Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Tencent qqpctry eingefangen

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 04.06.2016, 13:37   #1
Destination
 
Tencent qqpctry eingefangen - Standard

Tencent qqpctry eingefangen



hallo liebe Com.

ich bin neu hier und bin leider was Virus Malware Adware ect anbelangt nicht so ausgebildet


Ich habe mir bei einem Download ein Chinesisches Program eingefangen das Den Ordner Tencent und die qqpctry.exe herbeigeführt hat.

ich kann den nicht Deinstallieren und auch nicht entfernen,mir wird der Zugang zu der Datei durch den"Ersteller-Besitzer" Zugang verwehrt! Habe die Software iwie wegbekommen aber der Ordner Tencent krieg ich nich komplett weg. was kann ich machen bzw wie werde ich den los?
was braucht ihr von mir noch an Daten damit ich euch helfen kann um mir zu helfen?
die Datei versteckt sich bei mir unter C:--> Programme(x86)-->Tencent,es handelt sich bei mir um ein Windows 10 pro,64 Bit System ich arbeite mit Firefox und benutze Avira als Anti Virus Programm

Lg

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:03-06-2016
durchgeführt von Stephan (Administrator) auf DESKTOP-A2173R1 (04-06-2016 14:35:31)
Gestartet von C:\Users\Stephan\Downloads
Geladene Profile: Stephan (Verfügbare Profile: Stephan)
Platform: Windows 10 Pro Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
() C:\Program Files (x86)\ASUS\WebStorage\2.0.1.213\AsusWSWinService.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
(ASUSTeK) C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe
(Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Chip Digital GmbH) C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
() C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
() C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(devolo AG) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe
(Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(pdfforge GmbH) C:\Program Files\PDF Architect 4\creator-ws.exe
(© pdfforge GmbH.) C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe
(Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
() C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe
(Bluestack System Inc. ) C:\Program Files (x86)\BlueStacks\BstkSVC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
() C:\Program Files (x86)\ASUS\KeyBot\KeyBot.exe
() C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe
() C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsBCLK.exe
() C:\Windows\AutoKMS\AutoKMS.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server.exe
(华为技术有限公司) C:\Program Files (x86)\HiSuite\LiveUpdateTip.exe
() C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\ASUSRelayWS.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(ROCCAT GmbH Co., Ltd.) C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe
(ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(Microsoft Corporation) C:\Windows\splwow64.exe
(CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
(Samsung Electronics.) C:\Samsung Magician\Samsung Magician.exe
(Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8781568 2016-02-03] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2014-05-28] (Intel Corporation)
HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [6564552 2016-05-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ASUS Media Streamer ShareEdit] => C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\ShareEdit.exe [1252152 2014-11-27] ()
HKLM-x32\...\Run: [ASUS Media Streamer DMS] => C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMS\AODMS.exe [1252664 2014-11-27] ()
HKLM-x32\...\Run: [ASUS Media Streamer WSAgent] => C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\ASUSWSAgent.exe [83256 2014-11-27] ()
HKLM-x32\...\Run: [ASUS WiFi GO! FileTransfer Execute] => C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe [1392952 2014-01-22] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [RtlS5Wake Execute] => C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe [1642496 2014-02-13] (Realtek)
HKLM-x32\...\Run: [WebStorage] => C:\Program Files (x86)\ASUS\WebStorage\2.0.1.213\ASUSWSLoader.exe [56640 2013-06-26] ()
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [814608 2016-05-25] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [67840 2016-05-04] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [RoccatIsku] => C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE [536576 2013-10-30] (ROCCAT GmbH)
HKLM-x32\...\Run: [RoccatKoneXTD] => C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE [552960 2014-10-19] (ROCCAT GmbH)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [953880 2016-04-12] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [71440 2016-05-09] (Plays.tv, LLC)
HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-05-23] (Raptr, Inc)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1298456 2015-04-20] (CANON INC.)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\Run: [Steam] => F:\Steam\steam.exe [3077712 2016-04-30] (Valve Corporation)
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8686296 2016-03-11] (Piriform Ltd)
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\Run: [SR2UILauncher] => C:\Program Files\ASUSTeKcomputer.Inc\SR2\UserInterface\SR2UILauncher.exe [326448 2014-11-28] ()
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [50264704 2015-11-05] (Skype Technologies S.A.)
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [953880 2016-04-12] (BlueStack Systems, Inc.)
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\Run: [uTorrent] => C:\Users\Stephan\AppData\Roaming\uTorrent\uTorrent.exe [2133504 2016-05-25] (BitTorrent Inc.)
ShellExecuteHooks:  - {98C066AB-D735-4339-9E52-A34875141B56} - C:\Users\Stephan\AppData\Local\Microsoft\Windows\INetCookies\kunecult.dll [425152 2016-06-03] ()
ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7191} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D809} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4E} => C:\Program Files (x86)\Common Files\AWS\2.0.1.213\ASUSWSShellExt64.dll [2013-06-26] (ASUS Cloud Corporation.)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  Keine Datei
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} =>  Keine Datei
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} =>  Keine Datei
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-09-05]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Roccat Talk.lnk [2015-10-26]
ShortcutTarget: Roccat Talk.lnk -> C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe (ROCCAT GmbH Co., Ltd.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 212.60.61.246 212.60.63.246
Tcpip\..\Interfaces\{7F2F37D6-5BBA-4B53-8DA6-3280E560F195}: [NameServer] 192.168.1.254
Tcpip\..\Interfaces\{A8DFEEA2-1FBA-427A-8639-668BFC4F78B0}: [NameServer] 192.168.0.1
Tcpip\..\Interfaces\{E686FBA4-2E2C-4855-9035-0C70B85184B6}: [NameServer] 192.168.0.1
Tcpip\..\Interfaces\{ff04f857-ac16-4211-adb8-c9915fbbdcbe}: [DhcpNameServer] 212.60.61.246 212.60.63.246

Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-4128223374-3399856601-3119930698-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-4128223374-3399856601-3119930698-1001 -> {3075B7FF-A441-454C-8FCA-EF0D01AB5F94} URL = hxxps://ch.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2016-02-14] (Oracle Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2016-02-14] (Oracle Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.)
BHO-x32: PDF Architect 4 Helper -> {38279E1A-7019-40C1-B579-E99DFB3312E8} -> C:\Program Files (x86)\PDF Architect 4\creator-ie-helper.dll [2016-01-15] (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\ssv.dll [2016-02-13] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\jp2ssv.dll [2016-02-13] (Oracle Corporation)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.)
Toolbar: HKLM-x32 - PDF Architect 4 Toolbar - {23FD9C33-A9E1-48A1-8404-E5925CF1C8E1} - C:\Program Files (x86)\PDF Architect 4\creator-ie-plugin.dll [2016-01-15] (pdfforge GmbH)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Stephan\AppData\Roaming\Profiles\c2baiwvf.default
FF NewTab: hxxp://d2ucfwpxlh3zh3.cloudfront.net/?ts=AHEqB3YsAnIsAU..&v=20160603&uid=5FFA55FE81B783560C0728205F094FBF&ptid=icb&mode=loadm
FF Homepage: about:home
FF Keyword.URL: hxxp://d2ucfwpxlh3zh3.cloudfront.net/chrome.php?uid=5FFA55FE81B783560C0728205F094FBF&ptid=icb&ts=AHEqB3YsAnIsAU..&v=20160603&mode=ffexttoolbar&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_21_0_0_242.dll [2016-05-13] ()
FF Plugin: @java.com/DTPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2016-02-14] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2016-02-14] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_242.dll [2016-05-13] ()
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @java.com/DTPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\dtplugin\npDeployJava1.dll [2016-02-13] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\plugin2\npjp2.dll [2016-02-13] (Oracle Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-05-27] (Adobe Systems Inc.)
FF Plugin-x32: PDF Architect 4 -> C:\Program Files (x86)\PDF Architect 4\np-previewer.dll [2016-01-15] (pdfforge GmbH)
FF SearchPlugin: C:\Users\Stephan\AppData\Roaming\Profiles\c2baiwvf.default\searchplugins\pukb58p7.xml [2016-06-03]
FF Extension: Avira Browser Safety - C:\Users\Stephan\AppData\Roaming\Mozilla\Firefox\Profiles\r4yw39c4.default\Extensions\abs@avira.com [2016-05-15]
FF Extension: Avira Browser Safety - C:\Users\Stephan\AppData\Roaming\Profiles\c2baiwvf.default\Extensions\abs@avira.com [2016-06-03]
FF Extension: Skype - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25]
FF HKLM\...\Firefox\Extensions: [pdf_architect_4_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension
FF Extension: PDF Architect 4 Creator - C:\Program Files\PDF Architect 4\resources\pdfarchitect4firefoxextension [2016-03-28] [ist nicht signiert]

