ok
11:25:32.0676 0x1240  [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
11:25:32.0707 0x1240  MSPCLOCK - ok
11:25:32.0723 0x1240  [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
11:25:32.0738 0x1240  MSPQM - ok
11:25:32.0785 0x1240  [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
11:25:32.0785 0x1240  MsRPC - ok
11:25:32.0816 0x1240  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
11:25:32.0832 0x1240  mssmbios - ok
11:25:32.0863 0x1240  MSSQL$SQLEXPRESS - ok
11:25:32.0879 0x1240  [ F1761C8FB2B25A32C6D63E36BB88C3AE, C88F5EF7B547DAA2394888362916FA18F07241E0BF2B938297428A1C04FFD806 ] MSSQLServerADHelper100 c:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
11:25:32.0894 0x1240  MSSQLServerADHelper100 - ok
11:25:32.0894 0x1240  [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
11:25:32.0925 0x1240  MSTEE - ok
11:25:32.0941 0x1240  [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
11:25:32.0972 0x1240  MTConfig - ok
11:25:33.0003 0x1240  [ 0F24624106D8042E7F27882D9D6FF5C0, 2CD6E0962FB20EB8E1033CE1663FD223807BAE1FBE27D3AC9582FB765F2C70F0 ] MTsensor        C:\Windows\system32\DRIVERS\ASACPI.sys
11:25:33.0019 0x1240  MTsensor - ok
11:25:33.0035 0x1240  [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup             C:\Windows\system32\Drivers\mup.sys
11:25:33.0050 0x1240  Mup - ok
11:25:33.0081 0x1240  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent        C:\Windows\system32\qagentRT.dll
11:25:33.0097 0x1240  napagent - ok
11:25:33.0144 0x1240  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
11:25:33.0175 0x1240  NativeWifiP - ok
11:25:33.0222 0x1240  [ 9804FB2E46077F2977552347DFCA7E05, A34B703462C6998AB2B3EA6389F4B89616CDC257D44C400C92663E6FB4A8F196 ] NDIS            C:\Windows\system32\drivers\ndis.sys
11:25:33.0269 0x1240  NDIS - ok
11:25:33.0284 0x1240  [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
11:25:33.0315 0x1240  NdisCap - ok
11:25:33.0331 0x1240  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
11:25:33.0362 0x1240  NdisTapi - ok
11:25:33.0393 0x1240  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
11:25:33.0425 0x1240  Ndisuio - ok
11:25:33.0456 0x1240  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
11:25:33.0471 0x1240  NdisWan - ok
11:25:33.0487 0x1240  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
11:25:33.0534 0x1240  NDProxy - ok
11:25:33.0565 0x1240  [ A081CB6FB9A12668F233EB5414BE3A0E, EE2A1311B51D1FEBAF79F45E568A927D8EA7704AFC8495AED2D26927566F61E3 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
11:25:33.0581 0x1240  Net Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
11:25:33.0581 0x1240  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
11:25:33.0581 0x1240  Force sending object to P2P due to detect: Net Driver HPZ12
11:25:33.0581 0x1240  Object send P2P result: false
11:25:33.0596 0x1240  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
11:25:33.0643 0x1240  NetBIOS - ok
11:25:33.0674 0x1240  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
11:25:33.0705 0x1240  NetBT - ok
11:25:33.0721 0x1240  [ 67A49E0BA4E7BEB62CB9EF073D923C85, 91DF097D552399FA14873FEEEB0B55C6594A9DC1D4084F45425B1AB9833B9C32 ] Netlogon        C:\Windows\system32\lsass.exe
11:25:33.0737 0x1240  Netlogon - ok
11:25:33.0768 0x1240  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman          C:\Windows\System32\netman.dll
11:25:33.0799 0x1240  Netman - ok
11:25:33.0830 0x1240  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:25:33.0877 0x1240  NetMsmqActivator - ok
11:25:33.0877 0x1240  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:25:33.0893 0x1240  NetPipeActivator - ok
11:25:33.0924 0x1240  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm        C:\Windows\System32\netprofm.dll
11:25:33.0939 0x1240  netprofm - ok
11:25:33.0955 0x1240  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:25:33.0971 0x1240  NetTcpActivator - ok
11:25:33.0971 0x1240  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
11:25:33.0986 0x1240  NetTcpPortSharing - ok
11:25:34.0002 0x1240  [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
11:25:34.0017 0x1240  nfrd960 - ok
11:25:34.0049 0x1240  [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc          C:\Windows\System32\nlasvc.dll
11:25:34.0080 0x1240  NlaSvc - ok
11:25:34.0080 0x1240  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
11:25:34.0095 0x1240  Npfs - ok
11:25:34.0127 0x1240  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi             C:\Windows\system32\nsisvc.dll
11:25:34.0142 0x1240  nsi - ok
11:25:34.0158 0x1240  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
11:25:34.0189 0x1240  nsiproxy - ok
11:25:34.0251 0x1240  [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
11:25:34.0283 0x1240  Ntfs - ok
11:25:34.0298 0x1240  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null            C:\Windows\system32\drivers\Null.sys
11:25:34.0329 0x1240  Null - ok
11:25:34.0361 0x1240  [ A103F2A100B091809A120A1463BC9EB5, DB9219AAD43C3FE3EFBB70F213568DA87B4F9D89FA0F80AD73611C6A72BACC0E ] NVHDA           C:\Windows\system32\drivers\nvhda32v.sys
11:25:34.0376 0x1240  NVHDA - ok
11:25:35.0359 0x1240  [ 0B2E7B39411FAA44EBDA76FB38673964, 8842012A77FACBE7E9D5A3CF6675E55D4CF10022B5F9F4D6B570BB62AC1940B2 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
11:25:35.0531 0x1240  nvlddmkm - ok
11:25:35.0577 0x1240  [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid          C:\Windows\system32\drivers\nvraid.sys
11:25:35.0593 0x1240  nvraid - ok
11:25:35.0624 0x1240  [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
11:25:35.0624 0x1240  nvstor - ok
11:25:35.0702 0x1240  [ 439FD6A5A34113388C51C48D0E5092AA, 4C25AB4788AEFDEDBD4B9DD351AE6AA0AC816633F81FF5EBEA9067497E39D843 ] nvsvc           C:\Windows\system32\nvvsvc.exe
11:25:35.0718 0x1240  nvsvc - ok
11:25:36.0030 0x1240  [ E3C7676582502C5E4BB9288C3617AB59, 0FCFB480FF4F1C005AE6DC4F9D32907A7BAD22EB5477680965A84E9DF817483B ] nvUpdatusService C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
11:25:36.0061 0x1240  nvUpdatusService - ok
11:25:36.0092 0x1240  [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
11:25:36.0123 0x1240  nv_agp - ok
11:25:36.0170 0x1240  [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv          C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
11:25:36.0201 0x1240  odserv - ok
11:25:36.0233 0x1240  [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
11:25:36.0264 0x1240  ohci1394 - ok
11:25:36.0420 0x1240  [ A309633A4BA2DE3FC30468C3103E0BA5, 530C707A4FCD36A45E9D370D20105356C8019DE41EF1C1F1A728A523D5FBEE25 ] Origin Client Service C:\Program Files\Origin\OriginClientService.exe
11:25:36.0513 0x1240  Origin Client Service - ok
11:25:36.0545 0x1240  [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:25:36.0560 0x1240  ose - ok
11:25:36.0591 0x1240  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
11:25:36.0623 0x1240  p2pimsvc - ok
11:25:36.0654 0x1240  [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc          C:\Windows\system32\p2psvc.dll
11:25:36.0669 0x1240  p2psvc - ok
11:25:36.0716 0x1240  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport         C:\Windows\system32\DRIVERS\parport.sys
11:25:36.0732 0x1240  Parport - ok
11:25:36.0763 0x1240  [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
11:25:36.0779 0x1240  partmgr - ok
11:25:36.0794 0x1240  [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm          C:\Windows\system32\DRIVERS\parvdm.sys
11:25:36.0825 0x1240  Parvdm - ok
11:25:36.0872 0x1240  [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] PcaSvc          C:\Windows\System32\pcasvc.dll
11:25:36.0919 0x1240  PcaSvc - ok
11:25:36.0919 0x1240  [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci             C:\Windows\system32\drivers\pci.sys
11:25:36.0935 0x1240  pci - ok
11:25:36.0950 0x1240  [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide          C:\Windows\system32\drivers\pciide.sys
11:25:36.0950 0x1240  pciide - ok
11:25:36.0981 0x1240  [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
11:25:36.0997 0x1240  pcmcia - ok
11:25:37.0013 0x1240  [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw             C:\Windows\system32\drivers\pcw.sys
11:25:37.0013 0x1240  pcw - ok
11:25:37.0059 0x1240  [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
11:25:37.0075 0x1240  PEAUTH - ok
11:25:37.0215 0x1240  [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
11:25:37.0293 0x1240  PeerDistSvc - ok
11:25:37.0605 0x1240  [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla             C:\Windows\system32\pla.dll
11:25:37.0668 0x1240  pla - ok
11:25:37.0730 0x1240  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
11:25:37.0761 0x1240  PlugPlay - ok
11:25:37.0777 0x1240  [ 65BC271F337637731D3C71455AE1F476, DAD32B61FE0147F8D2DA4C8F016920CD6BB2098F16E3CC2768009763E71DEFBC ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
11:25:37.0793 0x1240  Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
11:25:37.0793 0x1240  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - warning
11:25:37.0855 0x1240  [ CD421DDB5C6E5458CE52EDC36DE7DC5B, 7B9C0A8B2B86BBF5D7E02F2620B0015A2530CBBC99724BE20313DE53EB31D62E ] PnkBstrA        C:\Windows\system32\PnkBstrA.exe
11:25:37.0871 0x1240  PnkBstrA - ok
11:25:37.0917 0x1240  [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
11:25:37.0933 0x1240  PNRPAutoReg - ok
11:25:37.0980 0x1240  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
11:25:37.0995 0x1240  PNRPsvc - ok
11:25:38.0073 0x1240  [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
11:25:38.0120 0x1240  PolicyAgent - ok
11:25:38.0167 0x1240  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power           C:\Windows\system32\umpo.dll
11:25:38.0183 0x1240  Power - ok
11:25:38.0245 0x1240  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
11:25:38.0276 0x1240  PptpMiniport - ok
11:25:38.0307 0x1240  [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
11:25:38.0323 0x1240  Processor - ok
11:25:38.0354 0x1240  [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc         C:\Windows\system32\profsvc.dll
11:25:38.0385 0x1240  ProfSvc - ok
11:25:38.0401 0x1240  [ 67A49E0BA4E7BEB62CB9EF073D923C85, 91DF097D552399FA14873FEEEB0B55C6594A9DC1D4084F45425B1AB9833B9C32 ] ProtectedStorage C:\Windows\system32\lsass.exe
11:25:38.0417 0x1240  ProtectedStorage - ok
11:25:38.0448 0x1240  [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
11:25:38.0479 0x1240  Psched - ok
11:25:38.0588 0x1240  [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
11:25:38.0635 0x1240  ql2300 - ok
11:25:38.0666 0x1240  [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
11:25:38.0682 0x1240  ql40xx - ok
11:25:38.0744 0x1240  [ F12B7DCC734223A58E749B685BA69782, 196BF0EF4AD6BD9863762EA41461D61CC659FABA12F148C2F87430D9078C58B7 ] qutmdserv       C:\Windows\system32\DRIVERS\qutmdrv.sys
11:25:38.0744 0x1240  qutmdserv - ok
11:25:38.0791 0x1240  [ C94FD2E64D92D1CEC22604D6802CF86C, 75323FDABB997AB079182EE0FF0E1AA0F7D949416B26E24629703E0844E93789 ] qutmipc         C:\Windows\system32\drivers\qutmipc.sys
11:25:38.0791 0x1240  qutmipc - ok
11:25:38.0822 0x1240  [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE           C:\Windows\system32\qwave.dll
11:25:38.0853 0x1240  QWAVE - ok
11:25:38.0869 0x1240  [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
11:25:38.0900 0x1240  QWAVEdrv - ok
11:25:38.0916 0x1240  [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
11:25:38.0947 0x1240  RasAcd - ok
11:25:38.0978 0x1240  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
11:25:39.0025 0x1240  RasAgileVpn - ok
11:25:39.0041 0x1240  [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto         C:\Windows\System32\rasauto.dll
11:25:39.0072 0x1240  RasAuto - ok
11:25:39.0072 0x1240  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
11:25:39.0119 0x1240  Rasl2tp - ok
11:25:39.0150 0x1240  [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan          C:\Windows\System32\rasmans.dll
11:25:39.0181 0x1240  RasMan - ok
11:25:39.0197 0x1240  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
11:25:39.0228 0x1240  RasPppoe - ok
11:25:39.0243 0x1240  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
11:25:39.0259 0x1240  RasSstp - ok
11:25:39.0306 0x1240  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
11:25:39.0321 0x1240  rdbss - ok
11:25:39.0353 0x1240  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
11:25:39.0384 0x1240  rdpbus - ok
11:25:39.0415 0x1240  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
11:25:39.0446 0x1240  RDPCDD - ok
11:25:39.0462 0x1240  [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
11:25:39.0493 0x1240  RDPDR - ok
11:25:39.0509 0x1240  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
11:25:39.0540 0x1240  RDPENCDD - ok
11:25:39.0540 0x1240  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
11:25:39.0571 0x1240  RDPREFMP - ok
11:25:39.0587 0x1240  [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
11:25:39.0618 0x1240  RDPWD - ok
11:25:39.0649 0x1240  [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
11:25:39.0665 0x1240  rdyboost - ok
11:25:39.0711 0x1240  [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess    C:\Windows\System32\mprdim.dll
11:25:39.0743 0x1240  RemoteAccess - ok
11:25:39.0774 0x1240  [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry  C:\Windows\system32\regsvc.dll
11:25:39.0805 0x1240  RemoteRegistry - ok
11:25:39.0821 0x1240  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
11:25:39.0852 0x1240  RpcEptMapper - ok
11:25:39.0867 0x1240  [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator      C:\Windows\system32\locator.exe
11:25:39.0899 0x1240  RpcLocator - ok
11:25:39.0930 0x1240  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs           C:\Windows\system32\rpcss.dll
11:25:39.0961 0x1240  RpcSs - ok
11:25:40.0023 0x1240  [ 6A7360E36CBD636972AEEF0DD292A946, 08A0DE7819D781B082E2D1A8961B675501F56F62680B0C7117EC547B4A5CB10A ] RsFx0105        C:\Windows\system32\DRIVERS\RsFx0105.sys
11:25:40.0055 0x1240  RsFx0105 - ok
11:25:40.0070 0x1240  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
11:25:40.0101 0x1240  rspndr - ok
11:25:40.0133 0x1240  [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
11:25:40.0164 0x1240  s3cap - ok
11:25:40.0211 0x1240  [ DE7A2FC379671998865122A08FD9DB52, 10D49A5DA750EC0605E6C4AC6B9A33748FA1761ACD2D8DF73A6627DC32A70684 ] SaiH0464        C:\Windows\system32\DRIVERS\SaiH0464.sys
11:25:40.0226 0x1240  SaiH0464 - ok
11:25:40.0257 0x1240  [ AEE1BDE22F6E9284D59B48706DB75110, F8B92F68E8AE95863B21E10E947206C4A7E345A27878D6BA0ECEBA685A7886A5 ] SaiMini         C:\Windows\system32\DRIVERS\SaiMini.sys
11:25:40.0257 0x1240  SaiMini - ok
11:25:40.0273 0x1240  [ ED42254EADDB77E3BED57294949326FF, 2946E4BD1212105C607056B040F479A270802ED606B996898E85AC984AF35243 ] SaiNtBus        C:\Windows\system32\drivers\SaiBus.sys
11:25:40.0289 0x1240  SaiNtBus - ok
11:25:40.0304 0x1240  [ 67A49E0BA4E7BEB62CB9EF073D923C85, 91DF097D552399FA14873FEEEB0B55C6594A9DC1D4084F45425B1AB9833B9C32 ] SamSs           C:\Windows\system32\lsass.exe
11:25:40.0304 0x1240  SamSs - ok
11:25:40.0351 0x1240  [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
11:25:40.0351 0x1240  sbp2port - ok
11:25:40.0367 0x1240  [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
11:25:40.0413 0x1240  SCardSvr - ok
11:25:40.0429 0x1240  [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
11:25:40.0445 0x1240  scfilter - ok
11:25:40.0507 0x1240  [ 9060B8D5BCD5F2B019249F85E3D811F3, 7FB32AB7FE118462988321B9230074DAA960B587417EB463187539C3215445AE ] Schedule        C:\Windows\system32\schedsvc.dll
11:25:40.0569 0x1240  Schedule - ok
11:25:40.0585 0x1240  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc     C:\Windows\System32\certprop.dll
11:25:40.0601 0x1240  SCPolicySvc - ok
11:25:40.0647 0x1240  [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
11:25:40.0679 0x1240  SDRSVC - ok
11:25:40.0710 0x1240  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
11:25:40.0725 0x1240  secdrv - ok
11:25:40.0741 0x1240  [ 38CBFFED5FC39CDFE6B4014401ED2629, 7BA730E2EDB8387190E45DA2F475BFE42AB3B12319DE088BD8E9F59227EDA4DD ] seclogon        C:\Windows\system32\seclogon.dll
11:25:40.0772 0x1240  seclogon - ok
11:25:40.0788 0x1240  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS            C:\Windows\System32\sens.dll
11:25:40.0819 0x1240  SENS - ok
11:25:40.0850 0x1240  [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
11:25:40.0881 0x1240  SensrSvc - ok
11:25:40.0897 0x1240  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
11:25:40.0913 0x1240  Serenum - ok
11:25:40.0928 0x1240  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial          C:\Windows\system32\DRIVERS\serial.sys
11:25:40.0959 0x1240  Serial - ok
11:25:40.0975 0x1240  [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
11:25:41.0006 0x1240  sermouse - ok
11:25:41.0053 0x1240  [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv      C:\Windows\system32\sessenv.dll
11:25:41.0084 0x1240  SessionEnv - ok
11:25:41.0084 0x1240  [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
11:25:41.0115 0x1240  sffdisk - ok
11:25:41.0131 0x1240  [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
11:25:41.0162 0x1240  sffp_mmc - ok
11:25:41.0178 0x1240  [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
11:25:41.0209 0x1240  sffp_sd - ok
11:25:41.0225 0x1240  [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
11:25:41.0225 0x1240  sfloppy - ok
11:25:41.0271 0x1240  [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess    C:\Windows\System32\ipnathlp.dll
11:25:41.0318 0x1240  SharedAccess - ok
11:25:41.0365 0x1240  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
11:25:41.0381 0x1240  ShellHWDetection - ok
11:25:41.0427 0x1240  [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp          C:\Windows\system32\drivers\sisagp.sys
11:25:41.0459 0x1240  sisagp - ok
11:25:41.0459 0x1240  [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
11:25:41.0474 0x1240  SiSRaid2 - ok
11:25:41.0490 0x1240  [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
11:25:41.0505 0x1240  SiSRaid4 - ok
11:25:41.0537 0x1240  [ F6EF225A23D336CA30001E5007644C24, B0A4B1256C1074F1B4F73E3BBA16FD4683D6EEA583DEEF8E11EFD29BA7541F2A ] SkypeUpdate     C:\Program Files\Skype\Updater\Updater.exe
11:25:41.0552 0x1240  SkypeUpdate - ok
11:25:41.0583 0x1240  [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
11:25:41.0615 0x1240  Smb - ok
11:25:41.0677 0x1240  [ 227564B825D2B3FD4A2BE4FCC30C01D6, 7F201EFD37096E1C52A9148F87BD2BC49A39FCDA552A0C6DDCFBFCFBFB0A3594 ] snapman         C:\Windows\system32\DRIVERS\snapman.sys
11:25:41.0708 0x1240  snapman - ok
11:25:41.0708 0x1240  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
11:25:41.0739 0x1240  SNMPTRAP - ok
11:25:41.0771 0x1240  [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr           C:\Windows\system32\drivers\spldr.sys
11:25:41.0786 0x1240  spldr - ok
11:25:41.0817 0x1240  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler         C:\Windows\System32\spoolsv.exe
11:25:41.0849 0x1240  Spooler - ok
11:25:42.0301 0x1240  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc          C:\Windows\system32\sppsvc.exe
11:25:42.0379 0x1240  sppsvc - ok
11:25:42.0410 0x1240  [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify     C:\Windows\system32\sppuinotify.dll
11:25:42.0457 0x1240  sppuinotify - ok
11:25:42.0488 0x1240  [ 8211A6F40B5EA8BF21C41F34C2895A6C, F394A78F80B0D7DA043AF39E99B2C16EA0CBF4AD4BFD61CFBA5ED08FB25E11C4 ] SQLAgent$SQLEXPRESS c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE
11:25:42.0519 0x1240  SQLAgent$SQLEXPRESS - ok
11:25:42.0597 0x1240  [ 10D936DCED9EACD1A1B3FCDDA6D7A4EB, EE66162AEAF6A583A04BB5AF1220318C9ADD3A62987CDCEE0505C6FF37AB30FF ] SQLBrowser      c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
11:25:42.0613 0x1240  SQLBrowser - ok
11:25:42.0629 0x1240  [ 135CDCCC167EF0C250125BBD3ABE18D5, 825661B8C2D458A15317EC000B98D9A7991FCC334F36AAAF94447A8CA8275AF4 ] SQLWriter       c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
11:25:42.0629 0x1240  SQLWriter - ok
11:25:42.0691 0x1240  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv             C:\Windows\system32\DRIVERS\srv.sys
11:25:42.0722 0x1240  srv - ok
11:25:42.0753 0x1240  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
11:25:42.0769 0x1240  srv2 - ok
11:25:42.0769 0x1240  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
11:25:42.0800 0x1240  srvnet - ok
11:25:42.0831 0x1240  [ BB6EDB0257860083193CC1581AC7D485, DE2A6AA57C48D4FACF155C2FD876D5F3238A9107F8313FB3D0BF7CE34B0ED559 ] ssadbus         C:\Windows\system32\DRIVERS\ssadbus.sys
11:25:42.0847 0x1240  ssadbus - ok
11:25:42.0894 0x1240  [ 5BCB68F7B62159C07789D3F405750623, 5363AC26FDD7114BB23F09F79541A691FF6E140C4B802F5AE284BCE5F623D5E0 ] ssadmdfl        C:\Windows\system32\DRIVERS\ssadmdfl.sys
11:25:42.0894 0x1240  ssadmdfl - ok
11:25:42.0909 0x1240  [ 1588A89F9CD9E68DE9FCC9F60FDB5C08, E2E547A0AC10DAA55029500052D89A7FB124FFBE7742F16AD41B857890AED50F ] ssadmdm         C:\Windows\system32\DRIVERS\ssadmdm.sys
11:25:42.0925 0x1240  ssadmdm - ok
11:25:42.0956 0x1240  [ 9EFD9F42795C9E90206C1E9A9B25E8D3, CD5E64A95E2022A8B9BBD4710854BDD1AC1772441275F40EFD31508376B2B99B ] ssadserd        C:\Windows\system32\DRIVERS\ssadserd.sys
11:25:42.0972 0x1240  ssadserd - ok
11:25:43.0003 0x1240  [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
11:25:43.0034 0x1240  SSDPSRV - ok
11:25:43.0065 0x1240  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
11:25:43.0081 0x1240  SstpSvc - ok
11:25:43.0128 0x1240  [ 5EE6503C932CB79B493E4B4D8E23D219, 51DC712611E21F5CF3ED2322A146E167769D082E826B82601471CF782090E8B5 ] ssudmdm         C:\Windows\system32\DRIVERS\ssudmdm.sys
11:25:43.0143 0x1240  ssudmdm - ok
11:25:43.0253 0x1240  [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
11:25:43.0268 0x1240  ss_conn_service - ok
11:25:43.0362 0x1240  [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] Stereo Service  C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
11:25:43.0377 0x1240  Stereo Service - ok
11:25:43.0409 0x1240  [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
11:25:43.0424 0x1240  stexstor - ok
11:25:43.0455 0x1240  [ EDB05BD63148796F23EA78506404A538, 8EBF623D3DEB6CCAC75AAFCF8B23271029A28BE29D459088E40FBF109E80AA17 ] StillCam        C:\Windows\system32\drivers\serscan.sys
11:25:43.0487 0x1240  StillCam - ok
11:25:43.0533 0x1240  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc          C:\Windows\System32\wiaservc.dll
11:25:43.0565 0x1240  StiSvc - ok
11:25:43.0580 0x1240  [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
11:25:43.0596 0x1240  storflt - ok
11:25:43.0627 0x1240  [ 0BF669F0A910BEDA4A32258D363AF2A5, 83EEBACDE4F69A2866B69CAA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc         C:\Windows\system32\storsvc.dll
11:25:43.0643 0x1240  StorSvc - ok
11:25:43.0658 0x1240  [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
11:25:43.0674 0x1240  storvsc - ok
11:25:43.0705 0x1240  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum          C:\Windows\system32\drivers\swenum.sys
11:25:43.0705 0x1240  swenum - ok
11:25:43.0783 0x1240  [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv           C:\Windows\System32\swprv.dll
11:25:43.0814 0x1240  swprv - ok
11:25:44.0454 0x1240  [ 0B061889D5EAB9FDB9893F164957B763, 93F039D7F000121D642313EE79252D9E684EE47539F68E9B136D1F01C174479B ] syncagentsrv    C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
11:25:44.0688 0x1240  syncagentsrv - ok
11:25:44.0844 0x1240  [ 4EE25AC85AFC3FD67D9F57ECDF566FF2, F1BFF1FB655F31B97FA9C6A49D433EFD33D8A35F6B28B4D83E45C27A05A86228 ] SysMain         C:\Windows\system32\sysmain.dll
11:25:44.0906 0x1240  SysMain - ok
11:25:44.0953 0x1240  [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
11:25:44.0984 0x1240  TabletInputService - ok
11:25:45.0015 0x1240  [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv         C:\Windows\System32\tapisrv.dll
11:25:45.0062 0x1240  TapiSrv - ok
11:25:45.0093 0x1240  [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS             C:\Windows\System32\tbssvc.dll
11:25:45.0109 0x1240  TBS - ok
11:25:45.0187 0x1240  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
11:25:45.0249 0x1240  Tcpip - ok
11:25:45.0296 0x1240  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
11:25:45.0327 0x1240  TCPIP6 - ok
11:25:45.0359 0x1240  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
11:25:45.0374 0x1240  tcpipreg - ok
11:25:45.0405 0x1240  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
11:25:45.0452 0x1240  TDPIPE - ok
11:25:45.0468 0x1240  [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
11:25:45.0499 0x1240  TDTCP - ok
11:25:45.0546 0x1240  [ BB8817D0508DD5EA69C770C8DEF5AB67, C55671524EEF6E16BBCC92556E83FD1D6457E707EA9330FC1CDD28FB11D99B77 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
11:25:45.0546 0x1240  tdx - ok
11:25:45.0998 0x1240  [ E9D702580349582413503A28F8329B32, 405CEA2DB2B9EE9EF87E454375BEA6A3F6FB30B95BBD9F397129C73D4CCCC282 ] TeamViewer      C:\Program Files\TeamViewer\TeamViewer_Service.exe
11:25:46.0139 0x1240  TeamViewer - ok
11:25:46.0170 0x1240  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD          C:\Windows\system32\drivers\termdd.sys
11:25:46.0170 0x1240  TermDD - ok
11:25:46.0279 0x1240  [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService     C:\Windows\System32\termsrv.dll
11:25:46.0326 0x1240  TermService - ok
11:25:46.0341 0x1240  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes          C:\Windows\system32\themeservice.dll
11:25:46.0357 0x1240  Themes - ok
11:25:46.0373 0x1240  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER     C:\Windows\system32\mmcss.dll
11:25:46.0388 0x1240  THREADORDER - ok
11:25:46.0466 0x1240  [ 79BF9793AEEAF2346EDD55B848CDAA4C, B50423175FD64EFC681724CA041FD0C5741502CE42C48F718CDE32C64FD0E6DB ] tib             C:\Windows\system32\DRIVERS\tib.sys
11:25:46.0497 0x1240  tib - ok
11:25:46.0529 0x1240  [ 873C3BB5A54347B4E54C2DB214BB8FD0, 9BCD0E09E9B512B733AB4DEAD186594553FBB6E6BBB499D99FAABD3FEDD8251B ] tib_mounter     C:\Windows\system32\DRIVERS\tib_mounter.sys
11:25:46.0544 0x1240  tib_mounter - ok
11:25:46.0575 0x1240  [ 86A764161B3E89ECC29E6B9CF18914BC, 57278CC6C2CC7DA4DE347176741980F1B8D3A16230CD1BCC804A42E1DFBE5913 ] tnd             C:\Windows\system32\DRIVERS\tnd.sys
11:25:46.0607 0x1240  tnd - ok
11:25:46.0622 0x1240  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks          C:\Windows\System32\trkwks.dll
11:25:46.0653 0x1240  TrkWks - ok
11:25:46.0731 0x1240  [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
11:25:46.0747 0x1240  TrustedInstaller - ok
11:25:46.0778 0x1240  [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
11:25:46.0794 0x1240  tssecsrv - ok
11:25:46.0825 0x1240  [ FD1D6C73E6333BE727CBCC6054247654, 6F7B9AE1A5986204DB3348D13B303F30FC17624939DA74D6BD114FAEED0FB30E ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
11:25:46.0856 0x1240  TsUsbFlt - ok
11:25:46.0965 0x1240  [ CEF42DB1DEF87F21B89A5AABB86051EF, E2041F5B9CD8B9F5E127BF5078774E949FE02811D0A42ADB26318AFAE4329E82 ] TuneUp.UtilitiesSvc C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe
11:25:46.0997 0x1240  TuneUp.UtilitiesSvc - ok
11:25:47.0043 0x1240  [ E5049C43601473B5A909058596111229, 96CFE481F767C66FA2877594384086C1BE8B2BADBF12DBF4CB72CF73898D0876 ] TuneUpUtilitiesDrv C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys
11:25:47.0059 0x1240  TuneUpUtilitiesDrv - ok
11:25:47.0106 0x1240  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
11:25:47.0137 0x1240  tunnel - ok
11:25:47.0168 0x1240  [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
11:25:47.0184 0x1240  uagp35 - ok
11:25:47.0231 0x1240  [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
11:25:47.0262 0x1240  udfs - ok
11:25:47.0293 0x1240  [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect       C:\Windows\system32\UI0Detect.exe
11:25:47.0324 0x1240  UI0Detect - ok
11:25:47.0340 0x1240  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
11:25:47.0355 0x1240  uliagpkx - ok
11:25:47.0387 0x1240  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
11:25:47.0418 0x1240  umbus - ok
11:25:47.0433 0x1240  [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
11:25:47.0449 0x1240  UmPass - ok
11:25:47.0496 0x1240  [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService    C:\Windows\System32\umrdp.dll
11:25:47.0511 0x1240  UmRdpService - ok
11:25:47.0652 0x1240  [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv        C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
11:25:47.0683 0x1240  UMVPFSrv - ok
11:25:47.0714 0x1240  [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost        C:\Windows\System32\upnphost.dll
11:25:47.0777 0x1240  upnphost - ok
11:25:47.0823 0x1240  [ A1977C315BF5691DA99235AA4A6907AF, 34B52FBA83F0E1C6B001D0AD1808B00152F731D18AAECC3C53B9918AA89BACEC ] usbaudio        C:\Windows\system32\drivers\usbaudio.sys
11:25:47.0855 0x1240  usbaudio - ok
11:25:47.0886 0x1240  [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
11:25:47.0917 0x1240  usbccgp - ok
11:25:47.0933 0x1240  [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir          C:\Windows\system32\drivers\usbcir.sys
11:25:47.0948 0x1240  usbcir - ok
11:25:47.0979 0x1240  [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci         C:\Windows\system32\drivers\usbehci.sys
11:25:47.0979 0x1240  usbehci - ok
11:25:47.0995 0x1240  [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
11:25:48.0011 0x1240  usbhub - ok
11:25:48.0042 0x1240  [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
11:25:48.0073 0x1240  usbohci - ok
11:25:48.0089 0x1240  [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
11:25:48.0104 0x1240  usbprint - ok
11:25:48.0120 0x1240  [ FC6B21DB4B5B398AB93DBE59CBF11036, A94094C208F376405C07822A6143001EF1B12AE93205CD8002E87F6EB45F6374 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
11:25:48.0135 0x1240  usbscan - ok
11:25:48.0167 0x1240  [ 007C0C8D5B01D82ACEB70431D15083F6, 7EAF68CD3C38D3CD2CDFEE9ECE1DFB38E274F1F9E6F70B73BCE1336E87D5496C ] usbser          C:\Windows\system32\DRIVERS\usbser.sys
11:25:48.0213 0x1240  usbser - ok
11:25:48.0229 0x1240  [ 144DA53294922A84FFAA3D90B1453745, A8DC6B534E4526E2226CF6C9D53A4B6B251D2F23728E41737063D24024C5266F ] USBSTOR         C:\Windows\system32\drivers\USBSTOR.SYS
11:25:48.0276 0x1240  USBSTOR - ok
11:25:48.0291 0x1240  [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
11:25:48.0307 0x1240  usbuhci - ok
11:25:48.0338 0x1240  [ DE014425522610BEDCA3821BB8C0F1D5, D6FEA0DF07F89834AEEE8C02CC7FD41068D758B6CCECE2EEE5CF4B9DB646FA1E ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
11:25:48.0369 0x1240  usbvideo - ok
11:25:48.0385 0x1240  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms           C:\Windows\System32\uxsms.dll
11:25:48.0416 0x1240  UxSms - ok
11:25:48.0463 0x1240  [ E359F267B94C708B3512B34E71699D63, D15E6FA45C86C8165C1531CDF1F7A2C78E8B3F5A89F02E99CFDF69AC2500A9FB ] UxTuneUp        C:\Windows\System32\uxtuneup.dll
11:25:48.0479 0x1240  UxTuneUp - ok
11:25:48.0479 0x1240  [ 67A49E0BA4E7BEB62CB9EF073D923C85, 91DF097D552399FA14873FEEEB0B55C6594A9DC1D4084F45425B1AB9833B9C32 ] VaultSvc        C:\Windows\system32\lsass.exe
11:25:48.0494 0x1240  VaultSvc - ok
11:25:48.0525 0x1240  [ 7D8070106CD78C8C87E34F11DFB9F860, 9A8F392DC6137C407712550B10A56CAD94329C5B49ECDB67BAFCA5E11949844C ] VBoxNetAdp      C:\Windows\system32\DRIVERS\VBoxNetAdp.sys
11:25:48.0541 0x1240  VBoxNetAdp - ok
11:25:48.0557 0x1240  VBoxNetFlt - ok
11:25:48.0588 0x1240  [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
11:25:48.0603 0x1240  vdrvroot - ok
11:25:48.0666 0x1240  [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds             C:\Windows\System32\vds.exe
11:25:48.0697 0x1240  vds - ok
11:25:48.0728 0x1240  [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
11:25:48.0744 0x1240  vga - ok
11:25:48.0759 0x1240  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave         C:\Windows\System32\drivers\vga.sys
11:25:48.0791 0x1240  VgaSave - ok
11:25:48.0822 0x1240  [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
11:25:48.0837 0x1240  vhdmp - ok
11:25:48.0853 0x1240  [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
11:25:48.0869 0x1240  viaagp - ok
11:25:48.0884 0x1240  [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7           C:\Windows\system32\DRIVERS\viac7.sys
11:25:48.0900 0x1240  ViaC7 - ok
11:25:48.0931 0x1240  [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide          C:\Windows\system32\drivers\viaide.sys
11:25:48.0947 0x1240  viaide - ok
11:25:48.0993 0x1240  [ F5490A21667707267A18EC78DB98C05D, F0B8BD863D805F6BC10AFDFC6D77BD44FD762F47D2B33512A2F9FCCE55AC1469 ] virtual_file    C:\Windows\system32\DRIVERS\virtual_file.sys
11:25:49.0009 0x1240  virtual_file - ok
11:25:49.0025 0x1240  [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus           C:\Windows\system32\drivers\vmbus.sys
11:25:49.0040 0x1240  vmbus - ok
11:25:49.0056 0x1240  [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
11:25:49.0071 0x1240  VMBusHID - ok
11:25:49.0087 0x1240  [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
11:25:49.0103 0x1240  volmgr - ok
11:25:49.0103 0x1240  [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
11:25:49.0118 0x1240  volmgrx - ok
11:25:49.0134 0x1240  [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
11:25:49.0149 0x1240  volsnap - ok
11:25:49.0165 0x1240  [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
11:25:49.0181 0x1240  vsmraid - ok
11:25:49.0243 0x1240  [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS             C:\Windows\system32\vssvc.exe
11:25:49.0305 0x1240  VSS - ok
11:25:49.0321 0x1240  [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
11:25:49.0352 0x1240  vwifibus - ok
11:25:49.0415 0x1240  [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time         C:\Windows\system32\w32time.dll
11:25:49.0477 0x1240  W32Time - ok
11:25:49.0493 0x1240  [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
11:25:49.0508 0x1240  WacomPen - ok
11:25:49.0524 0x1240  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
11:25:49.0555 0x1240  WANARP - ok
11:25:49.0571 0x1240  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
11:25:49.0586 0x1240  Wanarpv6 - ok
11:25:49.0867 0x1240  [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine        C:\Windows\system32\wbengine.exe
11:25:49.0914 0x1240  wbengine - ok
11:25:49.0945 0x1240  [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
11:25:49.0961 0x1240  WbioSrvc - ok
11:25:49.0992 0x1240  [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc         C:\Windows\System32\wcncsvc.dll
11:25:50.0023 0x1240  wcncsvc - ok
11:25:50.0054 0x1240  [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
11:25:50.0101 0x1240  WcsPlugInService - ok
11:25:50.0132 0x1240  [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
11:25:50.0148 0x1240  Wd - ok
11:25:50.0179 0x1240  [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
11:25:50.0210 0x1240  Wdf01000 - ok
11:25:50.0241 0x1240  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost  C:\Windows\system32\wdi.dll
11:25:50.0273 0x1240  WdiServiceHost - ok
11:25:50.0273 0x1240  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost   C:\Windows\system32\wdi.dll
11:25:50.0288 0x1240  WdiSystemHost - ok
11:25:50.0351 0x1240  [ 55C70654420DBF429604FD567E6F3CD3, 22191B049BCA76EF13AEDF8078E452E6B35E998A75AD63F14C542B541EA9F67D ] WebClient       C:\Windows\System32\webclnt.dll
11:25:50.0382 0x1240  WebClient - ok
11:25:50.0397 0x1240  [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc          C:\Windows\system32\wecsvc.dll
11:25:50.0475 0x1240  Wecsvc - ok
11:25:50.0491 0x1240  [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
11:25:50.0522 0x1240  wercplsupport - ok
11:25:50.0553 0x1240  [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc          C:\Windows\System32\WerSvc.dll
11:25:50.0569 0x1240  WerSvc - ok
11:25:50.0585 0x1240  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
11:25:50.0616 0x1240  WfpLwf - ok
11:25:50.0631 0x1240  [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
11:25:50.0647 0x1240  WIMMount - ok
11:25:50.0725 0x1240  [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
11:25:50.0772 0x1240  WinDefend - ok
11:25:50.0772 0x1240  WinHttpAutoProxySvc - ok
11:25:50.0850 0x1240  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
11:25:50.0865 0x1240  Winmgmt - ok
11:25:51.0084 0x1240  [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM           C:\Windows\system32\WsmSvc.dll
11:25:51.0131 0x1240  WinRM - ok
11:25:51.0177 0x1240  [ A67E5F9A400F3BD1BE3D80613B45F708, E170A8BD31A779403DC9C43ED6483DA8E186512D3EE700B87F6BA292E284E367 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
11:25:51.0193 0x1240  WinUsb - ok
11:25:51.0302 0x1240  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc         C:\Windows\System32\wlansvc.dll
11:25:51.0349 0x1240  Wlansvc - ok
11:25:51.0380 0x1240  [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
11:25:51.0396 0x1240  WmiAcpi - ok
11:25:51.0427 0x1240  [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
11:25:51.0458 0x1240  wmiApSrv - ok
11:25:51.0536 0x1240  [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
11:25:51.0614 0x1240  WMPNetworkSvc - ok
11:25:51.0630 0x1240  [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
11:25:51.0692 0x1240  WPCSvc - ok
11:25:51.0723 0x1240  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
11:25:51.0786 0x1240  WPDBusEnum - ok
11:25:51.0817 0x1240  [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
11:25:51.0864 0x1240  ws2ifsl - ok
11:25:51.0895 0x1240  [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc          C:\Windows\System32\wscsvc.dll
11:25:51.0911 0x1240  wscsvc - ok
11:25:51.0942 0x1240  [ 553F6CCD7C58EB98D4A8FBDAF283D7A9, 71FBE50C470D1F54FDAADCECEC2CB021AE240CD59DE4E8EB5BCAA6E7F2F86560 ] WSDPrintDevice  C:\Windows\system32\DRIVERS\WSDPrint.sys
11:25:51.0973 0x1240  WSDPrintDevice - ok
11:25:51.0973 0x1240  WSearch - ok
11:25:52.0082 0x1240  [ E51B294DC4A0A944DDE468356CFBB4AC, 0C1B8768C0F8CD7A76E926A068AA994D9FC546A4FBFC8935C93F683A9A052762 ] wuauserv        C:\Windows\system32\wuaueng.dll
11:25:52.0160 0x1240  wuauserv - ok
11:25:52.0191 0x1240  [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
11:25:52.0207 0x1240  WudfPf - ok
11:25:52.0238 0x1240  [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
11:25:52.0254 0x1240  WUDFRd - ok
11:25:52.0269 0x1240  [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
11:25:52.0285 0x1240  wudfsvc - ok
11:25:52.0332 0x1240  [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc         C:\Windows\System32\wwansvc.dll
11:25:52.0347 0x1240  WwanSvc - ok
11:25:52.0379 0x1240  [ 30B73EB97218A16CBC6DE535782A1B35, 5B034F39FA5B902BD6899717F7696871CDAFB8698B48BB0E95DAE51234715A28 ] yukonw7         C:\Windows\system32\DRIVERS\yk62x86.sys
11:25:52.0441 0x1240  yukonw7 - ok
         