Chrome: 
=======
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [970656 2016-05-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [467016 2016-05-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [467016 2016-05-25] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1435704 2016-05-25] (Avira Operations GmbH & Co. KG)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-01-28] ()
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2014-04-25] (ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] () [Datei ist nicht signiert]
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage\2.0.1.213\AsusWSWinService.exe [71680 2013-06-26] () [Datei ist nicht signiert]
R2 AsusGameFirstService; C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe [347960 2014-10-27] (ASUSTeK)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [276424 2016-05-04] (Avira Operations GmbH & Co. KG)
R2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2288384 2015-12-27] (Broadcom Corporation.)
S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437784 2016-04-12] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417304 2016-04-12] (BlueStack Systems, Inc.)
R2 BstHdPlusAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe [433688 2016-04-12] (BlueStack Systems, Inc.)
S3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [921112 2016-04-12] (BlueStack Systems, Inc.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
R2 chip1click; C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe [83456 2016-05-19] (Chip Digital GmbH) [Datei ist nicht signiert]
R2 DevoloNetworkService; C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe [3755976 2015-07-01] (devolo AG)
R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [387944 2016-05-11] (Digital Wave Ltd.)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [520416 2014-01-28] (Futuremark)
R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [138544 2015-03-31] ()
R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [192304 2015-03-31] ()
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-05-28] (Intel Corporation)
R2 MSSQL$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe [43130032 2015-03-30] (Microsoft Corporation)
S3 PDF Architect 4; C:\Program Files\PDF Architect 4\ws.exe [2417376 2016-01-15] (pdfforge GmbH)
S3 PDF Architect 4 CrashHandler; C:\Program Files\PDF Architect 4\crash-handler-ws.exe [1038048 2016-01-15] (pdfforge GmbH)
R2 PDF Architect 4 Creator; C:\Program Files\PDF Architect 4\creator-ws.exe [851168 2016-01-15] (pdfforge GmbH)
R2 PDF Architect 4 Manager; C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe [959248 2015-10-05] (© pdfforge GmbH.)
R2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [32528 2016-05-09] (Plays.tv, LLC)
S4 SQLAgent$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\SQLAGENT.EXE [381104 2015-03-30] (Microsoft Corporation)
R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-12-03] (DEVGURU Co., LTD.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
S2 doroghtshejasmoduleservice; "C:\Program Files (x86)\Doroghtshejas\doroghtshejasmoduleservice.html5" {79740E79-A383-47A7-B513-3DF6563D007F} {8C4CE252-7DB2-4F8E-8E76-BAD0E5826A83} [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [23240 2016-03-21] (Advanced Micro Devices, Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-01-28] ()
R2 AsRamDisk; C:\Windows\system32\DRIVERS\asramdisk.sys [111416 2014-05-07] (Asus)
R0 asstor64; C:\Windows\System32\drivers\asstor64.sys [83792 2015-12-10] (Asmedia Technology)
R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdWT6.sys [101376 2016-05-20] (Advanced Micro Devices)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-11] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [146712 2016-05-25] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-02] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [78208 2016-05-25] (Avira Operations GmbH & Co. KG)
S3 AWEAlloc; C:\Windows\system32\DRIVERS\awealloc.sys [21304 2014-02-17] (Olof Lagerkvist)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [208192 2015-12-27] (Broadcom Corporation.)
R3 BCMWL63A; C:\Windows\system32\DRIVERS\bcmwl63a.sys [11245816 2015-12-10] (Broadcom Corp)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [154680 2016-04-12] (BlueStack Systems)
R2 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [270904 2016-04-06] (Bluestack System Inc. )
R3 e1dexpress; C:\Windows\system32\DRIVERS\e1d65x64.sys [531424 2015-12-10] (Intel Corporation)
S3 HWHandSet; C:\Windows\system32\DRIVERS\hw_quusbmdm.sys [223232 2015-03-09] (Huawei Technologies Co., Ltd.)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-12-10] (REALiX(tm))
R3 MEIx64; C:\Windows\System32\drivers\TeeDriverW8x64.sys [185088 2015-12-10] (Intel Corporation)
R1 NFC_Driver; C:\Windows\System32\drivers\NFC_Driver.sys [48336 2014-03-27] (Titan ARC Corp.)
R2 NPF_devolo; C:\Windows\sysWOW64\drivers\npf_devolo.sys [34048 2013-03-04] (CACE Technologies)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 BCM42RLY; system32\drivers\BCM42RLY.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-06-04 14:35 - 2016-06-04 14:35 - 00024614 _____ C:\Users\Stephan\Downloads\FRST.txt
2016-06-04 14:35 - 2016-06-04 14:35 - 00000000 ____D C:\FRST
2016-06-04 14:34 - 2016-06-04 14:35 - 02384384 _____ (Farbar) C:\Users\Stephan\Downloads\FRST64.exe
2016-06-04 14:33 - 2016-06-04 14:33 - 00015725 _____ C:\Users\Stephan\Desktop\AdwCleaner[C1].txt
2016-06-04 14:07 - 2016-06-04 14:08 - 00000000 ____D C:\AdwCleaner
2016-06-04 14:07 - 2016-06-04 14:07 - 03677248 _____ C:\Users\Stephan\Downloads\AdwCleaner_5.119.exe
2016-06-03 22:48 - 2016-06-03 22:48 - 02824232 _____ C:\Users\Stephan\Downloads\SecurityTaskManager_Setup.exe
2016-06-03 22:48 - 2016-06-03 22:48 - 00001231 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spy Protector.lnk
2016-06-03 22:48 - 2016-06-03 22:48 - 00001220 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security Task Manager.lnk
2016-06-03 22:48 - 2016-06-03 22:48 - 00001208 _____ C:\Users\Public\Desktop\Security Task Manager.lnk
2016-06-03 22:48 - 2016-06-03 22:48 - 00000000 ____D C:\Program Files (x86)\Security Task Manager
2016-06-03 21:53 - 2016-06-03 22:11 - 00000000 ____D C:\WINDOWS\system32\SSL
2016-06-03 21:53 - 2016-06-03 21:53 - 00009074 _____ C:\WINDOWS\System32\Tasks\Doroghtshejas Module
2016-06-03 19:13 - 2016-06-03 19:13 - 00001211 _____ C:\Users\Public\Desktop\Avira Launcher.lnk
2016-05-29 23:59 - 2016-06-03 21:54 - 00000000 ____D C:\WINDOWS\Minidump
2016-05-29 22:02 - 2016-05-29 22:02 - 00001475 _____ C:\Users\Public\Desktop\Free YouTube To MP3 Converter.lnk
2016-05-29 22:02 - 2016-05-29 22:02 - 00000000 ____D C:\Program Files (x86)\FreeCodecPack
2016-05-29 22:00 - 2016-05-29 22:02 - 40236187 _____ (Digital Wave Ltd ) C:\Users\Stephan\Downloads\FreeYouTubeToMP3Converter_4.1.10.511.exe
2016-05-29 20:58 - 2016-05-29 20:58 - 04640104 _____ (hxxp://www.MP4ToMP3Converter.net ) C:\Users\Stephan\Downloads\mp4tomp305.exe
2016-05-29 20:58 - 2016-05-29 20:58 - 00000664 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk
2016-05-29 20:58 - 2016-05-29 20:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MP4 To MP3 Converter
2016-05-29 20:58 - 2016-05-29 20:58 - 00000000 ____D C:\Output
2016-05-29 20:58 - 2016-05-29 20:58 - 00000000 ____D C:\MP4ToMP3Converter
2016-05-29 20:54 - 2016-05-29 23:03 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\DVDVideoSoft
2016-05-29 20:54 - 2016-05-29 22:02 - 00001318 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2016-05-29 20:54 - 2016-05-29 22:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2016-05-29 20:54 - 2016-05-29 22:02 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2016-05-29 20:54 - 2016-05-29 20:54 - 26300626 _____ (Digital Wave Ltd ) C:\Users\Stephan\Downloads\FreeAudioCDBurner_2.0.55.511.exe
2016-05-29 20:54 - 2016-05-29 20:54 - 00001372 _____ C:\Users\Public\Desktop\Free Audio CD Burner.lnk
2016-05-29 20:31 - 2016-05-29 20:31 - 00001228 _____ C:\Users\Public\Desktop\CDBurnerXP.lnk
2016-05-29 20:31 - 2016-05-29 20:31 - 00001178 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP.lnk
2016-05-29 20:31 - 2016-05-29 20:31 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\Canneverbe Limited
2016-05-29 20:31 - 2016-05-29 20:31 - 00000000 ____D C:\ProgramData\Canneverbe Limited
2016-05-29 20:31 - 2016-05-29 20:31 - 00000000 ____D C:\Program Files (x86)\CDBurnerXP
2016-05-29 20:30 - 2016-05-29 20:30 - 05383336 _____ (Canneverbe Limited ) C:\Users\Stephan\Downloads\cdbxp_setup_4.5.7.6139_minimal.exe
2016-05-29 20:00 - 2016-05-29 20:28 - 00000000 ____D C:\Users\Stephan\Downloads\Lacey
2016-05-29 19:58 - 2016-05-29 19:58 - 10064144 _____ (the sz development) C:\Users\Stephan\Downloads\Lacey.exe
2016-05-29 19:57 - 2016-05-29 19:59 - 00000000 ____D C:\Users\Stephan\AppData\Local\AvgSetupLog
2016-05-29 19:57 - 2016-05-29 19:59 - 00000000 ____D C:\ProgramData\Avg
2016-05-29 19:57 - 2016-05-29 19:59 - 00000000 ____D C:\Program Files (x86)\AVG
2016-05-29 19:57 - 2016-05-29 19:58 - 00000000 ____D C:\Users\Stephan\AppData\Local\Avg
2016-05-28 13:15 - 2016-05-28 13:15 - 00000000 ____D C:\Program Files (x86)\AMD
2016-05-28 13:13 - 2016-05-28 13:14 - 00000000 ____D C:\WINDOWS\LastGood.Tmp
2016-05-27 20:10 - 2016-05-27 20:20 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\naviextras
2016-05-27 20:10 - 2016-05-27 20:10 - 13478728 _____ (NNG Llc.) C:\Users\Stephan\Downloads\Naviextras_Toolbox_Setup.exe
2016-05-27 20:10 - 2016-05-27 20:10 - 00001213 _____ C:\Users\Stephan\Desktop\Naviextras Toolbox.lnk
2016-05-27 20:10 - 2016-05-27 20:10 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Naviextras
2016-05-27 20:10 - 2016-05-27 20:10 - 00000000 ____D C:\Program Files (x86)\Naviextras
2016-05-27 20:01 - 2016-05-27 20:41 - 00000000 ____D C:\ProgramData\POIbase
2016-05-27 20:01 - 2016-05-27 20:06 - 00000000 ____D C:\Program Files (x86)\POIbase
2016-05-27 20:01 - 2016-05-27 20:01 - 00001144 _____ C:\Users\Public\Desktop\POIbase.lnk
2016-05-27 20:01 - 2016-05-27 20:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\POIbase
2016-05-27 20:00 - 2016-05-27 20:01 - 24626224 _____ ( ) C:\Users\Stephan\Downloads\poibase_setup_poibase.exe
2016-05-26 22:19 - 2016-05-26 22:19 - 00000199 _____ C:\Users\Stephan\Desktop\Counter-Strike Global Offensive.url
2016-05-26 22:18 - 2016-05-26 22:19 - 00000000 ____D C:\Users\Stephan\Desktop\csgo
2016-05-25 21:29 - 2016-05-25 21:29 - 00490364 _____ C:\Users\Stephan\Documents\IMG_20160525_0001.pdf
2016-05-25 21:29 - 2016-05-25 21:29 - 00000000 ___HD C:\ProgramData\CanonIJMIG
2016-05-25 21:28 - 2016-05-25 21:29 - 00000000 ___HD C:\ProgramData\CanonIJScan
2016-05-25 21:26 - 2016-05-25 21:33 - 00000000 ____D C:\Users\Stephan\Downloads\Adobe Photoshop CC 2015 (20150529.r.88) (32+64Bit) + Crack
2016-05-25 21:24 - 2016-05-25 21:24 - 00000898 _____ C:\Users\Stephan\Desktop\µTorrent.lnk
2016-05-25 21:24 - 2016-05-25 21:24 - 00000878 _____ C:\Users\Stephan\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2016-05-25 21:23 - 2016-06-04 14:33 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\uTorrent
2016-05-25 21:23 - 2016-06-03 19:13 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\Canon
2016-05-25 21:23 - 2016-05-25 21:23 - 01689168 _____ (BitTorrent Inc.) C:\Users\Stephan\Downloads\UTorrent3.4.2.35141.exe
2016-05-25 21:19 - 2016-05-25 21:19 - 00002098 _____ C:\Users\Public\Desktop\Canon Quick Menu.lnk
2016-05-25 21:19 - 2016-05-25 21:19 - 00000000 ____D C:\Users\Stephan\AppData\LocalLow\Canon Easy-WebPrint EX2
2016-05-25 21:19 - 2016-05-25 21:19 - 00000000 ____D C:\Users\Stephan\AppData\LocalLow\Canon Easy-WebPrint EX
2016-05-25 21:19 - 2016-05-25 21:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX530 series Benutzerregistrierung
2016-05-25 21:19 - 2016-05-25 21:19 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2016-05-25 21:19 - 2013-06-20 14:42 - 00321536 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNC_C3L.dll
2016-05-25 21:19 - 2013-06-14 17:02 - 00093184 _____ C:\WINDOWS\SysWOW64\CNC1775D.TBL
2016-05-25 21:19 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\WINDOWS\SysWOW64\CNHMCA.dll
2016-05-25 21:18 - 2016-05-25 21:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2016-05-25 21:18 - 2016-05-25 21:19 - 00000000 ____D C:\Program Files\Canon
2016-05-25 21:18 - 2016-05-25 21:18 - 00002433 _____ C:\Users\Public\Desktop\Canon MX530 series On-Screen-Handbuch.lnk
2016-05-25 21:18 - 2016-05-25 21:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MX530 series Manual
2016-05-25 21:17 - 2016-05-25 21:18 - 00000000 ___HD C:\Program Files\CanonBJ
2016-05-25 21:15 - 2016-05-25 21:19 - 00000000 ____D C:\Program Files (x86)\Canon
2016-05-25 21:15 - 2016-05-25 21:15 - 00000000 ___HD C:\ProgramData\CanonIJETV
2016-05-25 21:14 - 2016-05-25 21:15 - 51232304 _____ C:\Users\Stephan\Downloads\win-mx530-1_1-mcd.exe
2016-05-20 23:48 - 2016-05-20 23:48 - 00462080 _____ C:\WINDOWS\system32\amdmiracast.dll
2016-05-20 23:48 - 2016-05-20 23:48 - 00141280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2016-05-20 23:48 - 2016-05-20 23:48 - 00122704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 08876704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 08865344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 01242832 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00150544 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00141280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdhcp64.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00137136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00125288 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdhcp32.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00123776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00109856 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2016-05-20 23:47 - 2016-05-20 23:47 - 00092328 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2016-05-20 23:46 - 2016-05-20 23:46 - 08577456 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll
2016-05-20 23:46 - 2016-05-20 23:46 - 06999496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll
2016-05-20 23:44 - 2016-05-20 23:44 - 00296648 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdacpksd.sys
2016-05-20 23:35 - 2016-05-20 23:35 - 48616960 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll
2016-05-20 23:35 - 2016-05-20 23:35 - 00252928 _____ C:\WINDOWS\system32\clinfo.exe
2016-05-20 23:34 - 2016-05-20 23:34 - 38098432 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll
2016-05-20 23:33 - 2016-05-20 23:33 - 00096256 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-05-20 23:33 - 2016-05-20 23:33 - 00087040 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2016-05-20 23:32 - 2016-05-20 23:32 - 27433472 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl12cl64.dll
2016-05-20 23:31 - 2016-05-20 23:31 - 21600768 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl12cl.dll
2016-05-20 23:30 - 2016-05-20 23:30 - 08699392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdvlk64.dll
2016-05-20 23:26 - 2016-05-20 23:26 - 06951424 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdvlk32.dll
2016-05-20 23:16 - 2016-05-20 23:16 - 00103424 _____ (Advanced Micro Devices) C:\WINDOWS\system32\DelayAPO.dll
2016-05-20 23:15 - 2016-05-20 23:15 - 00184320 _____ C:\WINDOWS\system32\amdhdl64.dll
2016-05-20 23:15 - 2016-05-20 23:15 - 00164352 _____ C:\WINDOWS\SysWOW64\amdhdl32.dll
2016-05-20 23:14 - 2016-05-20 23:14 - 30188032 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll
2016-05-20 23:13 - 2016-05-20 23:13 - 00730112 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2016-05-20 23:13 - 2016-05-20 23:13 - 00605696 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2016-05-20 23:12 - 2016-05-20 23:12 - 06965248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmantle64.dll
2016-05-20 23:12 - 2016-05-20 23:12 - 00865280 _____ (AMD) C:\WINDOWS\system32\SETB537.tmp
2016-05-20 23:12 - 2016-05-20 23:12 - 00865280 _____ (AMD) C:\WINDOWS\system32\SET74CB.tmp
2016-05-20 23:12 - 2016-05-20 23:12 - 00865280 _____ (AMD) C:\WINDOWS\system32\coinst_16.20.dll
2016-05-20 23:12 - 2016-05-20 23:12 - 00142336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantle64.dll
2016-05-20 23:12 - 2016-05-20 23:12 - 00117760 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantle32.dll
2016-05-20 23:09 - 2016-05-20 23:09 - 05643776 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmantle32.dll
2016-05-20 23:09 - 2016-05-20 23:09 - 00716128 _____ C:\WINDOWS\SysWOW64\atiapfxx.blb
2016-05-20 23:09 - 2016-05-20 23:09 - 00716128 _____ C:\WINDOWS\system32\atiapfxx.blb
2016-05-20 23:09 - 2016-05-20 23:09 - 00385536 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe
2016-05-20 23:09 - 2016-05-20 23:09 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll
2016-05-20 23:09 - 2016-05-20 23:09 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll
2016-05-20 23:09 - 2016-05-20 23:09 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll
2016-05-20 23:09 - 2016-05-20 23:09 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll
2016-05-20 23:08 - 2016-05-20 23:08 - 15711744 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll
2016-05-20 23:08 - 2016-05-20 23:08 - 14302720 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll
2016-05-20 23:06 - 2016-05-20 23:06 - 24836096 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll
2016-05-20 23:06 - 2016-05-20 23:06 - 00113152 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\mantleaxl64.dll
2016-05-20 23:06 - 2016-05-20 23:06 - 00092160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\mantleaxl32.dll
2016-05-20 23:06 - 2016-05-20 23:06 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2016-05-20 23:06 - 2016-05-20 23:06 - 00038400 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdmmcl.dll
2016-05-20 23:05 - 2016-05-20 23:05 - 08850432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdxc64.dll
2016-05-20 23:04 - 2016-05-20 23:04 - 03437632 _____ C:\WINDOWS\system32\atiumd6a.cap
2016-05-20 23:03 - 2016-05-20 23:03 - 00204952 _____ C:\WINDOWS\SysWOW64\ativvsvl.dat
2016-05-20 23:03 - 2016-05-20 23:03 - 00204952 _____ C:\WINDOWS\system32\ativvsvl.dat
2016-05-20 23:03 - 2016-05-20 23:03 - 00157144 _____ C:\WINDOWS\SysWOW64\ativvsva.dat
2016-05-20 23:03 - 2016-05-20 23:03 - 00157144 _____ C:\WINDOWS\system32\ativvsva.dat
2016-05-20 23:02 - 2016-05-20 23:02 - 07261184 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdxc32.dll
2016-05-20 23:02 - 2016-05-20 23:02 - 00588288 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2016-05-20 23:02 - 2016-05-20 23:02 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2016-05-20 23:02 - 2016-05-20 23:02 - 00306688 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe
2016-05-20 23:02 - 2016-05-20 23:02 - 00274432 _____ C:\WINDOWS\system32\dgtrayicon.exe
2016-05-20 23:02 - 2016-05-20 23:02 - 00258560 _____ C:\WINDOWS\system32\GameManager64.dll
2016-05-20 23:02 - 2016-05-20 23:02 - 00230912 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2016-05-20 23:02 - 2016-05-20 23:02 - 00223744 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2016-05-20 23:02 - 2016-05-20 23:02 - 00212480 _____ C:\WINDOWS\system32\atieah64.exe
2016-05-20 23:02 - 2016-05-20 23:02 - 00202752 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2016-05-20 23:02 - 2016-05-20 23:02 - 00190464 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2016-05-20 23:02 - 2016-05-20 23:02 - 00093696 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2016-05-20 23:01 - 2016-05-20 23:01 - 00270336 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll
2016-05-20 22:59 - 2016-05-20 22:59 - 03471376 _____ C:\WINDOWS\SysWOW64\atiumdva.cap
2016-05-20 22:57 - 2016-05-20 22:57 - 01304576 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00973824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00973824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00498176 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys
2016-05-20 22:57 - 2016-05-20 22:57 - 00185344 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00159232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00119808 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00106496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00101376 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll
2016-05-20 22:57 - 2016-05-20 22:57 - 00091136 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll
2016-05-20 22:56 - 2016-05-20 22:56 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll
2016-05-20 22:55 - 2016-05-20 22:55 - 00251392 _____ C:\WINDOWS\system32\hsa-thunk64.dll
2016-05-20 22:55 - 2016-05-20 22:55 - 00217088 _____ C:\WINDOWS\SysWOW64\hsa-thunk.dll
2016-05-20 20:21 - 2016-05-20 20:21 - 00002081 _____ C:\Users\Public\Desktop\ROG Game First III 1.00.20.lnk
2016-05-20 16:36 - 2016-05-20 16:36 - 00000000 ____D C:\ProgramData\NovaTech Network
2016-05-20 16:36 - 2016-05-20 16:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NovaBench
2016-05-20 16:36 - 2016-05-20 16:36 - 00000000 ____D C:\Program Files (x86)\Novawave
2016-05-20 16:35 - 2016-05-20 16:35 - 01475080 _____ C:\Users\Stephan\Downloads\NovaBench - CHIP-Installer.exe
2016-05-20 16:35 - 2016-05-20 16:35 - 00000000 ____D C:\Program Files (x86)\Chip Digital GmbH
2016-05-15 16:27 - 2016-05-20 16:20 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-05-11 18:44 - 2016-04-23 07:28 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-05-11 18:44 - 2016-04-23 07:24 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-05-11 18:44 - 2016-04-23 07:24 - 01819208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-05-11 18:44 - 2016-04-23 07:10 - 03673424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-05-11 18:44 - 2016-04-23 07:10 - 02919832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-05-11 18:44 - 2016-04-23 07:09 - 22561256 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-05-11 18:44 - 2016-04-23 07:09 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-05-11 18:44 - 2016-04-23 07:09 - 05240960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-05-11 18:44 - 2016-04-23 07:08 - 06605504 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-05-11 18:44 - 2016-04-23 06:31 - 13018112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-05-11 18:44 - 2016-04-23 06:30 - 22379008 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-05-11 18:44 - 2016-04-23 06:28 - 16984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-05-11 18:44 - 2016-04-23 06:26 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-05-11 18:44 - 2016-04-23 06:25 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-05-11 18:44 - 2016-04-23 06:23 - 11545088 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-05-11 18:44 - 2016-04-23 06:22 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-05-11 18:44 - 2016-04-23 06:22 - 00460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-05-11 18:44 - 2016-04-23 06:20 - 19344384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-05-11 18:44 - 2016-04-23 06:20 - 18676224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-05-11 18:44 - 2016-04-23 06:19 - 07977472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-05-11 18:44 - 2016-04-23 06:19 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-05-11 18:44 - 2016-04-23 06:19 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-05-11 18:44 - 2016-04-23 06:19 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-05-11 18:44 - 2016-04-23 06:19 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-05-11 18:44 - 2016-04-23 06:18 - 24604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-05-11 18:44 - 2016-04-23 06:18 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-05-11 18:44 - 2016-04-23 06:18 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-05-11 18:44 - 2016-04-23 06:18 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-05-11 18:44 - 2016-04-23 06:18 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-05-11 18:44 - 2016-04-23 06:16 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-05-11 18:44 - 2016-04-23 06:15 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-05-11 18:44 - 2016-04-23 06:15 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-05-11 18:44 - 2016-04-23 06:15 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-05-11 18:44 - 2016-04-23 06:14 - 13383168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-05-11 18:44 - 2016-04-23 06:14 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-05-11 18:44 - 2016-04-23 06:13 - 07200256 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-05-11 18:44 - 2016-04-23 06:13 - 06295552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-05-11 18:44 - 2016-04-23 06:10 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-05-11 18:44 - 2016-04-23 06:09 - 02582016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-05-11 18:44 - 2016-04-23 06:08 - 05324288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-05-11 18:44 - 2016-04-23 06:08 - 02061824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-05-11 18:44 - 2016-04-23 06:07 - 05205504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-05-11 18:44 - 2016-04-23 06:06 - 06974464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-05-11 18:44 - 2016-04-23 06:05 - 05502976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-05-11 18:44 - 2016-04-23 06:03 - 05660160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-05-11 18:44 - 2016-04-23 06:02 - 07832576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-05-11 18:43 - 2016-05-06 06:53 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdport.sys
2016-05-11 18:43 - 2016-05-06 06:05 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-05-11 18:43 - 2016-05-06 06:03 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-05-11 18:43 - 2016-05-06 05:53 - 00351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2016-05-11 18:43 - 2016-05-06 05:49 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnrSvc.dll
2016-05-11 18:43 - 2016-05-06 05:44 - 00582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngccredprov.dll
2016-05-11 18:43 - 2016-05-06 05:43 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-05-11 18:43 - 2016-05-06 05:23 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcpopkeysrv.dll
2016-05-11 18:43 - 2016-04-30 08:42 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-05-11 18:43 - 2016-04-30 08:31 - 03591168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-05-11 18:43 - 2016-04-23 08:12 - 01401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-05-11 18:43 - 2016-04-23 08:12 - 01184960 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-05-11 18:43 - 2016-04-23 08:12 - 00713920 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-05-11 18:43 - 2016-04-23 08:12 - 00514752 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-05-11 18:43 - 2016-04-23 08:12 - 00294592 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-05-11 18:43 - 2016-04-23 08:12 - 00190144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-05-11 18:43 - 2016-04-23 08:12 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-05-11 18:43 - 2016-04-23 08:12 - 00046784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-05-11 18:43 - 2016-04-23 07:28 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-05-11 18:43 - 2016-04-23 07:26 - 00707608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2016-05-11 18:43 - 2016-04-23 07:24 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-05-11 18:43 - 2016-04-23 07:24 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2016-05-11 18:43 - 2016-04-23 07:24 - 00638816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys
2016-05-11 18:43 - 2016-04-23 07:24 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2016-05-11 18:43 - 2016-04-23 07:24 - 00099680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2016-05-11 18:43 - 2016-04-23 07:22 - 01161120 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2016-05-11 18:43 - 2016-04-23 07:18 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-05-11 18:43 - 2016-04-23 07:13 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-05-11 18:43 - 2016-04-23 07:13 - 00306832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2016-05-11 18:43 - 2016-04-23 07:13 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-05-11 18:43 - 2016-04-23 07:12 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-05-11 18:43 - 2016-04-23 07:12 - 00451928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-05-11 18:43 - 2016-04-23 07:12 - 00413536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-05-11 18:43 - 2016-04-23 07:11 - 01092464 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-05-11 18:43 - 2016-04-23 07:11 - 00696672 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-05-11 18:43 - 2016-04-23 07:11 - 00498960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-05-11 18:43 - 2016-04-23 07:11 - 00390496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-05-11 18:43 - 2016-04-23 07:11 - 00131424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufxsynopsys.sys
2016-05-11 18:43 - 2016-04-23 07:11 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-05-11 18:43 - 2016-04-23 07:10 - 00330072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2016-05-11 18:43 - 2016-04-23 07:09 - 04074160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-05-11 18:43 - 2016-04-23 07:09 - 00569744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2016-05-11 18:43 - 2016-04-23 07:09 - 00565600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2016-05-11 18:43 - 2016-04-23 07:09 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2016-05-11 18:43 - 2016-04-23 07:09 - 00303216 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-05-11 18:43 - 2016-04-23 07:09 - 00255168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe
2016-05-11 18:43 - 2016-04-23 07:08 - 04515256 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-05-11 18:43 - 2016-04-23 07:08 - 00725776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2016-05-11 18:43 - 2016-04-23 07:07 - 01848072 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2016-05-11 18:43 - 2016-04-23 07:07 - 01536088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2016-05-11 18:43 - 2016-04-23 07:07 - 00204048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll
2016-05-11 18:43 - 2016-04-23 07:07 - 00183904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rsaenh.dll
2016-05-11 18:43 - 2016-04-23 07:06 - 00291360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2016-05-11 18:43 - 2016-04-23 07:02 - 00188256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-05-11 18:43 - 2016-04-23 07:01 - 01996640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-05-11 18:43 - 2016-04-23 07:01 - 00650304 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-05-11 18:43 - 2016-04-23 07:01 - 00619296 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2016-05-11 18:43 - 2016-04-23 07:01 - 00577368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-05-11 18:43 - 2016-04-23 07:01 - 00522176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-05-11 18:43 - 2016-04-23 07:01 - 00513368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2016-05-11 18:43 - 2016-04-23 07:01 - 00393568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-05-11 18:43 - 2016-04-23 07:01 - 00217440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 01776768 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 01594920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 01522152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 01372304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 00550656 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 00453472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\directmanipulation.dll
2016-05-11 18:43 - 2016-04-23 07:00 - 00058208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwminit.dll
2016-05-11 18:43 - 2016-04-23 06:56 - 00534872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-05-11 18:43 - 2016-04-23 06:39 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-05-11 18:43 - 2016-04-23 06:35 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-05-11 18:43 - 2016-04-23 06:34 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-05-11 18:43 - 2016-04-23 06:34 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2016-05-11 18:43 - 2016-04-23 06:34 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2016-05-11 18:43 - 2016-04-23 06:33 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-05-11 18:43 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshbth.dll
2016-05-11 18:43 - 2016-04-23 06:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmCx.sys
2016-05-11 18:43 - 2016-04-23 06:33 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ByteCodeGenerator.exe
2016-05-11 18:43 - 2016-04-23 06:32 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-05-11 18:43 - 2016-04-23 06:32 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-05-11 18:43 - 2016-04-23 06:32 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-05-11 18:43 - 2016-04-23 06:31 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-05-11 18:43 - 2016-04-23 06:30 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-05-11 18:43 - 2016-04-23 06:30 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-05-11 18:43 - 2016-04-23 06:30 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-05-11 18:43 - 2016-04-23 06:29 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-05-11 18:43 - 2016-04-23 06:29 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-05-11 18:43 - 2016-04-23 06:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filecrypt.sys
2016-05-11 18:43 - 2016-04-23 06:29 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-05-11 18:43 - 2016-04-23 06:29 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-05-11 18:43 - 2016-04-23 06:29 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hmkd.dll
2016-05-11 18:43 - 2016-04-23 06:29 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ByteCodeGenerator.exe
2016-05-11 18:43 - 2016-04-23 06:29 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2016-05-11 18:43 - 2016-04-23 06:28 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll
2016-05-11 18:43 - 2016-04-23 06:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-05-11 18:43 - 2016-04-23 06:28 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll
2016-05-11 18:43 - 2016-04-23 06:28 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-05-11 18:43 - 2016-04-23 06:28 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshbth.dll
2016-05-11 18:43 - 2016-04-23 06:27 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2016-05-11 18:43 - 2016-04-23 06:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll
2016-05-11 18:43 - 2016-04-23 06:26 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-05-11 18:43 - 2016-04-23 06:26 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2016-05-11 18:43 - 2016-04-23 06:25 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-05-11 18:43 - 2016-04-23 06:25 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-05-11 18:43 - 2016-04-23 06:25 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-05-11 18:43 - 2016-04-23 06:25 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-05-11 18:43 - 2016-04-23 06:24 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-05-11 18:43 - 2016-04-23 06:24 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-05-11 18:43 - 2016-04-23 06:24 - 00292864 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-05-11 18:43 - 2016-04-23 06:24 - 00287232 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-05-11 18:43 - 2016-04-23 06:24 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2016-05-11 18:43 - 2016-04-23 06:24 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2016-05-11 18:43 - 2016-04-23 06:24 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEDataLayerHelpers.dll
2016-05-11 18:43 - 2016-04-23 06:23 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-05-11 18:43 - 2016-04-23 06:23 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2016-05-11 18:43 - 2016-04-23 06:23 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\BrowserSettingSync.dll
2016-05-11 18:43 - 2016-04-23 06:23 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll
2016-05-11 18:43 - 2016-04-23 06:22 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-05-11 18:43 - 2016-04-23 06:21 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-05-11 18:43 - 2016-04-23 06:21 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-05-11 18:43 - 2016-04-23 06:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-05-11 18:43 - 2016-04-23 06:20 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-05-11 18:43 - 2016-04-23 06:20 - 00484352 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll
2016-05-11 18:43 - 2016-04-23 06:20 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2016-05-11 18:43 - 2016-04-23 06:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2016-05-11 18:43 - 2016-04-23 06:20 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2016-05-11 18:43 - 2016-04-23 06:19 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlansec.dll
2016-05-11 18:43 - 2016-04-23 06:19 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BrowserSettingSync.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00988672 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-05-11 18:43 - 2016-04-23 06:18 - 00804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-05-11 18:43 - 2016-04-23 06:18 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2016-05-11 18:43 - 2016-04-23 06:18 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-05-11 18:43 - 2016-04-23 06:17 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-05-11 18:43 - 2016-04-23 06:17 - 00529920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-05-11 18:43 - 2016-04-23 06:17 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-05-11 18:43 - 2016-04-23 06:17 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2016-05-11 18:43 - 2016-04-23 06:16 - 01319424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-05-11 18:43 - 2016-04-23 06:16 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-05-11 18:43 - 2016-04-23 06:15 - 01073152 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-05-11 18:43 - 2016-04-23 06:15 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2016-05-11 18:43 - 2016-04-23 06:15 - 00673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-05-11 18:43 - 2016-04-23 06:15 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2016-05-11 18:43 - 2016-04-23 06:14 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-05-11 18:43 - 2016-04-23 06:14 - 00821760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-05-11 18:43 - 2016-04-23 06:14 - 00647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-05-11 18:43 - 2016-04-23 06:14 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-05-11 18:43 - 2016-04-23 06:14 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-05-11 18:43 - 2016-04-23 06:14 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-05-11 18:43 - 2016-04-23 06:13 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2016-05-11 18:43 - 2016-04-23 06:13 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-05-11 18:43 - 2016-04-23 06:13 - 00434688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-05-11 18:43 - 2016-04-23 06:12 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2016-05-11 18:43 - 2016-04-23 06:10 - 00639488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2016-05-11 18:43 - 2016-04-23 06:09 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-05-11 18:43 - 2016-04-23 06:07 - 02598912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-05-11 18:43 - 2016-04-23 06:07 - 01500160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-05-11 18:43 - 2016-04-23 06:07 - 00848896 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-05-11 18:43 - 2016-04-23 06:05 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-05-11 18:43 - 2016-04-23 06:05 - 02066432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-05-11 18:43 - 2016-04-23 06:05 - 01946112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-05-11 18:43 - 2016-04-23 06:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-05-11 18:43 - 2016-04-23 06:05 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-05-11 18:43 - 2016-04-23 06:05 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2016-05-11 18:43 - 2016-04-23 06:05 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2016-05-11 18:43 - 2016-04-23 06:04 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-05-11 18:43 - 2016-04-23 06:04 - 01731072 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-05-11 18:43 - 2016-04-23 06:03 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-05-11 18:43 - 2016-04-23 06:03 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-05-11 18:43 - 2016-04-23 06:03 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-05-11 18:43 - 2016-04-23 06:03 - 02000896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-05-11 18:43 - 2016-04-23 06:03 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-05-11 18:43 - 2016-04-23 06:03 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-05-11 18:43 - 2016-04-23 06:02 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-05-11 18:43 - 2016-04-23 06:01 - 04775424 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-05-11 18:43 - 2016-04-23 06:00 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-05-11 18:43 - 2016-04-23 06:00 - 00984576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-05-11 18:43 - 2016-04-23 05:45 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-05-11 18:43 - 2016-04-23 04:10 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-05-11 18:43 - 2016-04-23 04:10 - 00002186 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2016-05-11 18:43 - 2016-04-19 00:30 - 00002186 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2016-05-09 07:05 - 2016-05-09 07:05 - 00874790 _____ C:\WINDOWS\system32\amdicdxx.dat
2016-05-06 22:45 - 2016-05-06 22:45 - 00368416 _____ C:\WINDOWS\system32\ativvaxy_el_nd.dat