__________________

Alt 28.03.2016, 10:37   #4
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



TDSSKiller 2 text
Code:
ATTFilter
11:25:52.0441 0x1240  ================ Scan global ===============================
11:25:52.0488 0x1240  [ 5E7C5DE85AF978495C3A9A0B720B9811, 142CDEBED78E3BAEE8D2DBF6A97CE26313932024010548EC2E570CAE480AF7C3 ] C:\Windows\system32\basesrv.dll
11:25:52.0519 0x1240  [ C2E10DD5F72368909C516B24A02CFF12, 6D3E6ED8C6F8617A671737F913E41A292BEE1FD268458BA479B2213B33365D6C ] C:\Windows\system32\winsrv.dll
11:25:52.0566 0x1240  [ C2E10DD5F72368909C516B24A02CFF12, 6D3E6ED8C6F8617A671737F913E41A292BEE1FD268458BA479B2213B33365D6C ] C:\Windows\system32\winsrv.dll
11:25:52.0581 0x1240  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
11:25:52.0644 0x1240  [ 0780A42DBD7D9969F9BF4A19AA4285B5, 8EA41124A4E97732C5DAA616457FBA7111CB38986F3427FA776ED00BC1407171 ] C:\Windows\system32\services.exe
11:25:52.0644 0x1240  [ Global ] - ok
11:25:52.0644 0x1240  ================ Scan MBR ==================================
11:25:52.0675 0x1240  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
11:25:53.0502 0x1240  \Device\Harddisk0\DR0 - ok
11:25:53.0502 0x1240  ================ Scan VBR ==================================
11:25:53.0517 0x1240  [ 9E238D694A921DFDBD72B698D02F68A8 ] \Device\Harddisk0\DR0\Partition1
11:25:53.0517 0x1240  \Device\Harddisk0\DR0\Partition1 - ok
11:25:53.0533 0x1240  [ 87E9ED1FEA49174B3A49BD79A29C930F ] \Device\Harddisk0\DR0\Partition2
11:25:53.0533 0x1240  \Device\Harddisk0\DR0\Partition2 - ok
11:25:53.0533 0x1240  ================ Scan active images ========================
11:25:53.0533 0x1240  [ B7EFEF22FF426EC4158A177CB3B558D3, 87D8F07E23B928B9D71B13B0F43A6235BAFC48879CFCF5920889849D09FFCD6C ] C:\Windows\System32\drivers\crashdmp.sys
11:25:53.0533 0x1240  C:\Windows\System32\drivers\crashdmp.sys - ok
11:25:53.0533 0x1240  [ 5428227D4730EBDFC842E9FB593F8C8A, C62A122FC8A04B63A94F337699A70901ED04B0F20AEC9538EC6E83ED2D18F1E3 ] C:\Windows\System32\drivers\Dumpata.sys
11:25:53.0533 0x1240  C:\Windows\System32\drivers\Dumpata.sys - ok
11:25:53.0549 0x1240  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] C:\Windows\System32\drivers\atapi.sys
11:25:53.0549 0x1240  C:\Windows\System32\drivers\atapi.sys - ok
11:25:53.0549 0x1240  [ 62A63EF2F3053B461CB327E4D69AAA74, 26CC8BBC9BB6C53B46C837FA75C5449508989C26949BD19EB8E03E37F7928456 ] C:\Windows\System32\drivers\dumpfve.sys
11:25:53.0549 0x1240  C:\Windows\System32\drivers\dumpfve.sys - ok
11:25:53.0549 0x1240  [ 687AF6BB383885FF6A64071B189A7F3E, 1C751B8DD27F63E88D0223A8434CED7589AC00EC6275938C59D1B954F0354F78 ] C:\Windows\System32\drivers\dtsoftbus01.sys
11:25:53.0549 0x1240  C:\Windows\System32\drivers\dtsoftbus01.sys - ok
11:25:53.0549 0x1240  [ 14115129D9E3B5D0E83D8163ED4A80FF, 0CA44F3C5F28B1DE4D90820481B7EF7C4E9508AECCC6B072B2B0813747D440D5 ] C:\Windows\System32\drivers\360Box.sys
11:25:53.0549 0x1240  C:\Windows\System32\drivers\360Box.sys - ok
11:25:53.0549 0x1240  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] C:\Windows\System32\drivers\beep.sys
11:25:53.0549 0x1240  C:\Windows\System32\drivers\beep.sys - ok
11:25:53.0564 0x1240  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] C:\Windows\System32\drivers\cdrom.sys
11:25:53.0564 0x1240  C:\Windows\System32\drivers\cdrom.sys - ok
11:25:53.0564 0x1240  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] C:\Windows\System32\drivers\null.sys
11:25:53.0564 0x1240  C:\Windows\System32\drivers\null.sys - ok
11:25:53.0564 0x1240  [ 7819483C88B956339B1322D5A847493C, 638746CE520128C677834BFE3486C10232BD41B5EB16D5591A0C3218E94477EF ] C:\Windows\System32\drivers\360SelfProtection.sys
11:25:53.0564 0x1240  C:\Windows\System32\drivers\360SelfProtection.sys - ok
11:25:53.0564 0x1240  [ 15C126D1B55814B9E5CAB10A9C1F4C67, CD118B6508355037294AE940E039C095BA9E4A96AA129D38DB0AEC0C393D0F00 ] C:\Windows\System32\drivers\videoprt.sys
11:25:53.0564 0x1240  C:\Windows\System32\drivers\videoprt.sys - ok
11:25:53.0564 0x1240  [ CB45A417C8EF7BA6BAC67EDCDDED8700, 0D9AD2498A7D3B7C3E485A5803D2BDF781B38E07E3C2B5980859073EF6FD9B8A ] C:\Windows\System32\drivers\watchdog.sys
11:25:53.0564 0x1240  C:\Windows\System32\drivers\watchdog.sys - ok
11:25:53.0564 0x1240  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] C:\Windows\System32\drivers\msfs.sys
11:25:53.0564 0x1240  C:\Windows\System32\drivers\msfs.sys - ok
11:25:53.0580 0x1240  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] C:\Windows\System32\drivers\npfs.sys
11:25:53.0580 0x1240  C:\Windows\System32\drivers\npfs.sys - ok
11:25:53.0580 0x1240  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] C:\Windows\System32\drivers\RDPCDD.sys
11:25:53.0580 0x1240  C:\Windows\System32\drivers\RDPCDD.sys - ok
11:25:53.0580 0x1240  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] C:\Windows\System32\drivers\RDPENCDD.sys
11:25:53.0580 0x1240  C:\Windows\System32\drivers\RDPENCDD.sys - ok
11:25:53.0580 0x1240  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] C:\Windows\System32\drivers\RDPREFMP.sys
11:25:53.0580 0x1240  C:\Windows\System32\drivers\RDPREFMP.sys - ok
11:25:53.0580 0x1240  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] C:\Windows\System32\drivers\vga.sys
11:25:53.0580 0x1240  C:\Windows\System32\drivers\vga.sys - ok
11:25:53.0595 0x1240  [ 2F885864D5BC8A16C86BEE595969A48A, 279E176CDEF9148A4A07F7D37172A2C2BDC89E47021EEB76F1BCDF789B76D95A ] C:\Windows\System32\drivers\tdi.sys
11:25:53.0595 0x1240  C:\Windows\System32\drivers\tdi.sys - ok
11:25:53.0595 0x1240  [ BB8817D0508DD5EA69C770C8DEF5AB67, C55671524EEF6E16BBCC92556E83FD1D6457E707EA9330FC1CDD28FB11D99B77 ] C:\Windows\System32\drivers\tdx.sys
11:25:53.0595 0x1240  C:\Windows\System32\drivers\tdx.sys - ok
11:25:53.0595 0x1240  [ 93B49FA857F7036A4EFF32371F6E7391, B9B2867D9A80E7F028E9D7C6ABCB9EC5198ACE28CEE101C5A846666B356B2843 ] C:\Windows\System32\drivers\afd.sys
11:25:53.0595 0x1240  C:\Windows\System32\drivers\afd.sys - ok
11:25:53.0595 0x1240  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] C:\Windows\System32\drivers\netbt.sys
11:25:53.0595 0x1240  C:\Windows\System32\drivers\netbt.sys - ok
11:25:53.0595 0x1240  [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] C:\Windows\System32\drivers\pacer.sys
11:25:53.0595 0x1240  C:\Windows\System32\drivers\pacer.sys - ok
11:25:53.0611 0x1240  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] C:\Windows\System32\drivers\wfplwf.sys
11:25:53.0611 0x1240  C:\Windows\System32\drivers\wfplwf.sys - ok
11:25:53.0611 0x1240  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] C:\Windows\System32\drivers\netbios.sys
11:25:53.0611 0x1240  C:\Windows\System32\drivers\netbios.sys - ok
11:25:53.0611 0x1240  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] C:\Windows\System32\drivers\wanarp.sys
11:25:53.0611 0x1240  C:\Windows\System32\drivers\wanarp.sys - ok
11:25:53.0611 0x1240  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] C:\Windows\System32\drivers\termdd.sys
11:25:53.0611 0x1240  C:\Windows\System32\drivers\termdd.sys - ok
11:25:53.0611 0x1240  [ C94FD2E64D92D1CEC22604D6802CF86C, 75323FDABB997AB079182EE0FF0E1AA0F7D949416B26E24629703E0844E93789 ] C:\Windows\System32\drivers\qutmipc.sys
11:25:53.0611 0x1240  C:\Windows\System32\drivers\qutmipc.sys - ok
11:25:53.0627 0x1240  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] C:\Windows\System32\drivers\rdbss.sys
11:25:53.0627 0x1240  C:\Windows\System32\drivers\rdbss.sys - ok
11:25:53.0627 0x1240  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] C:\Windows\System32\drivers\nsiproxy.sys
11:25:53.0627 0x1240  C:\Windows\System32\drivers\nsiproxy.sys - ok
11:25:53.0627 0x1240  [ F12B7DCC734223A58E749B685BA69782, 196BF0EF4AD6BD9863762EA41461D61CC659FABA12F148C2F87430D9078C58B7 ] C:\Windows\System32\drivers\qutmdrv.sys
11:25:53.0627 0x1240  C:\Windows\System32\drivers\qutmdrv.sys - ok
11:25:53.0627 0x1240  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] C:\Windows\System32\drivers\mssmbios.sys
11:25:53.0627 0x1240  C:\Windows\System32\drivers\mssmbios.sys - ok
11:25:53.0627 0x1240  [ 7DECCB2612255F4B538976AD25DA0D29, 0D8AA433FEE23459B390D81E3D923F639CB717891A16BE76FE0E84D61DFFFE8A ] C:\Program Files\i-Menu\hugoio.sys
11:25:53.0627 0x1240  C:\Program Files\i-Menu\hugoio.sys - ok
11:25:53.0642 0x1240  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] C:\Windows\System32\drivers\discache.sys
11:25:53.0642 0x1240  C:\Windows\System32\drivers\discache.sys - ok
11:25:53.0642 0x1240  [ 94C668C7A654EFCAB6689AA45BAF2A4F, 43103D9751109ABF113948C6613789FBBE8F6164CEB7A44185760A765814BA48 ] C:\Windows\System32\drivers\efimon.sys
11:25:53.0642 0x1240  C:\Windows\System32\drivers\efimon.sys - ok
11:25:53.0642 0x1240  [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] C:\Windows\System32\drivers\csc.sys
11:25:53.0642 0x1240  C:\Windows\System32\drivers\csc.sys - ok
11:25:53.0642 0x1240  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] C:\Windows\System32\drivers\dfsc.sys
11:25:53.0642 0x1240  C:\Windows\System32\drivers\dfsc.sys - ok
11:25:53.0642 0x1240  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] C:\Windows\System32\drivers\blbdrive.sys
11:25:53.0642 0x1240  C:\Windows\System32\drivers\blbdrive.sys - ok
11:25:53.0658 0x1240  [ F0B381D09C00C939CD20F95A404B39ED, 4B303117B7CED81AEEA98CD4B8E1F527A8C3823DC3C2162DD84EE2893B603975 ] C:\Windows\System32\drivers\BAPIDRV.SYS
11:25:53.0658 0x1240  C:\Windows\System32\drivers\BAPIDRV.SYS - ok
11:25:53.0658 0x1240  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] C:\Windows\System32\drivers\tunnel.sys
11:25:53.0658 0x1240  C:\Windows\System32\drivers\tunnel.sys - ok
11:25:53.0658 0x1240  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] C:\Windows\System32\drivers\intelppm.sys
11:25:53.0658 0x1240  C:\Windows\System32\drivers\intelppm.sys - ok
11:25:53.0658 0x1240  [ 42EB0FE7AD8508CE81C1213C88E009E6, 4187252CAF9E01581E5C2B13FD7F5B8FF85CF1CFC301F3C8A7C908D7FF39EFA7 ] C:\Windows\System32\ntdll.dll
11:25:53.0658 0x1240  C:\Windows\System32\ntdll.dll - ok
11:25:53.0658 0x1240  [ 97EC2553D2C09D79985064B8BF106A83, 98E6E15F397E0293FA9AA4FE62129C2412275846A87A6C0A86934952054396E6 ] C:\Windows\System32\smss.exe
11:25:53.0658 0x1240  C:\Windows\System32\smss.exe - ok
11:25:53.0673 0x1240  [ 0B2E7B39411FAA44EBDA76FB38673964, 8842012A77FACBE7E9D5A3CF6675E55D4CF10022B5F9F4D6B570BB62AC1940B2 ] C:\Windows\System32\drivers\nvlddmkm.sys
11:25:53.0673 0x1240  C:\Windows\System32\drivers\nvlddmkm.sys - ok
11:25:53.0673 0x1240  [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] C:\Windows\System32\drivers\dxgkrnl.sys
11:25:53.0673 0x1240  C:\Windows\System32\drivers\dxgkrnl.sys - ok
11:25:53.0673 0x1240  [ 0EC652D17AB4607745FB4E6958E8FAB6, 4103548218674B39EE707D216F9EF6E224D9FA2E016A0262247C8FB1D4B588A5 ] C:\Windows\System32\drivers\dxgmms1.sys
11:25:53.0673 0x1240  C:\Windows\System32\drivers\dxgmms1.sys - ok
11:25:53.0673 0x1240  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] C:\Windows\System32\drivers\hdaudbus.sys
11:25:53.0673 0x1240  C:\Windows\System32\drivers\hdaudbus.sys - ok
11:25:53.0673 0x1240  [ EC2C5AF37B76D7B58C642CB74423DB7A, BE1F6F2CE3B1539DAC23B73EA655B77E6E628E5E55BD16091E76934723BE77B1 ] C:\Windows\System32\drivers\usbport.sys
11:25:53.0673 0x1240  C:\Windows\System32\drivers\usbport.sys - ok
11:25:53.0689 0x1240  [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] C:\Windows\System32\drivers\usbuhci.sys
11:25:53.0689 0x1240  C:\Windows\System32\drivers\usbuhci.sys - ok
11:25:53.0689 0x1240  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] C:\Windows\System32\drivers\1394ohci.sys
11:25:53.0689 0x1240  C:\Windows\System32\drivers\1394ohci.sys - ok
11:25:53.0689 0x1240  [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] C:\Windows\System32\drivers\usbehci.sys
11:25:53.0689 0x1240  C:\Windows\System32\drivers\usbehci.sys - ok
11:25:53.0689 0x1240  [ 30B73EB97218A16CBC6DE535782A1B35, 5B034F39FA5B902BD6899717F7696871CDAFB8698B48BB0E95DAE51234715A28 ] C:\Windows\System32\drivers\yk62x86.sys
11:25:53.0689 0x1240  C:\Windows\System32\drivers\yk62x86.sys - ok
11:25:53.0689 0x1240  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] C:\Windows\System32\drivers\agilevpn.sys
11:25:53.0689 0x1240  C:\Windows\System32\drivers\agilevpn.sys - ok
11:25:53.0689 0x1240  [ 0F24624106D8042E7F27882D9D6FF5C0, 2CD6E0962FB20EB8E1033CE1663FD223807BAE1FBE27D3AC9582FB765F2C70F0 ] C:\Windows\System32\drivers\ASACPI.sys
11:25:53.0689 0x1240  C:\Windows\System32\drivers\ASACPI.sys - ok
11:25:53.0705 0x1240  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] C:\Windows\System32\drivers\CompositeBus.sys
11:25:53.0705 0x1240  C:\Windows\System32\drivers\CompositeBus.sys - ok
11:25:53.0705 0x1240  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] C:\Windows\System32\drivers\fdc.sys
11:25:53.0705 0x1240  C:\Windows\System32\drivers\fdc.sys - ok
11:25:53.0705 0x1240  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] C:\Windows\System32\drivers\i8042prt.sys
11:25:53.0705 0x1240  C:\Windows\System32\drivers\i8042prt.sys - ok
11:25:53.0705 0x1240  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] C:\Windows\System32\drivers\kbdclass.sys
11:25:53.0705 0x1240  C:\Windows\System32\drivers\kbdclass.sys - ok
11:25:53.0705 0x1240  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] C:\Windows\System32\drivers\ndistapi.sys
11:25:53.0705 0x1240  C:\Windows\System32\drivers\ndistapi.sys - ok
11:25:53.0720 0x1240  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] C:\Windows\System32\drivers\ndiswan.sys
11:25:53.0720 0x1240  C:\Windows\System32\drivers\ndiswan.sys - ok
11:25:53.0720 0x1240  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] C:\Windows\System32\drivers\rasl2tp.sys
11:25:53.0720 0x1240  C:\Windows\System32\drivers\rasl2tp.sys - ok
11:25:53.0720 0x1240  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] C:\Windows\System32\drivers\raspppoe.sys
11:25:53.0720 0x1240  C:\Windows\System32\drivers\raspppoe.sys - ok
11:25:53.0720 0x1240  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] C:\Windows\System32\drivers\mouclass.sys
11:25:53.0720 0x1240  C:\Windows\System32\drivers\mouclass.sys - ok
11:25:53.0720 0x1240  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] C:\Windows\System32\drivers\raspptp.sys
11:25:53.0720 0x1240  C:\Windows\System32\drivers\raspptp.sys - ok
11:25:53.0736 0x1240  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] C:\Windows\System32\drivers\rassstp.sys
11:25:53.0736 0x1240  C:\Windows\System32\drivers\rassstp.sys - ok
11:25:53.0736 0x1240  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] C:\Windows\System32\drivers\rdpbus.sys
11:25:53.0736 0x1240  C:\Windows\System32\drivers\rdpbus.sys - ok
11:25:53.0736 0x1240  [ ED42254EADDB77E3BED57294949326FF, 2946E4BD1212105C607056B040F479A270802ED606B996898E85AC984AF35243 ] C:\Windows\System32\drivers\SaiBus.sys
11:25:53.0736 0x1240  C:\Windows\System32\drivers\SaiBus.sys - ok
11:25:53.0736 0x1240  [ 5DCEF0C32BE0F33277326586FA503689, B6AEB5DE8F2430D2032DAF5B58DBB4E192F6113DB5379F5AD8189A7AC2560EEA ] C:\Windows\System32\drivers\ks.sys
11:25:53.0736 0x1240  C:\Windows\System32\drivers\ks.sys - ok
11:25:53.0736 0x1240  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] C:\Windows\System32\drivers\swenum.sys
11:25:53.0736 0x1240  C:\Windows\System32\drivers\swenum.sys - ok
11:25:53.0751 0x1240  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] C:\Windows\System32\drivers\umbus.sys
11:25:53.0751 0x1240  C:\Windows\System32\drivers\umbus.sys - ok
11:25:53.0751 0x1240  [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] C:\Windows\System32\drivers\usbhub.sys
11:25:53.0751 0x1240  C:\Windows\System32\drivers\usbhub.sys - ok
11:25:53.0751 0x1240  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] C:\Windows\System32\drivers\flpydisk.sys
11:25:53.0751 0x1240  C:\Windows\System32\drivers\flpydisk.sys - ok
11:25:53.0751 0x1240  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] C:\Windows\System32\drivers\ndproxy.sys
11:25:53.0751 0x1240  C:\Windows\System32\drivers\ndproxy.sys - ok
11:25:53.0751 0x1240  [ F1B27299F547D452EDAEF01FC187CB91, 574FC8ACB349244122E6D76333E2BB72680639EEF61C0B679F8485023B619263 ] C:\Windows\System32\drivers\hidparse.sys
11:25:53.0751 0x1240  C:\Windows\System32\drivers\hidparse.sys - ok
11:25:53.0767 0x1240  [ 50ABE682EBE752EAF62B18790D6D491C, E01499C4F81CC49A89590A07CB814D21126CE52DCD3FACADB6D1E243940C69FA ] C:\Windows\System32\drivers\hidclass.sys
11:25:53.0767 0x1240  C:\Windows\System32\drivers\hidclass.sys - ok
11:25:53.0767 0x1240  [ AEE1BDE22F6E9284D59B48706DB75110, F8B92F68E8AE95863B21E10E947206C4A7E345A27878D6BA0ECEBA685A7886A5 ] C:\Windows\System32\drivers\SaiMini.sys
11:25:53.0767 0x1240  C:\Windows\System32\drivers\SaiMini.sys - ok
11:25:53.0767 0x1240  [ 53F70F2B5ED939C0013D625F6444F5C7, F31908AC66404993474CA7F935711CE4D523DF4A91449E3FFA2B1B4BA06C1004 ] C:\Windows\System32\drivers\drmk.sys
11:25:53.0767 0x1240  C:\Windows\System32\drivers\drmk.sys - ok
11:25:53.0767 0x1240  [ A103F2A100B091809A120A1463BC9EB5, DB9219AAD43C3FE3EFBB70F213568DA87B4F9D89FA0F80AD73611C6A72BACC0E ] C:\Windows\System32\drivers\nvhda32v.sys
11:25:53.0767 0x1240  C:\Windows\System32\drivers\nvhda32v.sys - ok
11:25:53.0767 0x1240  [ 1F3096B1725382912803B6027AF4B94A, 1ED9F222579BDA0CA0F9A5DB4F0FF0FF63EC1D17A0D80BF69C31C977CB65D6AC ] C:\Windows\System32\drivers\portcls.sys
11:25:53.0767 0x1240  C:\Windows\System32\drivers\portcls.sys - ok
11:25:53.0783 0x1240  [ 23F78687CBF3972704650A799420BFA8, B657281C80C0138FC79CB161D230316B5A96CDC3A775961A2916F32C3A43C2C9 ] C:\Windows\System32\drivers\ADIHdAud.sys
11:25:53.0783 0x1240  C:\Windows\System32\drivers\ADIHdAud.sys - ok
11:25:53.0783 0x1240  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] C:\Windows\System32\drivers\kbdhid.sys
11:25:53.0783 0x1240  C:\Windows\System32\drivers\kbdhid.sys - ok
11:25:53.0783 0x1240  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] C:\Windows\System32\drivers\mouhid.sys
11:25:53.0783 0x1240  C:\Windows\System32\drivers\mouhid.sys - ok
11:25:53.0783 0x1240  [ F88A52EB62019D6A62FDD9E08034DBD8, 2E035366E9A1A26FB15F1E4857056E6AD7932BCE8CC68BB4B655609F424D2756 ] C:\Windows\System32\autochk.exe
11:25:53.0783 0x1240  C:\Windows\System32\autochk.exe - ok
11:25:53.0783 0x1240  [ 070C5B9D3006602A07757179D9B56F5D, 7B24E38ADDEEDD9168D0C87275AC0936D0A4F1195810F9736118076589BC18BA ] C:\Windows\System32\difxapi.dll
11:25:53.0783 0x1240  C:\Windows\System32\difxapi.dll - ok
11:25:53.0798 0x1240  [ 74F805AB12EB0E3E49E469F19FF02640, 23A845F9162ECE37B6CF5B2537562C69705A4192D19438109B5212E111A49004 ] C:\Windows\System32\drivers\usbd.sys
11:25:53.0798 0x1240  C:\Windows\System32\drivers\usbd.sys - ok
11:25:53.0798 0x1240  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] C:\Windows\System32\drivers\hidusb.sys
11:25:53.0798 0x1240  C:\Windows\System32\drivers\hidusb.sys - ok
11:25:53.0798 0x1240  [ 9DC80A8AAAAAC397BDAB3C67165A824E, 051636BFDFF7AB0E4191354E846BD0DACCA1A01FCC13C1AFED91D8DBFE17127A ] C:\Windows\System32\msvcrt.dll
11:25:53.0798 0x1240  C:\Windows\System32\msvcrt.dll - ok
11:25:53.0798 0x1240  [ 6D78ABE37BC816FBC67A62A7A1A5C582, 4A5CEA271F157D73717B0D134B9C99C0FF8BECE739509D5C017325505B1B1047 ] C:\Windows\System32\urlmon.dll
11:25:53.0798 0x1240  C:\Windows\System32\urlmon.dll - ok
11:25:53.0798 0x1240  [ 4CE464D543C536B2E039524C93413238, F057F4E13B88C6CDC4968323E1A325A9F2AE2E54BB69D01FA60222CE5F3D86E9 ] C:\Windows\System32\oleaut32.dll
11:25:53.0798 0x1240  C:\Windows\System32\oleaut32.dll - ok
11:25:53.0814 0x1240  [ E7B9D5FF20FFDD4AAE2EF1D1B8C27A37, 689D126B1B42140D5049015E3E324268E6542D4BC6CC14E31D8B89A25B94BAA5 ] C:\Windows\System32\imagehlp.dll
11:25:53.0814 0x1240  C:\Windows\System32\imagehlp.dll - ok
11:25:53.0814 0x1240  [ 65A5E27C2217D606E212B6088CCD6104, 3D2E4CB0956D30307FE6440E4FCA0E327DCD2643113860BE526383E7934A495C ] C:\Windows\System32\sechost.dll
11:25:53.0814 0x1240  C:\Windows\System32\sechost.dll - ok
11:25:53.0814 0x1240  [ 1B2966418D805A871C30998D45570109, ACF761203F2EDABC7A5E85528F22D8655D5F79281412D928B86B9D1B2F138007 ] C:\Windows\System32\advapi32.dll
11:25:53.0814 0x1240  C:\Windows\System32\advapi32.dll - ok
11:25:53.0814 0x1240  [ 3553707B119AD5AAF1F31BFF5517A093, 6B3E439588B9D5AA0607445653F0C7A37D673B571892293B096BF50F9E276605 ] C:\Windows\System32\usp10.dll
11:25:53.0814 0x1240  C:\Windows\System32\usp10.dll - ok
11:25:53.0814 0x1240  [ A543AC1F7138376D778D630A35FCBC4C, 2D824C66A97FC8C39DAFA397CC47495B712D175EEF393486946DA8936BDD466A ] C:\Windows\System32\psapi.dll
11:25:53.0814 0x1240  C:\Windows\System32\psapi.dll - ok
11:25:53.0814 0x1240  [ B1A05A45F23F1AAF5F2C590278C3067A, EB6A14E35DDF17EA408BC427D925D8030625E9E196D38E826C6050DA673AE666 ] C:\Windows\System32\rpcrt4.dll
11:25:53.0814 0x1240  C:\Windows\System32\rpcrt4.dll - ok
11:25:53.0829 0x1240  [ D1DE1EAFDE97BE41CF6585027FF3E732, 76F17D4DF440D6734DC8157092D94EB18C2A73A0A49BEEA289E7B3EDE30E86A2 ] C:\Windows\System32\comdlg32.dll
11:25:53.0829 0x1240  C:\Windows\System32\comdlg32.dll - ok
11:25:53.0829 0x1240  [ F811B932E3DBA308014F8C870F752F16, 4E65B519821552D3B02736883B695C4953E9DDEA1A61F22FF37D67DBBA7BBD4D ] C:\Windows\System32\shell32.dll
11:25:53.0829 0x1240  C:\Windows\System32\shell32.dll - ok
11:25:53.0829 0x1240  [ 84B460BB65567ED42DD605FA044DB370, 4CA82B2581F417D8D6D81F446F81283D3DE91C8E8E0BC2DC3DA4CF8D55E765F5 ] C:\Windows\System32\msctf.dll
11:25:53.0829 0x1240  C:\Windows\System32\msctf.dll - ok
11:25:53.0829 0x1240  [ C54971134F66CFBDE313D7D74A297AAC, D0ABA649BB708B293F6737698940AFD4FCFFF1C6A8D00C54512F1DD86F5D8615 ] C:\Windows\System32\iertutil.dll
11:25:53.0829 0x1240  C:\Windows\System32\iertutil.dll - ok
11:25:53.0829 0x1240  [ 4A8E2F20809CC161107FAA94F6CF2685, 561DCE9E49696288A9EE802C0BEF424EB34A1C29B6D8931CCD5C7E26CB4F88EA ] C:\Windows\System32\imm32.dll
11:25:53.0829 0x1240  C:\Windows\System32\imm32.dll - ok
11:25:53.0845 0x1240  [ 8CC3C111D653E96F3EA1590891491D71, 1D326D7D116D76876EE2B14A5BFB7B4328E21DB9B5AAAB9CB67F8EFB93924230 ] C:\Windows\System32\shlwapi.dll
11:25:53.0845 0x1240  C:\Windows\System32\shlwapi.dll - ok
11:25:53.0845 0x1240  [ 40F3BEFCD156B0698280A070047FDEAF, 6D1E42F7462AA73256FB2DF520DE99D31F747754C62AB6CA3C0B34F48106A219 ] C:\Windows\System32\lpk.dll
11:25:53.0845 0x1240  C:\Windows\System32\lpk.dll - ok
11:25:53.0845 0x1240  [ E00604CE082BA387AC1D354C45F7EDEC, B2D5C25A08887AC4F2A4EE61D5472599514C7787E632F8F443BC47BEB23F8B81 ] C:\Windows\System32\ole32.dll
11:25:53.0845 0x1240  C:\Windows\System32\ole32.dll - ok
11:25:53.0845 0x1240  [ 10FB16B50AFFDA6D44588F3C445DC273, 6CDA17DA9B44D11E69F7C6682FA633EA75731623BB21B429A0FE2086ED4495A7 ] C:\Windows\System32\setupapi.dll
11:25:53.0845 0x1240  C:\Windows\System32\setupapi.dll - ok
11:25:53.0845 0x1240  [ 9C278785347BCC991F8EA2999D90F58D, EA680C3642A6ABF627415AEE019956FAC702DC6A8F4B4D0FC8A4FB21EADD3896 ] C:\Windows\System32\normaliz.dll
11:25:53.0845 0x1240  C:\Windows\System32\normaliz.dll - ok
11:25:53.0861 0x1240  [ A8BB45F9ECAD993461E0FEF8E2A99152, ACB756EA54E71F124D928829666B5B439785593877FF7C0C76ADCF954F4E6C94 ] C:\Windows\System32\Wldap32.dll
11:25:53.0861 0x1240  C:\Windows\System32\Wldap32.dll - ok
11:25:53.0861 0x1240  [ 2362B7281A39807F1AA3550333A194BC, D80F773D2DB0F1CBFFB74B8571D084D9894BF57490F98A0019DC9447D0FCF637 ] C:\Windows\System32\kernel32.dll
11:25:53.0861 0x1240  C:\Windows\System32\kernel32.dll - ok
11:25:53.0861 0x1240  [ 4C5A23AE4F5157F579C89736EA5D42CE, 124EC4BBF50EFB118E4DBC1B307E968DB1DD5BB91E8274073AA1652E03854DFF ] C:\Windows\System32\user32.dll
11:25:53.0861 0x1240  C:\Windows\System32\user32.dll - ok
11:25:53.0861 0x1240  [ EF67BFBFD0C8A80D396CFBAFC4D8A528, 15BF2FF7C1808013389E0ED2FDDA666097C24969FF845E0D2D90FC1D516B1AA4 ] C:\Windows\System32\gdi32.dll
11:25:53.0861 0x1240  C:\Windows\System32\gdi32.dll - ok
11:25:53.0861 0x1240  [ EDB9618FF3238EF0FC2734F584B13A33, 17DE4E266A7A7897CD534642C2FD5FABFD027B3CF843C815F7A692B2C6FC6458 ] C:\Windows\System32\wininet.dll
11:25:53.0861 0x1240  C:\Windows\System32\wininet.dll - ok
11:25:53.0876 0x1240  [ FF5688D309347F2720911D8796912834, 3B0D73C50D40A6F42629B7750F99F656BF5C1C50237D5F98B6C0F2CE5E2DA359 ] C:\Windows\System32\clbcatq.dll
11:25:53.0876 0x1240  C:\Windows\System32\clbcatq.dll - ok
11:25:53.0876 0x1240  [ 7FF15A4F092CD4A96055BA69F903E3E9, 1B594E6D057C632ABB3A8CF838157369024BD6B9F515CA8E774B22FE71A11627 ] C:\Windows\System32\ws2_32.dll
11:25:53.0876 0x1240  C:\Windows\System32\ws2_32.dll - ok
11:25:53.0876 0x1240  [ 58788565442368B0615DDAF1D452B843, 4D7A635EB64179A9EF6506189C380CA9710ACE27136D5CA0D25B63575401682B ] C:\Windows\System32\comctl32.dll
11:25:53.0876 0x1240  C:\Windows\System32\comctl32.dll - ok
11:25:53.0876 0x1240  [ CC4ED8BEA78B0DCA6F217E014C3291A7, 01104182E4E6FB3CF6397936D30B2CE3486967586D1B94187B59A8232DAE39FF ] C:\Windows\System32\devobj.dll
11:25:53.0876 0x1240  C:\Windows\System32\devobj.dll - ok
11:25:53.0876 0x1240  [ 6377051C63D5552A311935C67E9FDFDC, 3FB82988AAB66813567E8DB951D4EE87F156201070F005FDBF52EF998A323E65 ] C:\Windows\System32\nsi.dll
11:25:53.0876 0x1240  C:\Windows\System32\nsi.dll - ok
11:25:53.0876 0x1240  [ 2E33DFD10F28F86C3FC40EE123CC3904, 57C65671A04EFCA437A69E8E97B2FCA17897EE4608C7DB69F77D44FBD3490B50 ] C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
11:25:53.0876 0x1240  C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll - ok
11:25:53.0892 0x1240  [ CBB1432687339103EB093C71ACB9DE20, 01BA46418A4C390FC1F906B37B9DF0AE61426EE9B1E30ACBB24AE6C2A1194AB4 ] C:\Windows\System32\KernelBase.dll
11:25:53.0892 0x1240  C:\Windows\System32\KernelBase.dll - ok
11:25:53.0892 0x1240  [ 1C60E09CA1C3A045BC4D367F67C915B7, DF1ED88CB57DA1AB1A4245AE0D5B42AFA3396EBF67B99411FFFB0DD06DE1AEAF ] C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
11:25:53.0892 0x1240  C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll - ok
11:25:53.0892 0x1240  [ 6951562DC4625EEFC6EACD52AD165866, 44A0B3EA0232D613A5B4115492DF2A7CEF25B35300E6A3E3E50C9544C5D1049E ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
11:25:53.0892 0x1240  C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll - ok
11:25:53.0892 0x1240  [ F4AFDB5ABEA0C9079E8193E24D1DB21D, CFF8F44791B0FC19BD2659F58497A021486429DC6390DA985C612109D386B991 ] C:\Windows\System32\crypt32.dll
11:25:53.0892 0x1240  C:\Windows\System32\crypt32.dll - ok
11:25:53.0892 0x1240  [ 6A13B4F3B3F575F1E24B877B9359AABA, 676AD5F8F709D4A9DCE9938D82DEEE329C9A385A6969C169B3DF37AA75F1E4C7 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
11:25:53.0892 0x1240  C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll - ok
11:25:53.0907 0x1240  [ D15618A0FF8DBC2C5BF3726BACC75A0B, ADD81EA1D208907D67802F0E96EC0327BA89021F870BA22B9C7E3A19013A6AE7 ] C:\Windows\System32\userenv.dll
11:25:53.0907 0x1240  C:\Windows\System32\userenv.dll - ok
11:25:53.0907 0x1240  [ 588D52C2D0E60EE71FD5A64407865B10, B7FAED8543095429567F16E3C1C46DDB11758ED711DC8267461B09219481236E ] C:\Windows\System32\wintrust.dll
11:25:53.0907 0x1240  C:\Windows\System32\wintrust.dll - ok
11:25:53.0907 0x1240  [ 589CBC4989F750E1DA35625AB481CF43, B93E1B8C3775F9C995FD5451C685A06DEFD24AE1DF0DD99D19D5E4B9AC0010F9 ] C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
11:25:53.0907 0x1240  C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll - ok
11:25:53.0907 0x1240  [ 3BE0D923AA45A4DBE091C2D84F0B4FE7, 603EEC55D6F646150FC3F0F2C939CFE434C02FC7A7AB23B1FEC8B5C77E4C8381 ] C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
11:25:53.0907 0x1240  C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll - ok
11:25:53.0907 0x1240  [ 3FFAEA12666E565FF51BF2FCA674F543, 95BA8DBDA495C170E075F48627D7DD89C6B29BE0CE0D0D8316B0236692675060 ] C:\Windows\System32\cfgmgr32.dll
11:25:53.0907 0x1240  C:\Windows\System32\cfgmgr32.dll - ok
11:25:53.0923 0x1240  [ 938F39B50BAFE13D6F58C7790682C010, 902000EE51EFEABAF6A4B30F880AA37083D2232C6FC622CA513C4A823390FEDA ] C:\Windows\System32\msasn1.dll
11:25:53.0923 0x1240  C:\Windows\System32\msasn1.dll - ok
11:25:53.0923 0x1240  [ C733D233B623B7FFCE5031E4B756EE26, 33CC8B140B0E4A9B702E3468BE2646AEE4273F20C6EA5BAC6C3D8FC8EDEF0881 ] C:\Windows\System32\profapi.dll
11:25:53.0923 0x1240  C:\Windows\System32\profapi.dll - ok
11:25:53.0923 0x1240  [ 5FCD3320AAE71506B43F9E12E4E72172, 067531833F90241A181EF082D85CFF74336D68DAB0AADE4393C1F35CD662DAAE ] C:\Windows\System32\drivers\dxapi.sys
11:25:53.0923 0x1240  C:\Windows\System32\drivers\dxapi.sys - ok
11:25:53.0923 0x1240  [ 55013E011A58E0E4F41CBC51FF89DD68, 94D83845C3CF2436AFB630832A0866D806C2E3D92DB5E320121AF149C89417A1 ] C:\Windows\System32\win32k.sys
11:25:53.0923 0x1240  C:\Windows\System32\win32k.sys - ok
11:25:53.0923 0x1240  [ 2D80E80C501E4BE7120FADE47001CD92, 3DB2ACB68A84DCEC4D1931875DD9281B772B3B168FF8F629D58B191704A98583 ] C:\Windows\System32\csrsrv.dll
11:25:53.0923 0x1240  C:\Windows\System32\csrsrv.dll - ok
11:25:53.0939 0x1240  [ 342271F6142E7C70805B8A81E1BA5F5C, F9112B88FEC5EF10A7AEDF88DCEE61956D1FCDE7CB42197216E8265578713786 ] C:\Windows\System32\csrss.exe
11:25:53.0939 0x1240  C:\Windows\System32\csrss.exe - ok
11:25:53.0939 0x1240  [ 5E7C5DE85AF978495C3A9A0B720B9811, 142CDEBED78E3BAEE8D2DBF6A97CE26313932024010548EC2E570CAE480AF7C3 ] C:\Windows\System32\basesrv.dll
11:25:53.0939 0x1240  C:\Windows\System32\basesrv.dll - ok
11:25:53.0939 0x1240  [ C2E10DD5F72368909C516B24A02CFF12, 6D3E6ED8C6F8617A671737F913E41A292BEE1FD268458BA479B2213B33365D6C ] C:\Windows\System32\winsrv.dll
11:25:53.0939 0x1240  C:\Windows\System32\winsrv.dll - ok
11:25:53.0939 0x1240  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] C:\Windows\System32\drivers\monitor.sys
11:25:53.0939 0x1240  C:\Windows\System32\drivers\monitor.sys - ok
11:25:53.0939 0x1240  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\System32\sxssrv.dll
11:25:53.0939 0x1240  C:\Windows\System32\sxssrv.dll - ok
11:25:53.0954 0x1240  [ 7C76B61A5E1EF5D1FA554CF134100F18, 2B07C27A2C9A5D939CE9255C67E87B4EF8BFD3B011A592CC0E6994E660483648 ] C:\Windows\System32\tsddd.dll
11:25:53.0954 0x1240  C:\Windows\System32\tsddd.dll - ok
11:25:53.0954 0x1240  [ 5313BDD62EB1AE967A85ED1A78F8C077, 9B74931B739B7E0BBC73D9A14D879B71B03B94D7D4C91C172E7371D702CBAB67 ] C:\Windows\System32\KBDGR.DLL
11:25:53.0954 0x1240  C:\Windows\System32\KBDGR.DLL - ok
11:25:53.0954 0x1240  [ 5997D769CDB108390DCFAEBF442BF816, 0E25CA984C0EEB629184423FAA9BC6D4356DF9A93F281E06DC83B4AC638AEC4A ] C:\Windows\System32\RpcRtRemote.dll
11:25:53.0954 0x1240  C:\Windows\System32\RpcRtRemote.dll - ok
11:25:53.0954 0x1240  [ B5C5DCAD3899512020D135600129D665, F6B4D18FA0D3C4958711AC0D476C21A6FDF2897F989A0AD290B43F463DD8B5B0 ] C:\Windows\System32\wininit.exe
11:25:53.0954 0x1240  C:\Windows\System32\wininit.exe - ok
11:25:53.0954 0x1240  [ 357B990A4249D7F7485B230C0CC8825A, FE15918D883B0861D6BBA0E6AC77ABD8FE42C8F76869768BE4FD1F2A5027BD7A ] C:\Windows\System32\KBDUS.DLL
11:25:53.0954 0x1240  C:\Windows\System32\KBDUS.DLL - ok
11:25:53.0970 0x1240  [ 5860EE5C807CB3866551B845123493C6, E8EBD2A2AF76ABD8091A21CDF2650EB9239E1B41E73F656C8C13E5B2CF3CABE5 ] C:\Windows\System32\cdd.dll
11:25:53.0970 0x1240  C:\Windows\System32\cdd.dll - ok
11:25:53.0970 0x1240  [ 919001D2BB17DF06CA3F8AC16AD039F6, 5169ACFBE9E9D4C4012773ECDD28231C952675EF0C272A40F226E7B5D671B18B ] C:\Windows\System32\sxs.dll
11:25:53.0970 0x1240  C:\Windows\System32\sxs.dll - ok
11:25:53.0970 0x1240  [ 633C2C060CF857099F6C4F8D75C952B1, 95E14B5212301900BC9DDB6B42735B114D364188E9B312C786511258106398C8 ] C:\Windows\System32\WlS0WndH.dll
11:25:53.0970 0x1240  C:\Windows\System32\WlS0WndH.dll - ok
11:25:53.0970 0x1240  [ 5D7A25E110E666040C37E16DF634A723, 5F2D5BBBEBB7F249CCA6E6C7869A0640D8E171A9FF21F2E86D8602618AC6852C ] C:\Windows\System32\cryptbase.dll
11:25:53.0970 0x1240  C:\Windows\System32\cryptbase.dll - ok
11:25:53.0970 0x1240  [ D5AFC3A476925CE740B7079D9BD2D269, 201313175BEA013DE47B00F9F563614641959FCAD937FB873B587B7F8C87166C ] C:\Windows\System32\apphelp.dll
11:25:53.0970 0x1240  C:\Windows\System32\apphelp.dll - ok
11:25:53.0970 0x1240  [ 0780A42DBD7D9969F9BF4A19AA4285B5, 8EA41124A4E97732C5DAA616457FBA7111CB38986F3427FA776ED00BC1407171 ] C:\Windows\System32\services.exe
11:25:53.0970 0x1240  C:\Windows\System32\services.exe - ok
11:25:53.0985 0x1240  [ 67A49E0BA4E7BEB62CB9EF073D923C85, 91DF097D552399FA14873FEEEB0B55C6594A9DC1D4084F45425B1AB9833B9C32 ] C:\Windows\System32\lsass.exe
11:25:53.0985 0x1240  C:\Windows\System32\lsass.exe - ok
11:25:53.0985 0x1240  [ 8AEA9A37C1A3565A204D37C5E72AB791, 939903F93FF37525A6C4B5CBA29CDEEE6D6055C42D605E80AE787F2A76F9870E ] C:\Windows\System32\lsm.exe
11:25:53.0985 0x1240  C:\Windows\System32\lsm.exe - ok
11:25:53.0985 0x1240  [ 3369D021265E369D57317D61FA86DD79, 25A3BE3619324578C5B7CCB4585D89131DC60A969D35F9573FF20CCD67809BA3 ] C:\Windows\System32\scext.dll
11:25:53.0985 0x1240  C:\Windows\System32\scext.dll - ok
11:25:53.0985 0x1240  [ 29FE8C8BB2C241B9754D59037FCF5775, 22E8D3EB791F0566A616EC189ED2C616A3369A51E7FE88D53BA69F4563C269D8 ] C:\Windows\System32\sspicli.dll
11:25:53.0985 0x1240  C:\Windows\System32\sspicli.dll - ok
11:25:53.0985 0x1240  [ CE84B59705A2A8F55EAE912EC2217B95, 87C4C4B89F6B95A6E10C72927A163C1211F34D7C482DBD3B9D9CB14D32F9AE10 ] C:\Windows\System32\sspisrv.dll
11:25:53.0985 0x1240  C:\Windows\System32\sspisrv.dll - ok
11:25:54.0001 0x1240  [ 1260B977B3855E5CE51E789B2FE81305, 3704F87EB377092A35F08693D07DC0D15D4D675FFAAEABBC7AC52227BB793C7B ] C:\Windows\System32\lsasrv.dll
11:25:54.0001 0x1240  C:\Windows\System32\lsasrv.dll - ok
11:25:54.0001 0x1240  [ B3BC38B886CA53C92D52EF724A9F0D45, FDA8F38557279A27DDECCC741C6760EBE8054C9D51AC6D17D362122882D062F3 ] C:\Windows\System32\scesrv.dll
11:25:54.0001 0x1240  C:\Windows\System32\scesrv.dll - ok
11:25:54.0001 0x1240  [ B3AE2AB29B51BC44511262259499D18B, 75CB81F63C5C667DD45900A9DB98857E6B31A1BFDD86D4D87A12F198566A416C ] C:\Windows\System32\secur32.dll
11:25:54.0001 0x1240  C:\Windows\System32\secur32.dll - ok
11:25:54.0001 0x1240  [ BA51FFE170C5B3AE8EC4F5BD2581A29E, CF734875C91B6C547A5F0BA68FB10ECDFD5FF24166A0D69309C27DC712C22F4B ] C:\Windows\System32\sysntfy.dll
11:25:54.0001 0x1240  C:\Windows\System32\sysntfy.dll - ok
11:25:54.0001 0x1240  [ D412B1B72C5AB020218E9A047D90CA05, A9CF8134DB968D259DF4DCC736159841BCB8DF309BEED4FB44F99033B8D31B39 ] C:\Windows\System32\wmsgapi.dll
11:25:54.0001 0x1240  C:\Windows\System32\wmsgapi.dll - ok
11:25:54.0017 0x1240  [ 5CCDCD40E732D54E0F7451AC66AC1C87, 66F4DA105BD72E41250CD59E2B3CD931B47AC9FDB6C784B9E33C5EE1AC29841F ] C:\Windows\System32\srvcli.dll
11:25:54.0017 0x1240  C:\Windows\System32\srvcli.dll - ok
11:25:54.0017 0x1240  [ 245F4691314F42D4D1BC06442F0B2086, 281DD81E06547BEB0DDB1FBB68B149961F1DEE268C9E9648DE662900ECB40FE0 ] C:\Windows\System32\samsrv.dll
11:25:54.0017 0x1240  C:\Windows\System32\samsrv.dll - ok
11:25:54.0017 0x1240  [ 1128637CAD49A8E3C8B5FA5D0A061525, 6B80E50D8296F9E2C978CC6BC002B964ACFD8F4BCF623F4770513792845B5278 ] C:\Windows\System32\cryptdll.dll
11:25:54.0017 0x1240  C:\Windows\System32\cryptdll.dll - ok
11:25:54.0017 0x1240  [ 82C089EA2A3EEFADF3588EA71E8BDADA, 2F3BB32EE2C0673058A74DEEB2D405E5E79F833F33C4D289A93EB3C618A86E75 ] C:\Windows\System32\wevtapi.dll
11:25:54.0017 0x1240  C:\Windows\System32\wevtapi.dll - ok
11:25:54.0017 0x1240  [ FB4EB9352B7D698E6B3C2AA2ED724DAD, 534AB280ACD29E88FD1BD8838E1231D9364E649C917547A838F51EC8AB941EE2 ] C:\Windows\System32\authz.dll
11:25:54.0017 0x1240  C:\Windows\System32\authz.dll - ok
11:25:54.0017 0x1240  [ 50BA656134F78AF64E4DD3C8B6FEFD7E, F7AB96E0C9658B0444FD473E87165199FA90AE5CE434B40FBA1DB324925DF886 ] C:\Windows\System32\cngaudit.dll
11:25:54.0017 0x1240  C:\Windows\System32\cngaudit.dll - ok
11:25:54.0032 0x1240  [ FC7650224790CAE75A5E9231961FDEC5, D634FC1F43AAC41D8B440BD4C1E7576886CDE683EDE4CAF06C43163B5E176CBB ] C:\Windows\System32\bcrypt.dll
11:25:54.0032 0x1240  C:\Windows\System32\bcrypt.dll - ok
11:25:54.0032 0x1240  [ C90878913DF3DC504790282043DB5F4C, 5DC30020A523B5B219A219D74208A1249A43510D70723985817A021249D97036 ] C:\Windows\System32\msprivs.dll
11:25:54.0032 0x1240  C:\Windows\System32\msprivs.dll - ok
11:25:54.0032 0x1240  [ 5107D0FCD28BC68995D862B718C98CDD, B323563736F8354BB96618CE151962F827DC5E08895914075E151EA6EFB625D1 ] C:\Windows\System32\ncrypt.dll
11:25:54.0032 0x1240  C:\Windows\System32\ncrypt.dll - ok
11:25:54.0032 0x1240  [ E343CABBD8D600ABAF3F11625D33B3D0, AA73D0F205749C291BF5EF179BDF3BF30977E36C87F4FF5361942EE024E848F9 ] C:\Windows\System32\netjoin.dll
11:25:54.0032 0x1240  C:\Windows\System32\netjoin.dll - ok
11:25:54.0032 0x1240  [ F5071D3802BC7A7AA65D58D57F9B7D70, 1CE47E7FA06D4DC9B3976F58C0CA27D3829924030ED7541E5BCD67539EA5E627 ] C:\Windows\System32\kerberos.dll
11:25:54.0032 0x1240  C:\Windows\System32\kerberos.dll - ok
11:25:54.0048 0x1240  [ 6DCFAEC6D1334AA6CDF8961DB4633CBF, DA7A26935691379DA0DBA829DEDE82401BCA7D35E28BFBFE3F9CE38AFF344737 ] C:\Windows\System32\negoexts.dll
11:25:54.0048 0x1240  C:\Windows\System32\negoexts.dll - ok
11:25:54.0048 0x1240  [ B54FD1991E659FD61EF1D34EC27AAECD, 4BB2F43322093F02B2FBCC4B2456437356555DA48DC6DA67FC55A1B457D32149 ] C:\Windows\System32\cryptsp.dll
11:25:54.0048 0x1240  C:\Windows\System32\cryptsp.dll - ok
11:25:54.0048 0x1240  [ E94C583CDE2348950155F2AF2876F34D, D00C7E0D665E467B712C68A446CC5BE14FDA743A2301878B3CEB72CDD0A8B8E7 ] C:\Windows\System32\mswsock.dll
11:25:54.0048 0x1240  C:\Windows\System32\mswsock.dll - ok
11:25:54.0048 0x1240  [ B994002C9AC277B400D8616AAEB3D83E, 9559E7890126115454813C63E2D6C1D447B481548010BA0B6E453A9ABEF48559 ] C:\Windows\System32\msv1_0.dll
11:25:54.0048 0x1240  C:\Windows\System32\msv1_0.dll - ok
11:25:54.0048 0x1240  [ C1809B9907ADEDAF16F50C894100883B, 464CF897CB376DCDC9A584A2A470B5B82D99C595DC55930778B162E605CDFBA8 ] C:\Windows\System32\netlogon.dll
11:25:54.0048 0x1240  C:\Windows\System32\netlogon.dll - ok
11:25:54.0063 0x1240  [ 73E8667A19FEEDD856DF2695E9E511D4, 68D66C36D1F293D10ADCC6A33C870F989A29743537592CF172F02E794BEAFD1C ] C:\Windows\System32\wship6.dll
11:25:54.0063 0x1240  C:\Windows\System32\wship6.dll - ok
11:25:54.0063 0x1240  [ E85BED746BBDDCD29AD63F6085E1CE78, EDBBE3583F4134872064FF9663C896FE6C8F3DD01422B6D23B7E459940F04003 ] C:\Windows\System32\atmfd.dll
11:25:54.0063 0x1240  C:\Windows\System32\atmfd.dll - ok