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-06-04 14:15 - 2016-02-13 18:59 - 00841874 _____ C:\WINDOWS\system32\perfh007.dat
2016-06-04 14:15 - 2016-02-13 18:59 - 00180516 _____ C:\WINDOWS\system32\perfc007.dat
2016-06-04 14:15 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-06-04 14:15 - 2015-09-04 17:18 - 01986350 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-06-04 14:09 - 2016-04-28 23:20 - 00003808 _____ C:\WINDOWS\System32\Tasks\AutoKMS
2016-06-04 14:09 - 2016-02-13 19:26 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-06-04 14:09 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI
2016-06-04 14:09 - 2015-09-09 05:57 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-06-04 14:08 - 2016-03-28 17:12 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\Lavasoft
2016-06-04 14:08 - 2016-03-28 17:12 - 00000000 ____D C:\ProgramData\Lavasoft
2016-06-04 14:08 - 2016-03-28 17:12 - 00000000 ____D C:\Program Files (x86)\Lavasoft
2016-06-04 14:08 - 2015-10-23 17:30 - 00000000 ____D C:\Program Files (x86)\Yahoo!
2016-06-04 08:21 - 2016-04-27 14:05 - 00000000 ____D C:\Users\Stephan
2016-06-03 22:50 - 2015-09-04 17:50 - 00000000 ____D C:\Users\Stephan\AppData\Local\VirtualStore
2016-06-03 22:10 - 2016-02-13 10:22 - 00206312 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-06-03 21:00 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-06-03 21:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-06-03 19:25 - 2015-09-09 06:01 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-06-03 19:13 - 2015-09-11 17:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-06-03 19:13 - 2015-09-04 18:45 - 00000000 ____D C:\ProgramData\Package Cache
2016-05-29 23:10 - 2016-02-13 19:32 - 00000000 ____D C:\ProgramData\BlueStacksSetup
2016-05-28 13:15 - 2016-04-18 20:03 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\PlaysTV
2016-05-28 13:15 - 2016-04-18 20:02 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\Raptr
2016-05-28 13:15 - 2016-04-05 18:33 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-05-28 13:15 - 2016-01-13 08:29 - 00004296 _____ C:\WINDOWS\System32\Tasks\AMD Updater
2016-05-28 13:15 - 2015-11-26 11:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2016-05-28 13:13 - 2016-04-27 14:04 - 00000000 ____D C:\Program Files\AMD
2016-05-28 13:07 - 2015-09-04 17:54 - 00000000 ____D C:\AMD
2016-05-28 12:17 - 2016-02-22 02:53 - 00000000 ____D C:\Users\Stephan\Desktop\Neuer Ordner (3)
2016-05-27 20:02 - 2015-09-11 17:07 - 00000000 ____D C:\ProgramData\KMSAutoS
2016-05-26 20:13 - 2015-11-14 01:12 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-05-26 19:50 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-05-26 11:03 - 2013-09-04 14:56 - 00000000 ____D C:\Users\Stephan\Desktop\RealBench
2016-05-25 21:19 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-05-25 19:58 - 2015-09-11 17:26 - 00146712 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-05-25 19:58 - 2015-09-11 17:26 - 00078208 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-05-23 21:49 - 2015-09-08 18:09 - 00000000 ____D C:\Users\Stephan\AppData\Roaming\TS3Client
2016-05-20 23:47 - 2016-04-04 06:16 - 00166488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SETB31A.tmp
2016-05-20 23:47 - 2016-04-04 06:16 - 00166488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SET72AD.tmp
2016-05-20 23:47 - 2016-04-04 06:16 - 00166488 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll
2016-05-20 23:47 - 2016-04-04 06:15 - 10694160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SETB0BA.tmp
2016-05-20 23:47 - 2016-04-04 06:15 - 10694160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SET704D.tmp
2016-05-20 23:47 - 2016-04-04 06:15 - 10694160 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll
2016-05-20 23:47 - 2016-04-04 06:15 - 01511680 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SETB33D.tmp
2016-05-20 23:47 - 2016-04-04 06:15 - 01511680 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SET72C1.tmp
2016-05-20 23:47 - 2016-04-04 06:15 - 01511680 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2016-05-20 23:46 - 2016-04-04 06:15 - 09798560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SETAE35.tmp
2016-05-20 23:46 - 2016-04-04 06:15 - 09798560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\SET6DB8.tmp
2016-05-20 23:46 - 2016-04-04 06:15 - 09798560 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll
2016-05-20 23:41 - 2016-04-04 06:09 - 27015680 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys
2016-05-20 23:16 - 2016-03-01 13:37 - 00101376 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\AtihdWT6.sys
2016-05-20 22:57 - 2016-04-04 03:31 - 00498176 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\SET72AA.tmp
2016-05-20 20:21 - 2016-04-27 14:04 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-05-20 20:21 - 2015-09-05 14:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2016-05-20 20:21 - 2015-09-05 14:34 - 00000000 ____D C:\ProgramData\ASUS
2016-05-20 20:21 - 2015-09-05 12:17 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-05-20 20:15 - 2015-09-05 12:25 - 00057008 _____ C:\WINDOWS\Ascd_tmp.ini
2016-05-20 16:35 - 2016-02-14 21:45 - 00000000 ____D C:\Users\Stephan\AppData\Local\Downloaded Installations
2016-05-20 16:20 - 2015-09-04 20:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-05-18 16:55 - 2015-09-05 16:40 - 00000000 ____D C:\Users\Stephan\AppData\Local\SR22.1.17
2016-05-18 16:34 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-05-18 16:15 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-05-17 19:55 - 2016-02-13 19:32 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-05-16 22:35 - 2016-02-13 19:13 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-16 22:35 - 2015-10-30 09:24 - 00015703 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2016-05-16 22:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-05-16 22:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-05-16 22:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-05-16 22:35 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-05-15 15:50 - 2015-09-05 12:11 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-05-15 15:48 - 2015-09-05 12:11 - 139319312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-05-13 17:09 - 2015-09-09 05:57 - 00003870 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-05-13 16:26 - 2016-04-18 20:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved
2016-05-11 21:57 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-05-11 21:57 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 19:07 - 2015-09-08 18:09 - 00000000 ____D C:\Users\Stephan\AppData\Local\TeamSpeak 3 Client
2016-05-11 18:31 - 2015-09-09 06:01 - 00003972 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-09-05 14:54 - 2015-09-05 14:54 - 0000131 _____ () C:\Program Files\IntelRemoteWakeAgent.ini
2015-09-04 18:06 - 2015-09-04 18:06 - 0000000 _____ () C:\Program Files (x86)\Common Files\AMD
2016-04-15 19:09 - 2016-04-15 19:09 - 0007605 _____ () C:\Users\Stephan\AppData\Local\Resmon.ResmonCfg

Dateien, die verschoben oder gelöscht werden sollten:
====================
C:\Users\Stephan\Windows_10+8.x_MouseFix_ItemsSize=100%_Scale=1-to-1_@6-of-11.reg


Einige Dateien in TEMP:
====================
C:\Users\Stephan\AppData\Local\Temp\avgnt.exe
C:\Users\Stephan\AppData\Local\Temp\libeay32.dll
C:\Users\Stephan\AppData\Local\Temp\msvcr120.dll
C:\Users\Stephan\AppData\Local\Temp\pps-qq-19.exe
C:\Users\Stephan\AppData\Local\Temp\qqpcmgr_v11.5.17490.219_45101_Silence.exe
C:\Users\Stephan\AppData\Local\Temp\ReimagePackage.exe
C:\Users\Stephan\AppData\Local\Temp\sqlite3.dll
C:\Users\Stephan\AppData\Local\Temp\wajam_install.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-06-04 00:18

==================== Ende von FRST.txt ============================
         

Alt 04.06.2016, 13:38   #2
Destination
 
Tencent qqpctry eingefangen - Standard

Tencent qqpctry eingefangen



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:03-06-2016
durchgeführt von Stephan (2016-06-04 14:35:53)
Gestartet von C:\Users\Stephan\Downloads
Windows 10 Pro Version 1511 (X64) (2016-04-27 12:10:35)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-4128223374-3399856601-3119930698-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4128223374-3399856601-3119930698-503 - Limited - Disabled)
Gast (S-1-5-21-4128223374-3399856601-3119930698-501 - Limited - Disabled)
Stephan (S-1-5-21-4128223374-3399856601-3119930698-1001 - Administrator - Enabled) => C:\Users\Stephan

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

µTorrent (HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.242 - Adobe Systems Incorporated)
AlienFX for KoneXTD (HKLM-x32\...\InstallShield_{48725548-E470-4816-99DD-6667EABAB982}) (Version: 1.02 - Roccat GmbH)
AlienFX for KoneXTD (Version: 1.02 - Roccat GmbH) Hidden
AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.)
AO Help (HKLM-x32\...\InstallShield_{D25B5189-FD08-4985-BF86-A52457A7A0A5}) (Version: 1.2.19.227 - Ihr Firmenname)
AO Help (x32 Version: 1.2.19.227 - Ihr Firmenname) Hidden
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.15.0 - Asmedia Technology)
Asmedia ASM106x SATA Host Controller Driver (HKLM-x32\...\{61942EF5-2CD8-47D4-869C-2E9A8BB085F1}) (Version: 2.0.8.0001 - Asmedia Technology)
ASUS Boot Setting (HKLM-x32\...\{7AAE9187-C24F-4073-A951-36C370E7A3A5}) (Version: 1.00.22 - ASUSTeK Computer Inc.)
ASUS HomeCloud Launcher (HKLM-x32\...\4ff11ffb-5880-4338-90e0-1502e835b184) (Version: 1.01.04 - ASUSTeK Computer Inc.)
ASUS PC Diagnostics (HKLM-x32\...\{D709005F-D8DC-42A8-8435-5AE880ECAF82}) (Version: 1.4.1 - ASUSTeK Computer Inc.)
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.028 - ASUSTek Computer Inc.)
ASUS ROG Connect Plus (HKLM-x32\...\{ECF51D37-52ED-4871-BF8B-FEA34B8B4120}) (Version: 1.00.26 - ASUSTeK Computer Inc.)
Asus Sonic Suite Plugins (x32 Version: 2.1.1701 - ASUSTeKcomputer.Inc) Hidden
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.17.273 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{28d41884-9b36-4f54-bed2-92863f08e65d}) (Version: 1.1.62.21333 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.62.21333 - Avira Operations GmbH & Co. KG) Hidden
BlueStacks App Player (HKLM-x32\...\{2A19A03A-A339-4697-99A4-EBA3D035D41A}) (Version: 2.2.19.6015 - BlueStack Systems, Inc.)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.34.223.5 - Broadcom Corporation)
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.6.0.0 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.5.14 - Canon Inc.)
Canon Kurzwahlprogramm (HKLM-x32\...\Speed Dial Utility) (Version: 1.6.0 - Canon Inc.)
Canon MX530 series Benutzerregistrierung (HKLM-x32\...\Canon MX530 series Benutzerregistrierung) (Version:  - *Canon Inc.)
Canon MX530 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX530_series) (Version: 1.01 - Canon Inc.)
Canon MX530 series On-screen Manual (HKLM-x32\...\Canon MX530 series On-screen Manual) (Version: 7.6.1 - Canon Inc.)
Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.3.0 - Canon Inc.)
Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.2.0 - Canon Inc.)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.6.1 - Canon Inc.)
Catalyst Control Center Next Localization BR (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (Version: 2016.0520.1721.29404 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.16 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6139 - CDBurnerXP)
chip 1-click download service (HKLM-x32\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 2.1.3.0 - Chip Digital GmbH)
Counter-Strike (HKLM-x32\...\Steam App 10) (Version:  - Valve)
Counter-Strike: Condition Zero (HKLM-x32\...\Steam App 80) (Version:  - Valve)
Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version:  - Valve)
devolo Cockpit (HKLM-x32\...\dlancockpit) (Version: 4.3.1.0 - devolo AG)
Free Audio CD Burner (HKLM-x32\...\Free Audio CD Burner_is1) (Version: 2.0.55.511 - Digital Wave Ltd)
Free YouTube To MP3 Converter (HKLM-x32\...\Free YouTube To MP3 Converter_is1) (Version: 4.1.10.511 - Digital Wave Ltd)
Futuremark SystemInfo (HKLM-x32\...\{032DC00A-51D1-4D28-BFB7-1D0E85291E11}) (Version: 4.25.366 - Futuremark)
GDR 4042 für SQL Server 2008 R2 (KB3045313) (HKLM-x32\...\KB3045313) (Version: 10.52.4042.0 - Microsoft Corporation)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 41.003.50.00.06 - Huawei Technologies Co.,Ltd)
HuaweiUpdateExtractor (HKLM-x32\...\{DA8738CA-93A6-4910-A264-53DF7686F397}) (Version: 0.9.9.3 - worstenbrood)
Intel(R) Network Connections 20.1.2019.0 (HKLM\...\PROSetDX) (Version: 20.1.2019.0 - Intel)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.1.0.1058 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden
Java 7 Update 79 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F06417079FF}) (Version: 7.0.790 - Oracle)
Java 8 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218071F0}) (Version: 8.0.710.15 - Oracle Corporation)
Java 8 Update 74 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218074F0}) (Version: 8.0.740.2 - Oracle Corporation)
Java SE Development Kit 7 Update 79 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170790}) (Version: 1.7.0.790 - Oracle)
KeyBot (HKLM-x32\...\{DF53C8ED-1B43-475D-8CEB-9462E7BC2D9C}) (Version: 2.00.01 - ASUSTeK Computer Inc.)
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
Manager (x32 Version: 4.0.1.25166 - 2015 pdfforge GmbH. All rights reserved) Hidden
Media Streamer (HKLM-x32\...\{B457E718-00CA-45C8-9F75-45D66F8DAFF6}) (Version: 3.00.08 - ASUSTeK Computer Inc.)
MemTweakIt (HKLM-x32\...\{E51AAC3A-D66D-4912-B883-DAFBA249D10F}) (Version: 2.02.01 - ASUSTeK Computer Inc.)
Microsoft SQL Server 2008 R2 (HKLM-x32\...\Microsoft SQL Server 2008 R2) (Version:  - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Native Client (HKLM\...\{49860BCD-24D6-44C1-922E-AC12FE32234E}) (Version: 10.52.4042.0 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Setup (English) (HKLM-x32\...\{EFECC55D-7B0A-4D05-8487-CC2FD7C618A3}) (Version: 10.52.4042.0 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files  (HKLM-x32\...\{D441BD04-E548-4F8E-97A4-1B66135BAAA8}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server Browser (HKLM-x32\...\{BF9BF038-FE03-429D-9B26-2FA0FD756052}) (Version: 10.52.4000.0 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (HKLM\...\{288D79EE-A2D1-42AF-9597-B0ADCC23A8ED}) (Version: 10.52.4000.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{3c3aafc8-d898-43ec-998f-965ffdae065a}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 46.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 46.0.1 (x86 de)) (Version: 46.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 46.0.1.5966 - Mozilla)
MP4 To MP3 Converter V3.0.5 (HKLM-x32\...\MP4 To MP3 Converter_is1) (Version:  - hxxp://www.MP4ToMP3Converter.net)
NahimicSettingsConfigurator (Version: 2.1.1701 - ASUSTeKcomputer.Inc) Hidden
Naviextras Toolbox (HKLM-x32\...\Naviextras Toolbox) (Version: 3.18.5.647040 - NNG Llc.)
Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.)
NovaBench 3.0.4 (HKLM-x32\...\{88603FC0-6B3C-442D-981E-E3D49F083548}_is1) (Version:  - Novawave Inc.)
Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version:  - )
PDF Architect 4 (HKLM-x32\...\PDF Architect 4) (Version: 4.0.34.26215 - pdfforge GmbH)
PDF Architect 4 Create Module (Version: 4.0.12.26604 - pdfforge GmbH) Hidden
PDF Architect 4 Edit Module (Version: 4.0.12.26604 - pdfforge GmbH) Hidden
PDF Architect 4 View Module (Version: 4.0.12.26604 - pdfforge GmbH) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.3.0 - pdfforge GmbH)
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.10.1-r112682-release - Plays.tv, LLC)
POIbase 2.0.18 (HKLM-x32\...\POIbase_is1) (Version:  - POIbase)
Raptr (HKLM-x32\...\Raptr) (Version: 5.2.1-r113066-release - Raptr, Inc)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7673 - Realtek Semiconductor Corp.)
ROCCAT Isku Keyboard Driver (HKLM-x32\...\{4ABAF918-A6BD-43D8-AE0B-5292034B14CB}) (Version:  - Roccat GmbH)
ROCCAT Kone XTD Mouse Driver (HKLM-x32\...\{7133137D-DF48-4522-AD88-13C82B7D0A63}) (Version:  - Roccat GmbH)
Roccat Talk (HKLM-x32\...\{605D671E-1D1E-4840-84D9-BFACE17F160D}) (Version: 1.00.0013 - Roccat GmbH)
ROG Game First III (HKLM-x32\...\{0C6E32E1-31D9-49F1-B67F-2941994002D5}) (Version: 1.00.20 - ASUSTeK Computer Inc.)
ROG RAMDisk (HKLM-x32\...\{DE8C1883-4F14-40DF-8C8C-376157ADF5A3}) (Version: 2.02.06 - ASUSTeK Computer Inc.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.51.0 - SAMSUNG Electronics Co., Ltd.)
Security Task Manager 2.1f (HKLM-x32\...\Security Task Manager) (Version: 2.1f - Neuber Software)
Service Pack 2 for SQL Server 2008 R2 (KB2630458) (HKLM-x32\...\KB2630458) (Version: 10.52.4000.0 - Microsoft Corporation)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation)
Skype™ 7.14 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.14.104 - Skype Technologies S.A.)
Sonic Radar II (HKLM\...\{F7874532-2978-493E-BA7C-34BB5FFF490A}) (Version: 2.1.1701 - ASUSTeKcomputer.Inc)
Sonic Studio Plugin (Version: 2.1.1701 - ASUSTeKcomputer.Inc) Hidden
SQL Server 2008 R2 SP2 Common Files (x32 Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP2 Database Engine Services (x32 Version: 10.52.4000.0 - Microsoft Corporation) Hidden
SQL Server 2008 R2 SP2 Database Engine Shared (x32 Version: 10.52.4000.0 - Microsoft Corporation) Hidden
Sql Server Customer Experience Improvement Program (x32 Version: 10.50.1600.1 - Microsoft Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\TeamSpeak 3 Client) (Version: 3.0.17 - TeamSpeak Systems GmbH)
Universal Adb Driver (HKLM-x32\...\{C0E08D8D-6076-4117-B644-2AF34F35B757}) (Version: 1.0.4 - ClockworkMod)
Uplay (HKLM-x32\...\Uplay) (Version: 13.0 - Ubisoft)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Vulkan Run Time Libraries 1.0.11.0 (HKLM\...\VulkanRT1.0.11.0) (Version: 1.0.11.0 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.1 (HKLM\...\VulkanRT1.0.3.1-2) (Version: 1.0.3.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.3.1 (Version: 1.0.3.1 - LunarG, Inc.) Hidden
Web Companion (HKLM-x32\...\{dc846d03-9cbc-440d-a6f3-f22e3f65316f}) (Version: 2.3.1411.2698 - Lavasoft)
WebStorage (HKLM-x32\...\WebStorage) (Version: 2.0.1.213 - ASUS Cloud Corporation)
WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.9860 - Broadcom Corporation)
Wi-Fi GO! (HKLM-x32\...\{F5A3E41B-64E8-45BC-806C-57C81DED4409}) (Version: 5.00.14 - ASUSTeK Computer Inc.)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-4128223374-3399856601-3119930698-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Stephan\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\FileCoAuth.exe (Microsoft Corporation)