11:25:54.0063 0x1240  [ B40420876B9288E0A1C8CCA8A84E5DC9, 0D3C73B45BC708D7B1E26DFB6D4F64031A998548FEA0FB5CE198ED716F7DC9A0 ] C:\Windows\System32\dnsapi.dll
11:25:54.0063 0x1240  C:\Windows\System32\dnsapi.dll - ok
11:25:54.0063 0x1240  [ 8EA53101FF2B15BDFF934B62A8FB326D, E28536A4AC6764C2480EF047AF2312AE2600819899C3E33B486CFE19F25AC464 ] C:\Windows\System32\logoncli.dll
11:25:54.0063 0x1240  C:\Windows\System32\logoncli.dll - ok
11:25:54.0063 0x1240  [ 1827E4CAD59C32A1E913AAC375AC094F, 112FFC7506FEE2ABA83F951A881CE949DF5C05D2E89101D56AD1215C145196CE ] C:\Windows\System32\schannel.dll
11:25:54.0063 0x1240  C:\Windows\System32\schannel.dll - ok
11:25:54.0079 0x1240  [ 21404A9B0692E19E04EE714F5D5C6C48, 3728B28E0A628836B815A7F33E67A12F16E276C5EF1331B65687A6D3F0DB3E0B ] C:\Windows\System32\wdigest.dll
11:25:54.0079 0x1240  C:\Windows\System32\wdigest.dll - ok
11:25:54.0079 0x1240  [ 52449FD429D6053B78AE564DEF303870, 473E42C5B48493C84CF1B22D054AD1C788FCE3603E439ABC77A3B37DACFF9F1C ] C:\Windows\System32\winlogon.exe
11:25:54.0079 0x1240  C:\Windows\System32\winlogon.exe - ok
11:25:54.0079 0x1240  [ ED8EC63F7522DF4852147C84EC62C36A, 75633011CD28DCBD4834211A9D415F17DE15BFCD80FB9FF6CE25CBBD4E9899AF ] C:\Windows\System32\rsaenh.dll
11:25:54.0079 0x1240  C:\Windows\System32\rsaenh.dll - ok
11:25:54.0079 0x1240  [ 009045301F508A498F11EAD9D0FAA3FD, 3622480857F7F576F65C711B2160F448C3223045B048ACB825B58D4E95C22287 ] C:\Windows\System32\TSpkg.dll
11:25:54.0079 0x1240  C:\Windows\System32\TSpkg.dll - ok
11:25:54.0079 0x1240  [ FD67683FBA9B2C4BB551780BD8846F64, 4BB7C956EA8D2CE63F5BF80FAE652F98416A7635202AEE04FC8D81000E6363DF ] C:\Windows\System32\winsta.dll
11:25:54.0079 0x1240  C:\Windows\System32\winsta.dll - ok
11:25:54.0079 0x1240  [ 63F52FF6FCA2C492F4FB7EE545319FA8, 54BA429753C27B15F313FEBA952AC5B2DEAAC548E31C4BB4F62796CC38B4F6DC ] C:\Windows\System32\bcryptprimitives.dll
11:25:54.0079 0x1240  C:\Windows\System32\bcryptprimitives.dll - ok
11:25:54.0095 0x1240  [ 98B3C919C6B9C5F810FF2CAFA339822B, 3F9F0AFD05D82E6CEE70A6E888B0203B94BCF926BC7AC59FA5079BF94E36F6E8 ] C:\Windows\System32\pku2u.dll
11:25:54.0095 0x1240  C:\Windows\System32\pku2u.dll - ok
11:25:54.0095 0x1240  [ C9E5B2084321B113344015FEE3C89CCF, 5DCE79443C0D4AF5B0C5A8F69FF2A2812ED95BBDF5D1CF7AE8B7D6CBEAACAE98 ] C:\Windows\System32\credssp.dll
11:25:54.0095 0x1240  C:\Windows\System32\credssp.dll - ok
11:25:54.0095 0x1240  [ 91F434FF6606ED9BDC6A05D651B69553, F2CF43DDDE2241E8A25F710A516371E0C56D99195022D9715A98379C753929B3 ] C:\Windows\System32\efslsaext.dll
11:25:54.0095 0x1240  C:\Windows\System32\efslsaext.dll - ok
11:25:54.0095 0x1240  [ 8124944EC89D6A1815E4E53F5B96AAF4, A6766BD0F62A381C9899F66E5C32731BD91600363F4CFBE560BC8AA2B111C790 ] C:\Windows\System32\scecli.dll
11:25:54.0095 0x1240  C:\Windows\System32\scecli.dll - ok
11:25:54.0095 0x1240  [ B804EAA9E037580F96C22537C2ECB62A, 325A94B7C916965D5B9C7EFB5DB78988E8E6D53D270593C95B8E88D242D81E21 ] C:\Windows\System32\ubpm.dll
11:25:54.0095 0x1240  C:\Windows\System32\ubpm.dll - ok
11:25:54.0110 0x1240  [ 54A47F6B5E09A77E61649109C6A08866, 121118A0F5E0E8C933EFD28C9901E54E42792619A8A3A6D11E1F0025A7324BC2 ] C:\Windows\System32\svchost.exe
11:25:54.0110 0x1240  C:\Windows\System32\svchost.exe - ok
11:25:54.0110 0x1240  [ FD07F21E0A19C27ED4E1EEC2B07452B3, DF54C00B021AF64BB04EDEBCA6F41CCF48F1959DD53ADE545FAFC565F1243392 ] C:\Windows\System32\devrtl.dll
11:25:54.0110 0x1240  C:\Windows\System32\devrtl.dll - ok
11:25:54.0110 0x1240  [ 4BDBBE5E4208022DD794F7EEEB0F7366, 4F69BA2EDABFA63A300B9F1880349EFAE185B899DD5C561E7B3BA6AAA4B22D6A ] C:\Windows\System32\SPInf.dll
11:25:54.0110 0x1240  C:\Windows\System32\SPInf.dll - ok
11:25:54.0110 0x1240  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] C:\Windows\System32\umpnpmgr.dll
11:25:54.0110 0x1240  C:\Windows\System32\umpnpmgr.dll - ok
11:25:54.0110 0x1240  [ 1097F3035BAF46CED8B332B3564C5108, C69781683CA963A1335780DABBBC60E2C3CEF0888738D3425D358D12E8D0AF58 ] C:\Windows\System32\gpapi.dll
11:25:54.0110 0x1240  C:\Windows\System32\gpapi.dll - ok
11:25:54.0126 0x1240  [ 5893EBDCE371174AC89ECD7731DD6D77, 31CC55F4724CFD95E48954B38C0A04D674399FD243083A816893ED5E5A770086 ] C:\Windows\System32\pcwum.dll
11:25:54.0126 0x1240  C:\Windows\System32\pcwum.dll - ok
11:25:54.0126 0x1240  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] C:\Windows\System32\umpo.dll
11:25:54.0126 0x1240  C:\Windows\System32\umpo.dll - ok
11:25:54.0126 0x1240  [ 08DFDBD2FD4EA951DC46B1C7661ED35A, D926530C659DDAF80770663F46F1EFD94FFB4AAB475C4E3367CB531AF4A734E1 ] C:\Windows\System32\powrprof.dll
11:25:54.0126 0x1240  C:\Windows\System32\powrprof.dll - ok
11:25:54.0126 0x1240  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] C:\Windows\System32\drivers\luafv.sys
11:25:54.0126 0x1240  C:\Windows\System32\drivers\luafv.sys - ok
11:25:54.0126 0x1240  [ F5490A21667707267A18EC78DB98C05D, F0B8BD863D805F6BC10AFDFC6D77BD44FD762F47D2B33512A2F9FCCE55AC1469 ] C:\Windows\System32\drivers\virtual_file.sys
11:25:54.0126 0x1240  C:\Windows\System32\drivers\virtual_file.sys - ok
11:25:54.0126 0x1240  [ 439FD6A5A34113388C51C48D0E5092AA, 4C25AB4788AEFDEDBD4B9DD351AE6AA0AC816633F81FF5EBEA9067497E39D843 ] C:\Windows\System32\nvvsvc.exe
11:25:54.0126 0x1240  C:\Windows\System32\nvvsvc.exe - ok
11:25:54.0141 0x1240  [ 81F177C1954453AF407604160BD149CB, D6B05F7E399690233C71C1E4B88F95D566BC6A14D145715A8A8C0FFD591147F0 ] C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
11:25:54.0141 0x1240  C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe - ok
11:25:54.0141 0x1240  [ 6A6B2EE4565A178035BE2A4FF6F2C968, E2E231F1C2E2CE19583483ACC53318651FA7CA2DE46BCB89B4CBF97CA0525122 ] C:\Windows\System32\wtsapi32.dll
11:25:54.0141 0x1240  C:\Windows\System32\wtsapi32.dll - ok
11:25:54.0141 0x1240  [ 702254574E7E52052DE39408457B7149, 645CA9E88DA21C63710A04A0F54421018DF415A3D612112C71A255C49325C082 ] C:\Windows\System32\version.dll
11:25:54.0141 0x1240  C:\Windows\System32\version.dll - ok
11:25:54.0141 0x1240  [ 9E4B0E7472B4CEBA9E17F440B8CB0AB8, B1A9B2EF000917214C0198958CBD239D1D91B1720EC40DF041262A34D302AD74 ] C:\Windows\System32\winspool.drv
11:25:54.0141 0x1240  C:\Windows\System32\winspool.drv - ok
11:25:54.0141 0x1240  [ F8100F4EB68509A4C273EAEA2F496E87, F40FB91D2A0B581CBB6FC383C51E916825E31828C52DE5D77D82F3EEE3D728EB ] C:\Program Files\NVIDIA Corporation\3D Vision\nvstres.dll
11:25:54.0141 0x1240  C:\Program Files\NVIDIA Corporation\3D Vision\nvstres.dll - ok
11:25:54.0157 0x1240  [ 196B8C78D423A3277C6D08FF74FE2FC2, 5BA06EBF25DBF51B8446BE2E45D3D7DC41BE572A3D380AF1BF8CBBF816719734 ] C:\Program Files\NVIDIA Corporation\3D Vision\nvwl.dll
11:25:54.0157 0x1240  C:\Program Files\NVIDIA Corporation\3D Vision\nvwl.dll - ok
11:25:54.0157 0x1240  [ 3FD15B4611D9BDA3F8013548C0ECAECA, B47A8D9985D9B71EB870816A0AB2B6403D394CCBDF7DE5378D5721D58D68D28D ] C:\Windows\System32\ntmarta.dll
11:25:54.0157 0x1240  C:\Windows\System32\ntmarta.dll - ok
11:25:54.0157 0x1240  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] C:\Windows\System32\rpcss.dll
11:25:54.0157 0x1240  C:\Windows\System32\rpcss.dll - ok
11:25:54.0157 0x1240  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] C:\Windows\System32\RpcEpMap.dll
11:25:54.0157 0x1240  C:\Windows\System32\RpcEpMap.dll - ok
11:25:54.0157 0x1240  [ 81F08948A0F1475894C99D4D19A158A8, 93334DA369BF976E498265E432CAF63D898D378C6B32947DF355366ABE2A0FAC ] C:\Windows\System32\wshqos.dll
11:25:54.0157 0x1240  C:\Windows\System32\wshqos.dll - ok
11:25:54.0173 0x1240  [ EE5C8E27C37B79CB54A2FCEEED2DC262, 0A5E200FD65A491756B951A4A0ED39B88B7B313E97C2BBF3C91AC4C290772BB7 ] C:\Windows\System32\WSHTCPIP.DLL
11:25:54.0173 0x1240  C:\Windows\System32\WSHTCPIP.DLL - ok
11:25:54.0173 0x1240  [ 3F50200237961034FACE602373838980, F97D72CC75D921CF8F8E0544614407358AEFF97A8F48E4A89F82689EE8F2FC86 ] C:\Windows\System32\FirewallAPI.dll
11:25:54.0173 0x1240  C:\Windows\System32\FirewallAPI.dll - ok
11:25:54.0173 0x1240  [ 1A999A98FDF572185789255D0C763495, DAAC9DA098D2CE895FFD0D86F4BE263E3A31C9704704AEC15096EA90F4126F64 ] C:\Windows\System32\authuitu.dll
11:25:54.0173 0x1240  C:\Windows\System32\authuitu.dll - ok
11:25:54.0173 0x1240  [ 3EF0D8AB08385AAB5802E773511A2E6A, 1A7EE4BC646767004372EAEA9BC0A2071790E739101F7D25ECD9C95D3F29AFD6 ] C:\Windows\System32\LogonUI.exe
11:25:54.0173 0x1240  C:\Windows\System32\LogonUI.exe - ok
11:25:54.0173 0x1240  [ 53223B673A3FA2F9A4D1C31C8D3F6CD8, B07A12E3ECD5E418A3F99F00C56E7F482F68CADE330E7C079DCCDFFAD2E21299 ] C:\Windows\System32\dbghelp.dll
11:25:54.0173 0x1240  C:\Windows\System32\dbghelp.dll - ok
11:25:54.0188 0x1240  [ 241E015DD809CFB23242F890B1FC575B, 763381DCBACF06FD8D043B14D383B6F4D5295B8E665796C59603F15F3E3E36FC ] C:\Windows\System32\wevtsvc.dll
11:25:54.0188 0x1240  C:\Windows\System32\wevtsvc.dll - ok
11:25:54.0188 0x1240  [ 672CCD96BAB00F869D4F46A148FCCBAE, F30D74830ADDA12407BDE249BBCB8FD05345B05C7EBF09E23985D1F11E20C4BF ] C:\Windows\System32\authui.dll
11:25:54.0188 0x1240  C:\Windows\System32\authui.dll - ok
11:25:54.0188 0x1240  [ 139D3AB6AA920C34C50CBFFB9EB7D222, 5A5D205E16E6AFDCC965E4144FE6E104157DE7541D31727520363F2670513940 ] C:\Windows\System32\avrt.dll
11:25:54.0188 0x1240  C:\Windows\System32\avrt.dll - ok
11:25:54.0188 0x1240  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] C:\Windows\System32\mmcss.dll
11:25:54.0188 0x1240  C:\Windows\System32\mmcss.dll - ok
11:25:54.0188 0x1240  [ C1619A13B10CAC5038BF7129F57D8DE3, 9F71EA6C844650658938E68CCC1383F92D37C68E46E08461A8351491185BA791 ] C:\Windows\System32\audiosrv.dll
11:25:54.0188 0x1240  C:\Windows\System32\audiosrv.dll - ok
11:25:54.0204 0x1240  [ 243974EC02F7AE49E4179C54624143AB, 755FA67F7BF10E3C6336788D297FBAA70F28F630852A43A78D3F7D7E3A7ECED0 ] C:\Windows\System32\MMDevAPI.dll
11:25:54.0204 0x1240  C:\Windows\System32\MMDevAPI.dll - ok
11:25:54.0204 0x1240  [ 12C45E3CB6D65F73209549E2D02ECA7A, 9DFD9C58B90257C34D52B7156C1D2566BE32EE7BD4699DDE164A5F190EC4D44A ] C:\Windows\System32\propsys.dll
11:25:54.0204 0x1240  C:\Windows\System32\propsys.dll - ok
11:25:54.0204 0x1240  [ 23D3F12CA9DEB6EF02DEDC621EC661AC, AA3718715ADFE1666757BCD79D5A8DC591C2C5185802F51A27C119C4C30F360A ] C:\Windows\System32\FntCache.dll
11:25:54.0204 0x1240  C:\Windows\System32\FntCache.dll - ok
11:25:54.0204 0x1240  [ CFE8B425822E478B530A590896ECF091, 06FA18781C74EE675873E206CFC723CFFE5B499009C46928F9954A1D2638BD66 ] C:\Windows\System32\audiodg.exe
11:25:54.0204 0x1240  C:\Windows\System32\audiodg.exe - ok
11:25:54.0204 0x1240  [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] C:\Windows\System32\profsvc.dll
11:25:54.0204 0x1240  C:\Windows\System32\profsvc.dll - ok
11:25:54.0219 0x1240  [ F10E5311E5093FA3C00FF88C54C32FCA, B557F5B00D77F030850D9AAC0FFEFC4C2A759EC4081C8459C9DEAE51BAAACC65 ] C:\Windows\System32\atl.dll
11:25:54.0219 0x1240  C:\Windows\System32\atl.dll - ok
11:25:54.0219 0x1240  [ B7D2BB84C590F0AE9DA51DBB065A780E, 02C10FC003D824878F41EC9223C215BC69B65CF6D2BFE16343942CABFA26F128 ] C:\Windows\System32\cryptui.dll
11:25:54.0219 0x1240  C:\Windows\System32\cryptui.dll - ok
11:25:54.0219 0x1240  [ 885E18B2D0A445FB637850282530EB72, 005BE9EC30390E88C429622EEEE4E2D2840CC3C75992C4A7F0E8A69756B0A2FD ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
11:25:54.0219 0x1240  C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll - ok
11:25:54.0219 0x1240  [ C30A3E5DEEEBA22E782AC54C5AF5F352, 80939A7B5354032256706C6CA0C3CCC7E67CD1C1C81EAEA2CBC74997C0863662 ] C:\Windows\System32\samlib.dll
11:25:54.0219 0x1240  C:\Windows\System32\samlib.dll - ok
11:25:54.0219 0x1240  [ F14A9B1778376D0B1788E402AC1F831A, 6110F29669E03F8163B5CD7124BE0FF329F36C18529FA3B8FF70FC00B2D8AA02 ] C:\Windows\System32\shacct.dll
11:25:54.0219 0x1240  C:\Windows\System32\shacct.dll - ok
11:25:54.0219 0x1240  [ 63BFDF555DA2075A77D677829C3CCCD0, 13B0C0576A0158FBEE6C216136F8C66373C8E6592895D3D824EC67147B9190E9 ] C:\Windows\System32\uxtheme.dll
11:25:54.0219 0x1240  C:\Windows\System32\uxtheme.dll - ok
11:25:54.0235 0x1240  [ C9EAC86D36CC2E9576F1BDD29350D64A, 60D545E591F238CDB2A85CB16277FBBF33FCFB0DCEDE628CAE28162B631E8B40 ] C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\GdiPlus.dll
11:25:54.0235 0x1240  C:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.19061_none_72d6d48d86649709\GdiPlus.dll - ok
11:25:54.0235 0x1240  [ EE06B85BC69F18826302348A2AD089E0, 417205797CC9F6C986A863A61179784D9ADCAF1961EF8A4D9042D73C5A86509A ] C:\Windows\System32\dui70.dll
11:25:54.0235 0x1240  C:\Windows\System32\dui70.dll - ok
11:25:54.0235 0x1240  [ 6E1F8165C365D35C8E3C045AF0CDD481, B861360D0A014265A0BEB4CC2FE31EA05AE95120E8B07820C13A044D64C00E2B ] C:\Windows\System32\duser.dll
11:25:54.0235 0x1240  C:\Windows\System32\duser.dll - ok
11:25:54.0235 0x1240  [ 63DF770DF74ACB370EF5A16727069AAF, B8F96336BF87F1153C245D19606CBD10FBE7CF2795BCC762F2A1B57CB7C39116 ] C:\Windows\System32\hid.dll
11:25:54.0235 0x1240  C:\Windows\System32\hid.dll - ok
11:25:54.0235 0x1240  [ 2CFA4569350B7F84F815E9EC34E85766, 8DE5F880F23435256E697C24BDDFA9B8994ACC3FAA063AF274BEC918FE012788 ] C:\Windows\System32\SndVolSSO.dll
11:25:54.0235 0x1240  C:\Windows\System32\SndVolSSO.dll - ok
11:25:54.0251 0x1240  [ 52213D271F6804AAA44F57AEFD2B778A, 3409EA885C9C332A997C81B3CA60352AEEA30950304CDD128F29043D2CF7D194 ] C:\Windows\System32\dwmapi.dll
11:25:54.0251 0x1240  C:\Windows\System32\dwmapi.dll - ok
11:25:54.0251 0x1240  [ EDF2A5E96BEC469DA3F64E9BDD386111, 63C91BBDFA2E087293B010A4E45625FBD1BFCAF655BFADE2F8B1C36CF804B118 ] C:\Windows\System32\xmllite.dll
11:25:54.0251 0x1240  C:\Windows\System32\xmllite.dll - ok
11:25:54.0251 0x1240  [ 5F3628DCF926C4499BE1DC74431DFBC8, 66AC303AA71A703B844055CFAE66EB06A8E2BED7A1388C95C7A8263D23EAE25C ] C:\Windows\System32\WindowsCodecs.dll
11:25:54.0251 0x1240  C:\Windows\System32\WindowsCodecs.dll - ok
11:25:54.0251 0x1240  [ 326C7F76A29897A892AA7726E91C1C67, 64305346B06EC14976130B0B80F14B4D5AB63E5B2A6A7B872EC9CE2BF8FADCD2 ] C:\Windows\System32\winbrand.dll
11:25:54.0251 0x1240  C:\Windows\System32\winbrand.dll - ok
11:25:54.0251 0x1240  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] C:\Windows\System32\netprofm.dll
11:25:54.0251 0x1240  C:\Windows\System32\netprofm.dll - ok
11:25:54.0266 0x1240  [ D205C24A9D069049FE2DF2A1B38726A7, B98F420B57A34FDA24F9A655319245EEF86EF4A952014FFA018070A01D5CBC4C ] C:\Windows\System32\wdmaud.drv
11:25:54.0266 0x1240  C:\Windows\System32\wdmaud.drv - ok
11:25:54.0266 0x1240  [ D5AEFAD57C08349A4393D987DF7C715D, C36A45BC2448DF30CD17BD2F8A17FC196FAFB685612CACCEB22DC7B58515C201 ] C:\Windows\System32\winmm.dll
11:25:54.0266 0x1240  C:\Windows\System32\winmm.dll - ok
11:25:54.0266 0x1240  [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] C:\Windows\System32\cscsvc.dll
11:25:54.0266 0x1240  C:\Windows\System32\cscsvc.dll - ok
11:25:54.0266 0x1240  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] C:\Windows\System32\gpsvc.dll
11:25:54.0266 0x1240  C:\Windows\System32\gpsvc.dll - ok
11:25:54.0266 0x1240  [ 50E0DD0A5B8D8BC353578F2F73926697, 9A453F60FC0149417105BB5B4CB910D614A3D832D98313A58D0EA36BABED4460 ] C:\Windows\System32\nlaapi.dll
11:25:54.0266 0x1240  C:\Windows\System32\nlaapi.dll - ok
11:25:54.0282 0x1240  [ A4C85F362EBB7815676F1CD9CFC5BA59, 674AC330BC341DBCBEA6860AEC137406586F7A1594AF165D8DDAF06F96FE1C2E ] C:\Windows\System32\ksuser.dll
11:25:54.0282 0x1240  C:\Windows\System32\ksuser.dll - ok
11:25:54.0282 0x1240  [ 772F44012DBE49DE894976AE2259A659, 34C7E200D075087A4084EF8947D5FC5A2511CC02A8A34AF8CFEEB5691364E522 ] C:\Windows\System32\PeerDist.dll
11:25:54.0282 0x1240  C:\Windows\System32\PeerDist.dll - ok
11:25:54.0282 0x1240  [ 2F040CF0613A6D64DCBBA9EE81F5A5AE, DA16117429AF47230CD7C136407C81951B8D2E45A8B7A9DC6948407AA2EC4ADD ] C:\Windows\System32\dsrole.dll
11:25:54.0282 0x1240  C:\Windows\System32\dsrole.dll - ok
11:25:54.0282 0x1240  [ 8B74CEC6980D4816B0037AE9A27E538F, 8721EDB4C51BF6020002FA5DDB1987C68590F9F433A2F18D9756B2DAC7542CB6 ] C:\Windows\System32\slc.dll
11:25:54.0282 0x1240  C:\Windows\System32\slc.dll - ok
11:25:54.0282 0x1240  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] C:\Windows\System32\themeservice.dll
11:25:54.0282 0x1240  C:\Windows\System32\themeservice.dll - ok
11:25:54.0282 0x1240  [ E359F267B94C708B3512B34E71699D63, D15E6FA45C86C8165C1531CDF1F7A2C78E8B3F5A89F02E99CFDF69AC2500A9FB ] C:\Windows\System32\uxtuneup.dll
11:25:54.0282 0x1240  C:\Windows\System32\uxtuneup.dll - ok
11:25:54.0297 0x1240  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] C:\Windows\System32\es.dll
11:25:54.0297 0x1240  C:\Windows\System32\es.dll - ok
11:25:54.0297 0x1240  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] C:\Windows\System32\Sens.dll
11:25:54.0297 0x1240  C:\Windows\System32\Sens.dll - ok
11:25:54.0297 0x1240  [ 544EFF88AC6C85DF5A4D6F18DFE08CFC, D688381F42062FD5D868E7770857C5951C41BA20A1B6E6F60B5D9536C02CD293 ] C:\Windows\System32\taskschd.dll
11:25:54.0297 0x1240  C:\Windows\System32\taskschd.dll - ok
11:25:54.0297 0x1240  [ C5A99A4C0DC9F0F5A95BA0C83D30A549, F99CCCE303F0FC07D82D3BBA223E8CCE41FB7FA8FB5C2A9214C161826537C7C9 ] C:\Windows\System32\mstask.dll
11:25:54.0297 0x1240  C:\Windows\System32\mstask.dll - ok
11:25:54.0297 0x1240  [ 50B8937A81360D16A5C772302BD32CFE, F38E9FE868D769CA59E899F0ADAE4112396CD06AB44F13306CD175670859A4C3 ] C:\Windows\System32\AudioSes.dll
11:25:54.0297 0x1240  C:\Windows\System32\AudioSes.dll - ok
11:25:54.0313 0x1240  [ 65BF13016A3C22775F3E17591AE5268A, 7DFE2F99D33D47E4A55ACBE83FE5B536A2983742522629414D5F941043C591D3 ] C:\Windows\System32\VaultCredProvider.dll
11:25:54.0313 0x1240  C:\Windows\System32\VaultCredProvider.dll - ok
11:25:54.0313 0x1240  [ E59F08ED9D2A128CE436BBFC232247F6, 9CD690C1B7CB6CA59F6AB2752A5AF2FC5A057CCBDA4166900F0AC68296972060 ] C:\Windows\System32\BioCredProv.dll
11:25:54.0313 0x1240  C:\Windows\System32\BioCredProv.dll - ok
11:25:54.0313 0x1240  [ 4BCC63ED1C3D15B2635A8AE2B854B3EB, 4CF29B4E896996145D54263FD06358E16C3FE2CD39C3AF6BCCE607590C637555 ] C:\Windows\System32\SmartcardCredentialProvider.dll
11:25:54.0313 0x1240  C:\Windows\System32\SmartcardCredentialProvider.dll - ok
11:25:54.0313 0x1240  [ E9BB0CD09DA17C71FD1B9954D75AEEF7, FF5E2F04F1FD56FDD19368150B5750275F0A44E9EA9820C8087E84ECBBF45286 ] C:\Windows\System32\credui.dll
11:25:54.0313 0x1240  C:\Windows\System32\credui.dll - ok
11:25:54.0313 0x1240  [ 3FAD263CE1E2A6FFF40D00043B2275E3, 0063D7DAD57CA78C3DCE6A2E7D4FF7A47DBBBBAA33F92AEF747D8102E055D1AA ] C:\Windows\System32\winbio.dll
11:25:54.0313 0x1240  C:\Windows\System32\winbio.dll - ok
11:25:54.0329 0x1240  [ 6D8CACF3B1B54943EFCF420C2D667B37, 64EB621EC68077761A0662BE78D2D17ADA982FCFE4D3BBD3A96D0D990BD8541A ] C:\Windows\System32\certCredProvider.dll
11:25:54.0329 0x1240  C:\Windows\System32\certCredProvider.dll - ok
11:25:54.0329 0x1240  [ 2FCA0D2C59A855C54BAFA22AA329DF0F, ED9D26F539065D62FCCEDEEC8E509B30F4D15F8DA586C1F657ACEFE9DABAACD0 ] C:\Windows\System32\netapi32.dll
11:25:54.0329 0x1240  C:\Windows\System32\netapi32.dll - ok
11:25:54.0329 0x1240  [ 20B3934DB73EABA2B49B7177873CB81F, 492EAC5C51472B43DE11825358AEC4B9E3A081DACFD7513C696D6FE40F302EE5 ] C:\Windows\System32\netutils.dll
11:25:54.0329 0x1240  C:\Windows\System32\netutils.dll - ok
11:25:54.0329 0x1240  [ 68ECCA523ED760AAFC03C5D587569859, CDD734279C8F9F24EA2538BAD8E91EB8C3DD74C33032DB6B2D85C19576B42707 ] C:\Windows\System32\samcli.dll
11:25:54.0329 0x1240  C:\Windows\System32\samcli.dll - ok
11:25:54.0329 0x1240  [ 36B8D5903CEEF0AA42A1EE002BD27FF1, CBD5C4D0E05B9A2657D816B655FFFC386807061594DEAABA754658D3152F7403 ] C:\Windows\System32\vaultcli.dll
11:25:54.0329 0x1240  C:\Windows\System32\vaultcli.dll - ok
11:25:54.0344 0x1240  [ E5A4A1326A02F8E7B59E6C3270CE7202, DCB76016F9AC47E631540874DA208A089F9D529DA9628705A2869B954526BFE0 ] C:\Windows\System32\wkscli.dll
11:25:54.0344 0x1240  C:\Windows\System32\wkscli.dll - ok
11:25:54.0344 0x1240  [ FFE4BEC5C187C426A17AE76A773063A6, 0003F7DBCE52F3E7B467FBB6522623E7318E22BC2E1BB5890AFAE29682543F99 ] C:\Windows\System32\rasplap.dll
11:25:54.0344 0x1240  C:\Windows\System32\rasplap.dll - ok
11:25:54.0344 0x1240  [ 839F96DBAAFD3353E0B248A5E0BD2A51, 11DA5AD3EA5FF4766C12B99FB520B3CBE08581ECAF1A2FD1DC5AC835CA78FAC2 ] C:\Windows\System32\rasapi32.dll
11:25:54.0344 0x1240  C:\Windows\System32\rasapi32.dll - ok
11:25:54.0344 0x1240  [ FFA7172354B9256DBB2CDD75F16F33FE, 85B2F014C67C2E52540F17D561793C6633C9E98F12639CCD3854EB1EC34DD035 ] C:\Windows\System32\rasman.dll
11:25:54.0344 0x1240  C:\Windows\System32\rasman.dll - ok
11:25:54.0344 0x1240  [ 0915C4DB6DBC3BB9E11B7ECBBE4B7159, ACE7F85685EB92FC3AB4215122B0469E32F23B196C49F08CDA7791D3122C45DC ] C:\Windows\System32\rtutils.dll
11:25:54.0344 0x1240  C:\Windows\System32\rtutils.dll - ok
11:25:54.0344 0x1240  [ 5A12C364AD1D4FCC0AD0E56DBBC34462, 5FDF434BE4E15311AC83754CF85B5451F5A219D768A5DE3DC4FD9AE0B57B0AD9 ] C:\Windows\System32\midimap.dll
11:25:54.0344 0x1240  C:\Windows\System32\midimap.dll - ok
11:25:54.0360 0x1240  [ 85683DF1F917E4D7F6BE1A04986BF1C8, D68D9F525D31C1843B6EC8FA950166FA1F34DB71222716E7B22DD33981C152B6 ] C:\Windows\System32\msacm32.dll
11:25:54.0360 0x1240  C:\Windows\System32\msacm32.dll - ok
11:25:54.0360 0x1240  [ 07393A09C46083588E751B63B03C8301, 36E2351CF5FA05FEAAEB340B5E04B107B53C8174F8333559D8AEA40BEB94F678 ] C:\Windows\System32\msacm32.drv
11:25:54.0360 0x1240  C:\Windows\System32\msacm32.drv - ok
11:25:54.0360 0x1240  [ A12829E9974F57E9B5DBFEA7C93190F6, 1EC2A36CAF30A706B6082C5CA79B6A33FA99342E144508DB1415D1611E631EBC ] C:\Windows\System32\UXInit.dll
11:25:54.0360 0x1240  C:\Windows\System32\UXInit.dll - ok
11:25:54.0360 0x1240  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] C:\Windows\System32\drivers\lltdio.sys
11:25:54.0360 0x1240  C:\Windows\System32\drivers\lltdio.sys - ok
11:25:54.0360 0x1240  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] C:\Windows\System32\uxsms.dll
11:25:54.0360 0x1240  C:\Windows\System32\uxsms.dll - ok
11:25:54.0375 0x1240  [ 8E01332CC4B68BC6B5B7EFFE374442AA, A4AD1D2FD3EC2F26949DBBC388F9FFF3713AD7EB4E9220AF817EBB5223E467C6 ] C:\Windows\System32\oleacc.dll
11:25:54.0375 0x1240  C:\Windows\System32\oleacc.dll - ok
11:25:54.0375 0x1240  [ FD049C25A168D3DE310D9207B7B6367B, 48966605E7CF87996068AC1A2E563F90F6F152E710323792C633E10BCBA480E4 ] C:\Windows\System32\UIAutomationCore.dll
11:25:54.0375 0x1240  C:\Windows\System32\UIAutomationCore.dll - ok
11:25:54.0375 0x1240  [ 18AB2E5A40064ED5F7791AC5946A90F3, B7536CE56702C23B1CEC3E1B6C78866E0A76808B85A92AF3733D9ED9429E004C ] C:\Windows\System32\msimg32.dll
11:25:54.0375 0x1240  C:\Windows\System32\msimg32.dll - ok
11:25:54.0375 0x1240  [ 886F415E4F7A87AF69EBF5020C67EF6F, 90F455C19FE0EB55354D95C1531A6628FA96A1C2C2139CA78AF96CA4745D627C ] C:\Windows\System32\adtschema.dll
11:25:54.0375 0x1240  C:\Windows\System32\adtschema.dll - ok
11:25:54.0375 0x1240  [ 808D8A8B2A3074002852BC856D419576, 1AFDEAAD071D398F4663E82D58510ABC0A30048018866C59AB53D3ECB6E6D349 ] C:\Windows\System32\comres.dll
11:25:54.0375 0x1240  C:\Windows\System32\comres.dll - ok
11:25:54.0375 0x1240  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] C:\Windows\System32\drivers\nwifi.sys
11:25:54.0375 0x1240  C:\Windows\System32\drivers\nwifi.sys - ok
11:25:54.0391 0x1240  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] C:\Windows\System32\drivers\ndisuio.sys
11:25:54.0391 0x1240  C:\Windows\System32\drivers\ndisuio.sys - ok
11:25:54.0391 0x1240  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] C:\Windows\System32\drivers\rspndr.sys
11:25:54.0391 0x1240  C:\Windows\System32\drivers\rspndr.sys - ok
11:25:54.0391 0x1240  [ A90DC9ABD65DB1A8902F361103029952, 26798758976CE53251AC342B966BE0363AE1794BD965C452F5DEBC33E18969F0 ] C:\Windows\System32\IPHLPAPI.DLL
11:25:54.0391 0x1240  C:\Windows\System32\IPHLPAPI.DLL - ok
11:25:54.0391 0x1240  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] C:\Windows\System32\lmhsvc.dll
11:25:54.0391 0x1240  C:\Windows\System32\lmhsvc.dll - ok
11:25:54.0391 0x1240  [ D2A937964199F647B1C3BC435712E5D9, 03029296547750229C0C484CD09D67286096B92661C41DF67C60019DEF75A2F7 ] C:\Windows\System32\nrpsrv.dll
11:25:54.0391 0x1240  C:\Windows\System32\nrpsrv.dll - ok
11:25:54.0407 0x1240  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] C:\Windows\System32\nsisvc.dll
11:25:54.0407 0x1240  C:\Windows\System32\nsisvc.dll - ok
11:25:54.0407 0x1240  [ CFF35B879D1618D42C86644C717BA947, 1837275202628D3320867A3BF8CFDA15491730C4B74215F7C0D7E140BF01AC3C ] C:\Windows\System32\winnsi.dll
11:25:54.0407 0x1240  C:\Windows\System32\winnsi.dll - ok
11:25:54.0407 0x1240  [ 2D21189858856316D55EAD55DF4964C2, EAFBDB78EF3AD21C3E87042CB32B52229D5E086E505848C123DFDD97AF9AAF34 ] C:\Windows\System32\AudioEng.dll
11:25:54.0407 0x1240  C:\Windows\System32\AudioEng.dll - ok
11:25:54.0407 0x1240  [ A56F4029FDCF4F817E78953CDA953E28, 3B4CEF1113B358D4D12F326B861E1FF25934D8865173C7A05F5851B94AC140FD ] C:\Windows\System32\AUDIOKSE.dll
11:25:54.0407 0x1240  C:\Windows\System32\AUDIOKSE.dll - ok
11:25:54.0407 0x1240  [ 08CC52C131379B181133EF8B75EDD0CE, C647BBC157F5127D47DA6158B18CAF9F576D60E613D87A508C8A2056E4DD91DC ] C:\Windows\System32\SFFXSAPO.dll
11:25:54.0407 0x1240  C:\Windows\System32\SFFXSAPO.dll - ok
11:25:54.0422 0x1240  [ BBA8E18C172A6BF52E374F4E4D37E78E, 2CA8ADA2361D4A6EA86F76DAB50AFC749216AF5781DFF5CFD560768505B59BCF ] C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
11:25:54.0422 0x1240  C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe - ok
11:25:54.0422 0x1240  [ A7BB0E6E44B0C426442311B638D8C074, 66D5BE9982D92AB886ACC77BC236A05D0DA60CCAEAF0E78C8BF9CE8F766FB5A1 ] C:\Program Files\360\Total Security\360Base.dll
11:25:54.0422 0x1240  C:\Program Files\360\Total Security\360Base.dll - ok
11:25:54.0422 0x1240  [ 7E6A67F7E9F416CCCDA24CF60A7C1596, 9C4C265A8F56946C13FB5A43B7413DD354C8854FE109A5E6A7AD2F86DF9E9CD6 ] C:\Windows\System32\SFFXComm.dll
11:25:54.0422 0x1240  C:\Windows\System32\SFFXComm.dll - ok
11:25:54.0422 0x1240  [ F3DAB61A7D065C1AF33DC4C40F4E813C, 4EDE9E931499347F5ED910354835A6A5FFCC208DA2B8591EAAE74B9B63BC9098 ] C:\Program Files\360\Total Security\I18N.dll
11:25:54.0422 0x1240  C:\Program Files\360\Total Security\I18N.dll - ok
11:25:54.0422 0x1240  [ B8E878986FCF006DA7CE1118C57973BF, 37500D16F72F0F7D6FE4B6EE2DEDAE73BE9E9CDCDA6C7814F622D1B43FA39B0C ] C:\Program Files\360\Total Security\QHVer.dll
11:25:54.0422 0x1240  C:\Program Files\360\Total Security\QHVer.dll - ok
11:25:54.0438 0x1240  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] C:\Windows\System32\drivers\fltMgr.sys
11:25:54.0438 0x1240  C:\Windows\System32\drivers\fltMgr.sys - ok
11:25:54.0438 0x1240  [ 8B0B4C5927A333A05513791758350DC4, 52FF08569678F3DA6D52FAE200E4C8C85E986805987EF1CDC0616C29664E7D64 ] C:\Windows\System32\microsoft-windows-kernel-power-events.dll
11:25:54.0438 0x1240  C:\Windows\System32\microsoft-windows-kernel-power-events.dll - ok
11:25:54.0438 0x1240  [ D93A937A2A9D2CBC06B3A615A197011F, E55028F641512EC22CEC4674F7E380FE71059A21E51ECB345DDB769A276F30D1 ] C:\Windows\System32\PSHED.DLL
11:25:54.0438 0x1240  C:\Windows\System32\PSHED.DLL - ok
11:25:54.0438 0x1240  [ 053EA40E3ACF0E6A1488A7491CEDC048, FB7C2C0184723E9D946734EDC5E31B6F6750D25AE1685DCB3ADC27A5F4DD1519 ] C:\Windows\System32\SFFXProc.dll
11:25:54.0438 0x1240  C:\Windows\System32\SFFXProc.dll - ok
11:25:54.0438 0x1240  [ 30DB37B14B0DDC4EC16193F8D0718B11, B9D47732F7B5D8848F3CC84BEB176A9F89E0D89FD38A6503F194EAF9B7C382DF ] C:\Windows\System32\AEADIAPR.dll
11:25:54.0438 0x1240  C:\Windows\System32\AEADIAPR.dll - ok
11:25:54.0453 0x1240  [ 1F5497D7D3D79C7BF0AB0C8B4C5BFE6E, 27848861F25C00168A1A0FE0722D8E327D2251C4FB69A7968EE5722ECCD129E3 ] C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll
11:25:54.0453 0x1240  C:\Windows\System32\microsoft-windows-kernel-processor-power-events.dll - ok
11:25:54.0453 0x1240  [ 5B4DC8D7CFE9CFF3726032FE8220633D, 78957A9D52B31023C9BC83E80D4F297C39937209C61C9DE4DEB043C3F2F5863D ] C:\Program Files\360\Total Security\CrashReport.dll
11:25:54.0453 0x1240  C:\Program Files\360\Total Security\CrashReport.dll - ok
11:25:54.0453 0x1240  [ D0FE061F9C3A9D9A1BA0977E21032F94, 2E345A2593C2BF589D7ED8803AA7F1AD8863CB90021699BA986A37BCD9E3FEB4 ] C:\Program Files\360\Total Security\I18NGI.dll
11:25:54.0453 0x1240  C:\Program Files\360\Total Security\I18NGI.dll - ok
11:25:54.0453 0x1240  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] C:\Windows\System32\dhcpcore.dll
11:25:54.0453 0x1240  C:\Windows\System32\dhcpcore.dll - ok
11:25:54.0453 0x1240  [ 8A488FD8A64A2B88591630FD8B459B6D, 2F5094C511352363ACAC42AEFCE7E56234EC06365AF902D0CCC6E57480CC957F ] C:\Program Files\360\Total Security\deepscan\BAPI.dll
11:25:54.0453 0x1240  C:\Program Files\360\Total Security\deepscan\BAPI.dll - ok
11:25:54.0469 0x1240  [ F0B381D09C00C939CD20F95A404B39ED, 4B303117B7CED81AEEA98CD4B8E1F527A8C3823DC3C2162DD84EE2893B603975 ] C:\Program Files\360\Total Security\deepscan\BAPIDRV.sys
11:25:54.0469 0x1240  C:\Program Files\360\Total Security\deepscan\BAPIDRV.sys - ok
11:25:54.0469 0x1240  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] C:\Windows\System32\dnsrslvr.dll
11:25:54.0469 0x1240  C:\Windows\System32\dnsrslvr.dll - ok
11:25:54.0469 0x1240  [ F0D0E883EBBDC7615DC9EDEA0FFB2817, 58F1395445018CB16ED4D3710443FB5B0E087043F6A69F7B10D72D0455958954 ] C:\Windows\System32\FWPUCLNT.DLL
11:25:54.0469 0x1240  C:\Windows\System32\FWPUCLNT.DLL - ok
11:25:54.0469 0x1240  [ EF71BA5DF59034962B0C62314A71351A, BB31EDFCCFF1CE984CDE0E1D8996BF70DC28F97B6685AE54172F2F4BAFA56A0F ] C:\Windows\System32\dhcpcore6.dll
11:25:54.0469 0x1240  C:\Windows\System32\dhcpcore6.dll - ok
11:25:54.0469 0x1240  [ AF75DBA674E55221B7A055B0A4345F16, 50F1B550F4EBFA946564EB66BBD17C308DCB08055017E010095A94C2EBCE208D ] C:\Windows\System32\keyiso.dll
11:25:54.0469 0x1240  C:\Windows\System32\keyiso.dll - ok
11:25:54.0485 0x1240  [ 9A892B3439884C62B04718F0303A49E9, E3A772832BE440B074628FCAE06FACA451E2329BAEDD62CAB54310B44AF6BA4A ] C:\Windows\System32\eapphost.dll
11:25:54.0485 0x1240  C:\Windows\System32\eapphost.dll - ok
11:25:54.0485 0x1240  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] C:\Windows\System32\eapsvc.dll
11:25:54.0485 0x1240  C:\Windows\System32\eapsvc.dll - ok
11:25:54.0485 0x1240  [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] C:\Windows\System32\drivers\ntfs.sys
11:25:54.0485 0x1240  C:\Windows\System32\drivers\ntfs.sys - ok
11:25:54.0485 0x1240  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] C:\Windows\System32\drivers\fastfat.sys
11:25:54.0485 0x1240  C:\Windows\System32\drivers\fastfat.sys - ok
11:25:54.0485 0x1240  [ D33E95C0A2754061233B58DC41F8094C, C957FD018DCCC8EA4BFD0EBB16A8A65B5F8AD543929EE92251C8718872BBA628 ] C:\Windows\System32\umb.dll
11:25:54.0485 0x1240  C:\Windows\System32\umb.dll - ok
11:25:54.0500 0x1240  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] C:\Windows\System32\wlansvc.dll
11:25:54.0500 0x1240  C:\Windows\System32\wlansvc.dll - ok
11:25:54.0500 0x1240  [ 9A85ABCE0FDD1AF8E79E731EB0B679F3, 2A610BEB16610FE2F2E9A50477A62A05481E8A5843A814955A0EDFF45D0304B3 ] C:\Windows\System32\dhcpcsvc.dll
11:25:54.0500 0x1240  C:\Windows\System32\dhcpcsvc.dll - ok
11:25:54.0500 0x1240  [ 81F6C1AE23B1C493D9E996C3103915D7, E22408B4D2EDE2F89E686A4FDCD4057BE27B86D050E9CB489F0FFB39C72AEC1D ] C:\Windows\System32\dhcpcsvc6.dll
11:25:54.0500 0x1240  C:\Windows\System32\dhcpcsvc6.dll - ok
11:25:54.0500 0x1240  [ 100103C6535C66265267F5EEA5F5846E, DC5972BC1FCABDC51E4DF4D5124D408BB03F2EFAF25AB70C921DD7A03A12DFD4 ] C:\Windows\System32\dnsext.dll
11:25:54.0500 0x1240  C:\Windows\System32\dnsext.dll - ok
11:25:54.0500 0x1240  [ B5E6F0185221535E5F252C72BD4B15E6, 94535CBBE267993D1605F99B26EC871A8775628D2E1990D1E64A18265AAC976F ] C:\Program Files\360\Total Security\deepscan\qutmload.dll
11:25:54.0500 0x1240  C:\Program Files\360\Total Security\deepscan\qutmload.dll - ok
11:25:54.0500 0x1240  [ EF6FA4B617723E9C823B964920123587, 74FC8BC3DBAE93249EEC1758046B483B394ADCB90DACCE4172C575CE949C0996 ] C:\Program Files\360\Total Security\safemon\360procmon.dll
11:25:54.0500 0x1240  C:\Program Files\360\Total Security\safemon\360procmon.dll - ok
11:25:54.0516 0x1240  [ 90B761D39BAA3D727200E2D53758D309, DB2C2B50AD129E622E1FD51094E0AA03B84EC0DD978CDA482B9E01E8879AA293 ] C:\Program Files\360\Total Security\safemon\SelfProtectAPI2.dll
11:25:54.0516 0x1240  C:\Program Files\360\Total Security\safemon\SelfProtectAPI2.dll - ok
11:25:54.0516 0x1240  [ 9AD9BF9311284156768F073178475DD4, AF9540C2DF5BADA3D2EDB8C91E16C684815D595615453D8DC5780F211F070002 ] C:\Program Files\360\Total Security\safemon\360hipsPopWnd.dll
11:25:54.0516 0x1240  C:\Program Files\360\Total Security\safemon\360hipsPopWnd.dll - ok
11:25:54.0516 0x1240  [ 827CB0D6C3F8057EA037FF271F8E9795, 82760DBDDD38D2A31CAAF51D065DF4E7E1D0F0C22733A0AF653776EBF7B79470 ] C:\Windows\System32\imageres.dll
11:25:54.0516 0x1240  C:\Windows\System32\imageres.dll - ok
11:25:54.0516 0x1240  [ 259AFFE7B271B29D4B04D678C94BC776, 92D35442715CB9C7DEE115E146DAA72BBB5C408AE03BB6BB5B6F834FF1867444 ] C:\Program Files\360\Total Security\safemon\360SPTool.exe
11:25:54.0516 0x1240  C:\Program Files\360\Total Security\safemon\360SPTool.exe - ok
11:25:54.0531 0x1240  [ B3050F013EBD0504B7095C54274FC3A4, BFB24D0BF8B3B94E5C9E4AECACA2C5075D6F52270EB32A7C131F569C7C1BD3B2 ] C:\Program Files\360\Total Security\deepscan\cloudcom2.dll
11:25:54.0531 0x1240  C:\Program Files\360\Total Security\deepscan\cloudcom2.dll - ok
11:25:54.0531 0x1240  [ 3C9035085141162416A0DD34DBF3F3C1, 31856241BBCC5AEC32C36BD073667001ECBA3A65C1D55B26A9CEE186CE1C03E6 ] C:\Windows\System32\wlanmsm.dll
11:25:54.0531 0x1240  C:\Windows\System32\wlanmsm.dll - ok
11:25:54.0531 0x1240  [ 20C06A50DFC097E134BC6FA8444CA9BC, 7739CF0ABCA918C9A49D655FB4E032163BBFB7064844F0C8EBDA282CB0225DFC ] C:\Windows\System32\wlansec.dll
11:25:54.0531 0x1240  C:\Windows\System32\wlansec.dll - ok
11:25:54.0531 0x1240  [ F748F53FE09D21D8ECBB6421E6792024, 38F737673F8B089B2540CE7015A4DF7081754F7CC83BFF85199B70555AF32ED0 ] C:\Windows\System32\onex.dll
11:25:54.0531 0x1240  C:\Windows\System32\onex.dll - ok
11:25:54.0531 0x1240  [ 5A5FEDDF02588B8F9FE4A95E5E7EAE97, 364A2DC446E9AB091A216D0EED559CEA334AA46EC0BC693CBD6CE1DE0F89317B ] C:\Windows\System32\eappcfg.dll
11:25:54.0531 0x1240  C:\Windows\System32\eappcfg.dll - ok
11:25:54.0531 0x1240  [ 666E57B6B51824D1D235F80A3DD70A13, B2ACCABDD5D8B23E502FE691C1DEE4A2C0EA20EDCDE5B4000557579D56D411EC ] C:\Windows\System32\eappprxy.dll
11:25:54.0531 0x1240  C:\Windows\System32\eappprxy.dll - ok
11:25:54.0547 0x1240  [ C1585EAA67C37A05BF6F93726FAFC069, 50401A628053871D5B864E2493018236A117F177AD1E466EDE6FB3CACBD6C5BD ] C:\Windows\System32\l2gpstore.dll
11:25:54.0547 0x1240  C:\Windows\System32\l2gpstore.dll - ok
11:25:54.0547 0x1240  [ 1D6A771D1D702AE07919DB52C889A249, E5F3378AC40AEE6114EEAF3BF11DC1059466891CAE353E80C08622A60485C954 ] C:\Windows\System32\wlanutil.dll
11:25:54.0547 0x1240  C:\Windows\System32\wlanutil.dll - ok
11:25:54.0547 0x1240  [ 749F9795F01C35EEBE100A87D82B9681, 03A636328D3D97AFA6B5D6B3085EA8D27C3DBCAEA5986FD74904FC754378CD64 ] C:\Windows\System32\wlgpclnt.dll
11:25:54.0547 0x1240  C:\Windows\System32\wlgpclnt.dll - ok
11:25:54.0547 0x1240  [ 9419ABF3163B6F0E3AD3DD2B381C879F, 75029AFDB5F8A8F74A63B6C8165E77110E2FBAEC0021A9613035BFFEC646A54E ] C:\Windows\System32\WinSCard.dll
11:25:54.0547 0x1240  C:\Windows\System32\WinSCard.dll - ok
11:25:54.0547 0x1240  [ 2032B7698A8DCA5E157FD4ED153E9A76, F8C070BE68C2E7551756B991CC1ACA1B2CFC9D2110B45969D89357659FB63BA1 ] C:\Windows\System32\msxml6.dll
11:25:54.0547 0x1240  C:\Windows\System32\msxml6.dll - ok
11:25:54.0563 0x1240  [ 5F3ABA05EEB7E797825E3F92FD75EC44, 3BF0C6DFCAC0A9FB13AC8CFC548E3021E861B0362AAB8C4970D7B582592A18FF ] C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll
11:25:54.0563 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvxdbat.dll - ok
11:25:54.0563 0x1240  [ C54BE341668D761C9AF09F21C161315F, 6A40491874454644EAD6602874C60084F7CA62DA4636385CCB00FE107BCD3C06 ] C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
11:25:54.0563 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe - ok
11:25:54.0563 0x1240  [ E10D29FC2E908D3B76D01448EFAC9E0F, 56CA10F5BFEFA0BB26A4177471497F79542BCE581035C8E4351D708435D81AF3 ] C:\Windows\System32\nvsvc.dll
11:25:54.0563 0x1240  C:\Windows\System32\nvsvc.dll - ok
11:25:54.0563 0x1240  [ 7F8678C59F188528D60104E697C2361E, 9B4D262B10CB09543ACA9A78482F4EDD905791D2C8C518B574EBA440A71A85B7 ] C:\Windows\System32\mscms.dll
11:25:54.0563 0x1240  C:\Windows\System32\mscms.dll - ok
11:25:54.0563 0x1240  [ EE3F36425FE5A81E2E5DFE91758BCECF, 847D035B281FD6F00DEB1A2930E4FFB8675CEDB76C83ACB211CE94D5785B3A9F ] C:\Program Files\360\Total Security\ipc\ipcService.dll
11:25:54.0563 0x1240  C:\Program Files\360\Total Security\ipc\ipcService.dll - ok
11:25:54.0578 0x1240  [ AA8521186E21BCC5E13E8F28707C753F, 4D36E9B48AB13468F3FC4DFC5ED32336CE97250453A16EA1557DD88187EA60FB ] C:\Program Files\360\Total Security\360Util.dll
11:25:54.0578 0x1240  C:\Program Files\360\Total Security\360Util.dll - ok
11:25:54.0578 0x1240  [ C465CD7D13A8BBA6A3A5BFDC244369D8, 61F6F62683D808FC1CFE290A1B99F8528283F6A0A409B017F339EA7677C67443 ] C:\Windows\System32\nvapi.dll
11:25:54.0578 0x1240  C:\Windows\System32\nvapi.dll - ok
11:25:54.0578 0x1240  [ 00B21CC624CD1AA6EFAAC8602F2739E5, 5C040ABB71264A57ED13333A720C52CD43A505985F7AB34AEB7B745181956354 ] C:\Windows\System32\nvsvcr.dll
11:25:54.0578 0x1240  C:\Windows\System32\nvsvcr.dll - ok
11:25:54.0578 0x1240  [ EDDF3BA1C25A7911ED3E1089CC28C6C3, F9FE3B9B2685DB4421F32F31AE88CA7589D0FE6A4B6475DCA9740372FEC65203 ] C:\Windows\System32\nvcpl.dll
11:25:54.0578 0x1240  C:\Windows\System32\nvcpl.dll - ok
11:25:54.0578 0x1240  [ C180FD3672B69279D9D0417CC437A0C3, D93F6BF32F7ADF19A561F270A281BCAD73D49DE7692FD4DF7D6405C4EF8779B4 ] C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll
11:25:54.0578 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvxdapix.dll - ok
11:25:54.0594 0x1240  [ 1BC3E8A082D723579A5A81C4BAF97E1F, 51B6C7B31319D58538C83AF8F9A403CF43CA82DF8931C6E16224FEC4ADAF8F4A ] C:\Program Files\NVIDIA Corporation\Display\nvui.dll
11:25:54.0594 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvui.dll - ok
11:25:54.0594 0x1240  [ 58788565442368B0615DDAF1D452B843, 4D7A635EB64179A9EF6506189C380CA9710ACE27136D5CA0D25B63575401682B ] C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
         