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {48CED829-59E7-461E-BF96-53F0470743C2} - System32\Tasks\KMSAutoNet => C:\ProgramData\KMSAutoS\KMSAuto Net.exe [2015-09-11] (MSFree Inc.)
Task: {54E2785B-46BF-4A24-8870-3C41B5C16589} - System32\Tasks\Driver Booster SkipUAC (Stephan) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2015-11-18] (IObit)
Task: {6EBC6454-08FB-4A5B-94ED-55BE96FFA654} - System32\Tasks\ASUS\KeyBot Execute => C:\Program Files (x86)\ASUS\KeyBot\KeyBot.exe [2014-06-11] ()
Task: {70A30811-AF98-45D3-8D93-ECCF69855C1C} - System32\Tasks\ASUS\RamDisk => C:\Program Files (x86)\ASUS\ROG RAMDisk\loadImage.exe [2014-02-17] ()
Task: {85DCC33F-0537-4941-AC0C-18A381401391} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated)
Task: {901B995E-E724-4912-803A-067860F6DB04} - System32\Tasks\Doroghtshejas Module => C:\Program Files (x86)\Doroghtshejas\doroghtshejasmoduletask.exe <==== ACHTUNG
Task: {95692E86-01CC-42E6-833A-FBE023D52B5E} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2015-11-18] (IObit)
Task: {96561A3F-704E-4C13-9F9B-A5FB69133195} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-03-11] (Piriform Ltd)
Task: {99EA811B-14FC-4A6D-82A9-F4075A532122} - System32\Tasks\ASUS\ASUS WiFi GO! Server Execute => C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server Launcher.exe [2014-01-22] (ASUSTeK Computer Inc.)
Task: {9D91E9A6-6E43-49BC-A325-DD4CE737153A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-05-15] (Microsoft Corporation)
Task: {A733AD3A-BE95-4DDA-AFD4-BE9B6960EBDD} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2014-12-17] (ASUSTek Computer Inc.)
Task: {A8032A55-E815-49C0-9347-9EB2D610CC2F} - System32\Tasks\ASUS\ASUS Media Streamer DMR => C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe [2014-11-27] ()
Task: {ACD50EC0-C9E4-4AFB-A4EA-3176F2C5D0EA} - System32\Tasks\AutoKMS => C:\WINDOWS\AutoKMS\AutoKMS.exe [2016-04-28] ()
Task: {B118D877-606A-447A-9FE3-B9C5D1C6B5A5} - System32\Tasks\SamsungMagician => C:\Samsung Magician\Samsung Magician.exe [2014-09-28] (Samsung Electronics.)
Task: {BB0752B5-AEA2-4504-8396-740AD85B18B0} - System32\Tasks\ASUS\RC TweakIt Server Execute => C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsBCLK.exe [2014-03-08] ()
Task: {DF983FD6-4514-428E-A7AC-482C54FBE3F7} - System32\Tasks\cFos\Registration Tasks\Open Browser => Firefox.exe -osint -url "hxxp://www.cfos.de/de/cfosspeed/expiration.htm?sw-10.10.2238&amp;days=-31&amp;ret=11&amp;raw=13&amp;exp=100"
Task: {E85F221D-E77C-497A-9A07-F8613C60FB9D} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2016-05-20] (Advanced Micro Devices, Inc.)
Task: {F4592D9F-517A-4FAB-A0A4-8D803AD27CC5} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-13] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2016-06-04 14:33 - 2016-06-04 14:33 - 00100864 _____ () C:\WINDOWS\TEMP\SppExtComObjHook.dll
2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-04-27 14:04 - 2014-01-28 05:16 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
2013-06-26 08:54 - 2013-06-26 08:54 - 00071680 _____ () C:\Program Files (x86)\ASUS\WebStorage\2.0.1.213\AsusWSWinService.exe
2014-07-30 15:27 - 2014-07-30 15:27 - 00049408 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btwleapi.dll
2016-02-14 16:22 - 2015-03-31 09:40 - 00192304 _____ () C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
2016-02-14 16:22 - 2015-03-31 09:40 - 00138544 _____ () C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
2015-09-05 12:28 - 2014-04-24 08:29 - 01360016 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
2016-04-27 15:01 - 2016-04-27 15:01 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-09-05 16:19 - 2014-06-11 09:47 - 01608504 _____ () C:\Program Files (x86)\ASUS\KeyBot\KeyBot.exe
2015-09-05 14:44 - 2014-11-27 14:26 - 00304952 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe
2015-09-05 15:00 - 2014-03-08 00:28 - 01982744 _____ () C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsBCLK.exe
2016-04-28 23:20 - 2016-04-28 23:20 - 03820032 _____ () C:\WINDOWS\AutoKMS\AutoKMS.exe
2016-04-27 15:01 - 2016-04-27 15:01 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-04-27 20:35 - 2016-04-27 20:35 - 00959176 _____ () C:\Users\Stephan\AppData\Local\Microsoft\OneDrive\17.3.6386.0412\amd64\ClientTelemetry.dll
2016-02-13 19:02 - 2016-02-13 19:02 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-11 18:43 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-05-11 18:44 - 2016-04-23 06:02 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-05-11 18:44 - 2016-04-23 05:58 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-05-11 18:44 - 2016-04-23 05:58 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-05-11 18:44 - 2016-04-23 06:01 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-09-05 14:54 - 2014-05-23 09:44 - 00039736 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\ASUSRelayWS.exe
2016-02-03 18:08 - 2016-02-03 18:08 - 00118600 _____ () C:\WINDOWS\SYSTEM32\AcpiServiceVnA64.dll
2016-02-03 18:08 - 2016-02-03 18:08 - 00105312 _____ () C:\WINDOWS\SYSTEM32\audioLibVc.dll
2016-03-11 22:31 - 2016-03-11 22:31 - 00061440 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2016-04-27 14:04 - 2016-06-04 14:09 - 00046224 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2016-04-27 14:04 - 2014-01-28 05:16 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll
2016-05-29 20:54 - 2016-05-11 16:11 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2016-05-29 20:54 - 2016-05-11 16:11 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2016-05-29 20:54 - 2016-05-11 16:11 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00028160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\servicemanager.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00110592 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00041472 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32service.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00096256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00356864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_hashlib.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00017920 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00019968 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32evtlog.pyd
2015-11-24 22:48 - 2015-11-24 22:48 - 00036352 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00043008 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_socket.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00805376 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ssl.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00087040 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\_ctypes.pyd
2015-11-24 22:46 - 2015-11-24 22:46 - 00354304 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom26.dll
2015-11-24 22:48 - 2015-11-24 22:48 - 00167936 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01980928 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2015-12-07 22:57 - 2015-12-07 22:57 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 01862144 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 00516608 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2015-11-24 22:47 - 2015-11-24 22:47 - 04060160 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2015-11-24 22:43 - 2015-11-24 22:43 - 00010240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\select.pyd
2015-09-05 16:19 - 2010-08-09 21:23 - 00175616 _____ () C:\Program Files (x86)\ASUS\KeyBot\AsusService.dll
2015-09-05 16:19 - 2013-09-03 10:49 - 00253952 _____ () C:\Program Files (x86)\ASUS\KeyBot\pngio.dll
2015-09-05 16:19 - 2012-02-02 21:26 - 00208896 _____ () C:\Program Files (x86)\ASUS\KeyBot\ImageHelper.dll
2015-09-05 15:00 - 2014-01-21 20:34 - 00179712 _____ () C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsusService.dll
2015-09-05 15:00 - 2014-01-21 20:34 - 00470016 _____ () C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\IccHelper.dll
2015-09-05 14:54 - 2014-07-04 17:26 - 00339968 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\AudioProjection.dll
2015-09-05 14:54 - 2013-10-10 03:10 - 00176128 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\DLCapPP.dll
2015-09-05 14:54 - 2010-12-14 17:46 - 00067584 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\CoreAudioCap.dll
2015-09-05 14:54 - 2013-06-11 12:06 - 00425984 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\awiscale.DLL
2015-09-05 14:54 - 2013-09-12 14:07 - 00221184 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\JpegCD.DLL
2015-09-05 14:54 - 2013-12-18 19:53 - 02502656 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\xH264E.DLL
2015-09-05 14:54 - 2014-01-22 10:36 - 00475136 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFiGO_HookKey.dll
2015-09-05 14:54 - 2014-08-28 11:06 - 00195584 _____ () C:\Program Files (x86)\InstallShield Installation Information\{F5A3E41B-64E8-45BC-806C-57C81DED4409}\CloudAPI\CloudAPI.dll
2015-09-05 14:54 - 2014-01-22 10:36 - 00753664 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiMoveHelp.dll
2015-09-05 14:54 - 2014-01-22 10:35 - 00684032 _____ () C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\PhoneCtrlAPI.dll
2015-03-31 09:39 - 2015-03-31 09:39 - 00019352 _____ () C:\Program Files (x86)\HiSuite\mingwm10.dll
2015-03-31 09:39 - 2015-03-31 09:39 - 00050992 _____ () C:\Program Files (x86)\HiSuite\libgcc_s_dw2-1.dll
2015-03-31 09:39 - 2015-03-31 09:39 - 02423088 _____ () C:\Program Files (x86)\HiSuite\QtCore4.dll
2015-03-31 09:39 - 2015-03-31 09:39 - 07724848 _____ () C:\Program Files (x86)\HiSuite\QtGui4.dll
2015-03-31 09:39 - 2015-03-31 09:39 - 00912688 _____ () C:\Program Files (x86)\HiSuite\QtNetwork4.dll
2015-03-31 09:39 - 2015-03-31 09:39 - 00333616 _____ () C:\Program Files (x86)\HiSuite\QtXml4.dll
2015-10-26 19:51 - 2010-11-04 12:48 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Isku Keyboard\hiddriver.dll
2015-10-26 19:58 - 2012-06-17 12:20 - 00061440 _____ () C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\hiddriver.dll
2015-09-11 17:05 - 2014-09-28 17:59 - 00019872 _____ () C:\Samsung Magician\SAMSUNG_SSD.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com
IE trusted site: HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\localhost -> localhost

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2015-07-10 13:04 - 2015-07-10 13:02 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 212.60.61.246 - 212.60.63.246
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\...\StartupApproved\Run32: => "ASUS Media Streamer DMS"
HKLM\...\StartupApproved\Run32: => "ASUS Media Streamer ShareEdit"
HKLM\...\StartupApproved\Run32: => "ASUS Media Streamer WSAgent"
HKLM\...\StartupApproved\Run32: => "ASUS WiFi GO! FileTransfer Execute"
HKLM\...\StartupApproved\Run32: => "HomeCloud Drive"
HKLM\...\StartupApproved\Run32: => "WebStorage"
HKLM\...\StartupApproved\Run32: => "Raptr"
HKLM\...\StartupApproved\Run32: => "RtlS5Wake Execute"
HKLM\...\StartupApproved\Run32: => "BlueStacks Agent"
HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => " QQPCTray"
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\StartupApproved\Run: => "SR2UILauncher"
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-4128223374-3399856601-3119930698-1001\...\StartupApproved\Run: => "BlueStacks Agent"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{F40C410B-115A-4BE8-9E07-6817B53156D0}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe
FirewallRules: [{FDB9EFAC-10EB-4FB7-9A38-86B2E56E4C89}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe
FirewallRules: [UDP Query User{8D07EE42-C6B1-40E0-9199-3E54C0314CBF}C:\program files (x86)\asus\ao help\ao help.exe] => (Allow) C:\program files (x86)\asus\ao help\ao help.exe
FirewallRules: [TCP Query User{1F585E3F-E117-493A-8122-7E69D111A90D}C:\program files (x86)\asus\ao help\ao help.exe] => (Allow) C:\program files (x86)\asus\ao help\ao help.exe
FirewallRules: [{19A093CD-5EAF-415B-8902-F72C1E600AFB}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{D1F00C31-7AE2-46C2-9151-DD06CD837145}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{A70A56ED-BDC0-4509-81AE-B508CDAF3216}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{49700C00-9CA6-4BFA-912F-E6258BA4B0A1}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{826CCFE7-4A50-446C-85CC-1C6A1BEC3C1A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{3C9E6BBB-79BF-424F-9F4A-BC39701D6D14}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{17F9CE36-5543-47F9-A572-5F3775B27696}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{F62430F0-C914-4BA5-9E99-1B61672D33BB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A7AF5E24-906A-4429-9692-52992857603A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{CB12A6D4-072C-4D50-8573-6283A898B0F5}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe
FirewallRules: [{54D25941-E333-420B-8B45-F66A77953859}] => (Allow) C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe
FirewallRules: [{3874EAE9-B49B-4ED8-AC7B-B2D66835FD80}] => (Allow) F:\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{7D1F2966-B000-47F2-98C6-1A6644563302}] => (Allow) F:\Steam\steamapps\common\Half-Life\hl.exe
FirewallRules: [{AC719984-EB84-4692-8BFC-23776057E00D}] => (Allow) F:\Steam\bin\steamwebhelper.exe
FirewallRules: [{6B793C79-2075-4BC8-A74F-6DBC70AE1518}] => (Allow) F:\Steam\bin\steamwebhelper.exe
FirewallRules: [{A0056371-6343-47D4-918D-54645772B633}] => (Allow) F:\Steam\Steam.exe
FirewallRules: [{01BB67CA-8A5E-4382-9FA2-BD56033D8ACA}] => (Allow) F:\Steam\Steam.exe
FirewallRules: [{B2B8304B-7584-46A4-BAB6-8B3FCD696767}] => (Allow) C:\WINDOWS\SysWOW64\ftp.exe
FirewallRules: [{E2ADA1A9-0831-45BD-82D9-D138ED99F610}] => (Allow) C:\WINDOWS\SysWOW64\ftp.exe
FirewallRules: [{0691BC4A-CE78-4E1B-B09D-82C9C35B21CF}] => (Allow) C:\WINDOWS\system32\ftp.exe
FirewallRules: [{AFBC97D8-1133-4AA2-8583-4B330904D65C}] => (Allow) C:\WINDOWS\system32\ftp.exe
FirewallRules: [{EC81198F-44B7-45C5-9AE9-998175153A49}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\MediaStreamer.exe
FirewallRules: [{8437C18B-7E10-4072-9132-0A5E9724D026}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\MediaStreamer.exe
FirewallRules: [{A975190B-0C21-4596-A75D-1955BB706408}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\AMSRelayHelpAgent.exe
FirewallRules: [{46ECEE46-140F-4D8E-B523-C07A56B52AF4}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\AMSRelayHelpAgent.exe
FirewallRules: [{BC7F488E-A16F-48EB-8E27-F784B9B40EFC}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMS\AORelayDMS.exe
FirewallRules: [{51D534E6-5AF3-4209-A57C-7848DB1F5813}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMS\AORelayDMS.exe
FirewallRules: [{2678A469-1992-4C34-A677-48320715A43F}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMS\AODMS.exe
FirewallRules: [{3BC0EC8F-0AF6-44D0-9A05-53410C48C50B}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMS\AODMS.exe
FirewallRules: [{843FE286-DA9B-4C5B-92FF-8B9EF846099E}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe
FirewallRules: [{C05919C9-6074-4FA3-BC38-6568C2DE081B}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe
FirewallRules: [{C9E62CFA-AF56-425E-84F6-1C47F2F10C13}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F0AED535-DE69-4F07-A070-095BF945187F}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{69C8B5C9-D3FA-4976-AA63-71812449AAA3}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{14E23091-1F00-4938-9CD7-2AC384FD0ABD}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{5A1AE63B-DF58-4083-BCF3-4255B02D0BCD}] => (Allow) C:\Program Files (x86)\ASUS\ROG Game First III\gameFirst3.exe
FirewallRules: [{6FCDD374-EA82-4411-88FE-B8CA2106FC20}] => (Allow) C:\Program Files (x86)\ASUS\ROG Game First III\gameFirst3.exe
FirewallRules: [{4DB6AB8D-5C66-4EC4-A09C-2981B9795BF2}] => (Allow) C:\Users\Stephan\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{1F6DD8F2-ADB8-4FA9-9935-3F0B69B21174}] => (Allow) C:\Users\Stephan\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{12371CE4-19DD-46F0-87AC-728E38AB0DBF}] => (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{49F89889-F98A-4B0C-BA4A-5CBEB4D400CF}] => (Allow) F:\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{70FDF0F3-55AD-46EF-8214-8F02B03DC707}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{388EB093-7B2B-413E-B380-67886D3B0794}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe
FirewallRules: [{F4399AFF-78B6-42B3-9F14-255E41476753}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{505BD73A-88BE-47CC-A49F-2BB89B33DAC6}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe
FirewallRules: [{A0384B55-9A26-490E-833F-C07A5C207904}] => (Allow) C:\WINDOWS\AutoKMS\AutoKMS.exe
FirewallRules: [{2AAE73C2-6D4D-468F-A7CF-3C426549C877}] => (Allow) C:\WINDOWS\AutoKMS\AutoKMS.exe
FirewallRules: [{B08FB961-3547-46DC-BF43-A60D8283FF42}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server.exe
FirewallRules: [{93B25532-B88C-44C6-96DB-13218D3700D2}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFi GO! Server.exe
FirewallRules: [{1C2F1CD9-C539-44C3-B5C7-55DDB62A9D20}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO!\ASUSDMS.exe
FirewallRules: [{2435428E-E343-499D-8135-EFCB737258A8}] => (Allow) C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO!\ASUSDMS.exe