Alt 28.03.2016, 11:39   #5
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



TDSSKiller 3 Text
Code:
ATTFilter
11:25:54.0594 0x1240  C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll - ok
11:25:54.0594 0x1240  [ 396E3F8FFB30DCF55B54EA7FFC8986DA, EBE656DC90EDCF5A175F442349BA472103250EAAEB156D8FCFD3FD26F99B98A0 ] C:\Program Files\NVIDIA Corporation\Display\nvuir.dll
11:25:54.0594 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvuir.dll - ok
11:25:54.0594 0x1240  [ AFC2A157D81ADE9B37FF709E7DFBE47C, 20D37A28F63642DBB059634324A7D6BB7312D1ED13D1BBB50956E134258E7DE0 ] C:\Windows\System32\nvumdshim.dll
11:25:54.0594 0x1240  C:\Windows\System32\nvumdshim.dll - ok
11:25:54.0594 0x1240  [ B40B855A43034BEF97F8ED97D6DF57E1, 3C408D4FF3E844E4898A1662EFA8F8D5DCB19E4574BB5C3F438F90ABD05B0AA1 ] C:\Program Files\360\Total Security\360Conf.dll
11:25:54.0594 0x1240  C:\Program Files\360\Total Security\360Conf.dll - ok
11:25:54.0609 0x1240  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] C:\Windows\System32\shsvcs.dll
11:25:54.0609 0x1240  C:\Windows\System32\shsvcs.dll - ok
11:25:54.0609 0x1240  [ 7B03AE007687903961B0689EBB437EB9, 5D6632BB33F5BA47A27331176C04E3850019B2EEB4D7622BE266ED82099F230B ] C:\Program Files\360\Total Security\deepscan\CQhCltHttpW.dll
11:25:54.0609 0x1240  C:\Program Files\360\Total Security\deepscan\CQhCltHttpW.dll - ok
11:25:54.0609 0x1240  [ 7DAD20AB1DD90D89F9EF851F5EB60651, 20C7EFB9D64F32D4EB904AE7956D4F8FBF3BA17EEB7B7A76808B73EFF3C3F629 ] C:\Windows\System32\ntoskrnl.exe
11:25:54.0609 0x1240  C:\Windows\System32\ntoskrnl.exe - ok
11:25:54.0609 0x1240  [ 08F993150877818A5F189452C0B0EF64, 8634E269A6AF29B1207DAAA63F77110CD8BD0633419EFEA2199A1184595D6493 ] C:\Program Files\360\Total Security\360NetBase.dll
11:25:54.0609 0x1240  C:\Program Files\360\Total Security\360NetBase.dll - ok
11:25:54.0609 0x1240  [ 9060B8D5BCD5F2B019249F85E3D811F3, 7FB32AB7FE118462988321B9230074DAA960B587417EB463187539C3215445AE ] C:\Windows\System32\schedsvc.dll
11:25:54.0609 0x1240  C:\Windows\System32\schedsvc.dll - ok
11:25:54.0609 0x1240  [ 38B13C0DF479DBA23ECFA815159BA86E, C289C65AF3FB689AD6B770AB0E815860D9EA36FB2A8DE9F1818C63AD0FE47CBD ] C:\Windows\System32\ktmw32.dll
11:25:54.0609 0x1240  C:\Windows\System32\ktmw32.dll - ok
11:25:54.0625 0x1240  [ 786E75402E94B2A9B098EC8211BDF558, 2217B879E0ADE90894BB9F80EF5007FF2A2958A43CD4E56173C309E87D86F0CA ] C:\Program Files\360\Total Security\deepscan\heavygate.dll
11:25:54.0625 0x1240  C:\Program Files\360\Total Security\deepscan\heavygate.dll - ok
11:25:54.0625 0x1240  [ E6D90DC604F407B3B5E0FD285E46B2A0, 41C0E25E93E6985445410B23058B8972E7720464ABDB41D84FF10CCAC204921A ] C:\Windows\System32\fveapi.dll
11:25:54.0625 0x1240  C:\Windows\System32\fveapi.dll - ok
11:25:54.0625 0x1240  [ C87F28A34B3840F4B40011D170B1A159, 4FB94B9197C5FA73E1A74BA8DCD4ACE830C927FD67B117426714CCD7396E3CB9 ] C:\Windows\System32\fvecerts.dll
11:25:54.0625 0x1240  C:\Windows\System32\fvecerts.dll - ok
11:25:54.0625 0x1240  [ EAFC149CD3BD78C443E31BB157841197, 9045425B0C7A23D5A96D1084FB3B1DED35852B3FB1DCB942DEB4A5B906126CA4 ] C:\Windows\System32\tbs.dll
11:25:54.0625 0x1240  C:\Windows\System32\tbs.dll - ok
11:25:54.0625 0x1240  [ 1C3E8371377E988B683797A132EFFE1B, CC4A9B9084F163428973A04D77CADDAA838C5761BF9E55971FAD7275BB9D2194 ] C:\Windows\System32\taskcomp.dll
11:25:54.0625 0x1240  C:\Windows\System32\taskcomp.dll - ok
11:25:54.0641 0x1240  [ E2D56AE1D40E3725084054CD8E9CFBB1, 7548C22DE09DCCC9BA41BA1DE331CFD0B18DDA00A40E27DFB8EA551CDF7050BC ] C:\Windows\System32\wiarpc.dll
11:25:54.0641 0x1240  C:\Windows\System32\wiarpc.dll - ok
11:25:54.0641 0x1240  [ 487569E5DA56A5A432FF8AF6D3599CF9, 7C974D8379C60B4F69A20B01876C49181B0A63AC318C4BD0A21DABFF27A15C9D ] C:\Windows\System32\drivers\http.sys
11:25:54.0641 0x1240  C:\Windows\System32\drivers\http.sys - ok
11:25:54.0641 0x1240  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] C:\Windows\System32\spoolsv.exe
11:25:54.0641 0x1240  C:\Windows\System32\spoolsv.exe - ok
11:25:54.0641 0x1240  [ 50BA4B30E621B548C3016853C38ACAAE, D0C9EC7A955EB45ADF01711710C65B3C8F325F2BB18BAFB5BAF052BAF8D477F3 ] C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll
11:25:54.0641 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvxdplcy.dll - ok
11:25:54.0641 0x1240  [ 786386F2D36E29C49DBB6AF3697E17B5, 4629A8AE8141EAEB992736FC3195681D02AC2B8D0489FF09FD9CF63678C57FE3 ] C:\Program Files\360\Total Security\sites.dll
11:25:54.0641 0x1240  C:\Program Files\360\Total Security\sites.dll - ok
11:25:54.0656 0x1240  [ 648541A6E366F2530F5E4295BB76870F, 632F8F59C3E87A8581C8F119B99ADD7BDF0FF11009D83A0230C63B6B20006A19 ] C:\Program Files\360\Total Security\ipc\FileMgr.dll
11:25:54.0656 0x1240  C:\Program Files\360\Total Security\ipc\FileMgr.dll - ok
11:25:54.0656 0x1240  [ FB364AC638CCE47A9F3BE49A8B23E2C9, BE5FFB1CD5DF9D1D53BA4F3FB87758EB69FBC5B83F431692920C7932C8DDCE3C ] C:\Program Files\360\Total Security\ipc\yhregd.dll
11:25:54.0656 0x1240  C:\Program Files\360\Total Security\ipc\yhregd.dll - ok
11:25:54.0656 0x1240  [ 23FD5636E9EBF305020D6273162D7E66, 04F2C152FC2E857837F28DD41772F41BEE07FB7B094CBA6A3BE45FCB405F4CFE ] C:\Program Files\360\Total Security\360Common.dll
11:25:54.0656 0x1240  C:\Program Files\360\Total Security\360Common.dll - ok
11:25:54.0656 0x1240  [ DBC835268E551FBB254EA5F1AA4663DC, F0F7D280CB2C8F9CE01B59222840418D921CA80542B3FF2B6FBE7E8F5DAF92FC ] C:\Program Files\360\Total Security\ipc\appd.dll
11:25:54.0656 0x1240  C:\Program Files\360\Total Security\ipc\appd.dll - ok
11:25:54.0656 0x1240  [ 36D22C02A298FD0A42554DB7B2B2F52C, 0EE776C790407620CB9646929DFC3AD0CE0574E9BA05A8E321A498F665A96055 ] C:\Program Files\360\Total Security\safemon\360Tray.exe
11:25:54.0656 0x1240  C:\Program Files\360\Total Security\safemon\360Tray.exe - ok
11:25:54.0672 0x1240  [ B9A8CBCFCD3EC9D2EA4740AF347BF108, 97FA304E3880BC863D999F441AE47CB8ADF00D2DEC2A52ACD8FBD02CC096786A ] C:\Windows\System32\mpr.dll
11:25:54.0672 0x1240  C:\Windows\System32\mpr.dll - ok
11:25:54.0672 0x1240  [ C8D18690F929C58C1B0D38FD1CFB1C8C, 45FD2AE544454C7B7BF433917F8A7E74361BE3B154023829F4D1033A74AF7D97 ] C:\Program Files\360\Total Security\ipc\NetDefender.dll
11:25:54.0672 0x1240  C:\Program Files\360\Total Security\ipc\NetDefender.dll - ok
11:25:54.0672 0x1240  [ EB96B62E272F7BBFCC526D216BF48430, 36EF9340B92929E7D15C0AE408F6651BD383818647F7EFC7EEE0D4AA18C44C85 ] C:\Program Files\360\Total Security\safemon\gamemode.tpi
11:25:54.0672 0x1240  C:\Program Files\360\Total Security\safemon\gamemode.tpi - ok
11:25:54.0672 0x1240  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] C:\Windows\System32\BFE.DLL
11:25:54.0672 0x1240  C:\Windows\System32\BFE.DLL - ok
11:25:54.0672 0x1240  [ 6360C1D06B8D5A6C657F8F8DA4BB85AB, CCED0EE2A7FF37951F23CA33BEA83FE4250AD9720ACAC30CB628CB6114A29F3E ] C:\Program Files\360\Total Security\safemon\360safemonpro.tpi
11:25:54.0672 0x1240  C:\Program Files\360\Total Security\safemon\360safemonpro.tpi - ok
11:25:54.0687 0x1240  [ 9A663A210C03A364AF5357F5E68203AB, 9901D9E8B67F3E8E621536EADB78769B76A53D440647988EC6CAEFBC43C1F500 ] C:\Program Files\Internet Explorer\iexplore.exe
11:25:54.0687 0x1240  C:\Program Files\Internet Explorer\iexplore.exe - ok
11:25:54.0687 0x1240  [ 6A06B40C2F327D5414B429F93C588816, D609B8E7CE9C93F3739BE6F648004EBF5A939C981943184555B7E1F83C364DDB ] C:\Program Files\360\Total Security\ipc\sbmon.dll
11:25:54.0687 0x1240  C:\Program Files\360\Total Security\ipc\sbmon.dll - ok
11:25:54.0687 0x1240  [ D627E3D44C177163C68F11BDF36ABF99, DC25D9BEC87F88DC1345DC5C394819B2ABF4612C134CDA829326502A1723423C ] C:\Program Files\360\Total Security\ipc\360Box.dll
11:25:54.0687 0x1240  C:\Program Files\360\Total Security\ipc\360Box.dll - ok
11:25:54.0687 0x1240  [ F7A3CD938170C81F8BC6056DCF7290F3, 277D2DBB816C8E5CB8DB37BE08FB68902D42251A4F2882629FBB3D42832C038B ] C:\Program Files\360\Total Security\ipc\360boxmain.exe
11:25:54.0687 0x1240  C:\Program Files\360\Total Security\ipc\360boxmain.exe - ok
11:25:54.0687 0x1240  [ 1EBE9524683C7C4EED8B8BC93FB6FBCC, 78AF098E270EDE62466557091F14B2D37BDAB488F02E7CC769251FD17C02BA4A ] C:\Windows\System32\fltLib.dll
11:25:54.0687 0x1240  C:\Windows\System32\fltLib.dll - ok
11:25:54.0703 0x1240  [ B0398D6AEF446F80EF430E551CC2E485, 53D147D0C45B6171820BE5A8D6A7551EEF47F7C6EEBA566FFE10954E4BE70430 ] C:\Program Files\360\Total Security\safemon\WDRecord.dll
11:25:54.0703 0x1240  C:\Program Files\360\Total Security\safemon\WDRecord.dll - ok
11:25:54.0703 0x1240  [ 7EA332ED999C79243BABA6A74066192D, 8CDE3B56EC2AA366CDD3C5354F54F39ECE10E81F2CD0F86B52824D8270FA351D ] C:\Program Files\360\Total Security\deepscan\jcloudscan.dll
11:25:54.0703 0x1240  C:\Program Files\360\Total Security\deepscan\jcloudscan.dll - ok
11:25:54.0703 0x1240  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] C:\Windows\System32\drivers\bowser.sys
11:25:54.0703 0x1240  C:\Windows\System32\drivers\bowser.sys - ok
11:25:54.0703 0x1240  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] C:\Windows\System32\drivers\mpsdrv.sys
11:25:54.0703 0x1240  C:\Windows\System32\drivers\mpsdrv.sys - ok
11:25:54.0703 0x1240  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] C:\Windows\System32\MPSSVC.dll
11:25:54.0703 0x1240  C:\Windows\System32\MPSSVC.dll - ok
11:25:54.0719 0x1240  [ 019C372B1A9DA73A22D0D35A4D40F5C9, 6DDAF455D528FDC2F8271E5909289E76E54D81AC5563433653FC7E0C6EA5BB70 ] C:\Windows\System32\wfapigp.dll
11:25:54.0719 0x1240  C:\Windows\System32\wfapigp.dll - ok
11:25:54.0719 0x1240  [ BA4369E0CA60B1674A66041C36E8754C, 3A4707BCF6D7F30FDAA083E0C03F8CA81F543CFDCFDAF54E99137058DFAC591D ] C:\Windows\System32\drivers\mrxsmb.sys
11:25:54.0719 0x1240  C:\Windows\System32\drivers\mrxsmb.sys - ok
11:25:54.0719 0x1240  [ BAC04C07ED042D9FFE51BAFDDA529236, E8882F3862EAF32B973F427E60949B5A6B65B6D2267DD8EF0E9D34B06CAFB17B ] C:\Program Files\360\Total Security\netmon\Netgm.dll
11:25:54.0719 0x1240  C:\Program Files\360\Total Security\netmon\Netgm.dll - ok
11:25:54.0719 0x1240  [ 02086CA09812392E51A369727BC442BB, 0694CF908EAE8A8999CE099C6948AE067005F04C381BA85D768394519475D7B8 ] C:\Windows\System32\drivers\mrxsmb10.sys
11:25:54.0719 0x1240  C:\Windows\System32\drivers\mrxsmb10.sys - ok
11:25:54.0719 0x1240  [ 083D60E62F91F9DAA8C1F46C756CA5EE, C9D3F6C740DCE4A765416DD114AAD41BD656007807D33B5D30B2A47C8D8B685B ] C:\Windows\System32\drivers\mrxsmb20.sys
11:25:54.0719 0x1240  C:\Windows\System32\drivers\mrxsmb20.sys - ok
11:25:54.0734 0x1240  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] C:\Windows\System32\wkssvc.dll
11:25:54.0734 0x1240  C:\Windows\System32\wkssvc.dll - ok
11:25:54.0734 0x1240  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] C:\Windows\System32\drivers\parport.sys
11:25:54.0734 0x1240  C:\Windows\System32\drivers\parport.sys - ok
11:25:54.0734 0x1240  [ 52954BE460EC6C54C0ACB2B3B126FFC6, 9F9878EC5ABC74C5A8EE8E1D940F0934F081895B07D844F42F80A638FE713F7B ] C:\Windows\System32\pcasvc.dll
11:25:54.0734 0x1240  C:\Windows\System32\pcasvc.dll - ok
11:25:54.0734 0x1240  [ 8676BEB472ED2C5143136DEF271AB10E, 2C64D9D08E4B12CF1B0AE49451D8E30D18DF277E010BD9555632C33510FF57D0 ] C:\Program Files\360\Total Security\netmon\360GameIdentify.dll
11:25:54.0734 0x1240  C:\Program Files\360\Total Security\netmon\360GameIdentify.dll - ok
11:25:54.0734 0x1240  [ 40CAEEE0EAF1B8569F7C8DF6420F2CB9, E18D66455D00A6D2A2D7CC0833C233FE8A6DD910B59D6B5B5F82EF91450858DF ] C:\Windows\System32\sfc.dll
11:25:54.0734 0x1240  C:\Windows\System32\sfc.dll - ok
11:25:54.0750 0x1240  [ 84799328D87B3091A3BDD251E1AD31F9, F85521215924388830DBB13580688DB70B46AF4C7D82D549D09086438F8D237B ] C:\Windows\System32\sfc_os.dll
11:25:54.0750 0x1240  C:\Windows\System32\sfc_os.dll - ok
11:25:54.0750 0x1240  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] C:\Windows\System32\snmptrap.exe
11:25:54.0750 0x1240  C:\Windows\System32\snmptrap.exe - ok
11:25:54.0750 0x1240  [ 735A59DB893C746F4EB18836587B020F, 6D582874063FA46D8B1D5A00B7C9DAA9EF20D8FEE9DDBB30E43214F656BA1787 ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelEvents.dll
11:25:54.0750 0x1240  C:\Windows\Microsoft.NET\Framework\v4.0.30319\ServiceModelEvents.dll - ok
11:25:54.0750 0x1240  [ D4C8A30DDF0501A8F0C58F4AF3A86BD1, AD4E098CB77DBAA3EF9E8B7E66943103CF5DBF37AEE64E348928A9986831312D ] C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
11:25:54.0750 0x1240  C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe - ok
11:25:54.0750 0x1240  [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
11:25:54.0750 0x1240  C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe - ok
11:25:54.0765 0x1240  [ 09E1E786DF8BAA30D1E42CE979AE4793, 912D724073AACF1576D8F3287834EF028DBB8E853D6C7C7836A7762F4D80E305 ] C:\Program Files\360\Total Security\scanstub.dll
11:25:54.0765 0x1240  C:\Program Files\360\Total Security\scanstub.dll - ok
11:25:54.0765 0x1240  [ A2F17346CC5C502D4E29EF986BD17D34, 786E1DA5DBE8B56A8708F361425059EC6DB89C43FD4A136090BAB44B084CC204 ] C:\Windows\System32\PeerDistSh.dll
11:25:54.0765 0x1240  C:\Windows\System32\PeerDistSh.dll - ok
11:25:54.0765 0x1240  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] C:\Windows\System32\provsvc.dll
11:25:54.0765 0x1240  C:\Windows\System32\provsvc.dll - ok
11:25:54.0765 0x1240  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] C:\Windows\System32\sstpsvc.dll
11:25:54.0765 0x1240  C:\Windows\System32\sstpsvc.dll - ok
11:25:54.0765 0x1240  [ C09E6CC6FA30EBD8F40A1759258DD9DE, 2325DCE846742E8F667F90CA877483420EDC2CEA176589D2FC10259B44224274 ] C:\Program Files\360\Total Security\safescan.dll
11:25:54.0765 0x1240  C:\Program Files\360\Total Security\safescan.dll - ok
11:25:54.0781 0x1240  [ E98D3E8DB50BDD746EA32328583A3F6F, 7A1DCF4E53DBC4D05BAE35F84AFF1530FB931693D1BB9BDB4EE12942EA782F4D ] C:\Program Files\360\Total Security\safemon\QHWatchdog.exe
11:25:54.0781 0x1240  C:\Program Files\360\Total Security\safemon\QHWatchdog.exe - ok
11:25:54.0781 0x1240  [ CDBE9690CF2B8409FACAD94FAC9479C9, 8E7FE1A1F3550C479FFD86A77BC9D10686D47F8727025BB891D8F4F0259354C8 ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll
11:25:54.0781 0x1240  C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcr90.dll - ok
11:25:54.0781 0x1240  [ 4DC6B0772D1698F04FC79053A21C8260, 010D4660DB9F7BC49C72691B5D9936EAB6F4A0799374B4019B97343B517D86F4 ] C:\Windows\System32\AEADISRV.EXE
11:25:54.0781 0x1240  C:\Windows\System32\AEADISRV.EXE - ok
11:25:54.0781 0x1240  [ B048C87A82322C06F0F22C7627D60B57, CA24E2007340F2C773137D3B709D5EED58B37BE19901D44A96FB77C8D063AE54 ] C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
11:25:54.0781 0x1240  C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe - ok
11:25:54.0781 0x1240  [ A63DC5C2EA944E6657203E0C8EDEAF61, F7AD4B09AFB301CE46DF695B22114331A57D52E6D4163FF74787BF68CCF44C78 ] C:\Windows\System32\dllhost.exe
11:25:54.0781 0x1240  C:\Windows\System32\dllhost.exe - ok
11:25:54.0797 0x1240  [ 034CCADC1C073E4216E9466B720F9849, 86E39B5995AF0E042FCDAA85FE2AEFD7C9DDC7AD65E6327BD5E7058BC3AB615F ] C:\Windows\System32\msvcr120.dll
11:25:54.0797 0x1240  C:\Windows\System32\msvcr120.dll - ok
11:25:54.0797 0x1240  [ FD5CABBE52272BD76007B68186EBAF00, 87C42CA155473E4E71857D03497C8CBC28FA8FF7F2C8D72E8A1F39B71078F608 ] C:\Windows\System32\msvcp120.dll
11:25:54.0797 0x1240  C:\Windows\System32\msvcp120.dll - ok
11:25:54.0797 0x1240  [ C6F4C466B654C1BE98AF31418BB5AC30, 62AA4456F8E22A6E508EB44DE4309615057117AAF923C13BBED15AA39630E76B ] C:\Program Files\avmwlanstick\WLanNetService.exe
11:25:54.0797 0x1240  C:\Program Files\avmwlanstick\WLanNetService.exe - ok
11:25:54.0797 0x1240  [ 01944AB4A8F054ED4FC7F89B9E484D51, D27217F3915A5FBCA87D2A886CC434854D960716374E324CC4610ED792D1D2E3 ] C:\Program Files\avmwlanstick\avmwlapi.dll
11:25:54.0797 0x1240  C:\Program Files\avmwlanstick\avmwlapi.dll - ok
11:25:54.0797 0x1240  [ DF13A51A5C591887D2EC6AE64CEED0FA, DFD503AEBCAA056B2B0E669ACA52F6D26F4E6892F2DCFCCD902752C23A621653 ] C:\Windows\System32\wsock32.dll
11:25:54.0797 0x1240  C:\Windows\System32\wsock32.dll - ok
11:25:54.0797 0x1240  [ 0B31464B7B2D616BD5F7036673588EC1, AAC717D7FB02D5F7CC11AECC5C87FE6B7224340C569EBF7B77BD8C9F79FAA190 ] C:\Windows\System32\IDStore.dll
11:25:54.0797 0x1240  C:\Windows\System32\IDStore.dll - ok
11:25:54.0812 0x1240  [ 72E953215CADE1A726C04AAFDF6B463D, 473866333D2241BAD6918D21EBCBE8F8EEA9344D816788300BCA290A89FBD3DD ] C:\Windows\System32\taskhost.exe
11:25:54.0812 0x1240  C:\Windows\System32\taskhost.exe - ok
11:25:54.0812 0x1240  [ 49ACA548B2423F1C67898E6AC719A9A6, 23D84137EAB9AFDD31CBB6776B6B25AD135A120AF7F7885EB5BBF9E0A2CCC4C1 ] C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
11:25:54.0812 0x1240  C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll - ok
11:25:54.0812 0x1240  [ 3CA2BB895E204478C7A4C9BAF70970CE, DE3196627BC810DD22F58DEE65747BACA25485CCD0CEE2701055ECE1058F1C6A ] C:\Windows\System32\AtBroker.exe
11:25:54.0812 0x1240  C:\Windows\System32\AtBroker.exe - ok
11:25:54.0812 0x1240  [ 61AC3EFDFACFDD3F0F11DD4FD4044223, 538FE1012FEDC72727A8DE0C2C01944B3D35C29812ECEF88E95AAC07235E0B0B ] C:\Windows\System32\userinit.exe
11:25:54.0812 0x1240  C:\Windows\System32\userinit.exe - ok
11:25:54.0812 0x1240  [ 505BF4D1CADEB8D4F8BCD08D944DE25D, 526F07768471F4457CBEAB7093AF0B0242044C89A80A347DB47F44EBADEEA68D ] C:\Windows\System32\dwm.exe
11:25:54.0812 0x1240  C:\Windows\System32\dwm.exe - ok
11:25:54.0828 0x1240  [ 754AFC50022C95DA7C86B7020DB78136, 81C58F303DA2E0EC066261890C1D638EE02D2B579BBCB1BB398EDF6A0EBA671E ] C:\Windows\System32\dwmredir.dll
11:25:54.0828 0x1240  C:\Windows\System32\dwmredir.dll - ok
11:25:54.0828 0x1240  [ 5C3F9DBA818CD93379D1A0F215270374, 6A4D96AC83989D47D80332E41E627F2607A3B2167E1A5D8E21361136C4424633 ] C:\Windows\System32\esent.dll
11:25:54.0828 0x1240  C:\Windows\System32\esent.dll - ok
11:25:54.0828 0x1240  [ A691D4B4B4167F56A717C421F9CF58C7, AD92CB6FD606E6D1CD0AAE565A6FBD5D134971F4A1B9CCB1B241F1C427A6FD95 ] C:\Windows\System32\dwmcore.dll
11:25:54.0828 0x1240  C:\Windows\System32\dwmcore.dll - ok
11:25:54.0828 0x1240  [ 3C1936A12C62254F914A01BBC6A8DC69, 0068F7A8B0D9E9776B44EAD99007B0CE5A5600633F2B477E9EFAAC644408C70E ] C:\Windows\System32\d3d10_1.dll
11:25:54.0828 0x1240  C:\Windows\System32\d3d10_1.dll - ok
11:25:54.0828 0x1240  [ B43687C534A49700BF4B3C9898763752, B4C371CB2C0EAC1803E6C845F629814B2CE4C568022EB6A1C9AC1F293BF74F40 ] C:\Windows\System32\MsCtfMonitor.dll
11:25:54.0828 0x1240  C:\Windows\System32\MsCtfMonitor.dll - ok
11:25:54.0843 0x1240  [ 56CEED370508F69A1BA04939BD1BADDA, C84F383F2B3C9581F635E51DA39567F0B5ED2D847B18CCE51022BA4B2FA7EA8D ] C:\Windows\System32\msutb.dll
11:25:54.0843 0x1240  C:\Windows\System32\msutb.dll - ok
11:25:54.0843 0x1240  [ F58516E2DC0D963EF70D6BFC21FD82C4, 5689BF12B43BE0D6BFBD6B9122A2FF53FCEC766A58A0F3C6B88AE504ACB10E04 ] C:\Windows\System32\PlaySndSrv.dll
11:25:54.0843 0x1240  C:\Windows\System32\PlaySndSrv.dll - ok
11:25:54.0843 0x1240  [ D4212AB475A3B25EC4DF574536C3EDC5, F8BBEECB66BA6DDE5A64ED41D8BF95A1C81470552B4BFD5B11D888156289CCDD ] C:\Windows\System32\d3d10_1core.dll
11:25:54.0843 0x1240  C:\Windows\System32\d3d10_1core.dll - ok
11:25:54.0843 0x1240  [ D4F264FE23F8953D840904418220C15E, 72EAF30265A0CC88DEC0FCA7869734D8C93572457C61A2BF1BDFFB20C061DBCD ] C:\Windows\System32\dxgi.dll
11:25:54.0843 0x1240  C:\Windows\System32\dxgi.dll - ok
11:25:54.0843 0x1240  [ 6DE66FE7C526637E74CD066461C7C871, 7E8980A3751762180D795EAC38458303BEAF8D1F85AB5F2D10D9CE7013090CBE ] C:\Windows\System32\d3d11.dll
11:25:54.0843 0x1240  C:\Windows\System32\d3d11.dll - ok
11:25:54.0843 0x1240  [ 8B88EBBB05A0E56B7DCC708498C02B3E, 9E1EC8B43A88E68767FD8FED2F38E7984357B3F4186D0F907E62F8B6C9FF56AD ] C:\Windows\explorer.exe
11:25:54.0843 0x1240  C:\Windows\explorer.exe - ok
11:25:54.0859 0x1240  [ 5CB2886338C82E388F68557E2745200F, 73F591C8F75822FFFF27030F9AE629778E79D74EEE3EAC8EF20CA674CEAD08F7 ] C:\Windows\System32\ExplorerFrame.dll
11:25:54.0859 0x1240  C:\Windows\System32\ExplorerFrame.dll - ok
11:25:54.0859 0x1240  [ E5787E04A7EFAE442940B3AE93183140, 9852E1D34D06192699DC0910A029C24D202CE4147B5D623233A21D79DFD1A0D7 ] C:\Windows\System32\nvwgf2um.dll
11:25:54.0859 0x1240  C:\Windows\System32\nvwgf2um.dll - ok
11:25:54.0859 0x1240  [ 502B79A9A03047CA4EA3F7E6CCCE8B69, 4837C368D086DAAF6A71634C7A4228EE5B85038D3854A18B861DE134C816F00C ] C:\Program Files\Common Files\Acronis\SnapAPI\snapapi.dll
11:25:54.0859 0x1240  C:\Program Files\Common Files\Acronis\SnapAPI\snapapi.dll - ok
11:25:54.0859 0x1240  [ ED6EE83D61EBC683C2CD8E899EA6FEBE, F82592908D038C44D9F2E5C5B7BC663A2D370FC565F40420E1138A9E55F0E7EB ] C:\Windows\System32\rasadhlp.dll
11:25:54.0859 0x1240  C:\Windows\System32\rasadhlp.dll - ok
11:25:54.0859 0x1240  [ 1F27643C4C626457FCE8F047AE1CD7E1, 68E2367B9AA21C1BDE7FEA566D5F0DBDF1E246CB53E949622F8EDC810AA95956 ] C:\Windows\System32\dxva2.dll
11:25:54.0859 0x1240  C:\Windows\System32\dxva2.dll - ok
11:25:54.0875 0x1240  [ 7319102526BD11B45FD66335CF90CA12, F2C7484AE33BEDE8586FB09273665B25DA7E8FEEACF9FEF43EB0B902CE4A0BD9 ] C:\Windows\System32\HotStartUserAgent.dll
11:25:54.0875 0x1240  C:\Windows\System32\HotStartUserAgent.dll - ok
11:25:54.0875 0x1240  [ 2100560AF3F7F2948F2676E44DFB4ECF, 28472E8BEE46DCAE961C7AFEF71EFD5675ECD05492A92631CCB4EF62DFD10F7A ] C:\Windows\System32\uDWM.dll
11:25:54.0875 0x1240  C:\Windows\System32\uDWM.dll - ok
11:25:54.0875 0x1240  [ 74AF6AA2E8B3180AADAE5FE8813CB1CD, FB1C334A76B4E51B1C91141CB7E8B435FE4A8403072112B5F1BAC917649FFC22 ] C:\Windows\System32\localspl.dll
11:25:54.0875 0x1240  C:\Windows\System32\localspl.dll - ok
11:25:54.0875 0x1240  [ 059D29CE8F93C0FA0E3DA4E04DB7033D, 496589173047B8F106EA22F9C0E9AE835B109517DE45236CC9EB6CFFDB3F6686 ] C:\Windows\System32\hpinksts5412LM.dll
11:25:54.0875 0x1240  C:\Windows\System32\hpinksts5412LM.dll - ok
11:25:54.0875 0x1240  [ 03CF941D031F30272D3063E5A4D686F5, 641189DA98156FC8DFABF766EB34726F64E5901AF5F74B42C392C218C892F179 ] C:\Windows\System32\PrintIsolationProxy.dll
11:25:54.0875 0x1240  C:\Windows\System32\PrintIsolationProxy.dll - ok
11:25:54.0890 0x1240  [ 629181C26A78EB66B0B4E774E5AC2882, DE39D01ADC4123C81EF77B24D7FC2F66C27CC2D31248EF53C52CD31AC90A95CE ] C:\Windows\System32\spoolss.dll
11:25:54.0890 0x1240  C:\Windows\System32\spoolss.dll - ok
11:25:54.0890 0x1240  [ 126F8331BD023178C7F0EF2F5EDE16B3, F56DDCC9F282274F2EB073CE33B0CAB7EFC759B9C39B19909FE901E89DA0307F ] C:\Windows\System32\FXSMON.dll
11:25:54.0890 0x1240  C:\Windows\System32\FXSMON.dll - ok
11:25:54.0890 0x1240  [ A5030E7E41E6F6346EFC42ACDFDE5546, FDA054B011BBD189198EB83BE62143A10045E8BFF430985A3D46554876B24215 ] C:\Windows\System32\hpf3l70w.dll
11:25:54.0890 0x1240  C:\Windows\System32\hpf3l70w.dll - ok
11:25:54.0890 0x1240  [ 28DB6DD0816B33D8FEDCD2ACA1A2042D, 13BB49E82B8B9AAB3FEE8FB6AF7A6D0D594EB5FFAB66C0A34481087EA0019D4D ] C:\Windows\System32\hpz3lw71.dll
11:25:54.0890 0x1240  C:\Windows\System32\hpz3lw71.dll - ok
11:25:54.0890 0x1240  [ 1574DD9D409F2DC45CF82C22B99164A4, F321BA34102F7B4CCD662C01453B5E005CDCE17998AB5D800C25FAB540418A72 ] C:\Windows\System32\pdfcmnnt.dll
11:25:54.0890 0x1240  C:\Windows\System32\pdfcmnnt.dll - ok
11:25:54.0906 0x1240  [ D1AB1647E7B873FFFB5DF08434F0E9EC, 986F9FF200DEFFE11642A35356AFB0E56E57D97A318CD3D79C1F1C41FE9D002D ] C:\Program Files\Acronis\TrueImageHome\tishell.dll
11:25:54.0906 0x1240  C:\Program Files\Acronis\TrueImageHome\tishell.dll - ok
11:25:54.0906 0x1240  [ 1220595CABA75AB91A6B3FA3B89483CC, 313DFE385336D00DAFBC8DF30F001859C77DEB214BB3F874CE42F22734FFAE4E ] C:\Windows\System32\snmpapi.dll
11:25:54.0906 0x1240  C:\Windows\System32\snmpapi.dll - ok
11:25:54.0906 0x1240  [ B390C1D825C7687493BEDE237C6C2F25, 969C456E52695E8AECDDF80995F05D18F6F686AA1AE58A9A661C3069CDF5B1BD ] C:\Windows\System32\tcpmon.dll
11:25:54.0906 0x1240  C:\Windows\System32\tcpmon.dll - ok
11:25:54.0906 0x1240  [ 6357E2B68753A1F5CF4A68A25C4FD14A, F56BFEEACBB9DAE084F4C275DF0086091F5B83DE7183FA33F4445CD31FBB44E3 ] C:\Windows\System32\wsnmp32.dll
11:25:54.0906 0x1240  C:\Windows\System32\wsnmp32.dll - ok
11:25:54.0906 0x1240  [ 923CDD30092DB73EC4A0EBCDDD16C686, 83F94BE7C324FFADCA13780C617A8CAA1C7CD80F205EACA8FBADA83865D1E0D3 ] C:\Windows\System32\usbmon.dll
11:25:54.0906 0x1240  C:\Windows\System32\usbmon.dll - ok
11:25:54.0906 0x1240  [ 523CF74A52C9A1762DA8B83AEE734498, 5A739182B916738B611E1BBA9098F8BCC8C4E2CC2CFEFD1BC5CE7941D11CEDFD ] C:\Windows\System32\IconCodecService.dll
11:25:54.0906 0x1240  C:\Windows\System32\IconCodecService.dll - ok
11:25:54.0921 0x1240  [ 846D0E4DB261CFAF363902E41498E961, D7E5591B7604FD583AF7FDA19E30928B24A6145318A3944E7D207F0CCEEB30D0 ] C:\Windows\System32\EhStorShell.dll
11:25:54.0921 0x1240  C:\Windows\System32\EhStorShell.dll - ok
11:25:54.0921 0x1240  [ A8EB761DE499242BECF153B2B34F020E, 3C6F477B5143FCE607FDB088AE471C7037E2BAC01D8CE8C57B5CF1BE57E78D46 ] C:\Windows\System32\WSDMon.dll
11:25:54.0921 0x1240  C:\Windows\System32\WSDMon.dll - ok
11:25:54.0921 0x1240  [ 73F6C5223F7E9B5780DD4A6C30FCF569, 121A361A572EFC6AC964300DA93BF28DC11E55DDCA29A7C6E6FD12955FBA68B8 ] C:\Windows\System32\WSDApi.dll
11:25:54.0921 0x1240  C:\Windows\System32\WSDApi.dll - ok
11:25:54.0921 0x1240  [ DB846EECA70EE9D2E2FF31147C57B0F4, 1086310477697F43EB156314804B7E9100E04966EF3934F9F5E37112C5129954 ] C:\Windows\System32\webservices.dll
11:25:54.0921 0x1240  C:\Windows\System32\webservices.dll - ok
11:25:54.0921 0x1240  [ 3EC541C196DE18ED9A0D0AC82A694D4C, 51BCBDDFF113A02EF85E09BE6B2727EDB505EBFE355A8E163A7F4C82EBFBBCC4 ] C:\Windows\System32\cscui.dll
11:25:54.0921 0x1240  C:\Windows\System32\cscui.dll - ok
11:25:54.0937 0x1240  [ 465BEA35F7ED4A4A57686DEA7EA10F47, 7F1B3CA09AB045F805DA5765BE7DD270F5DDACE3073017F7386FF1E2FA82D6FB ] C:\Windows\System32\cscapi.dll
11:25:54.0937 0x1240  C:\Windows\System32\cscapi.dll - ok
11:25:54.0937 0x1240  [ 57A51217581614DE07F30E34D6BB4993, 19D06DCCF1B39DFE4FF269C5C4001E60837296411EB8E169CE142DEFAA3D94FA ] C:\Windows\System32\cscdll.dll
11:25:54.0937 0x1240  C:\Windows\System32\cscdll.dll - ok
11:25:54.0937 0x1240  [ 03F3B770DFBED6131653CEDA8CA780F0, 77373919DCA647F09851E7E460AE78FBD89F21516B961F84AC4446304E51E09C ] C:\Windows\System32\ntshrui.dll
11:25:54.0937 0x1240  C:\Windows\System32\ntshrui.dll - ok
11:25:54.0937 0x1240  [ 89D90579E5FB1469CB0464F6512E42B7, 0E85C6935FEAA219C923FF63D17F7C3AF72FF5028E0FF95B66092C6DF64C665C ] C:\Windows\System32\fundisc.dll
11:25:54.0937 0x1240  C:\Windows\System32\fundisc.dll - ok
11:25:54.0937 0x1240  [ F34CFADA6C48DAA41B996D24C7D8D3CA, D294DECC607A6ED7264BEC41FDA3BF12D3F2B3FAFAF55F0C5F2235A9066C97EC ] C:\Windows\System32\fdPnp.dll
11:25:54.0937 0x1240  C:\Windows\System32\fdPnp.dll - ok
11:25:54.0953 0x1240  [ CD72C6406BA561BED6D42CB145E55307, F5DD79FCE5CAA5049C74462B366509356B8B5CCB68E14586ED95CDF98F307787 ] C:\Windows\System32\spool\prtprocs\w32x86\winprint.dll
11:25:54.0953 0x1240  C:\Windows\System32\spool\prtprocs\w32x86\winprint.dll - ok
11:25:54.0953 0x1240  [ 04B5BCB246DAEDF5CED6D16315113AF6, 598C1253539CA575248000684664C3A71A85CAA941F255051BE182D5EB8549D0 ] C:\Windows\System32\spool\prtprocs\w32x86\hpfpp70w.dll
11:25:54.0953 0x1240  C:\Windows\System32\spool\prtprocs\w32x86\hpfpp70w.dll - ok
11:25:54.0953 0x1240  [ 0A404EE18BD87D39B850892A479DF55C, 27B4C3CC32E75574DBD9C1DB189AD7C829B1779605E91C8757B196CA9D1767AC ] C:\Windows\System32\spool\prtprocs\w32x86\hpzppw71.dll
11:25:54.0953 0x1240  C:\Windows\System32\spool\prtprocs\w32x86\hpzppw71.dll - ok
11:25:54.0953 0x1240  [ FC415B303B1ECF80B5F130A1F7203D02, ACC51D8CCF02E5EFB495BF66538B5F42CFFE5A186BC5762CC286E98509FC5DC4 ] C:\Windows\System32\win32spl.dll
11:25:54.0953 0x1240  C:\Windows\System32\win32spl.dll - ok
11:25:54.0953 0x1240  [ D27DDE7E0444C7F1819F958469EB7D93, EA13616D78F17CCFD77603F7EE2DDDD159100AA3DF78C1FAAEB4695D5AC7218A ] C:\Windows\System32\inetpp.dll
11:25:54.0953 0x1240  C:\Windows\System32\inetpp.dll - ok
11:25:54.0968 0x1240  [ CA9F7888B524D8100B977C81F44C3234, 57F3353F89724147D8AC8B69B12C1303DF26978309776F5F8CCF074526A915D3 ] C:\Windows\System32\winhttp.dll
11:25:54.0968 0x1240  C:\Windows\System32\winhttp.dll - ok
11:25:54.0968 0x1240  [ FB19FC5951A88F3C523E35C2C98D23C0, FF0DB8BF0C68DA0D09272E8181D2B5409C8850BB2F31AEA3AC4CD14C5A420A59 ] C:\Windows\System32\webio.dll
11:25:54.0968 0x1240  C:\Windows\System32\webio.dll - ok
11:25:54.0968 0x1240  [ F2A24E4AEC0F8D5DBAB10CB87A8EFED2, 1E2084BB76072596AB2E846DB45318453E1C82C1141385B7D73A1AD5EB30E8BD ] C:\Windows\System32\sti.dll
11:25:54.0968 0x1240  C:\Windows\System32\sti.dll - ok
11:25:54.0968 0x1240  [ 32F4D839CA942236F933A78C3DC404F9, EF925A407D2FC4C8806A6F3EA85BA5C2BC6651EDAADBA29F306034AA9EBC2A54 ] C:\Windows\System32\spool\drivers\w32x86\3\unidrvui.dll
11:25:54.0968 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\unidrvui.dll - ok
11:25:54.0968 0x1240  [ BA54A966F873B043FDFCDA0B77937855, D410F6919D7A6E11615EEE2D20267F258B5A9B934E255D9B9CAF20CC77B1EDB5 ] C:\Windows\System32\mgmtapi.dll
11:25:54.0968 0x1240  C:\Windows\System32\mgmtapi.dll - ok
11:25:54.0984 0x1240  [ FC70115B86B7BC41467BE7A5696C44C5, 8ED2828F49F679D58B97F17865823C1349993CFC6B9FB7E0BF06F88B3EDD04C6 ] C:\Windows\System32\spool\drivers\w32x86\3\UNIDRV.DLL
11:25:54.0984 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\UNIDRV.DLL - ok
11:25:54.0984 0x1240  [ 03F364F70669D6CCDFBB648C735A1CC1, 6D9DAE8350FB2C8B5FB4F2E11896CF7B49FB9CC297178B7C0C6E1D0D2838DF46 ] C:\Windows\System32\tcpmib.dll
11:25:54.0984 0x1240  C:\Windows\System32\tcpmib.dll - ok
11:25:54.0984 0x1240  [ FD0195ECD48ED3A70D4FA439E30C36F2, 28ADD70CEFD5435256B7EE9C9517C84B3F67DFB36A009AC31559F0BE081B8825 ] C:\Windows\System32\spool\drivers\w32x86\3\hpfui70w.dll
11:25:54.0984 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfui70w.dll - ok
11:25:54.0984 0x1240  [ 63FC6B04A81CC5324429107DD5C405DA, FC6D4237D7E84DA20F52CE2C801EB8343910B81AC071B4A3F21503A3369C4B51 ] C:\Windows\System32\spool\drivers\w32x86\3\hpfst70w.dll
11:25:54.0984 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfst70w.dll - ok
11:25:54.0984 0x1240  [ 15A9B01686075F7524D91BB479926F87, F699CCFA426E3FE618203A02632422BB2C6E079E1AD820FA63D0AAF217111AC3 ] C:\Windows\System32\spool\drivers\w32x86\3\UNIRES.DLL
11:25:54.0984 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\UNIRES.DLL - ok
11:25:54.0999 0x1240  [ F93C4372E5450243D076BB7E1138952E, 40AA86B029DFD5C35063E166DCACE27978D1D675F32918800E9EFF3E4BE7633C ] C:\Windows\System32\spool\drivers\w32x86\3\hpfvu70w.dll
11:25:54.0999 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfvu70w.dll - ok
11:25:54.0999 0x1240  [ 91893BBC140F86CFC4343F434A6B2E3B, FF1FA02DC0D51032FC4458A839BC00752899446401C54B5C701623530611881A ] C:\Windows\System32\spool\drivers\w32x86\3\hpw450g3.dll
11:25:54.0999 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpw450g3.dll - ok
11:25:54.0999 0x1240  [ 613582378EFEE1122AC70FE0C61DB0DB, 8ACD1C5BF47AC476C1D7C6EC82EC7452FDDC7E635E004D40B6FF7B9706C1FA5E ] C:\Windows\System32\spool\drivers\w32x86\3\hpfev70w.dll
11:25:54.0999 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfev70w.dll - ok
11:25:54.0999 0x1240  [ 492E444CDB0AA5322F67621C3CA11852, 2BBDA3103547E96BBC646811F1C00084268001D7278D458FE7EF009F2B381FE7 ] C:\Windows\System32\spool\drivers\w32x86\3\hpf3r70w.dll
11:25:54.0999 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpf3r70w.dll - ok
11:25:54.0999 0x1240  [ 80FC06A0EB5F034BAC900E21F3A0D5E7, F3B41366FC9460C8B987E67DFAA52297AB3697A0372F1CBD18431C78910FAEC5 ] C:\Windows\System32\spool\drivers\w32x86\3\hpfrs70w.dll
11:25:54.0999 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfrs70w.dll - ok
11:25:55.0015 0x1240  [ F8F11C44C3C72DB4E768233DD50A2658, C300F6353F82F0720DE0AC62A242346389E0F4F0F1D00F5668740EBB35CAF8F4 ] C:\Windows\System32\spool\drivers\w32x86\3\hpfie70w.dll
11:25:55.0015 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfie70w.dll - ok
11:25:55.0015 0x1240  [ 66DC7D3DA7D4C877D7024DDFD0C2A339, 0E02510EC6A4B1F0BCE72066A87074709F7DBB0A3867D7EA62A8B31D83668D79 ] C:\Windows\System32\spool\drivers\w32x86\3\hpfpr70w.dll
11:25:55.0015 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfpr70w.dll - ok
11:25:55.0015 0x1240  [ 7AAD682FD87A5136C7C5ECDD4A365463, B64B43FF3724F81D815F0E9ABE4F4BDE6FEC29582BA53BECD500813CDA854F4A ] C:\Windows\System32\spool\drivers\w32x86\3\hpfpa70w.dll
11:25:55.0015 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\hpfpa70w.dll - ok
11:25:55.0015 0x1240  [ B2BCD4B0352B069F160C4DB82334768B, 81F5C962DD18FF3EB802DFB06683962473CCE9C0518484C9BC21220640F2BF74 ] C:\Windows\System32\spool\drivers\w32x86\3\HPCDMC32.dll
11:25:55.0015 0x1240  C:\Windows\System32\spool\drivers\w32x86\3\HPCDMC32.dll - ok
11:25:55.0015 0x1240  [ D3897222E94537B040213AFAA7390185, 4B97414FA5DE03DEB7A6CF2E2617E1622CA12FD5A6F15FD741563305CC9B1A0A ] C:\Windows\System32\GWX\GWX.exe
11:25:55.0015 0x1240  C:\Windows\System32\GWX\GWX.exe - ok
11:25:55.0031 0x1240  [ 8E4B58E12B3FA65ED1462846906E0B59, CD9C3768A229E86B7B9A4363F805A231280EFBC969138977E6F9EBA45C978466 ] C:\Windows\System32\sppc.dll
11:25:55.0031 0x1240  C:\Windows\System32\sppc.dll - ok
11:25:55.0031 0x1240  [ DEE4A1F675EC604E9641B1A03CF1816F, A0AC84713DDFD9A94B8558DFA26B278FB29833C5663451CC582ACA85B29CBFD8 ] C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
11:25:55.0031 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe - ok
11:25:55.0031 0x1240  [ D864C283FFD7C080FDC25FD4C798FF8D, 0B28499594A53FDA839C17356F258B0141E82E36E34FB6437D6DFCC55FD7D76B ] C:\Windows\System32\cryptnet.dll
11:25:55.0031 0x1240  C:\Windows\System32\cryptnet.dll - ok
11:25:55.0031 0x1240  [ 33F67BBCC3C0499D3F3382473114CFA8, FDDCC41CE005B7C1BEBB6F4ACA9A3F10E5972792ADFD7D294E70A0B781460981 ] C:\Windows\System32\cryptsvc.dll
11:25:55.0031 0x1240  C:\Windows\System32\cryptsvc.dll - ok
11:25:55.0031 0x1240  [ 0A3386E3CF9C5D089D695AC5A35F4C6F, D610071493EB95FCE39E24C457A0B5BBA131193159E43FDC1E8EDABB9C7AB81A ] C:\Windows\System32\diagtrack.dll
11:25:55.0031 0x1240  C:\Windows\System32\diagtrack.dll - ok
11:25:55.0046 0x1240  [ 13337A3FB17F2242487FD45488ED0485, C174F8652118876494336AB88A65D594E0E6CCBAB20CC6BA08E6B253855A01CA ] C:\Windows\System32\vssapi.dll
11:25:55.0046 0x1240  C:\Windows\System32\vssapi.dll - ok
11:25:55.0046 0x1240  [ 528F61076D36718B83C217FFF7FECBFA, 1CCDE7AA88525F69D5B82AF110E24AA093B1B9C4A51D8E3A420D427057D022B7 ] C:\Program Files\Common Files\DVDVideoSoft\lib\msvcp120.dll
11:25:55.0046 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\msvcp120.dll - ok
11:25:55.0046 0x1240  [ 6C575C171A2188D0B4133266D6092057, 7DE221F6D76E8C14A17BAF6EFC6CD4FE4AB225E68DAD47711F9FE46622CE23DD ] C:\Program Files\Common Files\DVDVideoSoft\lib\msvcr120.dll
11:25:55.0046 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\msvcr120.dll - ok
11:25:55.0046 0x1240  [ 295DB9B9149C293050FE9080A745825E, F671876C2856EBA9C3A7CE1A66106DB0A95E49EA64D03528C943557368B0671C ] C:\Windows\System32\aepic.dll
11:25:55.0046 0x1240  C:\Windows\System32\aepic.dll - ok
11:25:55.0046 0x1240  [ B940289C83121046BD6A60ACC6028593, EBD1C2C0A8EBB201924536AB5C6E032C12B9E081A153CC079748E1D6D625F0DF ] C:\Windows\System32\vsstrace.dll
11:25:55.0046 0x1240  C:\Windows\System32\vsstrace.dll - ok
11:25:55.0046 0x1240  [ 38436ADE6528D6D2D24314CE87FD2279, 511BEA8AECC25051BF7EDAB8D379F94AC4881F7A1916A63A64E9CF980C39ED7C ] C:\Program Files\Common Files\DVDVideoSoft\lib\updhelperlib.dll
11:25:55.0046 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\updhelperlib.dll - ok
11:25:55.0062 0x1240  [ 2E82EBBEF63D9215FA99A2A7947CAF11, F745FEDDEA9958FBED717ABB340B9E11F77113D57BB8DFB4D71488FD33876369 ] C:\Program Files\Common Files\DVDVideoSoft\lib\libeay32.dll
11:25:55.0062 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\libeay32.dll - ok
11:25:55.0062 0x1240  [ 51060739E75C007292D96972F9CD0247, F4C83A3752BF140778A83DE410DE845EA7D1771D423EDEABC6C88CF00F4EA508 ] C:\Program Files\Common Files\DVDVideoSoft\lib\msvcr100.dll
11:25:55.0062 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\msvcr100.dll - ok
11:25:55.0062 0x1240  [ 4135C29FCC138A48719BB498D36FC536, 0D375532E24C245244321DF213BD1733B6D69B239167B799E6BADADB0A540418 ] C:\Program Files\Common Files\DVDVideoSoft\lib\zlib1.dll
11:25:55.0062 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\zlib1.dll - ok
11:25:55.0062 0x1240  [ BF39092A36961BE47C62F46596078B74, E65B38354D1E2FA6C6CBBF76F703F48B58DEA6B0DA238FFC821479E686E9AA42 ] C:\Program Files\Common Files\DVDVideoSoft\lib\dlmgr.dll
11:25:55.0062 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\dlmgr.dll - ok
11:25:55.0077 0x1240  [ 5AADD10B71A2194EF513043A7FCB6EFF, FC8C4CB3716927AA222FFD63404BCE5953A51D6FC8F0A21B7B31E1892E079D09 ] C:\Program Files\Common Files\DVDVideoSoft\lib\libcurl.dll
11:25:55.0077 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\libcurl.dll - ok
11:25:55.0077 0x1240  [ 836621A916344EE098634557E19EDA6E, D0002E93E061B34B84E6A0B737F86765C2E9032AA188EE26FDB7E10F4A1A6655 ] C:\Program Files\Common Files\DVDVideoSoft\lib\ssleay32.dll
11:25:55.0077 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\ssleay32.dll - ok
11:25:55.0077 0x1240  [ 7404BB62C437CD678884C8FEC3CE0286, 61484A2BA2B2C8C1AB455F892334D003A95592C13A7C61D28C0AE8DE1B429E96 ] C:\Program Files\Common Files\DVDVideoSoft\lib\collector.dll
11:25:55.0077 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\collector.dll - ok
11:25:55.0077 0x1240  [ B9FD9E517E75E368B1C82A20B69953B8, 59CE8401E2ADD0F4116F655EC3F338BF5F7B05568027A4796175E126B7EB1EE4 ] C:\Program Files\Common Files\DVDVideoSoft\lib\tier0.dll
11:25:55.0077 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\tier0.dll - ok
11:25:55.0077 0x1240  [ A28011B58E0E966B44663333E72BC0D9, 3EAB9159911B1E7DFB6335E44903F565184808D502A431EF783E9ECCC4836DA8 ] C:\Program Files\Common Files\DVDVideoSoft\lib\stat.dll
11:25:55.0077 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\stat.dll - ok
11:25:55.0093 0x1240  [ 9CA122B735E729CD7879A10E2802A9A9, 2BA4A5AF49380CF5BBC08331173F64581F98945D4E6E96CA2A3313BE030E799A ] C:\Program Files\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
11:25:55.0093 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll - ok
11:25:55.0093 0x1240  [ 5CFA84CF5696CBB3D87CDDB990D542D3, 9579711F8A6E2B25AB730F57B102DA9E4C391148F2E7DBC9347E2879EE8D00D9 ] C:\Program Files\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
11:25:55.0093 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll - ok
11:25:55.0093 0x1240  [ AD7A40FDD7264C13D031B2F39D6B539C, 8504DD8AC12D244CF501B33FAA6450FC4A3DFABA27ED97E35F3B302F6C633E5D ] C:\Program Files\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
11:25:55.0093 0x1240  C:\Program Files\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll - ok
11:25:55.0093 0x1240  [ D9652739D1007B9B5CE34CEF38E095C5, 20AFFEA3B2E7F254A58CDD9F4F9D51D94710C20E98A650BE33FD446A474D7D12 ] C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
11:25:55.0093 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe - ok
11:25:55.0093 0x1240  [ F3F72A2A86C22610BCA5439FA789DD52, DA5A8F09DCC512AA1558863AD4FAC12F72DD83CA8FB4D8D9831E4AFBB6B3C616 ] C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll
11:25:55.0093 0x1240  C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll - ok
11:25:55.0109 0x1240  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] C:\Windows\System32\dps.dll
11:25:55.0109 0x1240  C:\Windows\System32\dps.dll - ok
11:25:55.0109 0x1240  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] C:\Windows\System32\IKEEXT.DLL
11:25:55.0109 0x1240  C:\Windows\System32\IKEEXT.DLL - ok
11:25:55.0109 0x1240  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] C:\Windows\System32\wdi.dll
11:25:55.0109 0x1240  C:\Windows\System32\wdi.dll - ok
11:25:55.0109 0x1240  [ 7E53957E73BFB209D49932A9DDEBEDE4, 03D6FA75D15283C9402B46DBE9CDA1FA832971443AB188D3FA8E4708C32FAAC5 ] C:\Program Files\HP\Digital Imaging\bin\hpqddcmn.dll
11:25:55.0109 0x1240  C:\Program Files\HP\Digital Imaging\bin\hpqddcmn.dll - ok
11:25:55.0109 0x1240  [ 4C39358EBDD2FFCD9132A30E1EC31E16, 06918CF99AD26CD6CF106881C0D5BDB212DC0BAC4549805C9F5906E3D03D152C ] C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll
11:25:55.0109 0x1240  C:\Windows\winsxs\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcp90.dll - ok
11:25:55.0124 0x1240  [ 5845B1C54380FB980F68024B3A8B1E66, A7215D59B5C452F1494CFEC0DFC1E4ABE2D17EA0E1D07FBA062901BC3DED21AF ] C:\Windows\System32\vpnikeapi.dll
11:25:55.0124 0x1240  C:\Windows\System32\vpnikeapi.dll - ok
11:25:55.0124 0x1240  [ C624B2452D5B574A33730D5AA731C9A2, 57F6DBF73F638DE923D4D4D3170DDCCBAFDC50BEB01749BE0D6E080C2651FF3A ] C:\Program Files\Common Files\Acronis\Infrastructure\resource.dll
11:25:55.0124 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\resource.dll - ok
11:25:55.0124 0x1240  [ 4B8C6129FF5D9E17460F9F88A2FECD01, 0DD3BFCB3C8CEB6FFC4BB8B16B1D74828311060D0B9E54DC3A3CC697A81D86CB ] C:\Program Files\Common Files\Acronis\Home\icu38.dll
11:25:55.0124 0x1240  C:\Program Files\Common Files\Acronis\Home\icu38.dll - ok
11:25:55.0124 0x1240  [ EFA785F8764B16BCE6E6082488454DC0, 769C897BAF8EA417649C9AFE809158E21C924B070D806EFF807F9B52CB2BA478 ] C:\Program Files\Common Files\Acronis\Home\icudt38.dll
11:25:55.0124 0x1240  C:\Program Files\Common Files\Acronis\Home\icudt38.dll - ok
11:25:55.0124 0x1240  [ 539C49CEBB3C50957AC8A09D95ECD880, 49E75CDB556FBCE72C44648F8930CF2209C1360F9311C5B4CEB19E13B11E6B75 ] C:\Windows\System32\shfolder.dll
11:25:55.0124 0x1240  C:\Windows\System32\shfolder.dll - ok
11:25:55.0140 0x1240  [ EB70331F80AE8026C3D52B52FB5F2EE6, 889D2B2F789AC45BA2EF86660EB4E067F4CE7F6EBBE8F8D1CD7309D1F476B877 ] C:\Program Files\Common Files\Acronis\Infrastructure\events_trace.dll
11:25:55.0140 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\events_trace.dll - ok
11:25:55.0140 0x1240  [ 526F18295E0C98B9DD236FA4A69504B8, 800F2B8C0C7D87CA38CE103EDB9C4BF32807BDA0BB8BEE94DAB48EA36CB04CCF ] C:\Program Files\Common Files\Acronis\Infrastructure\core_workers_shared_context.dll
11:25:55.0140 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\core_workers_shared_context.dll - ok
11:25:55.0140 0x1240  [ 4017C675060399D40CF14B1646CC4ECF, D90D71FB1A5E9ADED7D90AC7D5A0E597A7DC4DEA6D091399C439B7EE0199086B ] C:\Program Files\Common Files\Acronis\Infrastructure\async_service.dll
11:25:55.0140 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\async_service.dll - ok
11:25:55.0140 0x1240  [ D29249444C6F8012D3CE7A0910C93469, AAB008296F6225A8978BB667858C90F9EF99F2F79F3F790C509A4AC854E06CB1 ] C:\Program Files\Common Files\Acronis\Home\thread_pool.dll
11:25:55.0140 0x1240  C:\Program Files\Common Files\Acronis\Home\thread_pool.dll - ok
11:25:55.0140 0x1240  [ 995CCDFB2FA9DCC81A15085A7C9E5E72, AC873F84D568180FC3DFEB32E8578AD5DE7AA21D67CC05DAFDC97CA21697A060 ] C:\Program Files\Common Files\Acronis\Infrastructure\atih_mms_addon.dll
11:25:55.0140 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\atih_mms_addon.dll - ok
11:25:55.0155 0x1240  [ 962D65DBBBDF13F393364E5057231D36, 7ADCFBF6CC7529C938CA99819AE3CF22DCA114C6C25AD68B99D5A2A7B3E0D5F1 ] C:\Program Files\Common Files\Acronis\Home\libcrypto10.dll
11:25:55.0155 0x1240  C:\Program Files\Common Files\Acronis\Home\libcrypto10.dll - ok
11:25:55.0155 0x1240  [ 37FEB569A69955A55A0C05602D2AABEA, 1D68F82C0170F309786E8E880513627E3BA914ADBE61CB9ABD313DF3F6223719 ] C:\Program Files\Common Files\Acronis\Home\libssl10.dll
11:25:55.0155 0x1240  C:\Program Files\Common Files\Acronis\Home\libssl10.dll - ok
11:25:55.0155 0x1240  [ 13F2F8E180D3E9EA23B882AADC342D58, AF7F6E524F398601A730D58DC0A2303B389669C6C9A49F992E918213696A37B2 ] C:\Program Files\Common Files\Acronis\Infrastructure\service_commands_addon.dll
11:25:55.0155 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\service_commands_addon.dll - ok
11:25:55.0155 0x1240  [ C7C937EAD4B1F8532A695CCE743DC84F, 8CC60DFCD0B5CB75249669F0BC90A6E23D0826A85BD2E4F9A8E3636D525714CA ] C:\Program Files\Common Files\Acronis\Infrastructure\sync_site_addon.dll
11:25:55.0155 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\sync_site_addon.dll - ok
11:25:55.0155 0x1240  [ DEB9593345C76CB5645296010545410D, 66035CC33B77291F1B850B680F77D28EB129D4EAE59DA6823D422F955F07208A ] C:\Program Files\Common Files\Acronis\Infrastructure\zmq_infra.dll
11:25:55.0155 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\zmq_infra.dll - ok
11:25:55.0171 0x1240  [ D8161B23C616130AD0A8FD460A74A0D4, BB071CB186BA23E9D8BCB4B36DD24EF0D918C52242A95686643CA83F37E07C3B ] C:\Program Files\Common Files\Acronis\Infrastructure\ipc_server.dll
11:25:55.0171 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\ipc_server.dll - ok
11:25:55.0171 0x1240  [ 3B57D45539D292CD0672518A708D391B, A86043B9DBF6F388F9D7C236CA0E370873FF847029D513164F1C34373F2076D4 ] C:\Program Files\Common Files\Acronis\Infrastructure\ipc_server_named_pipe_addon.dll
11:25:55.0171 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\ipc_server_named_pipe_addon.dll - ok
11:25:55.0171 0x1240  [ 999CD195B2D45484DD706C31B21BAA2C, 975B284238E612EA3FFED40912F30F4A9F02BC38ADB0B85875FA60F323B992CB ] C:\Program Files\Common Files\Acronis\Infrastructure\ipc_client.dll
11:25:55.0171 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\ipc_client.dll - ok
11:25:55.0171 0x1240  [ 9D2770C04366EC86C423D6CD87918906, 7EA666D99889FC604CAA610AB559B5D1D4D5E7D8BDB49AFFFEADEFE6DE1C4506 ] C:\Program Files\NVIDIA Corporation\Display\nvsmartmax.dll
11:25:55.0171 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvsmartmax.dll - ok
11:25:55.0171 0x1240  [ EBF68A704864F6E4B6E18111238D5653, 5CC5ABC4C9F68255E78FEBEB6F3ECD67018EA68E4918CF6EA7F801537E5CFB75 ] C:\Program Files\Common Files\Acronis\Infrastructure\dml.dll
11:25:55.0171 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\dml.dll - ok
11:25:55.0187 0x1240  [ 015C6099859F1E646D658DE55AA8A2AA, 10145EB67E59FD51AF389EC1F22949A2652F9F186AB531DBEC077997BD0606FC ] C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
11:25:55.0187 0x1240  C:\Program Files\NVIDIA Corporation\Display\nvtray.exe - ok
11:25:55.0187 0x1240  [ B2AA478052974AF57E88D77677528193, 66F11F519E8C1122B2D28B81099374010FE0B83DB3C8EE223F7D1328ED1DA455 ] C:\Program Files\Common Files\Acronis\Infrastructure\dml_sqlite_addon.dll
11:25:55.0187 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\dml_sqlite_addon.dll - ok
11:25:55.0187 0x1240  [ 0684691B41204DB59337C4B29BE5B879, 5296CE3373787DF8D8F1BCA10DE160A562D6A56BA315F3482A9A1577A045CC13 ] C:\Program Files\NVIDIA Corporation\Update Common\NvUpdt.dll
11:25:55.0187 0x1240  C:\Program Files\NVIDIA Corporation\Update Common\NvUpdt.dll - ok
11:25:55.0187 0x1240  [ 4C4ABD9EA55C2FE6C3EE09B561575350, A84BBCA9E21CB615C8251ABE679169E8C544D7E5F11782B5403A9D6977A95C60 ] C:\Program Files\Common Files\Acronis\Infrastructure\sqlite3.dll
11:25:55.0187 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\sqlite3.dll - ok
11:25:55.0187 0x1240  [ 7CA642549CD59ADB1F1F05ADCE0BB2E9, 4A1B92243614AE6850B90C23A382037D30355C07177F1B2C2F8495512F6F3377 ] C:\Program Files\Common Files\Acronis\Infrastructure\curl.dll
11:25:55.0187 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\curl.dll - ok
11:25:55.0202 0x1240  [ B835B7F8FF2B0B444EA6D57211B38006, 4059EF038450A828DF7429FA03DD1A64C192DF87C9A56048F030D964F6C3CD02 ] C:\Program Files\Common Files\Acronis\Infrastructure\remote_facade.dll
11:25:55.0202 0x1240  C:\Program Files\Common Files\Acronis\Infrastructure\remote_facade.dll - ok
11:25:55.0202 0x1240  [ E9EA664126AED9F9AD86AD4C8DE24A9D, 88ED1951A30E787E87BD910098F18E1149DB960992146700CDA10C260E64E476 ] C:\Program Files\NVIDIA Corporation\Update Common\EasyDaemonAPIU.dll
11:25:55.0202 0x1240  C:\Program Files\NVIDIA Corporation\Update Common\EasyDaemonAPIU.dll - ok
11:25:55.0202 0x1240  [ F84D3AD4CACE8294D0446F776642C987, AFA1C6D927BBC93C4D72207F9042B2A1B433366A8B4EFB394894C66A34196BE0 ] C:\Program Files\NVIDIA Corporation\Update Common\NvUpdtr.dll
11:25:55.0202 0x1240  C:\Program Files\NVIDIA Corporation\Update Common\NvUpdtr.dll - ok
11:25:55.0202 0x1240  [ 0B7E85364CB878E2AD531DB7B601A9E5, F5AD3018427F1CD68450EE5CB55AA9572546322580E0FB1E7888702A291C2380 ] C:\Windows\System32\NapiNSP.dll
11:25:55.0202 0x1240  C:\Windows\System32\NapiNSP.dll - ok
11:25:55.0218 0x1240  [ 5CF640EDDB1E40A5AB1BB743BCDEC610, 0313AA3F713C9F5B84DBB0B4DE78A96B173E9F7B4CF61C10FDC7DAE952DB04E5 ] C:\Windows\System32\pnrpnsp.dll
11:25:55.0218 0x1240  C:\Windows\System32\pnrpnsp.dll - ok
11:25:55.0218 0x1240  [ 5DF5D8CFD9B9573FA3B2C89D9061A240, 990EA273B640DF2D7E800C0CFF18550259C605A4951CD82CD9F1E7B6FF0C9533 ] C:\Windows\System32\winrnr.dll
11:25:55.0218 0x1240  C:\Windows\System32\winrnr.dll - ok
11:25:55.0218 0x1240  [ 704314FD398C81D5F342CAA5DF7B7F21, CDA660E1E8AAE0789780B6B9604B138E67B2BDD1404A5E4C2354B35879D43085 ] C:\Windows\System32\wbemcomn.dll
11:25:55.0218 0x1240  C:\Windows\System32\wbemcomn.dll - ok
11:25:55.0218 0x1240  [ C5B0324DB461559ADD070E632A6919FA, AB09CACB5B7DD372B27921A5E01220552A611CECA27EF87961001FA467FDED45 ] C:\Windows\System32\wbem\wbemprox.dll
11:25:55.0218 0x1240  C:\Windows\System32\wbem\wbemprox.dll - ok
11:25:55.0218 0x1240  [ 969BBBF620DC84070B24CC4082727BEC, CE8D0285184E6F80F6DBF5E78744089D07F3A67D3051BFC0475F288712E6E452 ] C:\Program Files\Acronis\TrueImageHome\ti_managers.dll
11:25:55.0218 0x1240  C:\Program Files\Acronis\TrueImageHome\ti_managers.dll - ok
11:25:55.0218 0x1240  [ 2B59C96A094E861EB17146DEFBFEAC71, DFD2D835A1BC5E232A246E0E2B8752434631DD7D6948889C17A9359DF9A328A5 ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
11:25:55.0218 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe - ok
11:25:55.0233 0x1240  [ D7C4ABB0F1FFA371928EED0C7A6E24DC, D58665F04A785E5A338CB1A5B021703C820E8A3512663DB7F79CAD5DBEB7D662 ] C:\Windows\System32\msi.dll
11:25:55.0233 0x1240  C:\Windows\System32\msi.dll - ok
11:25:55.0233 0x1240  [ C9564CF4976E7E96B4052737AA2492B4, C3AC989C8489A23BB96400B1856F5325FFC67E844F04651EA5D61BC20A991C6D ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll
11:25:55.0233 0x1240  C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcr80.dll - ok
11:25:55.0233 0x1240  [ 0B3595A4FF0B36D68E5FC67FD7D70FDC, 372AF797353F9335915CD06D4076BAB8410775DCAF2DAC0593197D7C41BBFFB2 ] C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll
11:25:55.0233 0x1240  C:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.6195_none_d09154e044272b9a\msvcp80.dll - ok
11:25:55.0233 0x1240  [ EDE93C5228A077F0DC52D5501C0C630B, 2F6779685F1EE1CEC0D5369D031121A90288B667424B4B5037AD541481D844B8 ] C:\Program Files\Acronis\TrueImageHome\afcdpapi.dll
11:25:55.0233 0x1240  C:\Program Files\Acronis\TrueImageHome\afcdpapi.dll - ok
11:25:55.0249 0x1240  [ BB051435B59FAE151829B0315A22D347, EA14BDA91CA900FC81DB9C0288F85CBCE65D32F39A4EB865F9E477442317832A ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlos.dll
11:25:55.0249 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlos.dll - ok
11:25:55.0249 0x1240  [ D5CD1BD78FFB0395992598CE9EE219A3, CC7F9E2FF6D6C7CFE1309EB1DEC33699B2A4826E2BACB8FF83B9730F472B39B1 ] C:\Program Files\Common Files\Acronis\Home\sync_agent_api.dll
11:25:55.0249 0x1240  C:\Program Files\Common Files\Acronis\Home\sync_agent_api.dll - ok
11:25:55.0249 0x1240  [ 487F44B08EFEAF5AD087878357B9403D, B02C99850940588D52B3E6DB30DB64582F294E0BD62101067BECFEA1483010C6 ] C:\Windows\System32\pdh.dll
11:25:55.0249 0x1240  C:\Windows\System32\pdh.dll - ok
11:25:55.0249 0x1240  [ B88613BE5B9939BD5DD63F9E196413AD, 1501A1CC224A194C440372392D4F9305944F6725F3B7BD849476197AA0839137 ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\opends60.dll
11:25:55.0249 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\opends60.dll - ok
11:25:55.0249 0x1240  [ 512F05352D14C0017DB2D4E35E49015A, 19787315235ABAC1453F1D1D33859AF7121F80A0F9C7B85CF32EADAFF47E9F8E ] C:\Program Files\Common Files\Acronis\Home\ulxmlrpcpp.dll
11:25:55.0249 0x1240  C:\Program Files\Common Files\Acronis\Home\ulxmlrpcpp.dll - ok
11:25:55.0265 0x1240  [ 0FB5AA33D26F7212963D832083CD0C5C, A5DDCD9B315A96631C7AE32CF79455DCAC48F2B5C3916153E252D99A19451A14 ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\batchparser.dll
11:25:55.0265 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\batchparser.dll - ok
11:25:55.0265 0x1240  [ 69559F1F9E61C4CD86EF4758CAE3C7C0, C854CE0D88576BFBAC8835D81DB416973021AFB43CAD4D8220E65AD203B778DF ] C:\Program Files\Common Files\Acronis\Home\expat.dll
11:25:55.0265 0x1240  C:\Program Files\Common Files\Acronis\Home\expat.dll - ok
11:25:55.0265 0x1240  [ E31E4E9F644FBFE79DCA532D9781F71D, 8A06B14C315A0E9E1366A4AEF63FD61D7DFCB89680E551A704E3CB4EDA6C0A56 ] C:\Program Files\Microsoft SQL Server\100\Shared\instapi10.dll
11:25:55.0265 0x1240  C:\Program Files\Microsoft SQL Server\100\Shared\instapi10.dll - ok
11:25:55.0265 0x1240  [ AF4E7DF007D5D469BCC5C13CE1C2DEC1, 43ABAE705F3B401502A7F31A84BDB0A61A9EBC53CB3949DA325765C78FD3FFAA ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlboot.dll
11:25:55.0265 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlboot.dll - ok
11:25:55.0265 0x1240  [ 0F172AE26FE2D024C4A87DD1F8952DEF, 4228C9FD3A881CFB66FD5842DF6A070E1982257B60B3A4E47A71E1B7ED7F52CF ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\Resources\1031\sqlevn70.rll
11:25:55.0265 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\Resources\1031\sqlevn70.rll - ok
11:25:55.0280 0x1240  [ AEBC369F7DC72AB3F5B9BDF34FA0D43F, 2A819154AC6C23E97C583D90B4D0C112188B7AE9D8D9B3F88811BFCED124E551 ] C:\Windows\System32\drivers\PEAuth.sys
11:25:55.0280 0x1240  C:\Windows\System32\drivers\PEAuth.sys - ok
11:25:55.0280 0x1240  [ A081CB6FB9A12668F233EB5414BE3A0E, EE2A1311B51D1FEBAF79F45E568A927D8EA7704AFC8495AED2D26927566F61E3 ] C:\Windows\System32\HPZinw12.dll
11:25:55.0280 0x1240  C:\Windows\System32\HPZinw12.dll - ok
11:25:55.0280 0x1240  [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] C:\Windows\System32\nlasvc.dll
11:25:55.0280 0x1240  C:\Windows\System32\nlasvc.dll - ok
11:25:55.0280 0x1240  [ 140D9F911182357626165EA0BEB98C4F, 9B24047BF104895FCFDB68694934BDDD92DE98A0E6334A62E987C6DCBFFB9C5B ] C:\Windows\System32\ncsi.dll
11:25:55.0280 0x1240  C:\Windows\System32\ncsi.dll - ok
11:25:55.0280 0x1240  [ 28E2231BD34A39C854BDF3923AB2FF86, A95179068F7B86E04F976B724F155DA86253B7F4414F43DBD95F2058282B99E4 ] C:\Windows\System32\ssdpapi.dll
11:25:55.0280 0x1240  C:\Windows\System32\ssdpapi.dll - ok
11:25:55.0296 0x1240  [ 65BC271F337637731D3C71455AE1F476, DAD32B61FE0147F8D2DA4C8F016920CD6BB2098F16E3CC2768009763E71DEFBC ] C:\Windows\System32\HPZipm12.dll
11:25:55.0296 0x1240  C:\Windows\System32\HPZipm12.dll - ok
11:25:55.0296 0x1240  [ CD421DDB5C6E5458CE52EDC36DE7DC5B, 7B9C0A8B2B86BBF5D7E02F2620B0015A2530CBBC99724BE20313DE53EB31D62E ] C:\Windows\System32\PnkBstrA.exe
11:25:55.0296 0x1240  C:\Windows\System32\PnkBstrA.exe - ok
11:25:55.0296 0x1240  [ F6EF225A23D336CA30001E5007644C24, B0A4B1256C1074F1B4F73E3BBA16FD4683D6EEA583DEEF8E11EFD29BA7541F2A ] C:\Program Files\Skype\Updater\Updater.exe
11:25:55.0296 0x1240  C:\Program Files\Skype\Updater\Updater.exe - ok
11:25:55.0296 0x1240  [ 135CDCCC167EF0C250125BBD3ABE18D5, 825661B8C2D458A15317EC000B98D9A7991FCC334F36AAAF94447A8CA8275AF4 ] C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
11:25:55.0296 0x1240  C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe - ok
11:25:55.0296 0x1240  [ 724CD65DD911F228DDB4DFC253B3382C, CC454787E7EE522CCE25426883F12195DFD75B29E0D8390FEE063C2603DED0D3 ] C:\Program Files\Microsoft SQL Server\90\Shared\sqlwvss.dll
11:25:55.0296 0x1240  C:\Program Files\Microsoft SQL Server\90\Shared\sqlwvss.dll - ok
11:25:55.0311 0x1240  [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
11:25:55.0311 0x1240  C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe - ok
11:25:55.0311 0x1240  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] C:\Windows\System32\drivers\srvnet.sys
11:25:55.0311 0x1240  C:\Windows\System32\drivers\srvnet.sys - ok
11:25:55.0311 0x1240  [ E126A008A908051FBE9671CD0806B8F0, 1E7F49CFCD0E3100D373DFA9B46FD78A98911AAD1AF48C533F2E73055AC2FC77 ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\Resources\1033\sqlevn70.rll
11:25:55.0311 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\Resources\1033\sqlevn70.rll - ok
11:25:55.0311 0x1240  [ E9D702580349582413503A28F8329B32, 405CEA2DB2B9EE9EF87E454375BEA6A3F6FB30B95BBD9F397129C73D4CCCC282 ] C:\Program Files\TeamViewer\TeamViewer_Service.exe
11:25:55.0311 0x1240  C:\Program Files\TeamViewer\TeamViewer_Service.exe - ok
11:25:55.0311 0x1240  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] C:\Windows\System32\drivers\tcpipreg.sys
11:25:55.0311 0x1240  C:\Windows\System32\drivers\tcpipreg.sys - ok
11:25:55.0327 0x1240  [ 4EE25AC85AFC3FD67D9F57ECDF566FF2, F1BFF1FB655F31B97FA9C6A49D433EFD33D8A35F6B28B4D83E45C27A05A86228 ] C:\Windows\System32\sysmain.dll
11:25:55.0327 0x1240  C:\Windows\System32\sysmain.dll - ok
11:25:55.0327 0x1240  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] C:\Windows\System32\wiaservc.dll
11:25:55.0327 0x1240  C:\Windows\System32\wiaservc.dll - ok
11:25:55.0327 0x1240  [ B087F2B901570F6EF62F6C2E01A480F3, 9303CB715184D161F3BD8E9EE8799009375B17FA1BD5D7EF661D7CD7555AA251 ] C:\Windows\System32\wiatrace.dll
11:25:55.0327 0x1240  C:\Windows\System32\wiatrace.dll - ok
11:25:55.0327 0x1240  [ 72910F1DEB838E6E08A9017BFB7D4F0B, A2EAE06069778605765ECB4734760BA296707ED6E166F85F31603F5D79ACC125 ] C:\Windows\System32\browcli.dll
11:25:55.0327 0x1240  C:\Windows\System32\browcli.dll - ok
11:25:55.0327 0x1240  [ D83947A58613E9091B4C9CC0F1546A8D, C71DF6E18E2099FC462717B8658D39C607A62C7E7A1E5CD0E258C17434535AD0 ] C:\Windows\System32\mscoree.dll
11:25:55.0327 0x1240  C:\Windows\System32\mscoree.dll - ok
11:25:55.0343 0x1240  [ 873C3BB5A54347B4E54C2DB214BB8FD0, 9BCD0E09E9B512B733AB4DEAD186594553FBB6E6BBB499D99FAABD3FEDD8251B ] C:\Windows\System32\drivers\tib_mounter.sys
11:25:55.0343 0x1240  C:\Windows\System32\drivers\tib_mounter.sys - ok
11:25:55.0343 0x1240  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] C:\Windows\System32\trkwks.dll
11:25:55.0343 0x1240  C:\Windows\System32\trkwks.dll - ok
11:25:55.0343 0x1240  [ CEF42DB1DEF87F21B89A5AABB86051EF, E2041F5B9CD8B9F5E127BF5078774E949FE02811D0A42ADB26318AFAE4329E82 ] C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe
11:25:55.0343 0x1240  C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesService32.exe - ok
11:25:55.0343 0x1240  [ 79EA94E7A55E673B1E5202E666B61EC2, EA3842A12007730551C981D8C28149515B23B822697FD883E4387A0CAE1809BB ] C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll
11:25:55.0343 0x1240  C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscoreei.dll - ok
11:25:55.0343 0x1240  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] C:\Windows\System32\drivers\srv2.sys
11:25:55.0343 0x1240  C:\Windows\System32\drivers\srv2.sys - ok
11:25:55.0343 0x1240  [ 4F6E72B34ED3DC53DCC5E8708E60B61F, CB79F4EBCE11ECCFA167498F329F95D545F8D4E5CCE4006B2A03B595733AEBC2 ] C:\Windows\System32\security.dll
11:25:55.0343 0x1240  C:\Windows\System32\security.dll - ok
11:25:55.0358 0x1240  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] C:\Windows\System32\wbem\WMIsvc.dll
11:25:55.0358 0x1240  C:\Windows\System32\wbem\WMIsvc.dll - ok
11:25:55.0358 0x1240  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] C:\Windows\System32\drivers\srv.sys
11:25:55.0358 0x1240  C:\Windows\System32\drivers\srv.sys - ok
11:25:55.0358 0x1240  [ 99B9343280AF6A4C0F27CF2E28E94BBF, 0E29E05E893B2516A1BB5B1D5B7AC91BB55E2B5D463C8C50765328C10BCEA67E ] C:\Windows\System32\dssenh.dll
11:25:55.0358 0x1240  C:\Windows\System32\dssenh.dll - ok
11:25:55.0358 0x1240  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] C:\Windows\System32\iphlpsvc.dll
11:25:55.0358 0x1240  C:\Windows\System32\iphlpsvc.dll - ok
11:25:55.0374 0x1240  [ 701C9EB15E1E23D22F7C7184C0506673, 1CD59E8B8889C93B55F600DA1A7246810E8EAB725EFEF80327AC96344AC596A6 ] C:\Windows\System32\wbem\WmiDcPrv.dll
11:25:55.0374 0x1240  C:\Windows\System32\wbem\WmiDcPrv.dll - ok
11:25:55.0374 0x1240  [ CFC7D8289D2B5F3CF8D16E2DB7F93D4A, 61B4D669C692775EF361445293163E84FAD8636AC49C8047BE806DB4E4093291 ] C:\Windows\System32\wbem\fastprox.dll
11:25:55.0374 0x1240  C:\Windows\System32\wbem\fastprox.dll - ok
11:25:55.0374 0x1240  [ CE292C4C10B8DB6070F262EA2733F0DC, 0A685263DA0277F2D215C4C22BF39E2F869B632B42B8C992E068129F57177BE1 ] C:\Windows\System32\sqmapi.dll
11:25:55.0374 0x1240  C:\Windows\System32\sqmapi.dll - ok
11:25:55.0374 0x1240  [ A399514D3B28C9A3453A486BBAAFF1C7, 487CAA68CF4EE0C9DC26975C694A2780ADEFB687D1EDF929CE6E1C7E3722FFE9 ] C:\Windows\System32\wdscore.dll
11:25:55.0374 0x1240  C:\Windows\System32\wdscore.dll - ok
11:25:55.0374 0x1240  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] C:\Windows\System32\browser.dll
11:25:55.0374 0x1240  C:\Windows\System32\browser.dll - ok
11:25:55.0374 0x1240  [ E4B72E71EC37A59FE574A998A0C0EB9B, C17B06C936FC47B6AA5221ABF1DDE283F59E5751BEE9CDBCCBAF25CD4E7232AD ] C:\Windows\System32\netmsg.dll
11:25:55.0374 0x1240  C:\Windows\System32\netmsg.dll - ok
11:25:55.0389 0x1240  [ E3E811471DE781900FF21C1FD84E941E, 2A47FF52D1D6480AAD1919382E783EA184BF926311F8C7E466FEBE9F6FB88FD6 ] C:\Windows\System32\ntdsapi.dll
11:25:55.0389 0x1240  C:\Windows\System32\ntdsapi.dll - ok
11:25:55.0389 0x1240  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] C:\Windows\System32\srvsvc.dll
11:25:55.0389 0x1240  C:\Windows\System32\srvsvc.dll - ok
11:25:55.0389 0x1240  [ 881D9F2D6E04E1C323050CF1574870F7, DA02C415977A2E50C3D1E96E227234E7195BD33903C446A17FBE0FA8D14A164F ] C:\Windows\System32\wbem\WinMgmtR.dll
11:25:55.0389 0x1240  C:\Windows\System32\wbem\WinMgmtR.dll - ok
11:25:55.0389 0x1240  [ AE9898D5600A232CD8AE3298692162E5, 8B94BA9C404B8A21CE023335960E77C73245FB30015161EEFF48573DDB7E6922 ] C:\Windows\System32\clusapi.dll
11:25:55.0389 0x1240  C:\Windows\System32\clusapi.dll - ok
11:25:55.0389 0x1240  [ 89E783711AF91AF09E1EF30EF3107446, CA91DABED7508A86A4AFA5F99A4A78D0BA3577168B04C8E3462FC4D55FA33FFD ] C:\Windows\System32\sscore.dll
11:25:55.0389 0x1240  C:\Windows\System32\sscore.dll - ok
11:25:55.0405 0x1240  [ CC19D5C677D333A7E32DF9C1579C7E9E, 2B5FD5CB185555F266B2EC430FA09A6059D4D2C5925D3A171000BBCE9201EA45 ] C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlscriptupgrade.dll
11:25:55.0405 0x1240  C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlscriptupgrade.dll - ok
11:25:55.0405 0x1240  [ 1FF7E4F548C7C372C804938F0D5B36AE, F20409733F67853CBF51FD83E4DB73260FED7B7A4F361C6B3482D78C990E16FC ] C:\Windows\System32\netcfgx.dll
11:25:55.0405 0x1240  C:\Windows\System32\netcfgx.dll - ok
11:25:55.0405 0x1240  [ 5987EA8A82C53359BCD2C29D6588583E, 59E2DF91F8DA9E33DE65FA67A6A49A7C3F524618A87EAEFC8A28C5304E7FAB85 ] C:\Windows\System32\linkinfo.dll
11:25:55.0405 0x1240  C:\Windows\System32\linkinfo.dll - ok
11:25:55.0405 0x1240  [ 6383C60EC0133B14F5705F96369421B2, EAB3FA2344B853148F199F744E716FBB8E9331B9DB588F784274599B6BCE2335 ] C:\Windows\System32\hnetcfg.dll
11:25:55.0405 0x1240  C:\Windows\System32\hnetcfg.dll - ok
11:25:55.0405 0x1240  [ 2AF094C822BD6094F14A8E85FB51D52A, F70A4FEC66E64245237D9D1A4C2C87168A26F224FCE648A3D7065E95259887D2 ] C:\Windows\System32\resutils.dll
11:25:55.0405 0x1240  C:\Windows\System32\resutils.dll - ok
11:25:55.0421 0x1240  [ 45D9F6CD2469CDB6A640DD4BD2B01471, 21704ADB83B26DD9C2D4D248FE61F3FEC2003D6748BB6A830334F0FDA9610362 ] C:\Windows\System32\nci.dll
11:25:55.0421 0x1240  C:\Windows\System32\nci.dll - ok
11:25:55.0421 0x1240  [ 585EB475E7AF55C9065256E8FFB751A1, 5AE557013435DF993F0E872B90A94CBB9E80FA8A080469C300EBCEE62CABA92F ] C:\Windows\System32\wbem\wbemcore.dll
11:25:55.0421 0x1240  C:\Windows\System32\wbem\wbemcore.dll - ok
11:25:55.0421 0x1240  [ 5AE88135C6A86FCD67BA16AFBB1C8389, 0FC750B5C84F1AFBE93E8A23410360F4B068D367A9AF6FF2E3F6160DA5005DE5 ] C:\Windows\System32\wbem\esscli.dll
11:25:55.0421 0x1240  C:\Windows\System32\wbem\esscli.dll - ok
11:25:55.0421 0x1240  [ 87939B8517BF76131A62D6A6F64685A9, A3BC89B253F9B7D31EEBC3CA0C5CA50C0F0695DABD151459729E0E43B139E3A2 ] C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll
11:25:55.0421 0x1240  C:\Program Files\TuneUp Utilities 2014\avgreplibx.dll - ok
11:25:55.0421 0x1240  [ 371E3B05894549113D07CD3081ED55EF, 9973678AC0F50B1F02B379B1D4A7DDF317B724D65BE3FF635FD751EDD1D96B5A ] C:\Windows\System32\wbem\repdrvfs.dll
11:25:55.0421 0x1240  C:\Windows\System32\wbem\repdrvfs.dll - ok
11:25:55.0436 0x1240  [ 776AE0564F8B1C282E331FD95A1BDC5F, 601CFCA3922FFEA46A54AD323845A76A12FC6AF9FF64E9B0AE294FBB1AFCF4CB ] C:\Windows\System32\wbem\wbemsvc.dll
11:25:55.0436 0x1240  C:\Windows\System32\wbem\wbemsvc.dll - ok
11:25:55.0436 0x1240  [ 5610B0425518D185331CB8E968D060E6, E235186C3BF266EE9EC733D2CFF35E3A65DE039C19B14260F4054F34B5E8AD41 ] C:\Windows\System32\wbem\wmiutils.dll
11:25:55.0436 0x1240  C:\Windows\System32\wbem\wmiutils.dll - ok
11:25:55.0436 0x1240  [ 5D61BAA57A0DF3F102E52E8CEFDB45CE, 84244F6DC4648C86F7C3D354495BBCAE8BCC61B8F1C1D13D93FACF82367F89BA ] C:\Program Files\TuneUp Utilities 2014\tulic.dll
11:25:55.0436 0x1240  C:\Program Files\TuneUp Utilities 2014\tulic.dll - ok
11:25:55.0436 0x1240  [ D4191EFAB91E00FC09257AA5EBAF503B, 161B572CF4C65984EAFDBA95357373BC712AA414B52DDA23523F84151240E337 ] C:\Windows\System32\mprapi.dll
11:25:55.0436 0x1240  C:\Windows\System32\mprapi.dll - ok
11:25:55.0436 0x1240  [ F7FE730CE31B54145DEE1F1482BCCDD7, E7F0F59AB2B0D5EC5FE9B966006D06FE0FCEDBA99E2A4A8A6D410A0490F1F017 ] C:\Windows\System32\ndiscapCfg.dll
11:25:55.0436 0x1240  C:\Windows\System32\ndiscapCfg.dll - ok
11:25:55.0436 0x1240  [ 761A3A4038C1FD4F5795427907C28484, B9338BC022DC5B8C0502E6A88E7D76E03C19A828861A922360B147441FB09285 ] C:\Windows\System32\rascfg.dll
11:25:55.0436 0x1240  C:\Windows\System32\rascfg.dll - ok
11:25:55.0452 0x1240  [ 9A7B54D57594233EEB17892BAD309970, 64EF2A51BFA13455038DCB6773F9DEF6FD46FAA1F1CF47E7B61D3E64466DA5AA ] C:\Windows\System32\mprmsg.dll
11:25:55.0452 0x1240  C:\Windows\System32\mprmsg.dll - ok
11:25:55.0452 0x1240  [ CAFC0B884E5590B5E80D84F592388B3D, FFCA66AEB6869BCC7A469C5E968B20A2DFA49D97E4E598CC36E839047FF7AB2B ] C:\Windows\System32\tcpipcfg.dll
11:25:55.0452 0x1240  C:\Windows\System32\tcpipcfg.dll - ok
11:25:55.0452 0x1240  [ 3CDE2911462FEC80064A409C07710C06, DBEC8669B1B8FA68750B17008C4328B223F8263EBE02C550780926C23D38D7D3 ] C:\Windows\System32\wbem\WmiPrvSD.dll
11:25:55.0452 0x1240  C:\Windows\System32\wbem\WmiPrvSD.dll - ok
11:25:55.0452 0x1240  [ A4CC7227A452C4909F9499D91B184364, 56111E57D17553BE3EAB8DA2DC42C7132E4458549AFFC08975B7A7204D8F5E76 ] C:\Windows\System32\ncobjapi.dll
11:25:55.0452 0x1240  C:\Windows\System32\ncobjapi.dll - ok
11:25:55.0452 0x1240  [ B350509B6C9296529BC464C60FEEAEF1, CC653ED001FE6A2BE5A9687572A70CEF9FAB258A57896643379E5D6C1D8E4F1F ] C:\Windows\System32\wbem\wbemess.dll
11:25:55.0452 0x1240  C:\Windows\System32\wbem\wbemess.dll - ok
11:25:55.0467 0x1240  [ 4FB491AC8D46AAF22BA8BC5C73DABEF7, CBE2392792D209E15E44AC29E906FFDD5FBF6EED8BAB0D97D66E109AB2C5C56E ] C:\Windows\System32\wbem\WmiPrvSE.exe
11:25:55.0467 0x1240  C:\Windows\System32\wbem\WmiPrvSE.exe - ok
11:25:55.0467 0x1240  [ B010CF886420EE29C2C276646721D255, CBCD032D679ADE3A9942A1D116648D6A9ECC71F66F8630629E724E5EE23F9F73 ] C:\Windows\System32\wlanapi.dll
11:25:55.0467 0x1240  C:\Windows\System32\wlanapi.dll - ok
11:25:55.0467 0x1240  [ 1B0EC94520CAB89A9CE1B2DA405166AF, 129102C98C8B3D403C85604C9A2AFC0471CDB1212FD2C5487D73FC089FC88F0C ] C:\Windows\System32\p2pcollab.dll
11:25:55.0467 0x1240  C:\Windows\System32\p2pcollab.dll - ok
11:25:55.0467 0x1240  [ CB67C2B94302DC94BC15ED6553A5C1C7, AB75F74122123027AF37F8B95CFF1A63852BC2B05F9D7910F0A7FE752AF388FF ] C:\Windows\System32\wbem\cimwin32.dll
11:25:55.0467 0x1240  C:\Windows\System32\wbem\cimwin32.dll - ok
11:25:55.0467 0x1240  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] C:\Windows\System32\QAGENTRT.DLL
11:25:55.0467 0x1240  C:\Windows\System32\QAGENTRT.DLL - ok
11:25:55.0483 0x1240  [ 9FD6496B6D91C8BE2A10BD55EAE2D5F2, FC71F6CC24FE61BF83DD3E237C00DD0002D84DC303DB9570B241BF8212B8639D ] C:\Windows\System32\fveui.dll
11:25:55.0483 0x1240  C:\Windows\System32\fveui.dll - ok
11:25:55.0483 0x1240  [ E51B294DC4A0A944DDE468356CFBB4AC, 0C1B8768C0F8CD7A76E926A068AA994D9FC546A4FBFC8935C93F683A9A052762 ] C:\Windows\System32\wuaueng.dll
11:25:55.0483 0x1240  C:\Windows\System32\wuaueng.dll - ok
11:25:55.0483 0x1240  [ D0481FB85BEEDD30A0884BE327880F80, D28D53F8FFE4F6D728281BC0FBEF4EB435C153774855AE6348D0B75C80C2EC78 ] C:\Windows\System32\framedynos.dll
11:25:55.0483 0x1240  C:\Windows\System32\framedynos.dll - ok
11:25:55.0483 0x1240  [ 78DE417B7921DACA072059E6BF410FC7, 8A32772A5500F6076D207EA7194C67B4147BCE28DEA4B582C2129BEC4A42D7CD ] C:\Windows\System32\wshnetbs.dll
11:25:55.0483 0x1240  C:\Windows\System32\wshnetbs.dll - ok
11:25:55.0483 0x1240  [ C0D2348A923B2FAA3EC2BC65CBAE1A4F, ABBC40BB1D85CBCD10B85A3B03456C0A9722F7170EB435F1A9A6E9BC8056DF31 ] C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe
11:25:55.0483 0x1240  C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesApp32.exe - ok
11:25:55.0499 0x1240  [ A42E7748BE906434C5FD17161D168C20, 883A263ED30F9D83A788C484FE61BDB3A518FE489CF97DA4AE9599A8E39E6AE7 ] C:\Windows\System32\schedcli.dll
11:25:55.0499 0x1240  C:\Windows\System32\schedcli.dll - ok
11:25:55.0499 0x1240  [ A3A35EE79C64A640152B3113E6E254E2, 4792C0EB4F975D7130D589C81F39E537657381DE09DE0E41FD801249C1B136CB ] C:\Windows\System32\cscript.exe
11:25:55.0499 0x1240  C:\Windows\System32\cscript.exe - ok
11:25:55.0499 0x1240  [ 907281ED4AD35D41B29FFDC211EBAD80, 42171AE21B62F07511D8AEE66FF8AC6D40D53290BD01BA6125D886EC70CD3B8D ] C:\Windows\System32\wmi.dll
11:25:55.0499 0x1240  C:\Windows\System32\wmi.dll - ok
11:25:55.0499 0x1240  [ C04FE126FE7661A727E2EACA3773BF63, 08204AF0499D35222F111B23B99BA34870B49CABED8F22E97804FDEDD3864929 ] C:\Windows\System32\vbscript.dll
11:25:55.0499 0x1240  C:\Windows\System32\vbscript.dll - ok
11:25:55.0499 0x1240  [ C5413BC4F10CEB4C3070BBF04D324117, 83908C79D22458BC05FAB5ABF1DDF74177B1E5C612E893C62C19C284D2C86F60 ] C:\Windows\System32\msisip.dll
11:25:55.0499 0x1240  C:\Windows\System32\msisip.dll - ok
11:25:55.0514 0x1240  [ E8F6851E4600CD3674422487EE240941, D7CC1B8975E919C0B91AE877561F0245C8700082470C806618A09D87D1A6923A ] C:\Windows\System32\wshext.dll
11:25:55.0514 0x1240  C:\Windows\System32\wshext.dll - ok
11:25:55.0514 0x1240  [ 2D542FEEEE1644365BCE3327E91A5798, E69356A06C83152E8CD88CE977D37708F0D62B823B1BE660C59606CF2DEB6A42 ] C:\Windows\System32\scrobj.dll
11:25:55.0514 0x1240  C:\Windows\System32\scrobj.dll - ok
11:25:55.0514 0x1240  [ 244C6722289F4869068992FD7D8A8832, 8644D0A55C46C3F081F0AB43D253D13E56E77D89336A87108DB8C47D6EDC3A64 ] C:\Windows\System32\wbem\wbemdisp.dll
11:25:55.0514 0x1240  C:\Windows\System32\wbem\wbemdisp.dll - ok
11:25:55.0514 0x1240  [ A3B1D1312602280839A4A2AFBDFD066E, 607D1E78E76F2DEB1982172E93AE68420825A1B6153B413451AE306A27594B17 ] C:\Windows\System32\scrrun.dll
11:25:55.0514 0x1240  C:\Windows\System32\scrrun.dll - ok
11:25:55.0514 0x1240  [ 09F65975C1C9793B923BB52A7FA83453, EB965B61F0C08F584A461F574936EDF2CB45F121EF742CC5072221122D7CFA41 ] C:\Windows\System32\wshom.ocx
11:25:55.0514 0x1240  C:\Windows\System32\wshom.ocx - ok
11:25:55.0514 0x1240  [ 1F1F60D2D5D29A8C342182EBB88E3B43, AC7091BE8D571F5BBE6ECBE7E0D05AAA80A74108661ADFEB75C5372E0C7EB0A0 ] C:\Windows\System32\wbem\stdprov.dll
11:25:55.0514 0x1240  C:\Windows\System32\wbem\stdprov.dll - ok
11:25:55.0530 0x1240  [ E5049C43601473B5A909058596111229, 96CFE481F767C66FA2877594384086C1BE8B2BADBF12DBF4CB72CF73898D0876 ] C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys
11:25:55.0530 0x1240  C:\Program Files\TuneUp Utilities 2014\TuneUpUtilitiesDriver32.sys - ok
11:25:55.0530 0x1240  [ ECF036299AA554B5E0455262857B39D0, E7A08E4AA1677291FB55E1B43511B912D45676652E35C6BA75D1604A8BE5B1D0 ] C:\Windows\System32\diagperf.dll
11:25:55.0530 0x1240  C:\Windows\System32\diagperf.dll - ok
11:25:55.0530 0x1240  [ 1115D5A98043254A0E787F888FC273C0, 60906FF49035C8D674EE611DDEADD059329DD9004BD894AD5ACF7EF75E956827 ] C:\Windows\System32\perftrack.dll
11:25:55.0530 0x1240  C:\Windows\System32\perftrack.dll - ok
11:25:55.0530 0x1240  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] C:\Windows\System32\sppsvc.exe
11:25:55.0530 0x1240  C:\Windows\System32\sppsvc.exe - ok
11:25:55.0530 0x1240  [ 4F8CCD3E7D9F17A7C60FA0AE2466CACF, 77849DD78145EA879E63A42AE1481C0DEA3E16D89BB067229203317E9EDD340D ] C:\Windows\System32\wer.dll
11:25:55.0530 0x1240  C:\Windows\System32\wer.dll - ok
11:25:55.0545 0x1240  [ 15E298B5EC5B89C5994A59863969D9FF, 8D38B2E023462D0804F72E907D11FF72CE84540EA3B8D83F411C602C3F6A1177 ] C:\Windows\System32\npmproxy.dll
11:25:55.0545 0x1240  C:\Windows\System32\npmproxy.dll - ok
11:25:55.0545 0x1240  [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05, 7B3F117C1D606DDA7623BEC0BFBC362C33A12213E899F049AC56A55826984134 ] C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll
11:25:55.0545 0x1240  C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll - ok
11:25:55.0545 0x1240  [ 568E44F6DCFA173F3670172B69379891, D619B908770E308BE3978DD619CA0ADC229685971FC99379AA5620BE5F7C5F1C ] C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL
11:25:55.0545 0x1240  C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL - ok
11:25:55.0545 0x1240  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] C:\Windows\System32\hidserv.dll
11:25:55.0545 0x1240  C:\Windows\System32\hidserv.dll - ok
11:25:55.0545 0x1240  [ 7FFD52D73352806969D424EF327D10A7, DD44B084F052EF798997D7A8578E98DD4EF3F0E2A0C522DA2CC169D362C7B900 ] C:\Windows\System32\radardt.dll
11:25:55.0545 0x1240  C:\Windows\System32\radardt.dll - ok
11:25:55.0561 0x1240  [ F8E882C10AF4C29E378D1E28D4817CB1, 1164096E044FA9B38CCC462315B9A2F7C43C472091F539F6A4BF7B5EAA389410 ] C:\Windows\System32\pnpts.dll
11:25:55.0561 0x1240  C:\Windows\System32\pnpts.dll - ok
11:25:55.0561 0x1240  [ F0016853FA3F38F55FD868FF74C0359B, 49A6A6D610591D0F2FF8A88C8E72D6DCABB8C5FE5D3E995F0CE0E8FC073BA289 ] C:\Windows\System32\wdiasqmmodule.dll
11:25:55.0561 0x1240  C:\Windows\System32\wdiasqmmodule.dll - ok
11:25:55.0561 0x1240  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] C:\Windows\System32\wpdbusenum.dll
11:25:55.0561 0x1240  C:\Windows\System32\wpdbusenum.dll - ok
11:25:55.0561 0x1240  [ D16D818E9930A6E5B4F6476DD0998D1A, 11284FBAE473325322DA0CA6F9317B9A700A666D6D907BBBC812FD0E7BE7FE67 ] C:\Windows\System32\drivers\spsys.sys
11:25:55.0561 0x1240  C:\Windows\System32\drivers\spsys.sys - ok
11:25:55.0561 0x1240  [ D99621C0735B21DCC8BC4FEF02F379EF, C9FAD74DD80B6CCA95B83B767BB55644E775E8DC3FFC05CD89AEF16686F902FD ] C:\Windows\System32\Apphlpdm.dll
11:25:55.0561 0x1240  C:\Windows\System32\Apphlpdm.dll - ok
11:25:55.0577 0x1240  [ 3A11396EAC2414012155AB14E5C1E332, 27B2DF1C2980098025EC43B354C150BA1CE795F1138DFC03C763A115BBF77010 ] C:\Windows\System32\sppwinob.dll
11:25:55.0577 0x1240  C:\Windows\System32\sppwinob.dll - ok
11:25:55.0577 0x1240  [ E98278865E8DABA21CFE5FE4BE34210A, 3BB431A9F6476EA98C17DF46BA5DFA265E74328D84875E402236ED12E50B6330 ] C:\Windows\System32\PortableDeviceApi.dll
11:25:55.0577 0x1240  C:\Windows\System32\PortableDeviceApi.dll - ok
11:25:55.0577 0x1240  [ 133A7896E643D139443B47FDBFA327C7, 371FC602B531DF1EFDCEEC3A2F5497A0D0BE7F558B0583F572862C69A65BD454 ] C:\Windows\System32\appinfo.dll
11:25:55.0577 0x1240  C:\Windows\System32\appinfo.dll - ok
11:25:55.0577 0x1240  [ 421D9645B72CD341ECDBB0FCE06C97DE, C2F0DF431E526A8F6F3F521E1BD26838A6A7B5F8E5DBDD044871815DBC5FF6B1 ] C:\Windows\System32\sppobjs.dll
11:25:55.0577 0x1240  C:\Windows\System32\sppobjs.dll - ok
11:25:55.0577 0x1240  [ C693E642ACFBDD76433AF6BE3C3EEE6F, 5241C30CCB095B10B10AD11F42F57B2DEA362C7F6DA36A9A5B23E4DFF113CFD7 ] C:\Windows\System32\PortableDeviceConnectApi.dll
11:25:55.0577 0x1240  C:\Windows\System32\PortableDeviceConnectApi.dll - ok
11:25:55.0592 0x1240  [ C4096CA42199428B3D63DC206C197F0E, 76336CD81608650E5AAD02D59D2AC752E7BDD057314BBC7334CECF74D1EAB587 ] C:\Windows\System32\FXSRESM.dll
11:25:55.0592 0x1240  C:\Windows\System32\FXSRESM.dll - ok
11:25:55.0592 0x1240  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] C:\Windows\System32\drivers\asyncmac.sys
11:25:55.0592 0x1240  C:\Windows\System32\drivers\asyncmac.sys - ok
11:25:55.0592 0x1240  [ D44741F65A1D71F65814A12CF6E2400A, C6721F830675ADC7E7FDE2B5E822E56F6A063146F5066F1E25EBFE86F0A87136 ] C:\Windows\System32\runonce.exe
11:25:55.0592 0x1240  C:\Windows\System32\runonce.exe - ok
11:25:55.0592 0x1240  [ 0E1490FB24DF3386AF80F66107A8515C, 4C5BD077FEF3B1DA26683C48EDFBF10A622986087190A9C0EFD03F53A9F4BF82 ] C:\Windows\System32\tdh.dll
11:25:55.0592 0x1240  C:\Windows\System32\tdh.dll - ok
11:25:55.0592 0x1240  [ 3D6F22551D422F97AACB0BB927E4C846, 9AB7C9F2E7F3D1CEC4553D0DF57E074121957055A9A4349946D354ACB6FC4579 ] C:\Windows\System32\pnidui.dll
11:25:55.0592 0x1240  C:\Windows\System32\pnidui.dll - ok
11:25:55.0592 0x1240  [ AD7B9C14083B52BC532FBA5948342B98, 17F746D82695FA9B35493B41859D39D786D32B23A9D2E00F4011DEC7A02402AE ] C:\Windows\System32\cmd.exe
11:25:55.0592 0x1240  C:\Windows\System32\cmd.exe - ok
11:25:55.0608 0x1240  [ 4D6A7C6733437FB02B9A8BD5B3124A2A, 5802633BFAAB21483C969AC9D0B601898A109F0C51BE857EEA3266E97D0C2F01 ] C:\Windows\System32\conhost.exe
11:25:55.0608 0x1240  C:\Windows\System32\conhost.exe - ok
11:25:55.0608 0x1240  [ 0BACC9DB52051142492AA8F09ADAF8B5, 340F4378A0E7FB114F228E6373974DF0C13D27CD71E91499780FEB8A15525179 ] C:\Windows\System32\wmp.dll
11:25:55.0608 0x1240  C:\Windows\System32\wmp.dll - ok
11:25:55.0608 0x1240  [ F02CF24E59AF96F7F2FFF8C3204F57B8, 75EB54AE7110ECB7FEC154012227EF4FA19D457C81A9E9984CE67D74F5B4E915 ] C:\Windows\System32\ieframe.dll
11:25:55.0608 0x1240  C:\Windows\System32\ieframe.dll - ok
11:25:55.0608 0x1240  [ A580CFFC56EE72550B803AED2EFD5442, 7939AB14AFB7B2D1ACD626D34A00FAFF71166FEAA3D41C474BE00A2D2E87BB1C ] C:\Windows\System32\powertracker.dll
11:25:55.0608 0x1240  C:\Windows\System32\powertracker.dll - ok
11:25:55.0608 0x1240  [ 60F4AEFA103D421EA4A40E31409B4756, 037A8605CA504A4FF43E9D4DE9017CEA1E26D3556C975872C747E24D8B0835EF ] C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
11:25:55.0608 0x1240  C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll - ok
11:25:55.0623 0x1240  [ 2C4A87CA8C00E98EFDCFA2E8EC9A3503, DA59CE662E98E56D89E2894D2AC8B9F324C16DA23C860640EDC2C82E0AD06097 ] C:\Windows\System32\shdocvw.dll
11:25:55.0623 0x1240  C:\Windows\System32\shdocvw.dll - ok
11:25:55.0623 0x1240  [ 819F8CF959BF5E1C5DF209CE2B03FDBA, 3B63508CB82663231E1BF3F02817C65413F0A44B78AC907D8F8C1C48EF60379B ] C:\Users\Kerso\AppData\Local\Temp\{B8F741C0-8625-4BD8-B529-F47E9072BCA1}\{B69AA980-8945-4604-BD4F-BAB80C25E3B7}.exe
11:25:55.0623 0x1240  C:\Users\Kerso\AppData\Local\Temp\{B8F741C0-8625-4BD8-B529-F47E9072BCA1}\{B69AA980-8945-4604-BD4F-BAB80C25E3B7}.exe - ok
11:25:55.0623 0x1240  [ 7E9917D5309A90E7576653BFE39F80D8, 3525795CA69EF165AAAA20C878A20DF5A5F183CF6F8358A0132A88153E6459C6 ] C:\Windows\System32\timedate.cpl
11:25:55.0623 0x1240  C:\Windows\System32\timedate.cpl - ok
11:25:55.0623 0x1240  [ D2958325C1AE1AE37A83334C6229E3BC, D8263CB39A25447442B75A8D8E8111DF671D645DA90A33865C089DEDA9706904 ] C:\Windows\System32\actxprxy.dll
11:25:55.0623 0x1240  C:\Windows\System32\actxprxy.dll - ok
11:25:55.0623 0x1240  [ F1278B3514EA6FA9BC39B20D26139AAC, 7FA1B8CCBB4771F3105EEACE2C13F949FA65C7F53817C783BDF9770F94FF12B5 ] C:\Windows\System32\msiltcfg.dll
11:25:55.0623 0x1240  C:\Windows\System32\msiltcfg.dll - ok
11:25:55.0639 0x1240  [ 64E211E0FDFCE4D186DF58BB7D0503BC, 6B9E12979119BAD721D493A9CEFDC7B4150121D5590222069FD1B8D80F9AC5C0 ] C:\Windows\System32\gameux.dll
11:25:55.0639 0x1240  C:\Windows\System32\gameux.dll - ok
11:25:55.0639 0x1240  [ 3A16EA01FCFAAB40882DB5BFEE632322, 04ED66BEFDB822181EBD1D84CBF0B17AAADF8455AE742F44D7ADCB26AB07BDAD ] C:\Windows\System32\msftedit.dll
11:25:55.0639 0x1240  C:\Windows\System32\msftedit.dll - ok
11:25:55.0639 0x1240  [ 298FDE634538B62CEEEC266D8773B21A, E6E445282D17CEAFEAB66A5A1E0124DD50F2438205BCE5649DB998BDAED06CB7 ] C:\Windows\System32\msls31.dll
11:25:55.0639 0x1240  C:\Windows\System32\msls31.dll - ok
11:25:55.0639 0x1240  [ 4B7032306356E351D99834C709F653F6, 078BA62C01493BC161515C78B0E9C06E47904E34035893BE2A8327258A8B3684 ] C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll
11:25:55.0639 0x1240  C:\Program Files\Common Files\microsoft shared\ink\tiptsf.dll - ok
11:25:55.0639 0x1240  [ 20FFCFC9D896DA49D5F542E76F3DC0F1, 8FE9C01B2F8B924B49377C53B5C3FF08A337905BC6B90E33677F090D04EB68B6 ] C:\Program Files\Analog Devices\Core\smax4pnp.exe
11:25:55.0639 0x1240  C:\Program Files\Analog Devices\Core\smax4pnp.exe - ok
11:25:55.0655 0x1240  [ 3D57FFBAD3ED16B63DE3879BAB0FB56F, 6BEAF5AFC98961190B004E8DE57CD5F9F39117287AE18D59DDB2EC5C0A0C6622 ] C:\Windows\System32\networkexplorer.dll
11:25:55.0655 0x1240  C:\Windows\System32\networkexplorer.dll - ok
11:25:55.0655 0x1240  [ 175383778EB24D98C84E624021E3AA0B, FE831AC7C5375FE0F0D2A56F1546F968B2595503CC63FE9A8F819F7910A1604A ] C:\Windows\System32\aeevts.dll
11:25:55.0655 0x1240  C:\Windows\System32\aeevts.dll - ok
11:25:55.0655 0x1240  [ E027A6E99EF709AFD195FD6329224C47, B31B85BF369DC36363B0E527AE3B8E95B33699D17D09C6313C43E7373A3E6874 ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{112A74B3-D3A5-4454-AC6C-15A78C992066}.tmp
11:25:55.0655 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{112A74B3-D3A5-4454-AC6C-15A78C992066}.tmp - ok
11:25:55.0655 0x1240  [ AB67816718E5C65CC326BE56AC0B9E73, D6F19026CB87C9BB5521D668B13347B68F297FCE34C5F1BFE530574B16ADB2D5 ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{70BEEDDC-05B6-439A-B9F2-2EA3ECC56D12}.tmp
11:25:55.0655 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{70BEEDDC-05B6-439A-B9F2-2EA3ECC56D12}.tmp - ok
11:25:55.0655 0x1240  [ D46032A7CA594D696895879EDCE4CBDB, BF42D95B6ABE54F1272BE679F0626D8A3B482E94A8476F83EBDE4B697D6D8B99 ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{2D87429B-DEA7-4034-8BD5-0ACB93FA0576}.tmp
11:25:55.0655 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{2D87429B-DEA7-4034-8BD5-0ACB93FA0576}.tmp - ok
11:25:55.0670 0x1240  [ C74D46C1F542F5FEB9B7E1A8EC04986D, FA83733A81BA8D96EDFD15C1914D5A6056D73C61540C8747E9AE1343DA47A63D ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{1676F8E9-7A1E-4F02-BCEC-3A7E0B7879D9}.tmp
11:25:55.0670 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{1676F8E9-7A1E-4F02-BCEC-3A7E0B7879D9}.tmp - ok
11:25:55.0670 0x1240  [ DC6DB08D85337C9675F94B01043279AE, B09E491113F9E95F4EE00BB51BB21D4967BAC333C0DCD030A10AEA9B9E52032B ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{484DBB4F-A0A8-4029-8FB0-E0D5DE4E627E}.tmp
11:25:55.0670 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{484DBB4F-A0A8-4029-8FB0-E0D5DE4E627E}.tmp - ok
11:25:55.0670 0x1240  [ D0E56F15F1516C73ADC99F18262EF4CA, CF35B19C13FC06CD163F430404CD9B428938714CF15136F1EE7BCEA8BC0FEE10 ] C:\Program Files\Analog Devices\Core\smwdmif.dll
11:25:55.0670 0x1240  C:\Program Files\Analog Devices\Core\smwdmif.dll - ok
11:25:55.0670 0x1240  [ 517ECD823EB9A03368294C6C33A695D0, 7BA4EF2C5E9D15A4EE8ACC169CA233010DF8D1BC7088665E06C9E71BBA0CD40C ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{54C64866-4A7D-40C5-867C-44C564E5F228}.tmp
11:25:55.0670 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{54C64866-4A7D-40C5-867C-44C564E5F228}.tmp - ok
11:25:55.0670 0x1240  [ 3428F170E1953B4C4EA10A5F58B55908, B554E04021472C3C2BBDED2B4BBB4F6648932356F8DA409A2A7F6AC02E54B306 ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{53225283-7884-4B33-99A5-34188F22EC9D}.tmp
11:25:55.0670 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{53225283-7884-4B33-99A5-34188F22EC9D}.tmp - ok
11:25:55.0686 0x1240  [ 96D681B7DE0BA6BFA1DC55915003CD05, 26CDA6A9A67F20A494F0EF3577D14F5DDA1F0D4428891DBD271A757833285939 ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{25632AFD-5675-42F6-8736-A803F5A763FB}.tmp
11:25:55.0686 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{25632AFD-5675-42F6-8736-A803F5A763FB}.tmp - ok
11:25:55.0686 0x1240  [ 672D7C5080ACB003343006405DA2E621, 5F28C83A20ECB1F20894B60725477BEF0D672817DFDB9822FB345A3270A0C095 ] C:\Windows\System32\thumbcache.dll
11:25:55.0686 0x1240  C:\Windows\System32\thumbcache.dll - ok
11:25:55.0686 0x1240  [ 504C916D52ABA407FD4DC1E709AEA71E, 8F279620247481F28DF7D9FD4A81173396E39EB807E24587E89CAF1172CC846C ] C:\Program Files\avmwlanstick\WLanGUI.exe
11:25:55.0686 0x1240  C:\Program Files\avmwlanstick\WLanGUI.exe - ok
11:25:55.0686 0x1240  [ 85D8D497E3CFCD66607DAD332378DE8B, FEB2FF9315B41A7D13C9F3EB4CFDD612C951CA02330BC5A9129881E148769C7F ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{E82DD7D8-7078-4480-9E36-40CB926AC4C6}.tmp
11:25:55.0686 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{E82DD7D8-7078-4480-9E36-40CB926AC4C6}.tmp - ok
11:25:55.0686 0x1240  [ 0E85C11F8850D524B02181C6E02BA9AE, 8703566931067CCF949E9779E4D328DD21210329DD687459300C83DDD06390A8 ] C:\Windows\System32\dsound.dll
11:25:55.0686 0x1240  C:\Windows\System32\dsound.dll - ok
11:25:55.0701 0x1240  [ CD0DAF878147B723108C428370FF0355, A5C3D8A516FD0A15DAAB442DA424E996112C355239B985413EAA4DC1FAB76303 ] C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{9D0F0A13-31AB-4B78-AB12-BD058D99AAF3}.tmp
11:25:55.0701 0x1240  C:\Users\Kerso\AppData\Local\Temp\{ACF9F8BE-0668-4F5A-9643-F36D99E5D2BC}\{9D0F0A13-31AB-4B78-AB12-BD058D99AAF3}.tmp - ok
11:25:55.0701 0x1240  [ 2A39F32E0067CBF221611FE1FA8C6D8F, C6D1CAB7BC87F8EB7D801BE3E3DA9B631932A94468E7A6F46D60A43C9AB08EE7 ] C:\Windows\System32\DeviceCenter.dll
11:25:55.0701 0x1240  C:\Windows\System32\DeviceCenter.dll - ok
11:25:55.0701 0x1240  [ 102CF6879887BBE846A00C459E6D4ABC, A4C51C79CF95D5C79DCEFB02946A09A987FEAF83CE2EE1BA7677EBA90869AC80 ] C:\Windows\System32\riched20.dll
11:25:55.0701 0x1240  C:\Windows\System32\riched20.dll - ok
11:25:55.0701 0x1240  [ B5506B451BFE7148ECA7056BDA2970BD, 4E8E031342E5EA7DD24B5EFCE04B7FB96BAF0B600F548F8FB2414F0E02C54613 ] C:\Windows\System32\riched32.dll
11:25:55.0701 0x1240  C:\Windows\System32\riched32.dll - ok
11:25:55.0701 0x1240  [ DA7DC61D5C5CDFDBFD400F6835AFD12D, D8DE5357C94F4588B065DEEF16AAEF8840D683E12B581A821FBA080CF8F141F4 ] C:\Program Files\SmartTechnology\Software\ProfilerU.exe
11:25:55.0701 0x1240  C:\Program Files\SmartTechnology\Software\ProfilerU.exe - ok
11:25:55.0717 0x1240  [ FCEBDCC867A2039DCDA7E8CDA2040241, 5612845376EF69108D9B6BAF47E5409EA25473BB35A991C8993BF5A1A8CA22D6 ] C:\Program Files\SmartTechnology\Software\SaiMfd.exe
11:25:55.0717 0x1240  C:\Program Files\SmartTechnology\Software\SaiMfd.exe - ok
11:25:55.0717 0x1240  [ 5E08AC958BE05247FF1539E0D1CE7905, C6E7419EA72D1703F72292743A999F4A6CF0C6734BA1EE92C6AF18BA8B1A3A23 ] C:\Windows\System32\dinput8.dll
11:25:55.0717 0x1240  C:\Windows\System32\dinput8.dll - ok
11:25:55.0717 0x1240  [ B1BF296CC33FFC3ECE47377C6D84EF5D, 573421CFC10FBEC6430D20D04BEF5492BE7A5D71D85C85E433803D8F991E131F ] C:\Program Files\360\Total Security\safemon\QHSafeTray.exe
11:25:55.0717 0x1240  C:\Program Files\360\Total Security\safemon\QHSafeTray.exe - ok
11:25:55.0717 0x1240  [ C2446A035DB3C045EC659D532C438D65, 1F538168C8A983D77FC2CA49C6F0FEEFE3FD0FC3DC9CA543420BA913222CA2DF ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
11:25:55.0717 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe - ok
11:25:55.0717 0x1240  [ AAA298BDDC6033909AEBAE9547441575, 066122F05CCF59D7CE9995C185381C97A9C8C3C6B41ACD7BE628500F3DF02E02 ] C:\Program Files\DAEMON Tools Lite\DTLite.exe
11:25:55.0717 0x1240  C:\Program Files\DAEMON Tools Lite\DTLite.exe - ok
11:25:55.0733 0x1240  [ 5B709F50A286B3E1767CDAF7F178525E, E96F54461039A5B3AE36A0C6760BD2F81C8C566EE2580EF7BAF2697E969892E3 ] C:\Program Files\SmartTechnology\Software\ManuExtensionDLLs\AppLaunchEventDll.dll
11:25:55.0733 0x1240  C:\Program Files\SmartTechnology\Software\ManuExtensionDLLs\AppLaunchEventDll.dll - ok
11:25:55.0733 0x1240  [ 3DA28E7AAEB3DB2B2439BF4FF9B6E6E8, 1FFD889433EEFC7D4728D2A8E5A6F2096BADA7505DA9B27CDF5800AC0145A633 ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentDialogs.dll
11:25:55.0733 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentDialogs.dll - ok
11:25:55.0733 0x1240  [ 3BD4D79833D773D83C3AC6DDCDE462DA, 4D9F7FE4364C89B45D595EB4AD5E39B058222CD43F8442E1BF6135DB90B89A01 ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentModels.dll
11:25:55.0733 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentModels.dll - ok
11:25:55.0733 0x1240  [ 4196C6204C0732115E5456CD0DB84995, E44A80B02146093F4B1B7083E1643F0E31890E95703D8068FDFCCC68D6EE3208 ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\GlobalUtil.dll
11:25:55.0733 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\GlobalUtil.dll - ok
11:25:55.0733 0x1240  [ F67A72501DF02FA7432691C37B3B2B1A, D869F7DB545C7398777C6BA8B8C18A515FFD505F763B9CDE03DFC9AA94AAFE0D ] C:\Windows\System32\SFFXDAPO.dll
11:25:55.0733 0x1240  C:\Windows\System32\SFFXDAPO.dll - ok
11:25:55.0748 0x1240  [ 39EAE20638E7F13674D9988907CEF6F7, E2F3682393D6A9CA24FCEDA395100FDD464D3CFCB51CCF1C37C63DDD195EF6A2 ] C:\Windows\System32\WMALFXGFXDSP.dll
11:25:55.0748 0x1240  C:\Windows\System32\WMALFXGFXDSP.dll - ok
11:25:55.0748 0x1240  [ CA6ADE4F7761BB15B3325356DC3B82BB, 0EA4CD410DA764916EA201C0C1E16752E0D3DC9D8571510782AF4AAE62509AF7 ] C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll
11:25:55.0748 0x1240  C:\Windows\winsxs\x86_microsoft.vc90.mfc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_4bf7e3e2bf9ada4c\mfc90u.dll - ok
11:25:55.0748 0x1240  [ 52BA9FFE2006475F08D8659EA5CF36EF, 252A9E1728C28E0561D022E380780485EDA3187260B37C23E5ADBABC508762C8 ] C:\Program Files\Acronis\TrueImageHome\ti_managers_proxy.dll
11:25:55.0748 0x1240  C:\Program Files\Acronis\TrueImageHome\ti_managers_proxy.dll - ok
11:25:55.0748 0x1240  [ 5342DCCA8EA8ED193ACAAD14A5046982, 3EC8D4CA184343CA0A28E0AC2930C65EE2E798C8E4F93C85AF42FDC3A8D582B6 ] C:\Windows\System32\mfplat.dll
11:25:55.0748 0x1240  C:\Windows\System32\mfplat.dll - ok
11:25:55.0748 0x1240  [ 6A805C15A92DC7F7E3EFFE2696F10935, B6F7F98264EEB769A89E14EEB4090B056EE62F49F10BD4DF9EBC30BE517BF45D ] C:\Program Files\360\Total Security\360Verify.dll
11:25:55.0748 0x1240  C:\Program Files\360\Total Security\360Verify.dll - ok
11:25:55.0764 0x1240  [ C72846D8F1CB43507885731B52DC9167, 3990BE5831F21C5B031FCB8E336E10C1698B4AB14F18A46707C1D34DB6E64CB8 ] C:\Program Files\360\Total Security\safemon\SomProxy.dll
11:25:55.0764 0x1240  C:\Program Files\360\Total Security\safemon\SomProxy.dll - ok
11:25:55.0764 0x1240  [ 1C7F1C3EA5894995E6C563E9AE9F029F, 992F3206D4AAD0E22EC361C1DADF8A771CA5F2E6F0B999B43F56ECE8C412D414 ] C:\Windows\System32\l3codeca.acm
11:25:55.0764 0x1240  C:\Windows\System32\l3codeca.acm - ok
11:25:55.0764 0x1240  [ DC13E84483CBD756EA934D0361831C50, 79CA4A37DDD0018A590E9B5626EFD91197997AFBED2F3F1752B19305D705F4DC ] C:\Program Files\360\Total Security\safemon\safemon.dll
11:25:55.0764 0x1240  C:\Program Files\360\Total Security\safemon\safemon.dll - ok
11:25:55.0764 0x1240  [ 56F3ED370A34A26261DFD509FF506A6D, 90ED429E5DBB6E529DB5FD04B6890545AA540C3A7B7B99968E8EB235E2A37848 ] C:\Program Files\360\Total Security\safemon\360GuardBase.dll
11:25:55.0764 0x1240  C:\Program Files\360\Total Security\safemon\360GuardBase.dll - ok
11:25:55.0764 0x1240  [ 570D3320741C6E40453CB3BCAEEE395C, D21A351E3F0CCAB0BC38A6C8DC7536AAECE7102F69C8E12CCB83B64D1BF3C999 ] C:\Program Files\DAEMON Tools Lite\DTCommonRes.dll
11:25:55.0764 0x1240  C:\Program Files\DAEMON Tools Lite\DTCommonRes.dll - ok
11:25:55.0779 0x1240  [ B09994B394BB9B89EE68C9B806AA16D1, 2A370717C5FA3ADD8105FEE103535E452D9EA2E26E08C0202F991EBC9BBB33EE ] C:\Program Files\360\Total Security\safemon\urlproc.dll
11:25:55.0779 0x1240  C:\Program Files\360\Total Security\safemon\urlproc.dll - ok
11:25:55.0779 0x1240  [ AF25D4666FACB3144E4D263FE59B636D, A792E8611D5DF1974244A215AC5396E53C681F68432FAE79859CB411B48B579F ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\CommonModule.dll
11:25:55.0779 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\CommonModule.dll - ok
11:25:55.0779 0x1240  [ 174980501D785B3432219E094675E827, B6B8071DF2F888949CDE3F38955A198DC1B850927C2FEE790B62415487F05916 ] C:\Program Files\360\Total Security\safemon\wdui2.dll
11:25:55.0779 0x1240  C:\Program Files\360\Total Security\safemon\wdui2.dll - ok
11:25:55.0779 0x1240  [ A662C8544F25447908EE7D4328B09893, 93869E0242CDB1D86016DDAD7AEC819E97653DCEF4899F75605646F558B70D31 ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentModule.dll
11:25:55.0779 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\AgentModule.dll - ok
11:25:55.0795 0x1240  [ B661F953151B0CD3814B43F452536846, C8CC9A00C740B725A69A13DCEEF63DA9242554FE64EC3B5667EBD482022EA96A ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\BaseUI.dll
11:25:55.0795 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\BaseUI.dll - ok
11:25:55.0795 0x1240  [ 50A731F314D2F60BFE15902337F234D5, EE575588E3BBCC38A863406470092A3E6BF12DE661C0AF85D199B1408E3E44C3 ] C:\Program Files\Samsung\Kies\External\FirmwareUpdate\ToolkitPro1631vc90U.dll
11:25:55.0795 0x1240  C:\Program Files\Samsung\Kies\External\FirmwareUpdate\ToolkitPro1631vc90U.dll - ok
11:25:55.0795 0x1240  [ E52425AE4312C964E9846E764FE0D8F2, 0494A51526EE2A34A7E8EF9856CA1CF7E5D0AB9E7C22DD8F24C4C04A0559BA05 ] C:\Program Files\360\Total Security\safemon\spsafe.dll
11:25:55.0795 0x1240  C:\Program Files\360\Total Security\safemon\spsafe.dll - ok
11:25:55.0795 0x1240  [ 936F728E04ACCF3F38801CFFCF1E3F40, 59CA86096F4B928E364B6A3C0408615F068BB8BC02DCFC5EAF4873EC6D6E0797 ] C:\Windows\System32\oledlg.dll
11:25:55.0795 0x1240  C:\Windows\System32\oledlg.dll - ok
11:25:55.0795 0x1240  [ D4325026873BF2CF7A0BD5CF888161C5, D16CF731DF97C3BADB3992A79B1092D7A9D91AEB89C8AEBDB01AD2A415A46942 ] C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90DEU.DLL
11:25:55.0795 0x1240  C:\Windows\winsxs\x86_microsoft.vc90.mfcloc_1fc8b3b9a1e18e3b_9.0.30729.6161_none_49768ef57548175e\MFC90DEU.DLL - ok
11:25:55.0811 0x1240  [ 050685C28D420DED160585683EF4BD87, 8561D73A5EDDAA8B0F7479573DE231C6522F502B5D7AF35E96EC51B1DC841883 ] C:\Program Files\DAEMON Tools Lite\Engine.dll
11:25:55.0811 0x1240  C:\Program Files\DAEMON Tools Lite\Engine.dll - ok
11:25:55.0811 0x1240  [ BF49B5D47D80D8711E3D54C8E0A59130, A5462F9B25467AA75860E3135D04EB41C87985443B3F50B17A1156093CFA50AB ] C:\Windows\System32\msxml3.dll
11:25:55.0811 0x1240  C:\Windows\System32\msxml3.dll - ok
11:25:55.0811 0x1240  [ 007863E45F25AA47A4C30D0930BBFD85, 60F2ABA40D520FCA2C57FA2DB72E111C14F21821DA17F662837506B80C269634 ] C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
11:25:55.0811 0x1240  C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll - ok
11:25:55.0811 0x1240  [ 4DE1EBB2314E2F10AC9EC83138193F8B, 3520F4F90603AAD28D0AF37447113815AA08746D0FE944597CBEF5B0BC3A35C1 ] C:\Program Files\DAEMON Tools Lite\imgengine.dll
11:25:55.0811 0x1240  C:\Program Files\DAEMON Tools Lite\imgengine.dll - ok
11:25:55.0811 0x1240  [ 67C1B58706B47EEBA4E117AC197289E6, 9213E55DA854563E3A99369A4FAD853C0A97241A4F6D93F98444C57ADEEF89C1 ] C:\Windows\System32\batmeter.dll
11:25:55.0811 0x1240  C:\Windows\System32\batmeter.dll - ok
11:25:55.0811 0x1240  [ 912649A1B3F9E6ACB3899FBDABA2ED5F, 049DFA9EA45A888B984E459B927A0F8AA4C10B9D36C6C0A0FE57F6329BEAF555 ] C:\Windows\System32\stobject.dll
11:25:55.0811 0x1240  C:\Windows\System32\stobject.dll - ok
11:25:55.0826 0x1240  [ C8333F1F77A1B2E25F2202E892CAF634, 7A614AA4353ECE8175B6AB7B25EE26FAB22DF2A53C9A5A694B3A3B56F6C783A7 ] C:\Windows\System32\prnfldr.dll
11:25:55.0826 0x1240  C:\Windows\System32\prnfldr.dll - ok
11:25:55.0826 0x1240  [ 51138BEEA3E2C21EC44D0932C71762A8, 5AD3C37E6F2B9DB3EE8B5AEEDC474645DE90C66E3D95F8620C48102F1EBA4124 ] C:\Windows\System32\rundll32.exe
11:25:55.0826 0x1240  C:\Windows\System32\rundll32.exe - ok
11:25:55.0826 0x1240  [ ADDB05C93272A62606599B24730BD645, 38E2E2979C48549A3B72807B33254DB3AC106DB1FD2790C8AC1B27CDE86EC38F ] C:\Windows\System32\DXP.dll
11:25:55.0826 0x1240  C:\Windows\System32\DXP.dll - ok
11:25:55.0826 0x1240  [ 8704A754CE5AF0C28CBB87A5FE77995A, 98FA9ECC259B4675DC7635C92CED6C6E1B0A423DCC7B558E2CE541B6D488DDDD ] C:\Windows\AppPatch\AcLayers.dll
11:25:55.0826 0x1240  C:\Windows\AppPatch\AcLayers.dll - ok
11:25:55.0826 0x1240  [ 856CFFCD835528136367BB1A8FE1DB87, 97EE0B243F460BE737D18B634559BC6389064BA013890E69B650E5152AB873C8 ] C:\Windows\System32\Syncreg.dll
11:25:55.0826 0x1240  C:\Windows\System32\Syncreg.dll - ok
11:25:55.0842 0x1240  [ F8F03D206F7D5811D630349A23E9B9B9, D8F63A2DF5E79103BC3DD36BF09E60D095577BCB30BADA8763168E0199ED4CD8 ] C:\Windows\ehome\ehSSO.dll
11:25:55.0842 0x1240  C:\Windows\ehome\ehSSO.dll - ok
11:25:55.0842 0x1240  [ EAB975DB4C2805927FE5BD047D05C9AA, 8F5497B1A2652B5EAA5D35BD314B5F90C5140207427DAE6068D665FA44D3FD56 ] C:\Windows\System32\netshell.dll
11:25:55.0842 0x1240  C:\Windows\System32\netshell.dll - ok
11:25:55.0842 0x1240  [ B2B3DAE040F6B5AE1DF52B0CD7631A18, 062680EFF24EB83FF34DDD76043DB9ABB476C8FEE7BBE869A1E7F7FC8891314F ] C:\Windows\System32\AltTab.dll
11:25:55.0842 0x1240  C:\Windows\System32\AltTab.dll - ok
11:25:55.0842 0x1240  [ ADB45A977BD9E45790CA496DB84BA148, BB251C9A5D2F5C6BDFB22C6BA235748472FC28AF2ADAF1CE7948352301DDE3C1 ] C:\Windows\System32\PortableDeviceTypes.dll
11:25:55.0842 0x1240  C:\Windows\System32\PortableDeviceTypes.dll - ok
11:25:55.0842 0x1240  [ 735263DA17BF5BAF9CCD483843BF9D5A, A493F9191EA3F37A53474E94B3917EA038B29545FC62B1634CE47F05EA2FF5C6 ] C:\Windows\System32\WPDShServiceObj.dll
11:25:55.0842 0x1240  C:\Windows\System32\WPDShServiceObj.dll - ok
11:25:55.0857 0x1240  [ 236F286E103FD44BD85FDD93097FD5DD, C369C98E76FEFBB05A12ABEECCF89C75132419B56866ED9AB77F61F84BA62785 ] C:\Windows\System32\SearchIndexer.exe
11:25:55.0857 0x1240  C:\Windows\System32\SearchIndexer.exe - ok
11:25:55.0857 0x1240  [ BD626EF05967D14C772B8096292731A3, FE3838B41DCAFC52089D909E7F411186D993C08AC149E093352D691D57C9BE71 ] C:\Windows\System32\QUTIL.DLL
11:25:55.0857 0x1240  C:\Windows\System32\QUTIL.DLL - ok
11:25:55.0857 0x1240  [ CF4274CEEA9F7791FB7FC40A066BC2C7, C153EC0D420261185001B354955DF85C6E842334D34E70BB69CECC3AFC8CE36C ] C:\Windows\System32\cscobj.dll
11:25:55.0857 0x1240  C:\Windows\System32\cscobj.dll - ok
11:25:55.0857 0x1240  [ 674B0C0F6A448EB185CAAB9C51D44032, 6722351F46BF70BA967844D3239CD801DFC4538A4EB6C478D8497F27F7FD9F1D ] C:\Windows\System32\srchadmin.dll
11:25:55.0857 0x1240  C:\Windows\System32\srchadmin.dll - ok
11:25:55.0857 0x1240  [ 465DBF63A5049E4DB4BC5C12FFE781CB, D12F6A9FB92144B2CFFD28BD72C234BA42F882EF22122DB83CE5EB1B8EBE9017 ] C:\Windows\System32\tquery.dll
11:25:55.0857 0x1240  C:\Windows\System32\tquery.dll - ok
11:25:55.0873 0x1240  [ 0241CB16136B9A4939CA0395768AE286, E7A3A0BDB4AC4BD718C93BE650541F96603739BDB3DB6860665DCC073DA8007D ] C:\Windows\System32\mssrch.dll
11:25:55.0873 0x1240  C:\Windows\System32\mssrch.dll - ok
11:25:55.0873 0x1240  [ 81600E2E27ED61427AAD865B9BCDDB9D, 0D7D39C0A5A2C24FAADCA41658A1C62D13180B462C78103BDF6DBD76B64DD79A ] C:\Windows\System32\msidle.dll
11:25:55.0873 0x1240  C:\Windows\System32\msidle.dll - ok
11:25:55.0873 0x1240  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] C:\Windows\System32\netman.dll
11:25:55.0873 0x1240  C:\Windows\System32\netman.dll - ok
11:25:55.0873 0x1240  [ 1CBF15FDB0310345A68972EB5C5B948F, E1EDCE6216B24037B243AC68CEEBD510646B2EFD70BC118E68303F9ED85D1973 ] C:\Windows\System32\mssprxy.dll
11:25:55.0873 0x1240  C:\Windows\System32\mssprxy.dll - ok
11:25:55.0873 0x1240  [ D39DA70FEA6BD713682F70635587DA9E, FF18C97642F48C711D75F32115B1260FE0BDF6072403E5A9226E9BE780AF1969 ] C:\Windows\System32\rasdlg.dll
11:25:55.0873 0x1240  C:\Windows\System32\rasdlg.dll - ok
11:25:55.0889 0x1240  [ 04B88428A872390D235BE52D38A9D4EF, F6954D514B67547738EB012456342D65289B0B18A0304BBAD5BDAA3436181C77 ] C:\Windows\System32\dot3api.dll
11:25:55.0889 0x1240  C:\Windows\System32\dot3api.dll - ok
11:25:55.0889 0x1240  [ 8063046AA70B97CA9985672B8848FB2E, C7A7F2D216D1F0D7F28A22E4933DB3D821AC52CC2EF7AE8BA08D18104FCF8B81 ] C:\Windows\System32\wlanhlp.dll
11:25:55.0889 0x1240  C:\Windows\System32\wlanhlp.dll - ok
11:25:55.0889 0x1240  [ C02AA67276FEE0C15CC4D6D616BDE95E, 24B0FFA2903CC77FEDE6B491647BB759C4AE054E38A19EFA0D2662AC2959570B ] C:\Windows\System32\WWanAPI.dll
11:25:55.0889 0x1240  C:\Windows\System32\WWanAPI.dll - ok
11:25:55.0889 0x1240  [ F2ED6D00921CA138289E5E0CCB9ABF87, 528F249CE0835CA4D8B7C4940F5132DF1155EB344177BEA4CD7FCF9B8DCCCA4B ] C:\Windows\System32\wwapi.dll
11:25:55.0889 0x1240  C:\Windows\System32\wwapi.dll - ok
11:25:55.0889 0x1240  [ 02530B0B7E048DD5AC8D52DAEACAEB2B, 2DEB454F8B71EC54C59185E2F1D679F7EC1C7AEFCD1D59761FDD3D70CABE0254 ] C:\Windows\System32\QAGENT.DLL
11:25:55.0889 0x1240  C:\Windows\System32\QAGENT.DLL - ok
11:25:55.0889 0x1240  [ 9A39A2A5F443A756C568C6ED5748AFE4, 13C2790985CBA9CD325BA20364A665DB50B769B7DDE93E6BE20F25427BDB34F8 ] C:\Windows\System32\ActionCenter.dll
11:25:55.0889 0x1240  C:\Windows\System32\ActionCenter.dll - ok
11:25:55.0904 0x1240  [ E3D5E244807AD655787FCD25477CC1BC, 8A378249C936914DBFEDAE310D6ACB93D488C8F490EC4AAB435861C413A5BB0F ] C:\Windows\System32\bthprops.cpl
11:25:55.0904 0x1240  C:\Windows\System32\bthprops.cpl - ok
11:25:55.0904 0x1240  [ E1AC89F6C5252057E6062843E36A6701, 32BE52836F2A011D46957AD60ABA48986B87026FD50ED09D8495460C7F1AB23E ] C:\Windows\System32\SearchProtocolHost.exe
11:25:55.0904 0x1240  C:\Windows\System32\SearchProtocolHost.exe - ok
11:25:55.0904 0x1240  [ EFB16D89CDDE7648D14E09D765AE52EB, E20E119A97FF2F25F14495CD42A58FC5A68E42447872C8F5B0850DEF915D2E01 ] C:\Windows\System32\webcheck.dll
11:25:55.0904 0x1240  C:\Windows\System32\webcheck.dll - ok
11:25:55.0904 0x1240  [ A5D237B8673025B052C0E6FDB6A883E8, 0DAE34965C08F7450938A5145D2B53C68AA917744B8C6FCB130A35C03C5CEF6F ] C:\Windows\System32\msshooks.dll
11:25:55.0904 0x1240  C:\Windows\System32\msshooks.dll - ok
11:25:55.0904 0x1240  [ 2DDEA2C345DA5BC589EFD398F220DB0E, B515B15BE7CB66F94B7A9B802719DAF7D50E1FE2832B66B6883AC0023060800D ] C:\Windows\System32\SyncCenter.dll
11:25:55.0904 0x1240  C:\Windows\System32\SyncCenter.dll - ok
11:25:55.0920 0x1240  [ A6CD6B3F71E13E2E45B727FB8A47EA87, 4D84F6B03185DA961543ADFB927CBC17A1A9F216AC24E9A9228780AD7DD0222E ] C:\Windows\System32\SearchFilterHost.exe
11:25:55.0920 0x1240  C:\Windows\System32\SearchFilterHost.exe - ok
11:25:55.0920 0x1240  [ DB67C7C62038BDE813CB6486581A7611, DC0ACAA2795BBF4C8C35CE9DD9C14636ACFD94296CDC103696B64357CC2C84BB ] C:\Windows\System32\mssph.dll
11:25:55.0920 0x1240  C:\Windows\System32\mssph.dll - ok
11:25:55.0920 0x1240  [ 2D11BC8B460957E62E4420373A0D8BDA, 56105E84333998D43DFCDA9E8A4D70EAC43076CFF8389B2E525EC5C3017DC5FD ] C:\Windows\System32\imapi2.dll
11:25:55.0920 0x1240  C:\Windows\System32\imapi2.dll - ok
11:25:55.0920 0x1240  [ 2BB34CC2D6DF7194F46C6508589EF8FD, 50BE6DAD16EF5A1E3B5764B3F131154BC8AB0F304A9B6F052E00AB4DCCCC5923 ] C:\Windows\System32\mapi32.dll
11:25:55.0920 0x1240  C:\Windows\System32\mapi32.dll - ok
11:25:55.0920 0x1240  [ 63B282FB2550893724647A359BA2323F, 578899A358A571C6ADDF178B6EC3392F2B5945A352B132FDA526950535389157 ] C:\Windows\System32\Query.dll
11:25:55.0920 0x1240  C:\Windows\System32\Query.dll - ok
11:25:55.0935 0x1240  [ C7952D0A4C43A965A1741916BB134751, 84EF222159E8C444A1D9D2E6509245716E4106C8032861DBFF399001A529BF94 ] C:\Windows\System32\hgcpl.dll
11:25:55.0935 0x1240  C:\Windows\System32\hgcpl.dll - ok
11:25:55.0935 0x1240  [ C2D6A4475B87651D5909E364439FDA52, BE9B898A8396F977E05A22D6EDF7B6B4EF4C16E159806453D03C2A918D24C19F ] C:\Windows\System32\FXSST.dll
11:25:55.0935 0x1240  C:\Windows\System32\FXSST.dll - ok
11:25:55.0935 0x1240  [ 942E57152F1CD0533644AB30EF1A4728, 4F72510BECFAFDBB06C9CAAC66BA9E95225DE1EA12B4D2FD5B67492A2E628ABD ] C:\Windows\System32\FXSAPI.dll
11:25:55.0935 0x1240  C:\Windows\System32\FXSAPI.dll - ok
11:25:55.0935 0x1240  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] C:\Windows\System32\FXSSVC.exe
11:25:55.0935 0x1240  C:\Windows\System32\FXSSVC.exe - ok
11:25:55.0935 0x1240  [ 2F66BD8D3B24948C55D1D9A56534B458, E268CFFD59BAEE549E0D1F85ED2AB24DCF1AD786AB55E83D694E60D204171C9F ] C:\Program Files\360\Total Security\safemon\safehmpg.dll
11:25:55.0935 0x1240  C:\Program Files\360\Total Security\safemon\safehmpg.dll - ok
11:25:55.0935 0x1240  ================ Scan generic autorun ======================
11:25:56.0107 0x1240  [ 20FFCFC9D896DA49D5F542E76F3DC0F1, 8FE9C01B2F8B924B49377C53B5C3FF08A337905BC6B90E33677F090D04EB68B6 ] C:\Program Files\Analog Devices\Core\smax4pnp.exe
11:25:56.0154 0x1240  SoundMAXPnP - ok
11:25:56.0247 0x1240  [ 504C916D52ABA407FD4DC1E709AEA71E, 8F279620247481F28DF7D9FD4A81173396E39EB807E24587E89CAF1172CC846C ] C:\Program Files\avmwlanstick\wlangui.exe
11:25:56.0294 0x1240  AVMWlanClient - detected UnsignedFile.Multi.Generic ( 1 )
11:25:56.0294 0x1240  AVMWlanClient ( UnsignedFile.Multi.Generic ) - warning
11:25:56.0435 0x1240  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
11:25:56.0497 0x1240  Sidebar - ok
11:25:56.0513 0x1240  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
11:25:56.0528 0x1240  mctadmin - ok
11:25:56.0559 0x1240  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
11:25:56.0591 0x1240  Sidebar - ok
11:25:56.0606 0x1240  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
11:25:56.0622 0x1240  mctadmin - ok
11:25:56.0669 0x1240  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
11:25:56.0700 0x1240  Sidebar - ok
11:25:56.0715 0x1240  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
11:25:56.0731 0x1240  mctadmin - ok
11:25:56.0762 0x1240  AV detected via SS2: 360 Total Security, C:\Program Files\360\Total Security\safemon\QHSafeTray.exe ( 8.2.0.1009 ), 0x50000 ( disabled : updated )
11:25:56.0762 0x1240  Win FW state via NFP2: enabled ( trusted )
11:25:56.0762 0x1240  ============================================================
11:25:56.0762 0x1240  Scan finished
11:25:56.0762 0x1240  ============================================================
11:25:56.0778 0x1238  Detected object count: 9
11:25:56.0778 0x1238  Actual detected object count: 9
11:26:34.0416 0x1238  Adobe LM Service ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  Adobe LM Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  AVM WLAN Connection Service ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  AVM WLAN Connection Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  avmeject ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  avmeject ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  hpqcxs08 ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  hpqcxs08 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  hpqddsvc ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  hpqddsvc ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  HPSLPSVC ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  HPSLPSVC ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  Net Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  Pml Driver HPZ12 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
11:26:34.0416 0x1238  AVMWlanClient ( UnsignedFile.Multi.Generic ) - skipped by user
11:26:34.0416 0x1238  AVMWlanClient ( UnsignedFile.Multi.Generic ) - User select action: Skip
         