==================== Wiederherstellungspunkte =========================

20-05-2016 16:36:01 DirectX wurde installiert
26-05-2016 22:49:09 DirectX wurde installiert
29-05-2016 14:02:08 DirectX wurde installiert

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: High Definition Audio Bus
Description: High Definition Audio Bus
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: AMD
Service: HDAudBus
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (06/04/2016 02:08:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.10586.218, Zeitstempel: 0x56ff3b38
Name des fehlerhaften Moduls: NAHIMICAPOlfx.dll, Version: 6.3.9600.17231, Zeitstempel: 0x544660f8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000034cd46
ID des fehlerhaften Prozesses: 0x2874
Startzeit der fehlerhaften Anwendung: 0xAUDIODG.EXE0
Pfad der fehlerhaften Anwendung: AUDIODG.EXE1
Pfad des fehlerhaften Moduls: AUDIODG.EXE2
Berichtskennung: AUDIODG.EXE3
Vollständiger Name des fehlerhaften Pakets: AUDIODG.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: AUDIODG.EXE5

Error: (06/04/2016 02:07:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.10586.218, Zeitstempel: 0x56ff3b38
Name des fehlerhaften Moduls: NAHIMICAPOlfx.dll, Version: 6.3.9600.17231, Zeitstempel: 0x544660f8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000034cd46
ID des fehlerhaften Prozesses: 0x164
Startzeit der fehlerhaften Anwendung: 0xAUDIODG.EXE0
Pfad der fehlerhaften Anwendung: AUDIODG.EXE1
Pfad des fehlerhaften Moduls: AUDIODG.EXE2
Berichtskennung: AUDIODG.EXE3
Vollständiger Name des fehlerhaften Pakets: AUDIODG.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: AUDIODG.EXE5

Error: (06/04/2016 02:07:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.10586.218, Zeitstempel: 0x56ff3b38
Name des fehlerhaften Moduls: NAHIMICAPOlfx.dll, Version: 6.3.9600.17231, Zeitstempel: 0x544660f8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000034cd46
ID des fehlerhaften Prozesses: 0x174
Startzeit der fehlerhaften Anwendung: 0xAUDIODG.EXE0
Pfad der fehlerhaften Anwendung: AUDIODG.EXE1
Pfad des fehlerhaften Moduls: AUDIODG.EXE2
Berichtskennung: AUDIODG.EXE3
Vollständiger Name des fehlerhaften Pakets: AUDIODG.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: AUDIODG.EXE5

Error: (06/04/2016 02:03:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.10586.218, Zeitstempel: 0x56ff3b38
Name des fehlerhaften Moduls: NAHIMICAPOlfx.dll, Version: 6.3.9600.17231, Zeitstempel: 0x544660f8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000034cd46
ID des fehlerhaften Prozesses: 0x22f8
Startzeit der fehlerhaften Anwendung: 0xAUDIODG.EXE0
Pfad der fehlerhaften Anwendung: AUDIODG.EXE1
Pfad des fehlerhaften Moduls: AUDIODG.EXE2
Berichtskennung: AUDIODG.EXE3
Vollständiger Name des fehlerhaften Pakets: AUDIODG.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: AUDIODG.EXE5

Error: (06/04/2016 02:03:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: AUDIODG.EXE, Version: 10.0.10586.218, Zeitstempel: 0x56ff3b38
Name des fehlerhaften Moduls: NAHIMICAPOlfx.dll, Version: 6.3.9600.17231, Zeitstempel: 0x544660f8
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000034cd46
ID des fehlerhaften Prozesses: 0x1c08
Startzeit der fehlerhaften Anwendung: 0xAUDIODG.EXE0
Pfad der fehlerhaften Anwendung: AUDIODG.EXE1
Pfad des fehlerhaften Moduls: AUDIODG.EXE2
Berichtskennung: AUDIODG.EXE3
Vollständiger Name des fehlerhaften Pakets: AUDIODG.EXE4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: AUDIODG.EXE5

Error: (06/04/2016 08:21:42 AM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error

Error: (06/04/2016 08:21:31 AM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error

Error: (06/04/2016 08:21:26 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: avgnt.exe, Version: 15.0.17.264, Zeitstempel: 0x56f290db
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.10586.306, Zeitstempel: 0x571afb7f
Ausnahmecode: 0xc000041d
Fehleroffset: 0x0003b51c
ID des fehlerhaften Prozesses: 0x26e4
Startzeit der fehlerhaften Anwendung: 0xavgnt.exe0
Pfad der fehlerhaften Anwendung: avgnt.exe1
Pfad des fehlerhaften Moduls: avgnt.exe2
Berichtskennung: avgnt.exe3
Vollständiger Name des fehlerhaften Pakets: avgnt.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: avgnt.exe5

Error: (06/04/2016 08:21:23 AM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error

Error: (06/04/2016 08:21:18 AM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error


Systemfehler:
=============
Error: (06/04/2016 02:33:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "BCM42RLY" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (06/04/2016 02:11:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Doroghtshejas Module" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%2

Error: (06/04/2016 02:09:43 PM) (Source: Service Control Manager) (EventID: 7016) (User: )
Description: Der Dienst "chip1click" hat einen ungültigen aktuellen Status gemeldet: 0

Error: (06/04/2016 02:09:43 PM) (Source: Service Control Manager) (EventID: 7016) (User: )
Description: Der Dienst "chip1click" hat einen ungültigen aktuellen Status gemeldet: 0

Error: (06/04/2016 02:09:16 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\System32\bcmihvsrv64.dll

Error: (06/04/2016 02:09:16 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\System32\bcmihvsrv64.dll

Error: (06/04/2016 02:09:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Search" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (06/04/2016 02:09:12 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "WSearch" konnte sich nicht als "NT AUTHORITY\SYSTEM" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%50

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (06/04/2016 02:09:11 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul wurde unerwartet beendet.

Modulpfad: C:\WINDOWS\System32\bcmihvsrv64.dll

Error: (06/04/2016 02:09:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Synchronisierungshost_2100615" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.


CodeIntegrity:
===================================
  Date: 2016-06-04 14:07:14.066
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 14:03:52.184
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 08:10:51.274
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 07:10:48.541
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 06:10:47.354
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 05:10:44.345
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 03:10:40.705
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 02:10:38.685
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 01:33:42.499
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

  Date: 2016-06-04 01:10:36.937
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i5-4590S CPU @ 3.00GHz
Prozentuale Nutzung des RAM: 15%
Installierter physikalischer RAM: 16325.58 MB
Verfügbarer physikalischer RAM: 13725.36 MB
Summe virtueller Speicher: 18757.58 MB
Verfügbarer virtueller Speicher: 15524.13 MB

==================== Laufwerke ================================

Drive c: () (Fixed) (Total:232.4 GB) (Free:121.94 GB) NTFS
Drive f: () (Fixed) (Total:931.51 GB) (Free:907.86 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 1D53EEAF)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=232.4 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E683193B)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         
__________________