Malwarebytes Text
Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 28.03.2016
Suchlaufzeit: 11:44
Protokolldatei: Malwarebytes.txt
Administrator: Ja

Version: 2.2.1.1043
Malware-Datenbank: v2016.03.28.04
Rootkit-Datenbank: v2016.03.12.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer: Kerso

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 352689
Abgelaufene Zeit: 8 Min., 58 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 2
PUP.Optional.OpenCandy, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\OpenCandyHelperRunOnce, , [3aeac3cae5b465d14d2160cbdb29b14f], 
PUP.Optional.SofTonic, HKU\S-1-5-21-392009458-3349232730-904554786-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{D97BDFB1-BA15-46F6-B3EE-DB7F2B112B3D}, , [8b99fa930a8f0036fea775c246bef20e], 

Registrierungswerte: 2
PUP.Optional.SofTonic, HKU\S-1-5-21-392009458-3349232730-904554786-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{D97BDFB1-BA15-46F6-B3EE-DB7F2B112B3D}|URL, hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=026c6375000000000000001c4af7cd81&r=89, , [8b99fa930a8f0036fea775c246bef20e]
PUP.Optional.SofTonic, HKU\S-1-5-21-392009458-3349232730-904554786-1000\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{D97BDFB1-BA15-46F6-B3EE-DB7F2B112B3D}|FaviconURL, hxxp://search.softonic.com/favicon.ico, , [70b4c8c5f9a053e3e3c2b3840301be42]

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 5
PUP.Optional.SearchProtect.AppFlsh, C:\Users\Kerso\AppData\Local\SearchProtect, , [998b335af7a2a98d7da1f32cde257b85], 
PUP.Optional.SearchProtect.AppFlsh, C:\Users\Kerso\AppData\Local\SearchProtect\SearchProtect, , [998b335af7a2a98d7da1f32cde257b85], 
PUP.Optional.SearchProtect.AppFlsh, C:\Users\Kerso\AppData\Local\SearchProtect\SearchProtect\rep, , [998b335af7a2a98d7da1f32cde257b85], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files\SearchProtect\Main, , [55cf8eff1a7f5ed8002154cb36cd56aa], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files\SearchProtect\Main\rep, , [55cf8eff1a7f5ed8002154cb36cd56aa], 

Dateien: 2
PUP.Optional.SearchProtect.AppFlsh, C:\Users\Kerso\AppData\Local\SearchProtect\SearchProtect\rep\UserRepository.dat, , [998b335af7a2a98d7da1f32cde257b85], 
PUP.Optional.SearchProtect.AppFlsh, C:\Program Files\SearchProtect\Main\rep\SystemRepository.dat, , [55cf8eff1a7f5ed8002154cb36cd56aa], 

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         
JRT Text
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.4 (03.14.2016)
Operating System: Windows 7 Professional x86 
Ran by Kerso (Administrator) on 28.03.2016 at 12:32:38,49
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 25 

Successfully deleted: C:\ProgramData\Start Menu\Programs\tuneup utilities 2014 (Folder) 
Successfully deleted: C:\ProgramData\Start Menu\Programs\tuneup utilities 2014.lnk (Shortcut) 
Successfully deleted: C:\Users\Kerso\AppData\Local\slimware utilities inc (Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\user.js (File) 
Successfully deleted: C:\users\Public\Documents\downloaded installers (Folder) 
Successfully deleted: C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 (Task)
Successfully deleted: C:\Windows\wininit.ini (File) 
Successfully deleted: C:\Program Files\myfree codec (Folder) 
Successfully deleted: C:\Program Files\searchprotect (Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3OKJM7MK (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4GADZLX8 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7PKUMOXZ (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D59BR6SD (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUKD1REK (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KTAIAKJA (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RQEH2QOU (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\Kerso\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UT22B3OR (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3OKJM7MK (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4GADZLX8 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7PKUMOXZ (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\D59BR6SD (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EUKD1REK (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KTAIAKJA (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\RQEH2QOU (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\UT22B3OR (Temporary Internet Files Folder) 



Registry: 1 

Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\Search\\SearchAssistant (Registry Value) 




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 28.03.2016 at 12:34:19,30
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         


Alt 29.03.2016, 08:13   #6
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



AdwCleaner Logfile:
Code:
ATTFilter
# AdwCleaner v5.106 - Bericht erstellt am 28/03/2016 um 12:42:28
# Aktualisiert am 27/03/2016 von Xplode
# Datenbank : 2016-03-27.2 [Server]
# Betriebssystem : Windows 7 Professional Service Pack 1 (x86)
# Benutzername : Kerso - KERSO-PC
# Gestartet von : C:\Users\Kerso\Downloads\AdwCleaner_5.106.exe
# Option : Suchlauf
# Unterstützung : hxxp://toolslib.net/forum

***** [ Dienste ] *****


***** [ Ordner ] *****

Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
Ordner Gefunden : C:\Users\Kerso\AppData\Roaming\GrabPro
Ordner Gefunden : C:\Users\Kerso\AppData\Roaming\ProgSense

***** [ Dateien ] *****


***** [ DLL ] *****


***** [ Verknüpfungen ] *****


***** [ Aufgabenplanung ] *****

Geplante Aufgabe Gefunden : Your File Updater

***** [ Registrierungsdatenbank ] *****

Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Record\{425E7597-03A2-338D-B72A-0E51FFE77A7E}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Record\{915BB7D5-082E-3B91-B1E0-45B5FDE01F24}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Record\{2009AF2F-5786-3067-8799-B97F7832FDD6}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Record\{FB2E65F4-5687-33EF-9BBF-4E3C9C98D3B9}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Schlüssel Gefunden : HKCU\Software\Ciuvo
Schlüssel Gefunden : HKCU\Software\Myfree Codec
Schlüssel Gefunden : HKCU\Software\OCS
Schlüssel Gefunden : HKCU\Software\ProgSense
Schlüssel Gefunden : HKLM\SOFTWARE\Myfree Codec
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Schlüssel Gefunden : HKU\S-1-5-21-392009458-3349232730-904554786-1000\Software\Ciuvo
Schlüssel Gefunden : HKU\S-1-5-21-392009458-3349232730-904554786-1000\Software\Myfree Codec
Schlüssel Gefunden : HKU\S-1-5-21-392009458-3349232730-904554786-1000\Software\OCS
Schlüssel Gefunden : HKU\S-1-5-21-392009458-3349232730-904554786-1000\Software\ProgSense
Schlüssel Gefunden : HKU\S-1-5-21-392009458-3349232730-904554786-1000\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
Schlüssel Gefunden : HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-392009458-3349232730-904554786-1000\Software\Ciuvo
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467

***** [ Internetbrowser ] *****


*************************

C:\AdwCleaner\AdwCleaner[R0].txt - [17221 Bytes] - [11/01/2014 16:20:47]
C:\AdwCleaner\AdwCleaner[R1].txt - [1308 Bytes] - [11/01/2014 16:24:48]
C:\AdwCleaner\AdwCleaner[R2].txt - [1179 Bytes] - [11/01/2014 16:28:48]
C:\AdwCleaner\AdwCleaner[R3].txt - [2403 Bytes] - [08/05/2014 11:58:37]
C:\AdwCleaner\AdwCleaner[S0].txt - [17163 Bytes] - [11/01/2014 16:21:33]
C:\AdwCleaner\AdwCleaner[S1].txt - [4473 Bytes] - [11/01/2014 16:25:46]
C:\AdwCleaner\AdwCleaner[S2].txt - [2464 Bytes] - [08/05/2014 11:59:50]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [4619 Bytes] ##########
         
--- --- ---

Kann bitte jemand das mal durchschauen, bzw. sagen was ich noch machen soll?

Geändert von Sumfy (28.03.2016 um 11:48 Uhr) Grund: Falsches eingefügt und nachträglich gelöscht

Alt 29.03.2016, 10:09   #7
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



moin

Zitat:
AV: 360 Total Security (Disabled - Up to date) {2B66EE1E-E5C8-C2F7-648F-4E55AC68D37D}
AS: 360 Total Security (Disabled - Up to date) {90070FFA-C3F2-CD79-5E3F-7527D7EF99C0}
Bitte diesen China-Schrott umgehend deinstallieren. Wenn wir hier durch sind kannst du auf ein vernünftiges AV umsteigen. Gib Bescheid wenn fertig.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 29.03.2016, 13:17   #8
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



Ok, Fertig :-) Danke für die Hilfe

Alt 29.03.2016, 13:37   #9
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 29.03.2016, 13:57   #10
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:05-03-2016 01
durchgeführt von Kerso (Administrator) auf KERSO-PC (29-03-2016 14:53:19)
Gestartet von C:\Users\Kerso\Downloads
Geladene Profile: Kerso & UpdatusUser (Verfügbare Profile: Kerso & UpdatusUser)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Acronis) C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
() C:\Program Files\Common Files\Acronis\TrueImageHome\TrueImageHomeNotify.exe
() C:\Program Files\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe
(Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe
(Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
(Acronis) C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
() C:\Windows\System32\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Acronis) C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1310720 2009-06-05] (Analog Devices, Inc.)
HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311616 2015-02-24] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [327680 2013-04-16] (Saitek)
HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [122880 2013-04-16] (Saitek)
HKLM\...\RunOnce: [360safeuninst_f3e1de0f0228c80791add17e8806663b] => C:\Users\Kerso\AppData\Local\Temp\f3e1de0f0228c80791add17e8806663b_remove360.bat [592 2016-03-29] () <===== ACHTUNG
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\Run: [] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [845120 2015-02-24] (Samsung)
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3481408 2012-02-13] (DT Soft Ltd)
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {4494b6f7-652d-11e1-a170-e437487d1393} - F:\pushinst.exe
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {45f957bf-653e-11e1-a480-001c4af7cd81} - F:\start.exe /checksection
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {76f3fae7-5200-11e4-9b78-001c4af7cd81} - G:\AutoRun.exe
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {cfe79821-1571-11e3-bc47-806e6f6e6963} - G:\windows\Data\setup.exe
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  Keine Datei
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} =>  Keine Datei
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2012-08-09]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{084F8F06-61ED-4423-B821-93E335573EF6}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
SearchScopes: HKLM -> DefaultScope Wert fehlt
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-15] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-15] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-24] ()
FF Plugin: @esn/esnlaunch,version=2.1.7 -> C:\Program Files\Battlelog Web Plugins\2.1.7\npesnlaunch.dll [Keine Datei]
FF Plugin: @esn/esnlaunch,version=2.3.0 -> C:\Program Files\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.3.2 -> C:\Program Files\Battlelog Web Plugins\2.3.2\npbattlelog.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-02-15] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-02-15] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-28] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: Greasemonkey - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2016-02-21]
FF Extension: Adblock Plus - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-24]
FF Extension: hd addon - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f1dcded5-3c5a-401c-b649-3c7d2e4a5347}.xpi [2016-02-24] [ist nicht signiert]
FF Extension: Skype Wizard Plus - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f930a7a4-22b0-4827-9000-385ee812ead7}.xpi [2016-03-14] [ist nicht signiert]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\ppGoogleNaClPluginChrome.dll => Keine Datei
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\pdf.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\gcswf32.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_268.dll => Keine Datei
CHR Plugin: (Norton Confidential) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.4.6_0\npcoplgn.dll => Keine Datei
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => Keine Datei
CHR Plugin: (Winamp Application Detector) - C:\Program Files\Mozilla Firefox\plugins\npwachk.dll => Keine Datei
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll => Keine Datei
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll => Keine Datei
CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => Keine Datei
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll => Keine Datei
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw_1165635.dll => Keine Datei
CHR Profile: C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-08]
CHR Extension: (YouTube) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-02]
CHR Extension: (Google-Suche) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-08]
CHR Extension: (Google Kalender) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-12-08]
CHR Extension: (Google Docs Offline) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-08]
CHR Extension: (Google +1-Schaltfläche) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgoepmocgafhnchmokaimcmlojpnlkhp [2014-04-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-10-02]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-02]
CHR Extension: (Google Mail) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-28]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [950584 2015-11-26] (Acronis)
S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2012-05-08] () [Datei ist nicht signiert]
R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [4463960 2016-01-12] (Acronis)
S2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-01-19] (Digital Wave Ltd.)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [660992 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 mmsminisrv; C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert]
S3 Origin Client Service; C:\Program Files\Origin\OriginClientService.exe [2104840 2016-02-02] (Electronic Arts)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-01-02] ()
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
R2 syncagentsrv; C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7637744 2015-11-06] (Acronis)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
R2 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-03-03] (DT Soft Ltd)
U3 Fax_tsvcawiu; kein ImagePath
R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [249184 2016-01-12] (Acronis International GmbH)
R3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [265088 2007-01-26] (AVM GmbH)
R1 hugoio; C:\Program Files\i-Menu\hugoio.sys [9760 2008-04-14] ()
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [6504 2009-05-13] ()
R1 qutmipc; C:\Windows\system32\drivers\qutmipc.sys [53960 2015-08-14] (360.cn)
S4 RsFx0105; C:\Windows\System32\DRIVERS\RsFx0105.sys [238696 2011-09-22] (Microsoft Corporation)
S3 SaiH0464; C:\Windows\System32\DRIVERS\SaiH0464.sys [132232 2007-05-01] (Saitek)
R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [23200 2013-04-30] (Saitek)
R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [46624 2013-04-30] (Saitek)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [685400 2016-01-12] (Acronis International GmbH)
R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [156504 2016-01-12] (Acronis International GmbH)
S3 tnd; C:\Windows\System32\DRIVERS\tnd.sys [398680 2016-01-12] (Acronis International GmbH)
R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [229720 2016-01-12] (Acronis International GmbH)
R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] ()
R3 360AvFlt; system32\DRIVERS\360AvFlt.sys [X]
R3 360Box; system32\DRIVERS\360Box.sys [X]
S3 HSPADataCardusbmdm; system32\DRIVERS\HSPADataCardusbmdm.sys [X]
S3 HSPADataCardusbnmea; system32\DRIVERS\HSPADataCardusbnmea.sys [X]
S3 HSPADataCardusbser; system32\DRIVERS\HSPADataCardusbser.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-29 14:53 - 2016-03-29 14:53 - 00018942 _____ C:\Users\Kerso\Downloads\FRST.txt
2016-03-28 12:53 - 2016-03-28 12:53 - 00003070 _____ C:\Users\Kerso\Desktop\AdwCleaner[C1] Löschung.txt
2016-03-28 12:41 - 2016-03-28 12:41 - 01538560 _____ C:\Users\Kerso\Downloads\AdwCleaner_5.106.exe
2016-03-28 12:34 - 2016-03-28 12:34 - 00004043 _____ C:\Users\Kerso\Desktop\JRT.txt
2016-03-28 12:31 - 2016-03-28 12:31 - 01610352 _____ (Malwarebytes) C:\Users\Kerso\Downloads\JRT.exe
2016-03-28 12:00 - 2016-03-28 12:00 - 00002924 _____ C:\Users\Kerso\Desktop\Malwarebytes.txt
2016-03-28 11:42 - 2016-03-28 11:43 - 00170200 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-03-28 11:41 - 2016-03-28 11:41 - 00001060 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-03-28 11:41 - 2016-03-28 11:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-03-28 11:41 - 2016-03-28 11:41 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-03-28 11:41 - 2016-03-28 11:41 - 00000000 ____D C:\Program Files\ Malwarebytes Anti-Malware 
2016-03-28 11:41 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-03-28 11:41 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-03-28 11:41 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-03-28 11:27 - 2016-03-28 11:27 - 00300322 _____ C:\Users\Kerso\Desktop\TDSSKiller.txt
2016-03-28 11:24 - 2016-03-28 11:27 - 00600734 _____ C:\TDSSKiller.3.1.0.9_28.03.2016_11.24.36_log.txt
2016-03-28 11:21 - 2016-03-28 11:22 - 00004350 _____ C:\TDSSKiller.3.1.0.9_28.03.2016_11.21.38_log.txt
2016-03-28 11:20 - 2016-03-28 11:20 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Kerso\Downloads\tdsskiller.exe
2016-03-28 11:12 - 2016-03-28 11:13 - 00027471 _____ C:\Users\Kerso\Desktop\GMER.txt
2016-03-28 09:40 - 2016-03-29 14:53 - 00000000 ____D C:\FRST
2016-03-28 09:34 - 2016-03-28 09:35 - 22851472 _____ (Malwarebytes ) C:\Users\Kerso\Downloads\mbam-setup-2.2.1.1043.exe
2016-03-28 09:30 - 2016-03-28 09:30 - 01725440 _____ (Farbar) C:\Users\Kerso\Downloads\FRST.exe
2016-03-27 22:54 - 2016-03-27 22:54 - 00380928 _____ C:\Users\Kerso\Downloads\gmer-2.2.19882.exe
2016-03-27 07:36 - 2016-03-27 07:36 - 00000000 ____D C:\Program Files\Apple Software Update
2016-03-26 11:12 - 2016-03-26 11:12 - 00001145 _____ C:\Users\Public\Desktop\SenseWear 8.1.lnk
2016-03-26 11:12 - 2016-03-26 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BodyMedia
2016-03-26 11:12 - 2016-03-26 11:12 - 00000000 ____D C:\Program Files\BodyMedia
2016-03-25 11:21 - 2016-03-25 11:21 - 00000000 ____D C:\Users\Kerso\Documents\My BodyMedia-Dateien
2016-03-24 18:07 - 2016-03-24 18:07 - 04372899 _____ C:\Users\Kerso\Downloads\bodybuggsp.apk
2016-03-24 12:02 - 2016-03-24 12:02 - 00832124 _____ C:\Users\Kerso\Desktop\Sozialversicherungsausweis Steve Schneider.pdf
2016-03-24 10:48 - 2016-03-26 11:11 - 00000000 ____D C:\Users\Kerso\Desktop\Bodimedia
2016-03-23 23:16 - 2016-03-23 23:16 - 00001001 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-03-23 23:12 - 2016-03-23 23:13 - 11255504 _____ (TeamViewer GmbH) C:\Users\Kerso\Downloads\TeamViewer083Setup-jfa.exe
2016-03-23 10:57 - 2016-03-23 10:57 - 00000000 ____D C:\Users\Kerso\BodyMedia
2016-03-21 23:01 - 2016-03-21 23:02 - 34042774 ____R C:\Users\Kerso\Desktop\unSMARTGAINZ---eine-moderne-Kom--die.pdf
2016-03-12 09:46 - 2016-03-12 09:46 - 00001356 _____ C:\Users\Public\Desktop\Free YouTube To MP3 Converter.lnk
2016-03-12 09:46 - 2016-03-12 09:46 - 00001199 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2016-03-12 09:46 - 2016-03-12 09:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2016-03-12 09:46 - 2016-03-12 09:46 - 00000000 ____D C:\Program Files\DVDVideoSoft
2016-03-12 09:44 - 2016-03-12 09:45 - 39412848 _____ (DVDVideoSoft Ltd. ) C:\Users\Kerso\Downloads\FreeYouTubeToMP3Converter.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 03994560 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 03938240 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-03-09 14:00 - 2016-02-11 20:44 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-03-09 14:00 - 2016-02-11 20:41 - 01310232 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-03-09 14:00 - 2016-02-11 20:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-03-09 14:00 - 2016-02-11 20:38 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-03-09 14:00 - 2016-02-11 20:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-03-09 14:00 - 2016-02-11 20:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-03-09 14:00 - 2016-02-11 20:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-03-09 14:00 - 2016-02-11 20:31 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-03-09 14:00 - 2016-02-11 20:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-03-09 14:00 - 2016-02-11 19:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-03-09 14:00 - 2016-02-11 19:37 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-03-09 14:00 - 2016-02-11 19:32 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-03-09 14:00 - 2016-02-11 19:32 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-03-09 14:00 - 2016-02-11 19:32 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-03-09 14:00 - 2016-02-11 19:31 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-03-09 14:00 - 2016-02-11 19:30 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-03-09 14:00 - 2016-02-11 19:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-03-09 14:00 - 2016-02-11 19:30 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-03-09 14:00 - 2016-02-09 11:50 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-03-09 14:00 - 2016-02-04 20:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-03-09 14:00 - 2016-02-04 19:46 - 02387456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-03-09 14:00 - 2016-02-03 19:59 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-03-09 13:59 - 2016-02-12 20:39 - 02956288 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-03-09 13:59 - 2016-02-12 20:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-03-09 13:59 - 2016-02-12 20:26 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2016-03-09 13:59 - 2016-02-12 20:07 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-03-09 13:59 - 2016-02-12 20:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-03-09 13:59 - 2016-02-12 20:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-03-09 13:59 - 2016-02-12 20:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2016-03-09 13:59 - 2016-02-09 11:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-03-09 13:59 - 2016-02-09 11:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-03-09 13:59 - 2016-02-09 11:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-03-09 13:59 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-03-09 13:59 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-03-09 13:59 - 2016-02-09 08:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-03-09 13:59 - 2016-02-08 23:05 - 20352512 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-03-09 13:59 - 2016-02-08 22:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-03-09 13:59 - 2016-02-08 22:51 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-03-09 13:59 - 2016-02-08 22:39 - 00496640 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-03-09 13:59 - 2016-02-08 22:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-03-09 13:59 - 2016-02-08 22:38 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-03-09 13:59 - 2016-02-08 22:38 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-03-09 13:59 - 2016-02-08 22:37 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-03-09 13:59 - 2016-02-08 22:34 - 02280448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-03-09 13:59 - 2016-02-08 22:32 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-03-09 13:59 - 2016-02-08 22:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-03-09 13:59 - 2016-02-08 22:30 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-03-09 13:59 - 2016-02-08 22:28 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-03-09 13:59 - 2016-02-08 22:23 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-09 13:59 - 2016-02-08 22:20 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-03-09 13:59 - 2016-02-08 22:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 13:59 - 2016-02-08 22:15 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-03-09 13:59 - 2016-02-08 22:13 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-03-09 13:59 - 2016-02-08 22:12 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-03-09 13:59 - 2016-02-08 22:11 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-03-09 13:59 - 2016-02-08 22:10 - 04611072 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-03-09 13:59 - 2016-02-08 22:10 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-03-09 13:59 - 2016-02-08 22:03 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 13012480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-03-09 13:59 - 2016-02-08 22:01 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-03-09 13:59 - 2016-02-08 22:01 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-03-09 13:59 - 2016-02-08 21:43 - 02121216 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-03-09 13:59 - 2016-02-08 21:39 - 01311744 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-03-09 13:59 - 2016-02-08 21:38 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-03-09 13:59 - 2016-02-05 20:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-03-09 13:59 - 2016-02-05 20:44 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-03-09 13:59 - 2016-02-05 20:42 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-03-09 13:59 - 2016-02-05 19:43 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-03-09 13:59 - 2016-02-05 19:43 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-03-09 13:59 - 2016-02-03 20:49 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-03-09 13:59 - 2016-02-03 20:49 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2016-03-09 13:59 - 2016-02-03 20:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-03-08 18:02 - 2016-03-08 18:15 - 00000000 ____D C:\Users\Kerso\Desktop\Rosenbohm
2016-03-01 19:43 - 2016-03-01 19:43 - 00008829 _____ C:\Users\Kerso\Desktop\Lärmbelästigung.xlsx
2016-02-29 12:18 - 2016-02-29 12:18 - 00008454 _____ C:\Users\Kerso\Desktop\Schulterplan.xlsx

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-29 14:16 - 2009-07-14 06:34 - 00025344 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-29 14:16 - 2009-07-14 06:34 - 00025344 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-29 14:15 - 2015-07-25 07:55 - 00000000 ____D C:\Program Files\Common Files\AV
2016-03-29 14:12 - 2012-03-03 14:23 - 01836146 _____ C:\Windows\system32\PerfStringBackup.INI
2016-03-29 14:12 - 2009-07-14 10:47 - 00776056 _____ C:\Windows\system32\perfh007.dat
2016-03-29 14:12 - 2009-07-14 10:47 - 00179582 _____ C:\Windows\system32\perfc007.dat
2016-03-29 14:12 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\inf
2016-03-29 14:08 - 2012-07-27 19:37 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-29 14:07 - 2012-03-03 14:33 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-29 14:07 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-03-28 18:02 - 2012-07-27 19:37 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-28 17:58 - 2013-09-28 13:49 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-03-28 16:35 - 2013-06-01 13:05 - 00000000 ____D C:\ProgramData\Origin
2016-03-28 16:15 - 2014-05-13 15:35 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\TS3Client
2016-03-28 14:32 - 2012-03-03 18:52 - 00000000 ___RD C:\Users\Kerso\Desktop\Programme
2016-03-28 13:09 - 2012-12-01 23:43 - 00000000 ____D C:\Program Files\EveHQ
2016-03-28 13:07 - 2012-03-03 22:35 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\HpUpdate
2016-03-28 13:04 - 2012-07-27 19:38 - 00002133 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-28 12:51 - 2014-01-11 16:20 - 00000000 ____D C:\AdwCleaner
2016-03-28 12:43 - 2014-01-11 16:25 - 00004698 _____ C:\Users\Kerso\Desktop\AdwCleaner[S1].txt
2016-03-28 12:00 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Globalization
2016-03-27 22:46 - 2015-09-10 19:16 - 00000000 __SHD C:\ProgramData\360Quarant
2016-03-27 20:34 - 2015-01-02 12:56 - 00348360 _____ C:\Windows\system32\PnkBstrB.exe
2016-03-27 20:34 - 2015-01-02 12:56 - 00138816 _____ C:\Windows\system32\Drivers\PnkBstrK.sys
2016-03-27 20:34 - 2013-06-01 20:20 - 00348360 _____ C:\Windows\system32\PnkBstrB.xtr
2016-03-27 20:34 - 2013-06-01 14:50 - 00348928 _____ C:\Windows\system32\PnkBstrB.ex0
2016-03-27 12:07 - 2016-02-26 13:10 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2016-03-27 12:07 - 2012-05-10 06:45 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-03-27 12:04 - 2012-10-23 10:38 - 00000000 ____D C:\Users\Kerso\AppData\Local\CrashDumps
2016-03-27 07:36 - 2016-01-13 12:22 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-03-26 12:15 - 2012-07-27 19:37 - 00000000 ____D C:\Users\Kerso\AppData\Local\Google
2016-03-26 11:12 - 2012-03-03 14:25 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-03-26 11:04 - 2012-12-05 14:40 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2016-03-24 18:58 - 2013-09-28 13:49 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2016-03-24 18:58 - 2013-09-28 13:49 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2016-03-24 16:27 - 2016-01-12 16:08 - 00165072 _____ C:\Users\Kerso\AppData\Local\GDIPFONTCACHEV1.DAT
2016-03-24 09:46 - 2016-01-12 17:11 - 00549608 _____ C:\Windows\system32\FNTCACHE.DAT
2016-03-23 23:17 - 2012-08-01 12:57 - 00000000 ____D C:\Program Files\TeamViewer
2016-03-23 23:16 - 2014-04-27 18:25 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\TeamViewer
2016-03-23 10:57 - 2012-03-03 14:21 - 00000000 ____D C:\Users\Kerso
2016-03-23 10:46 - 2015-09-10 19:16 - 00000000 __SHD C:\$360Section
2016-03-17 08:35 - 2012-03-03 22:16 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\DVDVideoSoft
2016-03-15 16:57 - 2012-03-04 20:17 - 00000000 ____D C:\A1-Faktura
2016-03-12 09:46 - 2014-11-20 18:10 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft
2016-03-10 14:33 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2016-03-10 01:40 - 2013-08-09 19:37 - 00000000 ____D C:\Windows\system32\MRT
2016-03-10 01:36 - 2012-03-03 15:00 - 141270216 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-03-09 13:13 - 2015-04-17 13:07 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2013-06-01 14:50 - 2015-01-02 13:02 - 0138056 _____ () C:\Users\Kerso\AppData\Roaming\PnkBstrK.sys
2012-12-14 14:15 - 2012-12-14 14:15 - 0004096 ____H () C:\Users\Kerso\AppData\Local\keyfile3.drm
2012-07-25 09:09 - 2016-01-12 15:28 - 0007522 _____ () C:\ProgramData\hpzinstall.log

Dateien, die verschoben oder gelöscht werden sollten:
====================
C:\Users\Kerso\AppData\Local\Temp\f3e1de0f0228c80791add17e8806663b_remove360.bat


Einige Dateien in TEMP:
====================
C:\Users\Kerso\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Kerso\AppData\Local\Temp\f3e1de0f0228c80791add17e8806663b_360tray.exe
C:\Users\Kerso\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Kerso\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-19 01:54

==================== Ende vom FRST.txt ============================
         
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:05-03-2016 01
durchgeführt von Kerso (2016-03-29 14:53:51)
Gestartet von C:\Users\Kerso\Downloads
Microsoft Windows 7 Professional  Service Pack 1 (X86) (2012-03-03 12:21:21)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-392009458-3349232730-904554786-500 - Administrator - Disabled)
Gast (S-1-5-21-392009458-3349232730-904554786-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-392009458-3349232730-904554786-1028 - Limited - Enabled)
Kerso (S-1-5-21-392009458-3349232730-904554786-1000 - Administrator - Enabled) => C:\Users\Kerso
UpdatusUser (S-1-5-21-392009458-3349232730-904554786-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
4500_G510gm_Help (Version: 000.0.439.000 - Hewlett-Packard) Hidden
4500G510gm (Version: 000.0.423.000 - Hewlett-Packard) Hidden
4500G510gm_Software_Min (Version: 000.0.423.000 - Hewlett-Packard) Hidden
A1-Faktura 1.429 (HKLM\...\A1-Faktura_is1) (Version:  - A1-Faktura)
Acronis True Image 2016 (HKLM\...\{64AB919C-28AA-4260-A147-1A88E53EE978}Visible) (Version: 19.0.6027 - Acronis)
Acronis True Image 2016 (Version: 19.0.6027 - Acronis) Hidden
Adobe Acrobat Reader DC - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Allgemeine Runtime Files (x86) (HKLM\...\{1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1) (Version: 1.0.3.4 - Sereby Corporation)
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Ashampoo Burning Studio 2014 v.12.0.5 (HKLM\...\{91B33C97-280F-B76D-E27B-E712D7041B76}_is1) (Version: 12.0.5 - Ashampoo GmbH & Co. KG)
Audacity 2.0.6 (HKLM\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version:  - AVM Berlin)
Battlefield 3™ (HKLM\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlelog Web Plugins (HKLM\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
BodyMedia SenseWear 8.1 (HKLM\...\{E6DC8662-0EF9-4942-9BD7-A15AF806D18A}) (Version: 8.01.22 - BodyMedia)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
CameraHelperMsi (Version: 13.31.1038.0 - Logitech) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 3.16 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.45.3.0297 - DT Soft Ltd)
DAoC Portal (HKLM\...\{951D4810-1C32-47D1-A5BD-7A1BFB526D94}) (Version: 2.1.0 - DAoC Portal)
DAoC Portal (HKLM\...\{EC9359B3-2548-4DB1-B322-6D71A17501F9}) (Version: 2.8.2 - Dawn of Light)
DAOC-Charplan (HKLM\...\DAOCCharplan) (Version:  - )
Dark Age of Camelot (HKLM\...\Dark Age of Camelot) (Version:  - Electronic Arts)
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.372.000 - Hewlett-Packard) Hidden
DirectX 9.0c Extra Files (x86) (HKLM\...\{8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1) (Version: 1.10.06.0 - Sereby Corporation)
DirectX for Managed Code (HKLM\...\{FDF7187F-3960-4BEC-916D-98C9A83E3A68}_is1) (Version: 1.0.0.0 - Sereby Corporation)
DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
erLT (Version: 1.20.138.34 - Logitech, Inc.) Hidden
EVEMon (HKLM\...\EVEMon) (Version: 2.2.1 - battleclinic.com)
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
FormatFactory 2.90 (HKLM\...\FormatFactory) (Version: 2.90 - Free Time)
Free YouTube To MP3 Converter (HKLM\...\Free YouTube To MP3 Converter_is1) (Version: 4.1.1.119 - DVDVideoSoft Ltd.)
FreeOCR v4.2 (HKLM\...\freeocr_is1) (Version:  - )
GDR 5520 für SQL Server 2008 (KB 2977321) (HKLM\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation)
GDR 5538 für SQL Server 2008 (KB 3045305) (HKLM\...\KB3045305) (Version: 10.3.5538.0 - Microsoft Corporation)
Genesis version Genesis Launcher 1.011 (HKLM\...\{975e7799-c584-47f0-9c12-c1551f3e95f2}_is1) (Version: Genesis Launcher 1.011 - Pawel D. alias Laplume for Genesis.)
Genesis version Patch (HKLM\...\{9db86e9a-0b05-4202-a76c-5a795f698408}_is1) (Version: Patch - Pawel D. alias Laplume for Genesis.)
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.)
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden
GoPro App (Version: 5.7.549 - GoPro, Inc.) Hidden
GoPro Studio 2.5.7 (HKLM\...\{b996dca2-156c-4d2c-b9a3-59fac08cef33}) (Version: 2.5.7.549 - GoPro, Inc.)
Host OpenAL (ADI) (HKLM\...\Host OpenAL (ADI)) (Version:  - )
Hotfix für Microsoft Visual Basic 2010 Express - DEU (KB2635973) (HKLM\...\{CCAC7E52-ECCE-3C4D-B1BE-BC2ACF1C1C0E}.KB2635973) (Version: 1 - Microsoft Corporation)
HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Officejet 4500 G510g-m (HKLM\...\{E5083D57-D93F-404C-A91F-1C50D67C2BEB}) (Version: 13.0 - HP)
HP Update (HKLM\...\{97486FBE-A3FC-4783-8D55-EA37E9D171CC}) (Version: 5.005.000.001 - Hewlett-Packard)
HPDiagnosticAlert (Version: 1.00.0000 - Microsoft) Hidden
I.R.I.S. OCR (HKLM\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Image Resizer Powertoy Clone for Windows (HKLM\...\{1E5F3CC6-D390-4393-A2AA-6CEC04F1705A}) (Version: 2.1 - Brice Lambson)
i-Menu 2.2 (HKLM\...\i-Menu_is1) (Version:  - AOC)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.32 - Irfan Skiljan)
Java 8 Update 73 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Lexware Info Service (HKLM\...\{15B2BC56-D179-4450-84B9-7A8D7F4CE1B9}) (Version: 2.70.00.0081 - Haufe-Lexware GmbH & Co.KG)
Logitech Vid (HKLM\...\{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}) (Version: 1.70.1044 - Logitech Inc.)
Logitech Webcam Software (HKLM\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 1.1 SP1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU (HKLM\...\{C2C284D2-6BD7-3B34-B0C5-B2CAED168DF7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Language Pack 2007 - German/Deutsch (HKLM\...\OMUI.de-de) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2008 (HKLM\...\Microsoft SQL Server 10 Release) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 Browser (HKLM\...\{4AF2248C-B3DF-46FB-9596-87F5DB193689}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{539A0EAA-E1BB-4163-9C1E-6C8BF4A17FA2}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM\...\{E9089B6A-1FDE-47F3-8D29-175F5B7A0722}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{59C245FC-343C-4FEC-B3CB-B6F12B561C20}) (Version: 10.3.5538.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 DEU (HKLM\...\{EA61F81B-5754-4B5A-9BC5-FFEDC29D1DBC}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM\...\{C668416A-9213-4058-B7F2-01A42D85559D}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{D074DC76-F6C9-440E-A1D0-1DE958417FDB}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft Visual Basic 2010 Express - DEU (HKLM\...\Microsoft Visual Basic 2010 Express - DEU) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (HKLM\...\Microsoft Visual J# 2.0 Redistributable Package) (Version:  - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM\...\{616C6F39-4CE1-3434-A665-2F6A04C09A7F}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (HKLM\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mora's Ausrüstungsplaner (HKLM\...\{8A33CE67-80FB-4469-9ED1-E5D116391F68}_is1) (Version: 1.72 - Mora)
MozBackup 1.5.1 (HKLM\...\MozBackup) (Version:  - Pavel Cvrcek)
Mozilla Firefox 44.0.2 (x86 de) (HKLM\...\Mozilla Firefox 44.0.2 (x86 de)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
Mozilla Thunderbird 38.7.1 (x86 de) (HKLM\...\Mozilla Thunderbird 38.7.1 (x86 de)) (Version: 38.7.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Mumble 1.2.11 (HKLM\...\{2C0B4F07-7DD2-4D69-9A97-77AE3A37280F}) (Version: 1.2.11 - Thorvald Natvig)
Network (Version: 130.0.374.000 - Hewlett-Packard) Hidden
NVIDIA 3D Vision Controller-Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 314.22 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.22 - NVIDIA Corporation)
NVIDIA Grafiktreiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
Origin (HKLM\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.3 - Frank Heindörfer, Philip Chinery)
Pidgin (HKLM\...\Pidgin) (Version: 2.10.11 - )
PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
pyfa version 1.12.0 (Carnyx 1.0) (HKLM\...\{3DA39096-C08D-49CD-90E0-1D177F32C8AA}_is1) (Version: 1.12.0 (Carnyx 1.0) - pyfa)
QuickTime 7 (HKLM\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.3.13034_9 - Samsung Electronics Co., Ltd.)
Samsung Kies (Version: 2.5.3.13034_9 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies3 (HKLM\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.)
Samsung_MonSetup (HKLM\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Screen+ 1.0 (HKLM\...\Screen+_is1) (Version:  - AOC)
Secure Download Manager (HKLM\...\{B15B400A-19ED-4CC7-B3E4-9295D8470CBE}) (Version: 3.0.3 - e-academy Inc.)
Service Pack 3 für SQL Server 2008 (KB2546951) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Smart Technology Programming Software 7.0.27.13 (HKLM\...\{6193D1C9-FEAC-4158-8EB5-1B1D7B0C8DA7}) (Version: 7.0.27.13 - Mad Catz)
SoundMAX (HKLM\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 6.10.1.6585 - Analog Devices)
Sql Server Customer Experience Improvement Program (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Status (Version: 130.0.373.000 - Hewlett-Packard) Hidden
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM\...\TeamViewer) (Version: 11.0.56083 - TeamViewer)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (Version: 130.0.376.000 - Hewlett-Packard) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 13.0.3020.2 - TuneUp Software) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
VFW_Codec32 (Version: 0.1.160.0 - GoPro, Inc.) Hidden
Virtual Cable Tester (HKLM\...\{3D654496-9C3D-4565-858C-3E551ECDA4E2}) (Version: 2.16.3.3 - Marvell)
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 DEU (HKLM\...\{CFCB8616-A5D1-4281-80E8-389F685BFAE2}) (Version: 4.0.8080.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices  (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012  - GoPro)
WinHTTrack Website Copier 3.47-16 (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.47.16 - HTTrack)
WinRAR 4.11 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
WinSweeper 2.1 (HKLM\...\{96E8A815-3053-4616-AAC2-865E6B1792F5}_is1) (Version:  - Solvusoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {00620981-EAE4-4F8F-AA43-E1450A8199BA} - System32\Tasks\{551C6D34-2CEC-4CBA-BAAA-2648FEEA31AA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {0CD9FEAD-0027-4D62-8B88-94B2BF96FA89} - System32\Tasks\{6C83DB7D-D5E7-44B8-BFFD-85EBDB307E50} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {0F32A227-D816-4410-BCDF-A513BF2EB72F} - System32\Tasks\{1EF633E4-103B-4D87-9AFD-6A87598438B7} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {1717CC1D-E6BA-429F-9BA6-47CF5095981B} - System32\Tasks\{C82D3CE2-1A5F-4953-A9D0-8FEEF58E9E87} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {19B57C6C-14FA-4C9C-86DD-6B13173BD0D1} - System32\Tasks\{BA36C10A-A728-4C7C-A026-DC9246E977BC} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {2492F805-D192-45BF-9589-BE5F220A4EDD} - System32\Tasks\{60F186F7-5825-400E-BD48-63B204A20818} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {288AF73A-E90D-4063-A360-CF3958EED6C7} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {2FD308FD-45D0-498C-A4CC-1CB29B0C9F7E} - System32\Tasks\{70698B3A-815A-48B9-851C-0E4D6C432F7E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {3F67158D-FE62-4078-9659-EC4EDB73EF81} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2016-01-29] (Oracle Corporation)
Task: {4045E1F5-2B49-4CF5-A3C1-DAB36ADB69A4} - System32\Tasks\{44D96BAD-90EB-4765-A292-31412ECFE059} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {46F6499C-5390-4B88-BFCA-DAFAFAE5C7A8} - System32\Tasks\{93A484B1-999E-4CC5-B9A0-3FDCB55B1F4C} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {492C5054-D4CD-4912-A60C-76A77AC35E54} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {4958775C-9DCE-4243-8889-3CFE00D46E72} - System32\Tasks\{B08F50BF-6CC6-42F6-ACDF-F1EABD300EEE} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {520B7510-6448-49B2-94CB-8F6CDF09D436} - System32\Tasks\{4400CEB3-0A5B-442A-9942-E437B03807E4} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {526DE9CF-15C1-4726-AA5C-A7EDB04400A0} - System32\Tasks\{1DDE9954-42F1-4A06-B4D4-2E82FD26714E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {5636E0D2-35B0-48B5-8CFA-0C9697864E88} - System32\Tasks\{2B7C12D7-A0BD-4740-9B8F-75E72AD3F6F4} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {5D030872-ED2C-40A0-B3D6-9AF0689C951D} - System32\Tasks\{9695F42F-AF74-422D-A3D5-82BCDBE1F3CA} => C:\Program Files\DAoC Portal\Portal.exe [2015-03-19] (DAoCPortal)
Task: {5EB67062-2F28-45C6-B45C-25A3183319F4} - System32\Tasks\{73284883-AA5E-48F9-861C-0710C24BFC91} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6248EE7F-1A46-44CC-9B13-8E345D695108} - System32\Tasks\{8945F8B1-484B-4B20-B327-EEC42CC1ABB3} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {63281356-1ED5-4290-9A60-5DEE14CCEB80} - System32\Tasks\{9290612B-810C-4F89-AEA4-D8AB2F1ED515} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6408D330-8133-4A01-9E74-0E2992401BC5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-03-28] (Google Inc.)
Task: {64D763F7-D20F-49CD-AE87-004CCCBD9D43} - System32\Tasks\{837F0162-53AB-4369-B67F-BAA1D9D48B01} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {68A637A8-E8EC-4808-83F8-FFC922DFCA16} - System32\Tasks\{74761060-03C3-4A32-B77E-57BB024446A5} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6C351D97-2017-42BD-A3FD-286D704A13BB} - System32\Tasks\{F5AC1FDC-A9E7-485C-A8D1-C14E5C609C06} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6DC10F59-B216-423F-8DE5-6CAF18F97D3B} - System32\Tasks\{A4F591FA-72C1-414D-A14A-2393968A52A2} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {7279E912-857D-45BE-800D-B357A4F0FDBB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {7C438803-AE28-494E-ADCC-4E98C81DE138} - System32\Tasks\{16ED4715-36E2-4E9E-BE6F-BE4E7F861EBB} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {835C454B-056A-4D96-A54F-53A1611988A3} - System32\Tasks\{DD4FF398-87C3-4376-BB7F-2C647A43819E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {836BD4B1-BCEF-4AE9-8E1A-C77624D49894} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2011-05-10] (Hewlett-Packard)
Task: {8D153C95-2F0E-48D0-978F-09FF4FC97493} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-24] (Adobe Systems Incorporated)
Task: {8E1A87A4-AE69-4560-AB1E-827BDCC1BB56} - System32\Tasks\{0D3D59F5-85D3-4974-9FF6-2A89DC2F0C7F} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {98B5C114-3340-4B24-BE1F-F95AC59F8989} - System32\Tasks\{A6EFBE37-DCD3-4912-9106-1ECF06273D03} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {9EA971F1-6BA9-4230-AFD8-7CEA42824C1D} - System32\Tasks\{2F274B15-575F-4FA6-B283-D44BA6C0CAD2} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {A4E3C67E-2266-4637-B034-83ECE6F2C371} - System32\Tasks\{56257B99-77D1-4194-AE17-6000778515CF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {AADBFC09-AAFD-48A0-84F7-FC696903DEC7} - System32\Tasks\{EE5253F5-B7E7-4A5C-911F-96F747A2E10A} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {ACDBF36F-7F47-4F54-BE94-1015388C4808} - System32\Tasks\{F9317F21-4583-4288-8864-F06D4FAE67CA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {B5F775DD-EF8C-47FD-ABBF-83A88A4DA2CF} - System32\Tasks\{77860B14-65FC-4D13-AC0F-61FE9A0329D0} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {BC768EDF-3DDD-4374-AF98-442B9BB4D46B} - System32\Tasks\{499343E1-6B97-42E6-B452-84618B09D34D} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {BCB12C4F-72F9-4B84-88FD-9591FA3A5360} - System32\Tasks\{2138C00A-8C8F-4010-916B-74ECCB0448FA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {C0520FBC-92E4-444C-A2A9-7C220C3BD077} - System32\Tasks\{E4EC5395-F638-4DA2-8161-7E2F03E6D161} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {C53CDCB2-866F-4D47-9502-670873450FAF} - System32\Tasks\{8321EA50-5B40-4CA6-B763-81A548F52E84} => C:\Program Files\DAoC Portal\Portal.exe [2015-03-19] (DAoCPortal)
Task: {C559AF2B-5564-448B-92B7-C5B9FB5B5222} - System32\Tasks\{50D9BDDB-317D-4A51-ACF4-FB25601AE535} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {D22A96FB-53EE-429F-A984-A9046DE6E161} - System32\Tasks\{E5FFCBE8-744D-432F-940D-99BE59614C0F} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {DAD44A2D-CDFB-45D6-ADD0-0F631834F370} - System32\Tasks\{C9543114-2F2C-4E90-A2DF-70156690F820} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {E4F08313-FC3B-4333-92C0-9FA581C166EB} - System32\Tasks\{491A6C4B-5A43-45CB-8D8B-F91861617927} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {E6F0F568-90BF-46BC-AAB9-F469C3AAE741} - System32\Tasks\{77FD2DEA-B1F0-47F5-A8F4-679DB59A4416} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {EE799461-E6E0-446F-8AC4-AD628DC8BCA1} - System32\Tasks\{25134907-9A94-4C55-AF67-D3BE0E4C0BA9} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {F978B2EA-FB04-4E87-BB6E-CD3D230D9613} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-03-28] (Google Inc.)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2012-03-03 14:33 - 2013-03-15 04:59 - 00078624 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2012-03-03 22:20 - 2001-10-28 18:42 - 00116224 _____ () C:\Windows\System32\pdfcmnnt.dll
2015-11-26 11:47 - 2015-11-26 11:47 - 03096480 _____ () C:\Program Files\Common Files\Acronis\TrueImageHome\TrueImageHomeNotify.exe
2015-11-26 11:43 - 2015-11-26 11:43 - 00056752 _____ () C:\Program Files\Common Files\Acronis\Home\rpc_client.dll
2015-11-26 12:05 - 2015-11-26 12:05 - 17001992 _____ () C:\Program Files\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe
2014-11-20 18:10 - 2016-01-19 05:02 - 00110952 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\zlib1.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00253800 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\collector.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00295272 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\stat.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00104296 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00020328 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00044392 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2015-08-11 15:36 - 2015-08-11 15:36 - 00024896 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\core_workers_shared_context.dll
2015-11-26 11:40 - 2015-11-26 11:40 - 00035760 _____ () C:\Program Files\Common Files\Acronis\Home\thread_pool.dll
2015-11-26 12:13 - 2015-11-26 12:13 - 04093976 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\atih_mms_addon.dll
2015-08-23 15:59 - 2015-08-23 15:59 - 00606672 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\sqlite3.dll
2015-11-26 12:07 - 2015-11-26 12:07 - 19884832 _____ () C:\Program Files\Acronis\TrueImageHome\ti_managers.dll
2015-11-26 11:42 - 2015-11-26 11:42 - 00445872 _____ () C:\Program Files\Common Files\Acronis\Home\ulxmlrpcpp.dll
2015-11-26 11:36 - 2015-11-26 11:36 - 00115632 _____ () C:\Program Files\Common Files\Acronis\Home\EXPAT.dll
2015-01-02 12:56 - 2015-01-02 13:16 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\ProgramData\TEMP:054203E4 [128]

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\98939766.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\98939766.sys => ""="Driver"

==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Da befinden sich 7865 mehr Seiten.

IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123simsen.com -> www.123simsen.com

Da befinden sich 7865 mehr Seiten.

IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1001\...\123simsen.com -> www.123simsen.com

Da befinden sich 7865 mehr Seiten.


==================== Hosts Inhalt: ==========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:04 - 2014-11-10 11:30 - 00450713 ____R C:\Windows\system32\Drivers\etc\hosts

127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com
127.0.0.1	www.123moviedownload.com

Da befinden sich 15461 zusätzliche Einträge.


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-392009458-3349232730-904554786-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Kerso\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== FirewallRules (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{FCE18AA2-B321-4EF4-ACAA-8FC82EDE2E03}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{E42BEE09-6227-4081-B4C8-193B232C28E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{81CC2A70-FBFE-4AEC-B285-245AD1568F1A}] => (Allow) C:\Program Files\Logitech\Vid\Vid.exe
FirewallRules: [{7BF10D49-7A8A-4A8D-9436-D20FD8C6FF9C}] => (Allow) C:\Program Files\Logitech\Vid\Vid.exe
FirewallRules: [{42C336AD-4905-485D-93D9-26947D44C2E0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{E7DDDEC5-07E3-4205-ACA8-2DA60F0CD4A4}C:\program files\logitech\vid\vid.exe] => (Allow) C:\program files\logitech\vid\vid.exe
FirewallRules: [UDP Query User{DC2CE410-D267-406C-99A6-0631635486C3}C:\program files\logitech\vid\vid.exe] => (Allow) C:\program files\logitech\vid\vid.exe
FirewallRules: [{56B0D358-2FF9-45E8-8066-0F297E48C240}] => (Allow) E:\setup\hpznui01.exe
FirewallRules: [{D9D0DFDB-EC22-4423-8B1D-10128874EAF1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{40269EA2-1C21-400A-97AF-2C9F5A3C4318}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{F2C57C4F-AEF9-4971-BA46-B77B504B738D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{899E56FD-24F3-47CC-A7FE-42B06DD60CC1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{7AF0099B-8D7A-48B8-9419-C054858A6709}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{68323925-CD1C-4C70-9F84-951DE1D8DACC}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{A4709936-E183-4B6C-ACE4-5D1C4F4ED1FE}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{E866DBE2-EE0B-4167-8D11-56D376FBC7C3}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{76FB3896-3724-42F0-B8BC-1BC3D6420578}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{A3C7C629-FBC3-475A-B612-C806E5609FC5}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{98E8C9DF-508F-47CF-97CC-38F015DC964A}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{BB245105-085F-48B3-AEED-3FEAA9E93677}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{5DBFBB52-7224-4428-B25B-29C4378F00CC}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{5C660AF1-EA86-406E-A4E9-F48B329FBFA4}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{87FE41E0-5A63-4333-8442-F395EEA33A43}] => (Allow) C:\Program Files\VoipCheapCom\VoipCheapCom.exe
FirewallRules: [{1A699E85-BF38-45C0-B7FC-C6D456A94CAA}] => (Allow) C:\Program Files\VoipCheapCom\VoipCheapCom.exe
FirewallRules: [{6F432294-3666-427E-9B04-E2C85402F768}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{71AADF9C-3901-4920-98CD-52D807205665}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{273F00A3-D4DE-49AC-A275-4038FB7155BE}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{5C12FA49-ABBC-4831-A7B1-879529B0A385}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{309629DC-0021-4B33-B1C9-3FC8DCF416B9}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{91599B7E-B8BC-482C-BE24-5427175AC046}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{1477A496-EADF-482E-9C8E-72D44806A0D1}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{F271A95E-8C0D-4046-804A-684548342853}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{7350B05D-7B17-4316-B3A5-BE6814C9E969}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{60F324F0-196C-4B7D-B759-94CAC79F0C74}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{58593C4D-9E78-4023-92CB-D64B6AC471C1}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{1BE064D6-16A6-4BFA-88F5-09ACF00958F8}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{9C5510E4-0496-49EB-BD5A-E29DC09E47FE}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{35F61CAC-F2B8-4E55-9C48-5559AB212D9C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{BE97D8EB-C8F3-444B-846C-69B62E47AC92}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{6A9DD1DC-E3F7-4423-B03A-81DD75A14E8B}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{43E1B361-D11A-42F0-B7D3-28AD2EE91285}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{2AA900AD-53E0-4836-95D5-FC59C2B36C11}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{FC319A75-079C-4026-B940-66CC7A0611A4}] => (Allow) C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{E837C937-54A4-4DEE-9B50-0C56F6764BC5}] => (Allow) C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{72345560-EAD7-4F69-9C05-58B976D59B66}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [TCP Query User{D08079CF-B821-48CE-B350-DA03D02842FB}H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe] => (Allow) H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe
FirewallRules: [UDP Query User{36836FAF-2756-479F-AE2E-5EBF05A6C764}H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe] => (Allow) H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe
FirewallRules: [{B6032C31-03CB-4757-BAF6-D572C9AFA576}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{B1A7013E-2503-4AC1-A06A-A531FA52EC2A}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{F455438A-488B-4E68-9066-5F7A64CEDAB8}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{8382E8D2-9497-4138-8D31-3D1F087853AA}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{E9F37DFB-1A42-482F-B9C0-7F323D7C9E7D}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{A69213D9-505E-4709-9876-7BB18A78111E}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{82F7040C-7725-4F92-908D-7F0A9721314A}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Wiederherstellungspunkte =========================

16-03-2016 08:24:44 Windows Update
23-03-2016 10:20:27 Geplanter Prüfpunkt
23-03-2016 10:44:52 Installiert BodyMedia SenseWear 8.1
26-03-2016 11:11:47 Entfernt BodyMedia SenseWear 8.1
26-03-2016 11:12:37 Installiert BodyMedia SenseWear 8.1
26-03-2016 12:06:40 DirectX wurde installiert
28-03-2016 12:32:42 JRT Pre-Junkware Removal
28-03-2016 12:35:47 TuneUp Utilities 2014 wird entfernt
28-03-2016 12:36:11 TuneUp Utilities 2014 (de-DE) wird entfernt

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Officejet 4500 G510g-m
Description: Officejet 4500 G510g-m
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 4500 G510g-m
Description: Officejet 4500 G510g-m
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/26/2016 11:58:32 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: dc8

Startzeit: 01d18745293265da

Endzeit: 29

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 491d5c0f-f339-11e5-8503-001c4af7cd81

Error: (03/26/2016 11:57:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 44.0.2.5884, Zeitstempel: 0x56bbf417
Name des fehlerhaften Moduls: mozglue.dll, Version: 44.0.2.5884, Zeitstempel: 0x56bbe58e
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000ed3b
ID des fehlerhaften Prozesses: 0x1660
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3

Error: (03/24/2016 07:39:17 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1550

Startzeit: 01d185f31a33b9d9

Endzeit: 8

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 512eb2f0-f1e7-11e5-b86d-001c4af7cd81

Error: (03/22/2016 12:32:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: c58

Startzeit: 01d184257344fadb

Endzeit: 104

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 4f11e68b-f019-11e5-b8fc-001c4af7cd81

Error: (03/10/2016 08:42:19 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: Microsoft.SqlServer.Management.SmoMetadataProvider, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 . Error code = 0x80070002

Error: (03/10/2016 08:42:18 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: Microsoft.SqlServer.Management.SmoMetadataProvider, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 . Error code = 0x80070002

Error: (03/09/2016 01:13:33 PM) (Source: MsiInstaller) (EventID: 1024) (User: Kerso-PC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5C00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127

Error: (03/07/2016 10:03:47 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/29/2016 04:35:00 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/18/2016 05:47:15 PM) (Source: MsiInstaller) (EventID: 1024) (User: Kerso-PC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5B00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127


Systemfehler:
=============
Error: (03/29/2016 02:10:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (03/29/2016 02:10:37 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (03/29/2016 02:08:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AVM WLAN Connection Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (03/29/2016 02:08:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst AVM WLAN Connection Service erreicht.

Error: (03/29/2016 09:09:08 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (03/29/2016 09:09:08 AM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (03/29/2016 09:07:04 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AVM WLAN Connection Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (03/29/2016 09:07:04 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst AVM WLAN Connection Service erreicht.

Error: (03/28/2016 02:19:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (03/28/2016 02:19:22 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz
Prozentuale Nutzung des RAM: 33%
Installierter physikalischer RAM: 3327.12 MB
Verfügbarer physikalischer RAM: 2225.34 MB
Summe virtueller Speicher: 6652.55 MB
Verfügbarer virtueller Speicher: 5547.71 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:146.39 GB) (Free:30.01 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive d: () (Fixed) (Total:86.4 GB) (Free:37.93 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 51055104)
Partition 1: (Active) - (Size=146.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=86.4 GB) - (Type=07 NTFS)

==================== Ende vom Addition.txt ============================
         

Alt 29.03.2016, 14:30   #11
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



nach dem uninstall Rechner neu gestartet?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 29.03.2016, 14:43   #12
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



ne, sorry ...muh war klar :-) sag mal bitte mehrere Schritte gleichzeitig^^ mach jetzt reboot und mache nochmal FRST mit Logs

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:05-03-2016 01
durchgeführt von Kerso (Administrator) auf KERSO-PC (29-03-2016 15:38:27)
Gestartet von C:\Users\Kerso\Downloads
Geladene Profile: Kerso (Verfügbare Profile: Kerso & UpdatusUser)
Platform: Microsoft Windows 7 Professional  Service Pack 1 (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Acronis) C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
(Andrea Electronics Corporation) C:\Windows\System32\AEADISRV.EXE
(Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
(Digital Wave Ltd.) C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe
(Acronis) C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
() C:\Windows\System32\PnkBstrA.exe
(Skype Technologies) C:\Program Files\Skype\Updater\Updater.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(AVM Berlin) C:\Program Files\avmwlanstick\WLanGUI.exe
(Samsung Electronics Co., Ltd.) C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(Saitek) C:\Program Files\SmartTechnology\Software\ProfilerU.exe
(Saitek) C:\Program Files\SmartTechnology\Software\SaiMfd.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [1310720 2009-06-05] (Analog Devices, Inc.)
HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [KiesTrayAgent] => C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [311616 2015-02-24] (Samsung Electronics Co., Ltd.)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [327680 2013-04-16] (Saitek)
HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [122880 2013-04-16] (Saitek)
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\Run: [] => C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [845120 2015-02-24] (Samsung)
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3481408 2012-02-13] (DT Soft Ltd)
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {4494b6f7-652d-11e1-a170-e437487d1393} - F:\pushinst.exe
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {45f957bf-653e-11e1-a480-001c4af7cd81} - F:\start.exe /checksection
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {76f3fae7-5200-11e4-9b78-001c4af7cd81} - G:\AutoRun.exe
HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\MountPoints2: {cfe79821-1571-11e3-bc47-806e6f6e6963} - G:\windows\Data\setup.exe
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  Keine Datei
ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files\Acronis\TrueImageHome\tishell.dll [2015-11-11] (Acronis)
ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} =>  Keine Datei
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2012-08-09]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
BootExecute: autocheck autochk * sdnclean.exe

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: Es ist mehr als ein Eintrag in der Hosts Datei zu finden. Siehe Hosts-Bereich in Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{084F8F06-61ED-4423-B821-93E335573EF6}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
SearchScopes: HKLM -> DefaultScope Wert fehlt
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-02-15] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-15] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-24] ()
FF Plugin: @esn/esnlaunch,version=2.1.7 -> C:\Program Files\Battlelog Web Plugins\2.1.7\npesnlaunch.dll [Keine Datei]
FF Plugin: @esn/esnlaunch,version=2.3.0 -> C:\Program Files\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.3.2 -> C:\Program Files\Battlelog Web Plugins\2.3.2\npbattlelog.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.5.1 -> C:\Program Files\Battlelog Web Plugins\2.5.1\npbattlelog.dll [Keine Datei]
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files\Battlelog Web Plugins\2.7.1\npbattlelog.dll [2015-04-30] (EA Digital Illusions CE AB)
FF Plugin: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-02-15] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-02-15] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-28] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-28] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: Greasemonkey - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2016-02-21]
FF Extension: Adblock Plus - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-02-24]
FF Extension: hd addon - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f1dcded5-3c5a-401c-b649-3c7d2e4a5347}.xpi [2016-02-24] [ist nicht signiert]
FF Extension: Skype Wizard Plus - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f930a7a4-22b0-4827-9000-385ee812ead7}.xpi [2016-03-14] [ist nicht signiert]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\ppGoogleNaClPluginChrome.dll => Keine Datei
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\pdf.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\45.0.2454.101\gcswf32.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_3_300_268.dll => Keine Datei
CHR Plugin: (Norton Confidential) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2012.5.4.6_0\npcoplgn.dll => Keine Datei
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => Keine Datei
CHR Plugin: (Winamp Application Detector) - C:\Program Files\Mozilla Firefox\plugins\npwachk.dll => Keine Datei
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll => Keine Datei
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.115\npGoogleUpdate3.dll => Keine Datei
CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll => Keine Datei
CHR Plugin: (Silverlight Plug-In) - C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll => Keine Datei
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
CHR Plugin: (VLC Web Plugin) - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw_1165635.dll => Keine Datei
CHR Profile: C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-08]
CHR Extension: (YouTube) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-02]
CHR Extension: (Google-Suche) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-08]
CHR Extension: (Google Kalender) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-12-08]
CHR Extension: (Google Docs Offline) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-12-08]
CHR Extension: (Google +1-Schaltfläche) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgoepmocgafhnchmokaimcmlojpnlkhp [2014-04-13]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-10-02]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-02]
CHR Extension: (Google Mail) - C:\Users\Kerso\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-28]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [950584 2015-11-26] (Acronis)
S3 Adobe LM Service; C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2012-05-08] () [Datei ist nicht signiert]
R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [4463960 2016-01-12] (Acronis)
S2 AVM WLAN Connection Service; C:\Program Files\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R2 DigitalWave.Update.Service; C:\Program Files\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-01-19] (Digital Wave Ltd.)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [660992 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 mmsminisrv; C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe [4884064 2015-08-11] (Acronis)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert]
S3 Origin Client Service; C:\Program Files\Origin\OriginClientService.exe [2104840 2016-02-02] (Electronic Arts)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-08-06] (Hewlett-Packard) [Datei ist nicht signiert]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2015-01-02] ()
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-10-13] (DEVGURU Co., LTD.)
S2 syncagentsrv; C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7637744 2015-11-06] (Acronis)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
R2 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2010-10-22] (AVM Berlin) [Datei ist nicht signiert]
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-03-03] (DT Soft Ltd)
U3 Fax_tsvcawiu; kein ImagePath
R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [249184 2016-01-12] (Acronis International GmbH)
R3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [265088 2007-01-26] (AVM GmbH)
R1 hugoio; C:\Program Files\i-Menu\hugoio.sys [9760 2008-04-14] ()
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [6504 2009-05-13] ()
S1 qutmipc; C:\Windows\system32\drivers\qutmipc.sys [53960 2015-08-14] (360.cn)
S4 RsFx0105; C:\Windows\System32\DRIVERS\RsFx0105.sys [238696 2011-09-22] (Microsoft Corporation)
S3 SaiH0464; C:\Windows\System32\DRIVERS\SaiH0464.sys [132232 2007-05-01] (Saitek)
R3 SaiMini; C:\Windows\System32\DRIVERS\SaiMini.sys [23200 2013-04-30] (Saitek)
R3 SaiNtBus; C:\Windows\System32\drivers\SaiBus.sys [46624 2013-04-30] (Saitek)
R0 tib; C:\Windows\System32\DRIVERS\tib.sys [685400 2016-01-12] (Acronis International GmbH)
R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [156504 2016-01-12] (Acronis International GmbH)
S3 tnd; C:\Windows\System32\DRIVERS\tnd.sys [398680 2016-01-12] (Acronis International GmbH)
R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [229720 2016-01-12] (Acronis International GmbH)
R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x86.sys [315392 2009-09-28] ()
S3 HSPADataCardusbmdm; system32\DRIVERS\HSPADataCardusbmdm.sys [X]
S3 HSPADataCardusbnmea; system32\DRIVERS\HSPADataCardusbnmea.sys [X]
S3 HSPADataCardusbser; system32\DRIVERS\HSPADataCardusbser.sys [X]
S3 massfilter; system32\drivers\massfilter.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [48128 2009-07-14] (Microsoft Corporation)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-29 14:53 - 2016-03-29 15:38 - 00018524 _____ C:\Users\Kerso\Downloads\FRST.txt
2016-03-29 14:53 - 2016-03-29 14:55 - 00058373 _____ C:\Users\Kerso\Downloads\Addition.txt
2016-03-28 12:53 - 2016-03-28 12:53 - 00003070 _____ C:\Users\Kerso\Desktop\AdwCleaner[C1] Löschung.txt
2016-03-28 12:41 - 2016-03-28 12:41 - 01538560 _____ C:\Users\Kerso\Downloads\AdwCleaner_5.106.exe
2016-03-28 12:34 - 2016-03-28 12:34 - 00004043 _____ C:\Users\Kerso\Desktop\JRT.txt
2016-03-28 12:31 - 2016-03-28 12:31 - 01610352 _____ (Malwarebytes) C:\Users\Kerso\Downloads\JRT.exe
2016-03-28 12:00 - 2016-03-28 12:00 - 00002924 _____ C:\Users\Kerso\Desktop\Malwarebytes.txt
2016-03-28 11:42 - 2016-03-28 11:43 - 00170200 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-03-28 11:41 - 2016-03-28 11:41 - 00001060 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-03-28 11:41 - 2016-03-28 11:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-03-28 11:41 - 2016-03-28 11:41 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-03-28 11:41 - 2016-03-28 11:41 - 00000000 ____D C:\Program Files\ Malwarebytes Anti-Malware 
2016-03-28 11:41 - 2016-03-10 14:09 - 00053120 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-03-28 11:41 - 2016-03-10 14:08 - 00126336 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-03-28 11:41 - 2016-03-10 14:08 - 00024448 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-03-28 11:27 - 2016-03-28 11:27 - 00300322 _____ C:\Users\Kerso\Desktop\TDSSKiller.txt
2016-03-28 11:24 - 2016-03-28 11:27 - 00600734 _____ C:\TDSSKiller.3.1.0.9_28.03.2016_11.24.36_log.txt
2016-03-28 11:21 - 2016-03-28 11:22 - 00004350 _____ C:\TDSSKiller.3.1.0.9_28.03.2016_11.21.38_log.txt
2016-03-28 11:20 - 2016-03-28 11:20 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\Kerso\Downloads\tdsskiller.exe
2016-03-28 11:12 - 2016-03-28 11:13 - 00027471 _____ C:\Users\Kerso\Desktop\GMER.txt
2016-03-28 09:40 - 2016-03-29 15:38 - 00000000 ____D C:\FRST
2016-03-28 09:34 - 2016-03-28 09:35 - 22851472 _____ (Malwarebytes ) C:\Users\Kerso\Downloads\mbam-setup-2.2.1.1043.exe
2016-03-28 09:30 - 2016-03-28 09:30 - 01725440 _____ (Farbar) C:\Users\Kerso\Downloads\FRST.exe
2016-03-27 22:54 - 2016-03-27 22:54 - 00380928 _____ C:\Users\Kerso\Downloads\gmer-2.2.19882.exe
2016-03-27 07:36 - 2016-03-27 07:36 - 00000000 ____D C:\Program Files\Apple Software Update
2016-03-26 11:12 - 2016-03-26 11:12 - 00001145 _____ C:\Users\Public\Desktop\SenseWear 8.1.lnk
2016-03-26 11:12 - 2016-03-26 11:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BodyMedia
2016-03-26 11:12 - 2016-03-26 11:12 - 00000000 ____D C:\Program Files\BodyMedia
2016-03-25 11:21 - 2016-03-25 11:21 - 00000000 ____D C:\Users\Kerso\Documents\My BodyMedia-Dateien
2016-03-24 18:07 - 2016-03-24 18:07 - 04372899 _____ C:\Users\Kerso\Downloads\bodybuggsp.apk
2016-03-24 12:02 - 2016-03-24 12:02 - 00832124 _____ C:\Users\Kerso\Desktop\Sozialversicherungsausweis Steve Schneider.pdf
2016-03-24 10:48 - 2016-03-26 11:11 - 00000000 ____D C:\Users\Kerso\Desktop\Bodimedia
2016-03-23 23:16 - 2016-03-23 23:16 - 00001001 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-03-23 23:12 - 2016-03-23 23:13 - 11255504 _____ (TeamViewer GmbH) C:\Users\Kerso\Downloads\TeamViewer083Setup-jfa.exe
2016-03-23 10:57 - 2016-03-23 10:57 - 00000000 ____D C:\Users\Kerso\BodyMedia
2016-03-21 23:01 - 2016-03-21 23:02 - 34042774 ____R C:\Users\Kerso\Desktop\unSMARTGAINZ---eine-moderne-Kom--die.pdf
2016-03-12 09:46 - 2016-03-12 09:46 - 00001356 _____ C:\Users\Public\Desktop\Free YouTube To MP3 Converter.lnk
2016-03-12 09:46 - 2016-03-12 09:46 - 00001199 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2016-03-12 09:46 - 2016-03-12 09:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2016-03-12 09:46 - 2016-03-12 09:46 - 00000000 ____D C:\Program Files\DVDVideoSoft
2016-03-12 09:44 - 2016-03-12 09:45 - 39412848 _____ (DVDVideoSoft Ltd. ) C:\Users\Kerso\Downloads\FreeYouTubeToMP3Converter.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 03994560 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 03938240 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-03-09 14:00 - 2016-02-11 20:44 - 00138176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-03-09 14:00 - 2016-02-11 20:44 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-03-09 14:00 - 2016-02-11 20:41 - 01310232 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-03-09 14:00 - 2016-02-11 20:38 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-03-09 14:00 - 2016-02-11 20:38 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-03-09 14:00 - 2016-02-11 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-03-09 14:00 - 2016-02-11 20:35 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-03-09 14:00 - 2016-02-11 20:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-03-09 14:00 - 2016-02-11 20:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-03-09 14:00 - 2016-02-11 20:33 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-03-09 14:00 - 2016-02-11 20:31 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-03-09 14:00 - 2016-02-11 20:31 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00642560 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-03-09 14:00 - 2016-02-11 20:30 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-03-09 14:00 - 2016-02-11 19:43 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-03-09 14:00 - 2016-02-11 19:37 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-03-09 14:00 - 2016-02-11 19:32 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-03-09 14:00 - 2016-02-11 19:32 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-03-09 14:00 - 2016-02-11 19:32 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-03-09 14:00 - 2016-02-11 19:31 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-03-09 14:00 - 2016-02-11 19:30 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-03-09 14:00 - 2016-02-11 19:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-03-09 14:00 - 2016-02-11 19:30 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-03-09 14:00 - 2016-02-09 11:50 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll
2016-03-09 14:00 - 2016-02-04 20:41 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2016-03-09 14:00 - 2016-02-04 19:46 - 02387456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-03-09 14:00 - 2016-02-03 19:59 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2016-03-09 13:59 - 2016-02-12 20:39 - 02956288 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-03-09 13:59 - 2016-02-12 20:39 - 00174080 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-03-09 13:59 - 2016-02-12 20:26 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2016-03-09 13:59 - 2016-02-12 20:07 - 02062848 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-03-09 13:59 - 2016-02-12 20:06 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-03-09 13:59 - 2016-02-12 20:05 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-03-09 13:59 - 2016-02-12 20:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-03-09 13:59 - 2016-02-12 20:05 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2016-03-09 13:59 - 2016-02-09 11:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-03-09 13:59 - 2016-02-09 11:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-03-09 13:59 - 2016-02-09 11:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-03-09 13:59 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-03-09 13:59 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-03-09 13:59 - 2016-02-09 08:10 - 00341200 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-03-09 13:59 - 2016-02-08 23:05 - 20352512 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-03-09 13:59 - 2016-02-08 22:51 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-03-09 13:59 - 2016-02-08 22:51 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-03-09 13:59 - 2016-02-08 22:39 - 00496640 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-03-09 13:59 - 2016-02-08 22:39 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-03-09 13:59 - 2016-02-08 22:38 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-03-09 13:59 - 2016-02-08 22:38 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-03-09 13:59 - 2016-02-08 22:37 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-03-09 13:59 - 2016-02-08 22:34 - 02280448 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-03-09 13:59 - 2016-02-08 22:32 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-03-09 13:59 - 2016-02-08 22:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-03-09 13:59 - 2016-02-08 22:30 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-03-09 13:59 - 2016-02-08 22:28 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-03-09 13:59 - 2016-02-08 22:28 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-03-09 13:59 - 2016-02-08 22:23 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-03-09 13:59 - 2016-02-08 22:20 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-03-09 13:59 - 2016-02-08 22:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-03-09 13:59 - 2016-02-08 22:15 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-03-09 13:59 - 2016-02-08 22:13 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-03-09 13:59 - 2016-02-08 22:12 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-03-09 13:59 - 2016-02-08 22:11 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-03-09 13:59 - 2016-02-08 22:10 - 04611072 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-03-09 13:59 - 2016-02-08 22:10 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-03-09 13:59 - 2016-02-08 22:03 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 13012480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 00687104 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-03-09 13:59 - 2016-02-08 22:02 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-03-09 13:59 - 2016-02-08 22:01 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-03-09 13:59 - 2016-02-08 22:01 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-03-09 13:59 - 2016-02-08 21:43 - 02121216 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-03-09 13:59 - 2016-02-08 21:39 - 01311744 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-03-09 13:59 - 2016-02-08 21:38 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-03-09 13:59 - 2016-02-05 20:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-03-09 13:59 - 2016-02-05 20:44 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-03-09 13:59 - 2016-02-05 20:42 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-03-09 13:59 - 2016-02-05 19:43 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-03-09 13:59 - 2016-02-05 19:43 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-03-09 13:59 - 2016-02-03 20:49 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-03-09 13:59 - 2016-02-03 20:49 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2016-03-09 13:59 - 2016-02-03 20:43 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2016-03-08 18:02 - 2016-03-08 18:15 - 00000000 ____D C:\Users\Kerso\Desktop\Rosenbohm
2016-03-01 19:43 - 2016-03-01 19:43 - 00008829 _____ C:\Users\Kerso\Desktop\Lärmbelästigung.xlsx
2016-02-29 12:18 - 2016-02-29 12:18 - 00008454 _____ C:\Users\Kerso\Desktop\Schulterplan.xlsx

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-03-29 15:37 - 2014-11-10 09:59 - 00000000 ____D C:\Program Files\360
2016-03-29 15:37 - 2012-07-27 19:37 - 00001094 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-29 15:36 - 2012-03-03 14:33 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-29 15:36 - 2009-07-14 06:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-03-29 15:19 - 2012-03-03 14:23 - 01836146 _____ C:\Windows\system32\PerfStringBackup.INI
2016-03-29 15:19 - 2009-07-14 10:47 - 00776056 _____ C:\Windows\system32\perfh007.dat
2016-03-29 15:19 - 2009-07-14 10:47 - 00179582 _____ C:\Windows\system32\perfc007.dat
2016-03-29 15:19 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\inf
2016-03-29 15:02 - 2012-07-27 19:37 - 00001098 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-29 14:58 - 2013-09-28 13:49 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-03-29 14:16 - 2009-07-14 06:34 - 00025344 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-29 14:16 - 2009-07-14 06:34 - 00025344 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-29 14:15 - 2015-07-25 07:55 - 00000000 ____D C:\Program Files\Common Files\AV
2016-03-28 16:35 - 2013-06-01 13:05 - 00000000 ____D C:\ProgramData\Origin
2016-03-28 16:15 - 2014-05-13 15:35 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\TS3Client
2016-03-28 14:32 - 2012-03-03 18:52 - 00000000 ___RD C:\Users\Kerso\Desktop\Programme
2016-03-28 13:09 - 2012-12-01 23:43 - 00000000 ____D C:\Program Files\EveHQ
2016-03-28 13:07 - 2012-03-03 22:35 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\HpUpdate
2016-03-28 13:04 - 2012-07-27 19:38 - 00002133 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-28 12:51 - 2014-01-11 16:20 - 00000000 ____D C:\AdwCleaner
2016-03-28 12:43 - 2014-01-11 16:25 - 00004698 _____ C:\Users\Kerso\Desktop\AdwCleaner[S1].txt
2016-03-28 12:00 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Globalization
2016-03-27 22:46 - 2015-09-10 19:16 - 00000000 __SHD C:\ProgramData\360Quarant
2016-03-27 20:34 - 2015-01-02 12:56 - 00348360 _____ C:\Windows\system32\PnkBstrB.exe
2016-03-27 20:34 - 2015-01-02 12:56 - 00138816 _____ C:\Windows\system32\Drivers\PnkBstrK.sys
2016-03-27 20:34 - 2013-06-01 20:20 - 00348360 _____ C:\Windows\system32\PnkBstrB.xtr
2016-03-27 20:34 - 2013-06-01 14:50 - 00348928 _____ C:\Windows\system32\PnkBstrB.ex0
2016-03-27 12:07 - 2016-02-26 13:10 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2016-03-27 12:07 - 2012-05-10 06:45 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-03-27 12:04 - 2012-10-23 10:38 - 00000000 ____D C:\Users\Kerso\AppData\Local\CrashDumps
2016-03-27 07:36 - 2016-01-13 12:22 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-03-26 12:15 - 2012-07-27 19:37 - 00000000 ____D C:\Users\Kerso\AppData\Local\Google
2016-03-26 11:12 - 2012-03-03 14:25 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-03-26 11:04 - 2012-12-05 14:40 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2016-03-24 18:58 - 2013-09-28 13:49 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2016-03-24 18:58 - 2013-09-28 13:49 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2016-03-24 16:27 - 2016-01-12 16:08 - 00165072 _____ C:\Users\Kerso\AppData\Local\GDIPFONTCACHEV1.DAT
2016-03-24 09:46 - 2016-01-12 17:11 - 00549608 _____ C:\Windows\system32\FNTCACHE.DAT
2016-03-23 23:17 - 2012-08-01 12:57 - 00000000 ____D C:\Program Files\TeamViewer
2016-03-23 23:16 - 2014-04-27 18:25 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\TeamViewer
2016-03-23 10:57 - 2012-03-03 14:21 - 00000000 ____D C:\Users\Kerso
2016-03-23 10:46 - 2015-09-10 19:16 - 00000000 __SHD C:\$360Section
2016-03-17 08:35 - 2012-03-03 22:16 - 00000000 ____D C:\Users\Kerso\AppData\Roaming\DVDVideoSoft
2016-03-15 16:57 - 2012-03-04 20:17 - 00000000 ____D C:\A1-Faktura
2016-03-12 09:46 - 2014-11-20 18:10 - 00000000 ____D C:\Program Files\Common Files\DVDVideoSoft
2016-03-10 14:33 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2016-03-10 01:40 - 2013-08-09 19:37 - 00000000 ____D C:\Windows\system32\MRT
2016-03-10 01:36 - 2012-03-03 15:00 - 141270216 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2016-03-09 13:13 - 2015-04-17 13:07 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2013-06-01 14:50 - 2015-01-02 13:02 - 0138056 _____ () C:\Users\Kerso\AppData\Roaming\PnkBstrK.sys
2012-12-14 14:15 - 2012-12-14 14:15 - 0004096 ____H () C:\Users\Kerso\AppData\Local\keyfile3.drm
2012-07-25 09:09 - 2016-01-12 15:28 - 0007522 _____ () C:\ProgramData\hpzinstall.log

Einige Dateien in TEMP:
====================
C:\Users\Kerso\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Kerso\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Kerso\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-03-19 01:54

==================== Ende vom FRST.txt ============================
         
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x86) Version:05-03-2016 01
durchgeführt von Kerso (2016-03-29 15:39:11)
Gestartet von C:\Users\Kerso\Downloads
Microsoft Windows 7 Professional  Service Pack 1 (X86) (2012-03-03 12:21:21)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-392009458-3349232730-904554786-500 - Administrator - Disabled)
Gast (S-1-5-21-392009458-3349232730-904554786-501 - Limited - Enabled)
HomeGroupUser$ (S-1-5-21-392009458-3349232730-904554786-1028 - Limited - Enabled)
Kerso (S-1-5-21-392009458-3349232730-904554786-1000 - Administrator - Enabled) => C:\Users\Kerso
UpdatusUser (S-1-5-21-392009458-3349232730-904554786-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
4500_G510gm_Help (Version: 000.0.439.000 - Hewlett-Packard) Hidden
4500G510gm (Version: 000.0.423.000 - Hewlett-Packard) Hidden
4500G510gm_Software_Min (Version: 000.0.423.000 - Hewlett-Packard) Hidden
A1-Faktura 1.429 (HKLM\...\A1-Faktura_is1) (Version:  - A1-Faktura)
Acronis True Image 2016 (HKLM\...\{64AB919C-28AA-4260-A147-1A88E53EE978}Visible) (Version: 19.0.6027 - Acronis)
Acronis True Image 2016 (Version: 19.0.6027 - Acronis) Hidden
Adobe Acrobat Reader DC - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 21.0.0.197 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Allgemeine Runtime Files (x86) (HKLM\...\{1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1) (Version: 1.0.3.4 - Sereby Corporation)
Apple Application Support (HKLM\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Ashampoo Burning Studio 2014 v.12.0.5 (HKLM\...\{91B33C97-280F-B76D-E27B-E712D7041B76}_is1) (Version: 12.0.5 - Ashampoo GmbH & Co. KG)
Audacity 2.0.6 (HKLM\...\Audacity_is1) (Version: 2.0.6 - Audacity Team)
AVM FRITZ!WLAN (HKLM\...\AVMWLANCLI) (Version:  - AVM Berlin)
Battlefield 3™ (HKLM\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts)
Battlelog Web Plugins (HKLM\...\Battlelog Web Plugins) (Version: 2.7.1 - EA Digital Illusions CE AB)
BodyMedia SenseWear 8.1 (HKLM\...\{E6DC8662-0EF9-4942-9BD7-A15AF806D18A}) (Version: 8.01.22 - BodyMedia)
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
CameraHelperMsi (Version: 13.31.1038.0 - Logitech) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 3.16 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 4.45.3.0297 - DT Soft Ltd)
DAoC Portal (HKLM\...\{951D4810-1C32-47D1-A5BD-7A1BFB526D94}) (Version: 2.1.0 - DAoC Portal)
DAoC Portal (HKLM\...\{EC9359B3-2548-4DB1-B322-6D71A17501F9}) (Version: 2.8.2 - Dawn of Light)
DAOC-Charplan (HKLM\...\DAOCCharplan) (Version:  - )
Dark Age of Camelot (HKLM\...\Dark Age of Camelot) (Version:  - Electronic Arts)
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.372.000 - Hewlett-Packard) Hidden
DirectX 9.0c Extra Files (x86) (HKLM\...\{8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1) (Version: 1.10.06.0 - Sereby Corporation)
DirectX for Managed Code (HKLM\...\{FDF7187F-3960-4BEC-916D-98C9A83E3A68}_is1) (Version: 1.0.0.0 - Sereby Corporation)
DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
erLT (Version: 1.20.138.34 - Logitech, Inc.) Hidden
EVEMon (HKLM\...\EVEMon) (Version: 2.2.1 - battleclinic.com)
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
FormatFactory 2.90 (HKLM\...\FormatFactory) (Version: 2.90 - Free Time)
Free YouTube To MP3 Converter (HKLM\...\Free YouTube To MP3 Converter_is1) (Version: 4.1.1.119 - DVDVideoSoft Ltd.)
FreeOCR v4.2 (HKLM\...\freeocr_is1) (Version:  - )
GDR 5520 für SQL Server 2008 (KB 2977321) (HKLM\...\KB2977321) (Version: 10.3.5520.0 - Microsoft Corporation)
GDR 5538 für SQL Server 2008 (KB 3045305) (HKLM\...\KB3045305) (Version: 10.3.5538.0 - Microsoft Corporation)
Genesis version Genesis Launcher 1.011 (HKLM\...\{975e7799-c584-47f0-9c12-c1551f3e95f2}_is1) (Version: Genesis Launcher 1.011 - Pawel D. alias Laplume for Genesis.)
Genesis version Patch (HKLM\...\{9db86e9a-0b05-4202-a76c-5a795f698408}_is1) (Version: Patch - Pawel D. alias Laplume for Genesis.)
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.)
Google Update Helper (Version: 1.3.24.15 - Google Inc.) Hidden
Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden
GoPro App (Version: 5.7.549 - GoPro, Inc.) Hidden
GoPro Studio 2.5.7 (HKLM\...\{b996dca2-156c-4d2c-b9a3-59fac08cef33}) (Version: 2.5.7.549 - GoPro, Inc.)
Host OpenAL (ADI) (HKLM\...\Host OpenAL (ADI)) (Version:  - )
Hotfix für Microsoft Visual Basic 2010 Express - DEU (KB2635973) (HKLM\...\{CCAC7E52-ECCE-3C4D-B1BE-BC2ACF1C1C0E}.KB2635973) (Version: 1 - Microsoft Corporation)
HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Officejet 4500 G510g-m (HKLM\...\{E5083D57-D93F-404C-A91F-1C50D67C2BEB}) (Version: 13.0 - HP)
HP Update (HKLM\...\{97486FBE-A3FC-4783-8D55-EA37E9D171CC}) (Version: 5.005.000.001 - Hewlett-Packard)
HPDiagnosticAlert (Version: 1.00.0000 - Microsoft) Hidden
I.R.I.S. OCR (HKLM\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Image Resizer Powertoy Clone for Windows (HKLM\...\{1E5F3CC6-D390-4393-A2AA-6CEC04F1705A}) (Version: 2.1 - Brice Lambson)
i-Menu 2.2 (HKLM\...\i-Menu_is1) (Version:  - AOC)
IrfanView (remove only) (HKLM\...\IrfanView) (Version: 4.32 - Irfan Skiljan)
Java 8 Update 73 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation)
Lexware Info Service (HKLM\...\{15B2BC56-D179-4450-84B9-7A8D7F4CE1B9}) (Version: 2.70.00.0081 - Haufe-Lexware GmbH & Co.KG)
Logitech Vid (HKLM\...\{4FBCEA31-5D18-4212-9231-DE7CF1BE7DBB}) (Version: 1.70.1044 - Logitech Inc.)
Logitech Webcam Software (HKLM\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.0 - Logitech Inc.)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft)
Microsoft .NET Framework 1.1 Security Update (KB2656353) (HKLM\...\M2656353) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB979906) (HKLM\...\M979906) (Version:  - )
Microsoft .NET Framework 1.1 SP1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU (HKLM\...\{C2C284D2-6BD7-3B34-B0C5-B2CAED168DF7}) (Version: 3.2.30729 - Microsoft Corporation)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Help Viewer 1.1 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - DEU) (Version: 1.1.40219 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}) (Version:  - Microsoft)
Microsoft Office File Validation Add-In (HKLM\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Language Pack 2007 - German/Deutsch (HKLM\...\OMUI.de-de) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2008 (HKLM\...\Microsoft SQL Server 10 Release) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 Browser (HKLM\...\{4AF2248C-B3DF-46FB-9596-87F5DB193689}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Native Client (HKLM\...\{539A0EAA-E1BB-4163-9C1E-6C8BF4A17FA2}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM\...\{E9089B6A-1FDE-47F3-8D29-175F5B7A0722}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM\...\{59C245FC-343C-4FEC-B3CB-B6F12B561C20}) (Version: 10.3.5538.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 DEU (HKLM\...\{0125D081-30D0-4A97-82A8-C28D444B6256}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 DEU (HKLM\...\{EA61F81B-5754-4B5A-9BC5-FFEDC29D1DBC}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM\...\{C668416A-9213-4058-B7F2-01A42D85559D}) (Version: 10.50.1750.9 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{D074DC76-F6C9-440E-A1D0-1DE958417FDB}) (Version: 10.3.5500.0 - Microsoft Corporation)
Microsoft Visual Basic 2010 Express - DEU (HKLM\...\Microsoft Visual Basic 2010 Express - DEU) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (HKLM\...\{5DA8F6CD-C70E-39D8-8430-3D9808D6BD17}) (Version: 9.0.30411 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219 (HKLM\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual J# 2.0 Redistributable Package (HKLM\...\Microsoft Visual J# 2.0 Redistributable Package) (Version:  - Microsoft Corporation)
Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM\...\{616C6F39-4CE1-3434-A665-2F6A04C09A7F}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Service Pack 1 (HKLM\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mora's Ausrüstungsplaner (HKLM\...\{8A33CE67-80FB-4469-9ED1-E5D116391F68}_is1) (Version: 1.72 - Mora)
MozBackup 1.5.1 (HKLM\...\MozBackup) (Version:  - Pavel Cvrcek)
Mozilla Firefox 44.0.2 (x86 de) (HKLM\...\Mozilla Firefox 44.0.2 (x86 de)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
Mozilla Thunderbird 38.7.1 (x86 de) (HKLM\...\Mozilla Thunderbird 38.7.1 (x86 de)) (Version: 38.7.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
Mumble 1.2.11 (HKLM\...\{2C0B4F07-7DD2-4D69-9A97-77AE3A37280F}) (Version: 1.2.11 - Thorvald Natvig)
Network (Version: 130.0.374.000 - Hewlett-Packard) Hidden
NVIDIA 3D Vision Controller-Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 314.22 - NVIDIA Corporation)
NVIDIA 3D Vision Treiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 314.22 - NVIDIA Corporation)
NVIDIA Grafiktreiber 314.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 314.22 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.23.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.23.1 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.12.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.12.12 - NVIDIA Corporation)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
Origin (HKLM\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.)
PDF24 Creator 5.7.0 (HKLM\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.3 - Frank Heindörfer, Philip Chinery)
Pidgin (HKLM\...\Pidgin) (Version: 2.10.11 - )
PunkBuster Services (HKLM\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.)
pyfa version 1.12.0 (Carnyx 1.0) (HKLM\...\{3DA39096-C08D-49CD-90E0-1D177F32C8AA}_is1) (Version: 1.12.0 (Carnyx 1.0) - pyfa)
QuickTime 7 (HKLM\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Samsung Kies (HKLM\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.3.13034_9 - Samsung Electronics Co., Ltd.)
Samsung Kies (Version: 2.5.3.13034_9 - Samsung Electronics Co., Ltd.) Hidden
Samsung Kies3 (HKLM\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.49.0 - SAMSUNG Electronics Co., Ltd.)
Samsung_MonSetup (HKLM\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Screen+ 1.0 (HKLM\...\Screen+_is1) (Version:  - AOC)
Secure Download Manager (HKLM\...\{B15B400A-19ED-4CC7-B3E4-9295D8470CBE}) (Version: 3.0.3 - e-academy Inc.)
Service Pack 3 für SQL Server 2008 (KB2546951) (HKLM\...\KB2546951) (Version: 10.3.5500.0 - Microsoft Corporation)
Skype™ 7.0 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Smart Technology Programming Software 7.0.27.13 (HKLM\...\{6193D1C9-FEAC-4158-8EB5-1B1D7B0C8DA7}) (Version: 7.0.27.13 - Mad Catz)
SoundMAX (HKLM\...\{F0A37341-D692-11D4-A984-009027EC0A9C}) (Version: 6.10.1.6585 - Analog Devices)
Sql Server Customer Experience Improvement Program (Version: 10.3.5500.0 - Microsoft Corporation) Hidden
Status (Version: 130.0.373.000 - Hewlett-Packard) Hidden
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH)
TeamViewer 11 (HKLM\...\TeamViewer) (Version: 11.0.56083 - TeamViewer)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (Version: 130.0.376.000 - Hewlett-Packard) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 13.0.3020.2 - TuneUp Software) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
VFW_Codec32 (Version: 0.1.160.0 - GoPro, Inc.) Hidden
Virtual Cable Tester (HKLM\...\{3D654496-9C3D-4565-858C-3E551ECDA4E2}) (Version: 2.16.3.3 - Marvell)
Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 DEU (HKLM\...\{CFCB8616-A5D1-4281-80E8-389F685BFAE2}) (Version: 4.0.8080.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices  (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012  - GoPro)
WinHTTrack Website Copier 3.47-16 (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.47.16 - HTTrack)
WinRAR 4.11 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH)
WinSweeper 2.1 (HKLM\...\{96E8A815-3053-4616-AAC2-865E6B1792F5}_is1) (Version:  - Solvusoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {00620981-EAE4-4F8F-AA43-E1450A8199BA} - System32\Tasks\{551C6D34-2CEC-4CBA-BAAA-2648FEEA31AA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {0CD9FEAD-0027-4D62-8B88-94B2BF96FA89} - System32\Tasks\{6C83DB7D-D5E7-44B8-BFFD-85EBDB307E50} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {0F32A227-D816-4410-BCDF-A513BF2EB72F} - System32\Tasks\{1EF633E4-103B-4D87-9AFD-6A87598438B7} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {1717CC1D-E6BA-429F-9BA6-47CF5095981B} - System32\Tasks\{C82D3CE2-1A5F-4953-A9D0-8FEEF58E9E87} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {19B57C6C-14FA-4C9C-86DD-6B13173BD0D1} - System32\Tasks\{BA36C10A-A728-4C7C-A026-DC9246E977BC} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {2492F805-D192-45BF-9589-BE5F220A4EDD} - System32\Tasks\{60F186F7-5825-400E-BD48-63B204A20818} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {288AF73A-E90D-4063-A360-CF3958EED6C7} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {2FD308FD-45D0-498C-A4CC-1CB29B0C9F7E} - System32\Tasks\{70698B3A-815A-48B9-851C-0E4D6C432F7E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {3F67158D-FE62-4078-9659-EC4EDB73EF81} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2016-01-29] (Oracle Corporation)
Task: {4045E1F5-2B49-4CF5-A3C1-DAB36ADB69A4} - System32\Tasks\{44D96BAD-90EB-4765-A292-31412ECFE059} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {46F6499C-5390-4B88-BFCA-DAFAFAE5C7A8} - System32\Tasks\{93A484B1-999E-4CC5-B9A0-3FDCB55B1F4C} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {492C5054-D4CD-4912-A60C-76A77AC35E54} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {4958775C-9DCE-4243-8889-3CFE00D46E72} - System32\Tasks\{B08F50BF-6CC6-42F6-ACDF-F1EABD300EEE} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {520B7510-6448-49B2-94CB-8F6CDF09D436} - System32\Tasks\{4400CEB3-0A5B-442A-9942-E437B03807E4} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {526DE9CF-15C1-4726-AA5C-A7EDB04400A0} - System32\Tasks\{1DDE9954-42F1-4A06-B4D4-2E82FD26714E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {5636E0D2-35B0-48B5-8CFA-0C9697864E88} - System32\Tasks\{2B7C12D7-A0BD-4740-9B8F-75E72AD3F6F4} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {5D030872-ED2C-40A0-B3D6-9AF0689C951D} - System32\Tasks\{9695F42F-AF74-422D-A3D5-82BCDBE1F3CA} => C:\Program Files\DAoC Portal\Portal.exe [2015-03-19] (DAoCPortal)
Task: {5EB67062-2F28-45C6-B45C-25A3183319F4} - System32\Tasks\{73284883-AA5E-48F9-861C-0710C24BFC91} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6248EE7F-1A46-44CC-9B13-8E345D695108} - System32\Tasks\{8945F8B1-484B-4B20-B327-EEC42CC1ABB3} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {63281356-1ED5-4290-9A60-5DEE14CCEB80} - System32\Tasks\{9290612B-810C-4F89-AEA4-D8AB2F1ED515} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6408D330-8133-4A01-9E74-0E2992401BC5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-03-28] (Google Inc.)
Task: {64D763F7-D20F-49CD-AE87-004CCCBD9D43} - System32\Tasks\{837F0162-53AB-4369-B67F-BAA1D9D48B01} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {68A637A8-E8EC-4808-83F8-FFC922DFCA16} - System32\Tasks\{74761060-03C3-4A32-B77E-57BB024446A5} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6C351D97-2017-42BD-A3FD-286D704A13BB} - System32\Tasks\{F5AC1FDC-A9E7-485C-A8D1-C14E5C609C06} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {6DC10F59-B216-423F-8DE5-6CAF18F97D3B} - System32\Tasks\{A4F591FA-72C1-414D-A14A-2393968A52A2} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {7279E912-857D-45BE-800D-B357A4F0FDBB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {7C438803-AE28-494E-ADCC-4E98C81DE138} - System32\Tasks\{16ED4715-36E2-4E9E-BE6F-BE4E7F861EBB} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {835C454B-056A-4D96-A54F-53A1611988A3} - System32\Tasks\{DD4FF398-87C3-4376-BB7F-2C647A43819E} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {836BD4B1-BCEF-4AE9-8E1A-C77624D49894} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2011-05-10] (Hewlett-Packard)
Task: {8D153C95-2F0E-48D0-978F-09FF4FC97493} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-24] (Adobe Systems Incorporated)
Task: {8E1A87A4-AE69-4560-AB1E-827BDCC1BB56} - System32\Tasks\{0D3D59F5-85D3-4974-9FF6-2A89DC2F0C7F} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {98B5C114-3340-4B24-BE1F-F95AC59F8989} - System32\Tasks\{A6EFBE37-DCD3-4912-9106-1ECF06273D03} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {9EA971F1-6BA9-4230-AFD8-7CEA42824C1D} - System32\Tasks\{2F274B15-575F-4FA6-B283-D44BA6C0CAD2} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {A4E3C67E-2266-4637-B034-83ECE6F2C371} - System32\Tasks\{56257B99-77D1-4194-AE17-6000778515CF} => Firefox.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {AADBFC09-AAFD-48A0-84F7-FC696903DEC7} - System32\Tasks\{EE5253F5-B7E7-4A5C-911F-96F747A2E10A} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {ACDBF36F-7F47-4F54-BE94-1015388C4808} - System32\Tasks\{F9317F21-4583-4288-8864-F06D4FAE67CA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {B5F775DD-EF8C-47FD-ABBF-83A88A4DA2CF} - System32\Tasks\{77860B14-65FC-4D13-AC0F-61FE9A0329D0} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {BC768EDF-3DDD-4374-AF98-442B9BB4D46B} - System32\Tasks\{499343E1-6B97-42E6-B452-84618B09D34D} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {BCB12C4F-72F9-4B84-88FD-9591FA3A5360} - System32\Tasks\{2138C00A-8C8F-4010-916B-74ECCB0448FA} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {C0520FBC-92E4-444C-A2A9-7C220C3BD077} - System32\Tasks\{E4EC5395-F638-4DA2-8161-7E2F03E6D161} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {C53CDCB2-866F-4D47-9502-670873450FAF} - System32\Tasks\{8321EA50-5B40-4CA6-B763-81A548F52E84} => C:\Program Files\DAoC Portal\Portal.exe [2015-03-19] (DAoCPortal)
Task: {C559AF2B-5564-448B-92B7-C5B9FB5B5222} - System32\Tasks\{50D9BDDB-317D-4A51-ACF4-FB25601AE535} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {D22A96FB-53EE-429F-A984-A9046DE6E161} - System32\Tasks\{E5FFCBE8-744D-432F-940D-99BE59614C0F} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {DAD44A2D-CDFB-45D6-ADD0-0F631834F370} - System32\Tasks\{C9543114-2F2C-4E90-A2DF-70156690F820} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {E4F08313-FC3B-4333-92C0-9FA581C166EB} - System32\Tasks\{491A6C4B-5A43-45CB-8D8B-F91861617927} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {E6F0F568-90BF-46BC-AAB9-F469C3AAE741} - System32\Tasks\{77FD2DEA-B1F0-47F5-A8F4-679DB59A4416} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {EE799461-E6E0-446F-8AC4-AD628DC8BCA1} - System32\Tasks\{25134907-9A94-4C55-AF67-D3BE0E4C0BA9} => Chrome.exe hxxp://ui.skype.com/ui/0/5.10.0.116/de/go/help.faq.installer?LastError=1603
Task: {F978B2EA-FB04-4E87-BB6E-CD3D230D9613} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-03-28] (Google Inc.)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2012-03-03 14:33 - 2013-03-15 04:59 - 00078624 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2012-03-03 22:20 - 2001-10-28 18:42 - 00116224 _____ () C:\Windows\System32\pdfcmnnt.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00110952 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\zlib1.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00253800 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\collector.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00295272 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\stat.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00104296 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00020328 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2014-11-20 18:10 - 2016-01-19 05:02 - 00044392 _____ () C:\Program Files\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2015-08-11 15:36 - 2015-08-11 15:36 - 00024896 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\core_workers_shared_context.dll
2015-11-26 11:40 - 2015-11-26 11:40 - 00035760 _____ () C:\Program Files\Common Files\Acronis\Home\thread_pool.dll
2015-11-26 12:13 - 2015-11-26 12:13 - 04093976 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\atih_mms_addon.dll
2015-08-23 15:59 - 2015-08-23 15:59 - 00606672 _____ () C:\Program Files\Common Files\Acronis\Infrastructure\sqlite3.dll
2015-11-26 12:07 - 2015-11-26 12:07 - 19884832 _____ () C:\Program Files\Acronis\TrueImageHome\ti_managers.dll
2015-11-26 11:42 - 2015-11-26 11:42 - 00445872 _____ () C:\Program Files\Common Files\Acronis\Home\ulxmlrpcpp.dll
2015-11-26 11:36 - 2015-11-26 11:36 - 00115632 _____ () C:\Program Files\Common Files\Acronis\Home\EXPAT.dll
2015-01-02 12:56 - 2015-01-02 13:16 - 00076152 _____ () C:\Windows\system32\PnkBstrA.exe

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\ProgramData\TEMP:054203E4 [128]

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\98939766.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\98939766.sys => ""="Driver"

==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Da befinden sich 7865 mehr Seiten.

IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-392009458-3349232730-904554786-1000\...\123simsen.com -> www.123simsen.com

Da befinden sich 7865 mehr Seiten.


==================== Hosts Inhalt: ==========================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:04 - 2014-11-10 11:30 - 00450713 ____R C:\Windows\system32\Drivers\etc\hosts

127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com
127.0.0.1	www.123moviedownload.com

Da befinden sich 15461 zusätzliche Einträge.


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-392009458-3349232730-904554786-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Kerso\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)


==================== FirewallRules (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{FCE18AA2-B321-4EF4-ACAA-8FC82EDE2E03}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{E42BEE09-6227-4081-B4C8-193B232C28E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{81CC2A70-FBFE-4AEC-B285-245AD1568F1A}] => (Allow) C:\Program Files\Logitech\Vid\Vid.exe
FirewallRules: [{7BF10D49-7A8A-4A8D-9436-D20FD8C6FF9C}] => (Allow) C:\Program Files\Logitech\Vid\Vid.exe
FirewallRules: [{42C336AD-4905-485D-93D9-26947D44C2E0}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{E7DDDEC5-07E3-4205-ACA8-2DA60F0CD4A4}C:\program files\logitech\vid\vid.exe] => (Allow) C:\program files\logitech\vid\vid.exe
FirewallRules: [UDP Query User{DC2CE410-D267-406C-99A6-0631635486C3}C:\program files\logitech\vid\vid.exe] => (Allow) C:\program files\logitech\vid\vid.exe
FirewallRules: [{56B0D358-2FF9-45E8-8066-0F297E48C240}] => (Allow) E:\setup\hpznui01.exe
FirewallRules: [{D9D0DFDB-EC22-4423-8B1D-10128874EAF1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{40269EA2-1C21-400A-97AF-2C9F5A3C4318}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{F2C57C4F-AEF9-4971-BA46-B77B504B738D}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{899E56FD-24F3-47CC-A7FE-42B06DD60CC1}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{7AF0099B-8D7A-48B8-9419-C054858A6709}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{68323925-CD1C-4C70-9F84-951DE1D8DACC}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{A4709936-E183-4B6C-ACE4-5D1C4F4ED1FE}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{E866DBE2-EE0B-4167-8D11-56D376FBC7C3}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{76FB3896-3724-42F0-B8BC-1BC3D6420578}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{A3C7C629-FBC3-475A-B612-C806E5609FC5}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{98E8C9DF-508F-47CF-97CC-38F015DC964A}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{BB245105-085F-48B3-AEED-3FEAA9E93677}] => (Allow) C:\Program Files\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{5DBFBB52-7224-4428-B25B-29C4378F00CC}] => (Allow) C:\Program Files\HP\hp software update\hpwucli.exe
FirewallRules: [{5C660AF1-EA86-406E-A4E9-F48B329FBFA4}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{87FE41E0-5A63-4333-8442-F395EEA33A43}] => (Allow) C:\Program Files\VoipCheapCom\VoipCheapCom.exe
FirewallRules: [{1A699E85-BF38-45C0-B7FC-C6D456A94CAA}] => (Allow) C:\Program Files\VoipCheapCom\VoipCheapCom.exe
FirewallRules: [{6F432294-3666-427E-9B04-E2C85402F768}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{71AADF9C-3901-4920-98CD-52D807205665}] => (Allow) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{273F00A3-D4DE-49AC-A275-4038FB7155BE}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{5C12FA49-ABBC-4831-A7B1-879529B0A385}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{309629DC-0021-4B33-B1C9-3FC8DCF416B9}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{91599B7E-B8BC-482C-BE24-5427175AC046}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{1477A496-EADF-482E-9C8E-72D44806A0D1}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{F271A95E-8C0D-4046-804A-684548342853}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{7350B05D-7B17-4316-B3A5-BE6814C9E969}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{60F324F0-196C-4B7D-B759-94CAC79F0C74}] => (Allow) C:\Windows\System32\PnkBstrA.exe
FirewallRules: [{58593C4D-9E78-4023-92CB-D64B6AC471C1}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{1BE064D6-16A6-4BFA-88F5-09ACF00958F8}] => (Allow) C:\Windows\System32\PnkBstrB.exe
FirewallRules: [{9C5510E4-0496-49EB-BD5A-E29DC09E47FE}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{35F61CAC-F2B8-4E55-9C48-5559AB212D9C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{BE97D8EB-C8F3-444B-846C-69B62E47AC92}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{6A9DD1DC-E3F7-4423-B03A-81DD75A14E8B}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe
FirewallRules: [{43E1B361-D11A-42F0-B7D3-28AD2EE91285}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{2AA900AD-53E0-4836-95D5-FC59C2B36C11}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{FC319A75-079C-4026-B940-66CC7A0611A4}] => (Allow) C:\Program Files\Common Files\Acronis\SyncAgent\syncagentsrv.exe
FirewallRules: [{E837C937-54A4-4DEE-9B50-0C56F6764BC5}] => (Allow) C:\Program Files\Common Files\Acronis\Infrastructure\mms_mini.exe
FirewallRules: [{72345560-EAD7-4F69-9C05-58B976D59B66}] => (Allow) C:\Program Files\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe
FirewallRules: [TCP Query User{D08079CF-B821-48CE-B350-DA03D02842FB}H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe] => (Allow) H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe
FirewallRules: [UDP Query User{36836FAF-2756-479F-AE2E-5EBF05A6C764}H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe] => (Allow) H:\backup 12.01.2016\d festplatte\sollte ursprünglich auf d-alt bleiben\eve online\bin\exefile.exe
FirewallRules: [{B6032C31-03CB-4757-BAF6-D572C9AFA576}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{B1A7013E-2503-4AC1-A06A-A531FA52EC2A}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe
FirewallRules: [{F455438A-488B-4E68-9066-5F7A64CEDAB8}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{8382E8D2-9497-4138-8D31-3D1F087853AA}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{E9F37DFB-1A42-482F-B9C0-7F323D7C9E7D}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{A69213D9-505E-4709-9876-7BB18A78111E}] => (Allow) C:\Program Files\Origin Games\Battlefield 3\bf3.exe
FirewallRules: [{82F7040C-7725-4F92-908D-7F0A9721314A}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Wiederherstellungspunkte =========================

16-03-2016 08:24:44 Windows Update
23-03-2016 10:20:27 Geplanter Prüfpunkt
23-03-2016 10:44:52 Installiert BodyMedia SenseWear 8.1
26-03-2016 11:11:47 Entfernt BodyMedia SenseWear 8.1
26-03-2016 11:12:37 Installiert BodyMedia SenseWear 8.1
26-03-2016 12:06:40 DirectX wurde installiert
28-03-2016 12:32:42 JRT Pre-Junkware Removal
28-03-2016 12:35:47 TuneUp Utilities 2014 wird entfernt
28-03-2016 12:36:11 TuneUp Utilities 2014 (de-DE) wird entfernt

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: qutmipc
Description: qutmipc
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: qutmipc
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Officejet 4500 G510g-m
Description: Officejet 4500 G510g-m
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 4500 G510g-m
Description: Officejet 4500 G510g-m
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (03/26/2016 11:58:32 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: dc8

Startzeit: 01d18745293265da

Endzeit: 29

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 491d5c0f-f339-11e5-8503-001c4af7cd81

Error: (03/26/2016 11:57:15 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 44.0.2.5884, Zeitstempel: 0x56bbf417
Name des fehlerhaften Moduls: mozglue.dll, Version: 44.0.2.5884, Zeitstempel: 0x56bbe58e
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000ed3b
ID des fehlerhaften Prozesses: 0x1660
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3

Error: (03/24/2016 07:39:17 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1550

Startzeit: 01d185f31a33b9d9

Endzeit: 8

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 512eb2f0-f1e7-11e5-b86d-001c4af7cd81

Error: (03/22/2016 12:32:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm Origin.exe, Version 9.11.6.18139 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: c58

Startzeit: 01d184257344fadb

Endzeit: 104

Anwendungspfad: C:\Program Files\Origin\Origin.exe

Berichts-ID: 4f11e68b-f019-11e5-b8fc-001c4af7cd81

Error: (03/10/2016 08:42:19 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: Microsoft.SqlServer.Management.SmoMetadataProvider, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 . Error code = 0x80070002

Error: (03/10/2016 08:42:18 AM) (Source: .NET Runtime Optimization Service) (EventID: 1101) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v4.0.30319_32) - 1>Failed to compile: Microsoft.SqlServer.Management.SmoMetadataProvider, Version=10.0.0.0, Culture=neutral, PublicKeyToken=89845dcd8080cc91 . Error code = 0x80070002

Error: (03/09/2016 01:13:33 PM) (Source: MsiInstaller) (EventID: 1024) (User: Kerso-PC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5C00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127

Error: (03/07/2016 10:03:47 AM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/29/2016 04:35:00 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/18/2016 05:47:15 PM) (Source: MsiInstaller) (EventID: 1024) (User: Kerso-PC)
Description: Produkt: Adobe Acrobat Reader DC - Deutsch - Update "{AC76BA86-7AD7-0000-2550-AC0F0A4E5B00}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127


Systemfehler:
=============
Error: (03/29/2016 03:39:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (03/29/2016 03:39:32 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (03/29/2016 03:37:32 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: 
qutmipc

Error: (03/29/2016 03:37:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AVM WLAN Connection Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (03/29/2016 03:37:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst AVM WLAN Connection Service erreicht.

Error: (03/29/2016 02:10:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (03/29/2016 02:10:37 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1330

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (03/29/2016 02:08:32 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AVM WLAN Connection Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (03/29/2016 02:08:32 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst AVM WLAN Connection Service erreicht.

Error: (03/29/2016 09:09:08 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Duo CPU E8400 @ 3.00GHz
Prozentuale Nutzung des RAM: 35%
Installierter physikalischer RAM: 3327.12 MB
Verfügbarer physikalischer RAM: 2151.92 MB
Summe virtueller Speicher: 6652.55 MB
Verfügbarer virtueller Speicher: 5501.59 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:146.39 GB) (Free:30.02 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive d: () (Fixed) (Total:86.4 GB) (Free:37.93 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 51055104)
Partition 1: (Active) - (Size=146.4 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=86.4 GB) - (Type=07 NTFS)

==================== Ende vom Addition.txt ============================
         

Alt 29.03.2016, 14:49   #13
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



FRST-Fix

Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft!


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
HKLM\...\Run: [] => [X]
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  Keine Datei
SearchScopes: HKLM -> DefaultScope Wert fehlt
FF Extension: hd addon - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f1dcded5-3c5a-401c-b649-3c7d2e4a5347}.xpi [2016-02-24] [ist nicht signiert]
emptytemp:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 29.03.2016, 15:02   #14
Sumfy
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x86) Version:05-03-2016 01
durchgeführt von Kerso (2016-03-29 15:57:10) Run:1
Gestartet von C:\Users\Kerso\Downloads
Geladene Profile: Kerso (Verfügbare Profile: Kerso & UpdatusUser)
Start-Modus: Normal

==============================================

fixlist Inhalt:
*****************
HKLM\...\Run: [] => [X]
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  Keine Datei
SearchScopes: HKLM -> DefaultScope Wert fehlt
FF Extension: hd addon - C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f1dcded5-3c5a-401c-b649-3c7d2e4a5347}.xpi [2016-02-24] [ist nicht signiert]
emptytemp:
         
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => Wert erfolgreich entfernt
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtPending" => Schlüssel erfolgreich entfernt
HKCR\CLSID\{056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Schlüssel nicht gefunden. 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSynced" => Schlüssel erfolgreich entfernt
HKCR\CLSID\{05B38830-F4E9-4329-978B-1DD28605D202} => Schlüssel nicht gefunden. 
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\###MegaShellExtSyncing" => Schlüssel erfolgreich entfernt
HKCR\CLSID\{0596C850-7BDD-4C9D-AFDF-873BE6890637} => Schlüssel nicht gefunden. 
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Wert erfolgreich wiederhergestellt
C:\Users\Kerso\AppData\Roaming\Mozilla\Firefox\Profiles\8n693lxt.default-1450333089333\Extensions\{f1dcded5-3c5a-401c-b649-3c7d2e4a5347}.xpi => erfolgreich verschoben
EmptyTemp: => 378.4 MB temporäre Dateien entfernt.


Das System musste neu gestartet werden.

==== Ende vom Fixlog 15:57:23 ====
         
Vorhin beim neustart wegen Virus Prog. deinstallertion und auch jetzt sieht man ganz kurz zwischen Anmeldebildschirm und Desktopbild ein MsDos Fenster so halbe Sekunde... Normal?

Alt 29.03.2016, 15:19   #15
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Standard

Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder



Okay, dann Kontrollscans mit (1) MBAM, (2) ESET und (3) SecurityCheck bitte:


1. Schritt: MBAM

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.




2. Schritt: ESET

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset




3. Schritt: SecurityCheck

Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder
32bit, arten, compu, computers, dnsapi.dll, e-mail, hilfe, komplette, launch, neustarten, nicht, officejet, program, programm, programme, programme spinnen, scan, spiele, spinne, spinnen, spint, total, vernünftig, win, win7




Ähnliche Themen: Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder


  1. BKA Virus auf Android 4.1.1 taucht immer wieder auf! Auch nach Full-Wipe
    Smartphone, Tablet & Handy Security - 06.06.2015 (8)
  2. Windows 8.1: Ungewöhliches verhalten meines Computers - Virus/malware oder bin ich nur paranoid?
    Plagegeister aller Art und deren Bekämpfung - 02.02.2015 (1)
  3. Einige Dateien und Programme lassen sich nicht öffnen, weil Side-by-Side Konfiguration ungültig ist.
    Alles rund um Windows - 24.11.2014 (5)
  4. Check meines Computers
    Log-Analyse und Auswertung - 26.10.2014 (5)
  5. win 8 hat beim starten probleme, programme EAC und dbPowamp spinnen
    Plagegeister aller Art und deren Bekämpfung - 27.12.2013 (3)
  6. Unsicherheit über den Status meines Computers, Hacker? Kreditkartenproblem
    Plagegeister aller Art und deren Bekämpfung - 24.10.2013 (7)
  7. Full Scan Malwarebytes Anti-Malware findet 2 infizierte Datein
    Log-Analyse und Auswertung - 04.10.2013 (1)
  8. Wie werde ich wieder Admin meines PC ?
    Alles rund um Windows - 16.09.2013 (7)
  9. Trojaner(Trojan:Win32/CoinMiner .R) ist nach löschen und neustart des Computers wieder da
    Log-Analyse und Auswertung - 11.09.2013 (32)
  10. Interpol Sperrung meines Computers
    Plagegeister aller Art und deren Bekämpfung - 29.08.2013 (13)
  11. Maus und Tastatur spinnen immer wieder ohne erkennbares Muster
    Alles rund um Windows - 25.07.2012 (2)
  12. Stillstand meines Computers
    Plagegeister aller Art und deren Bekämpfung - 11.07.2012 (1)
  13. Trojaner verhindert jegliche Benutzung meines Computers
    Plagegeister aller Art und deren Bekämpfung - 22.02.2012 (4)
  14. Trojaner eingefangen? Browser und Programme spinnen
    Log-Analyse und Auswertung - 20.02.2010 (22)
  15. es ist mal wieder soweit - bitte um auswertung meines log-files
    Log-Analyse und Auswertung - 11.05.2007 (19)
  16. Bitte wieder mal um Auswertung meines Logfiles!!!
    Log-Analyse und Auswertung - 17.09.2005 (5)
  17. Alle Norton Programme spinnen!
    Antiviren-, Firewall- und andere Schutzprogramme - 14.03.2005 (7)

Zum Thema Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder - Hallo, ich möchte mal mit eurer/deiner Hilfe einen komplette Überprüfung meines PC machen. In letzter Zeit spint mal mein E-Mail Program, mal gehen die Spiele nicht vernünftig so das ich - Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder...
Archiv
Du betrachtest: Grundlegender Full Scan meines Computers weil Programme spinnen hin und wieder auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.