Alt 04.06.2016, 14:23   #3
Destination
 
Tencent qqpctry eingefangen - Standard

Tencent qqpctry eingefangen



Code:
ATTFilter
15:20:17.0830 0x20b4  ============================================================
15:20:17.0830 0x20b4  Current date / time: 2016/06/04 15:20:17.0830
15:20:17.0830 0x20b4  SystemInfo:
15:20:17.0830 0x20b4  
15:20:17.0831 0x20b4  OS Version: 10.0.10586 ServicePack: 0.0
15:20:17.0831 0x20b4  Product type: Workstation
15:20:17.0831 0x20b4  ComputerName: DESKTOP-A2173R1
15:20:17.0831 0x20b4  UserName: Stephan
15:20:17.0831 0x20b4  Windows directory: C:\WINDOWS
15:20:17.0831 0x20b4  System windows directory: C:\WINDOWS
15:20:17.0831 0x20b4  Running under WOW64
15:20:17.0831 0x20b4  Processor architecture: Intel x64
15:20:17.0831 0x20b4  Number of processors: 4
15:20:17.0831 0x20b4  Page size: 0x1000
15:20:17.0831 0x20b4  Boot type: Normal boot
15:20:17.0831 0x20b4  ============================================================
15:20:17.0864 0x20b4  KLMD registered as C:\WINDOWS\system32\drivers\47354861.sys
15:20:17.0943 0x20b4  System UUID: {82081CBF-AFCC-00BD-BDB6-1D479F2AF416}
15:20:18.0185 0x20b4  Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 ( 232.89 Gb ), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
15:20:18.0185 0x20b4  Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
15:20:18.0188 0x20b4  ============================================================
15:20:18.0188 0x20b4  \Device\Harddisk0\DR0:
15:20:18.0188 0x20b4  MBR partitions:
15:20:18.0188 0x20b4  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA000
15:20:18.0188 0x20b4  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA800, BlocksNum 0x1D0CA800
15:20:18.0188 0x20b4  \Device\Harddisk1\DR1:
15:20:18.0188 0x20b4  MBR partitions:
15:20:18.0188 0x20b4  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800
15:20:18.0188 0x20b4  ============================================================
15:20:18.0189 0x20b4  C: <-> \Device\Harddisk0\DR0\Partition2
15:20:21.0267 0x20b4  F: <-> \Device\Harddisk1\DR1\Partition1
15:20:21.0267 0x20b4  ============================================================
15:20:21.0267 0x20b4  Initialize success
15:20:21.0267 0x20b4  ============================================================
15:21:00.0873 0x1294  ============================================================
15:21:00.0873 0x1294  Scan started
15:21:00.0873 0x1294  Mode: Manual; SigCheck; TDLFS; 
15:21:00.0873 0x1294  ============================================================
15:21:00.0873 0x1294  KSN ping started
15:21:03.0224 0x1294  KSN ping finished: true
15:21:03.0392 0x1294  ================ Scan system memory ========================
15:21:03.0392 0x1294  System memory - ok
15:21:03.0392 0x1294  ================ Scan services =============================
15:21:03.0416 0x1294  [ DF1C3D7E6C7929AD83BE22852B5B08CB, 9ECF6211CCD30273A23247E87C31B3A2ACDA623133CEF6E9B3243463C0609C5F ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
15:21:03.0439 0x1294  1394ohci - ok
15:21:03.0445 0x1294  [ 2C5B3035B86770ADD2FE9BFBAF5B35A4, 19E16F9144FE3E33B5FF248CF0040AB079ACAE22290B1369CC72AE4CB5FE3A90 ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
15:21:03.0453 0x1294  3ware - ok
15:21:03.0463 0x1294  [ 469441BAE3FF8A16826FC62C51EF5E18, E1204677B87F47222D05F670F8DF3DB65EA0881782A8DCFBE0103478ED71187C ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
15:21:03.0478 0x1294  ACPI - ok
15:21:03.0481 0x1294  [ 7EADED8087C392876521F7EBCE846EF4, 99BF1BD948F97C1ECBC049C7F949B71D73D0B41FB505B2F75B208E655F7DC8A3 ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
15:21:03.0489 0x1294  acpiex - ok
15:21:03.0491 0x1294  [ C498887123327CDFD73A05E7A2780920, B45392C46254FCB8D79B6C3A82C8D894063199E6167D8E5F7EA7D60C75CD16EA ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
15:21:03.0498 0x1294  acpipagr - ok
15:21:03.0501 0x1294  [ C8DBE6EFFCF014CAA010B9BDDAC833EC, 96FC29340C62A6B0910DCCBF8945F32089FC300F45B451A540B8854D53734298 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
15:21:03.0508 0x1294  AcpiPmi - ok
15:21:03.0510 0x1294  [ 17039DBEB3B7B9ADCDB4B4533AA9771F, A4D38B144639A20B8B31E4F35FB776A028DB502FAC849FC73EECEB3CCD91830B ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
15:21:03.0518 0x1294  acpitime - ok
15:21:03.0522 0x1294  [ 36114214BF8D7C464D1E92E4EB6B2DD3, 8E7CB266D4ABCDF332A3D4D341753811D51B72985E36F24A7E757DCA11A65A2A ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
15:21:03.0526 0x1294  AdobeARMservice - ok
15:21:03.0541 0x1294  [ 6A050671F2C76FB48131F12786802807, 71B37A9CEAE5AB1B069FB010BC547E14445461885B74FA879E63F9F2DAF644A5 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
15:21:03.0549 0x1294  AdobeFlashPlayerUpdateSvc - ok
15:21:03.0568 0x1294  [ F7D0CD345D2DA42E7042ABCD73662403, 03183F90A994D69066F15C3DFC1D7D7514AEAF46A5AAC059B1FB327F8C30A35C ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
15:21:03.0591 0x1294  ADP80XX - ok
15:21:03.0603 0x1294  [ 70148EFA9A562E7185B75BBE7D376BF7, 8200E3349A1AFA1040B3D956A17BAF3CDC784A1A3CA396125E7872B36C03D84A ] AFD             C:\WINDOWS\system32\drivers\afd.sys
15:21:03.0618 0x1294  AFD - ok
15:21:03.0622 0x1294  [ 870F1A2C936F92B5D053DF7EC75B352F, D617524FD5886D6D3BC2EFBBB5EA310E906454CD7CA7257C3D7BDEA8C4F2DA71 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
15:21:03.0628 0x1294  agp440 - ok
15:21:03.0633 0x1294  [ 3DF7751D5DC6525E7DC6617FBB45054F, 8E6D4C809DB3B66E7558C4829E01F5C227EE614AC82F33FD99DCC629770D1BE3 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
15:21:03.0645 0x1294  ahcache - ok
15:21:03.0647 0x1294  [ 19707ECBCEA71080A85DB2336580DB39, A09AE69C9DE2F3765417F212453B6927C317A94801AE68FBA6A8E8A7CB16CED7 ] AJRouter        C:\WINDOWS\System32\AJRouter.dll
15:21:03.0654 0x1294  AJRouter - ok
15:21:03.0657 0x1294  [ AA91A5E156D0364ABA7B01658C2EB014, F61055D581745023939C741CAB3370074D1416BB5A0BE0BD47642D5A75669E12 ] ALG             C:\WINDOWS\System32\alg.exe
15:21:03.0666 0x1294  ALG - ok
15:21:03.0672 0x1294  [ B31F6F6CBE002161AD2EA27733D4D1A4, 4765B4E7F893724B1EE57D2555881D7498DB22940BB99586CA025269C437B1F1 ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe
15:21:03.0687 0x1294  AMD External Events Utility - ok
15:21:03.0690 0x1294  [ B70F0F2F54B4A4DB6E9C830454752F5A, C882DEAC30812E5FA4479A8CB688603C6AF269EF08236688F4C5E7EBED1D4572 ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
15:21:03.0699 0x1294  AmdK8 - ok
15:21:03.0701 0x1294  [ 66CD2F9A6AD1B720E448053B5CE6F3A4, D9156F311E36297BE63A5BE8E41AA2E6C32AA5A9BD188C4BC6D804BA39F71E15 ] amdkmafd        C:\WINDOWS\system32\drivers\amdkmafd.sys
15:21:03.0705 0x1294  amdkmafd - ok
15:21:03.0707 0x1294  amdkmdag - ok
15:21:03.0716 0x1294  [ F6A33C17A38EC7555161599458E5A59A, 0FD503F3CD91B47802A4773714C3E07632004D27FE1BC44185E1217775F0FB49 ] amdkmdap        C:\WINDOWS\system32\DRIVERS\atikmpag.sys
15:21:03.0731 0x1294  amdkmdap - ok
15:21:03.0735 0x1294  [ 35E890482C9728DD5C552B85DA8A5AB2, 1E0EB7D902AB4C38E23CAFC0BEA250E7F6E180E8814385B4F29730BFC373A191 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
15:21:03.0744 0x1294  AmdPPM - ok
15:21:03.0747 0x1294  [ 5B30BCFE6E02E45D3EE268FF001BC5E0, 9901DB728885CE36911F79998629B2DD42D56AF9633B5277834F498CC59B0346 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
15:21:03.0754 0x1294  amdsata - ok
15:21:03.0759 0x1294  [ F20B30F35A5C7888441B4DCA001ECF8E, 695A5BC1F18B65992EB06A202AD3CBFA17228E76DDFD1AE6977FD315724F75C2 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
15:21:03.0769 0x1294  amdsbs - ok
15:21:03.0771 0x1294  [ AFE838D7576C581D6483529621AB10CC, 14476A04CC64E7A0F1BBFDACCBD7A87F384BE1877C27656DBB973AF3975D4AE2 ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
15:21:03.0778 0x1294  amdxata - ok
15:21:03.0795 0x1294  [ 157DA3885AA4F03C80C10DAEB0949CAA, 69EA1C9F904FBDFE904A3BC52CB0E188AF18A93EA87A119E5E6234C6F5D4742E ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe
15:21:03.0814 0x1294  AntiVirMailService - ok
15:21:03.0823 0x1294  [ BD65021AB0EC790AECC503C394E61BA4, 51AD9C6F1192A3604902AE4F3B4B791DF1D58EA0B39B12AE4FA38F59E02F6D68 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe
15:21:03.0833 0x1294  AntiVirSchedulerService - ok
15:21:03.0841 0x1294  [ BD65021AB0EC790AECC503C394E61BA4, 51AD9C6F1192A3604902AE4F3B4B791DF1D58EA0B39B12AE4FA38F59E02F6D68 ] AntiVirService  C:\Program Files (x86)\Avira\Antivirus\avguard.exe
15:21:03.0851 0x1294  AntiVirService - ok
15:21:03.0873 0x1294  [ CF586007CB1F9189CDF07D0D5A02C448, 7BA6E27A835A0851C12A7A115C24665631CC77D857DAF32D24BF2D2AF676FE30 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe
15:21:03.0895 0x1294  AntiVirWebService - ok
15:21:03.0900 0x1294  [ EDDB0D726DBECDFC1DBCC6DB464E5A13, 98D128D1E6FA270ED9ADBFE50078F68A794C00D4CBB86E28EC6161FFAD0CA8FF ] AppID           C:\WINDOWS\system32\drivers\appid.sys
15:21:03.0909 0x1294  AppID - ok
15:21:03.0911 0x1294  [ 7A55F9237F726D1667073A47B0D1B90F, 7C2D9AA84F1D4CC6C1FAF6848DF9479A534E01029C4387E8C0647745F1E74603 ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
15:21:03.0922 0x1294  AppIDSvc - ok
15:21:03.0925 0x1294  [ 56E219DF92BE16F62308F884739BE022, FE189EE8A52BC5A0E6B76C632021F84F60307A182F2A67C0C0C7CAA72DEFC723 ] Appinfo         C:\WINDOWS\System32\appinfo.dll
15:21:03.0936 0x1294  Appinfo - ok
15:21:03.0940 0x1294  [ B4AE5296C9597F45E1CFE0B1DBE7739E, C9DCA8EF32720D68119CC23DF4BCD783FFB5F999D14EDCC7937D17C590323B4B ] AppMgmt         C:\WINDOWS\System32\appmgmts.dll
15:21:03.0951 0x1294  AppMgmt - ok
15:21:03.0960 0x1294  [ 610499A73DF3599608EBB6B3F9929052, A9CA49C4A39A825916AB3791090BCFC7044FDB6B2C3538E01F0CFBC2A9931152 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
15:21:03.0978 0x1294  AppReadiness - ok
15:21:04.0008 0x1294  [ 087FBBC026DCC0F693E91079B9901B7E, 544DEC1255923DBDC8351B6CE2220FBC9929F2FFE52C91062C23DE7734DA7A2F ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
15:21:04.0059 0x1294  AppXSvc - ok
15:21:04.0065 0x1294  [ E3FE8F610B1CC12BC3B2E6BC43DC97E2, 0E18542CF2095A9ADA1759AB8F986E78B0A50A3C6B2AD4EACD80A23D832A2C6D ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
15:21:04.0072 0x1294  arcsas - ok
15:21:04.0087 0x1294  [ BBF8F831C7720DD5135D8C4C8325187A, 2630C68200D7BD49A5772830D6B369C0EC337C2558A9562DD564DF042249ECC0 ] asComSvc        C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
15:21:04.0103 0x1294  asComSvc - ok
15:21:04.0121 0x1294  [ 5F1091FA113607C9C9B2ECF4FBC76F37, F4406635C555A942242F40CACEC7EFD2FED47103C191CB3C2EDF21EE78C8122E ] asHmComSvc      C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe
15:21:04.0137 0x1294  asHmComSvc - ok
15:21:04.0140 0x1294  [ 798DE15F187C1F013095BBBEB6FB6197, 436CCAB6F62FA2D29827916E054ADE7ACAE485B3DE1D3E5C6C62D3DEBF1480E7 ] AsIO            C:\WINDOWS\syswow64\drivers\AsIO.sys
15:21:04.0143 0x1294  AsIO - ok
15:21:04.0147 0x1294  [ 30284361A316A61306D3494953B72BF8, 169B7E1439A506C8E827988DAD796B37CE81A32B5EB2DEBDD5032AC6C9845380 ] asmthub3        C:\WINDOWS\System32\drivers\asmthub3.sys
15:21:04.0152 0x1294  asmthub3 - ok
15:21:04.0161 0x1294  [ AD0476BF351586C2B82509FBD4890A59, 409782A9263B33E0615A5CA7904424ACAB9BCB7EC883CDB873224E147119CA15 ] asmtxhci        C:\WINDOWS\System32\drivers\asmtxhci.sys
15:21:04.0170 0x1294  asmtxhci - ok
15:21:04.0174 0x1294  [ B06E2BBAAD60967EC6B23BF39474446C, EAA12588089D65EEAFAE13D522A479CE9C69FAE27F64E098C71B224602203E53 ] AsRamDisk       C:\WINDOWS\system32\DRIVERS\asramdisk.sys
15:21:04.0178 0x1294  AsRamDisk - ok
15:21:04.0181 0x1294  [ 2C5E21DF89FEE0B09BDA4D1BABCF44B7, A4B8B2EDC66EE5C244FA6B14E208B17B746747C8AF7DCD5F47AB5D44A8CE3D39 ] asstor64        C:\WINDOWS\system32\drivers\asstor64.sys
15:21:04.0185 0x1294  asstor64 - ok
15:21:04.0207 0x1294  [ 37F7DD839A711B5706B1264F4D8D4BDC, C949A7BB236C6C03E197EF7F9A6DF53E34EC35D925034351B5FD5D7DB62A770E ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
15:21:04.0243 0x1294  AsSysCtrlService - detected UnsignedFile.Multi.Generic ( 1 )
15:21:06.0577 0x1294  Detect skipped due to KSN trusted
15:21:06.0577 0x1294  AsSysCtrlService - ok
15:21:06.0582 0x1294  [ 5F8AB288789EF75199EFD3DF562174BC, 4A3AD9F4411AFFE86D18919BF2DE087506214AFAA3A634594D752133D2EB97DC ] Asus WebStorage Windows Service C:\Program Files (x86)\ASUS\WebStorage\2.0.1.213\AsusWSWinService.exe
15:21:06.0585 0x1294  Asus WebStorage Windows Service - detected UnsignedFile.Multi.Generic ( 1 )
15:21:08.0920 0x1294  Detect skipped due to KSN trusted
15:21:08.0920 0x1294  Asus WebStorage Windows Service - ok
15:21:08.0928 0x1294  [ 156B2732F738ED7666620A68A30E9922, B71CD56B3F3BA46D2B717F3E580152E05DC2271474A547AFA4C9901482340D84 ] AsusGameFirstService C:\Program Files (x86)\ASUS\ROG Game First III\AsusGameFirstService.exe
15:21:08.0936 0x1294  AsusGameFirstService - ok
15:21:08.0939 0x1294  [ 5E00748A1AD246CAECBBB7553BED36CC, DAD2C93F0894E7BB5E5D8D767D8286A909086B49172C504A01097C3A180998C6 ] AsyncMac        C:\WINDOWS\System32\drivers\asyncmac.sys
15:21:08.0948 0x1294  AsyncMac - ok
15:21:08.0950 0x1294  [ 492B99D2E3D5D7BFD5F0AE1BE7BD37DD, A3F6BFC4FDC1933FBF3145019B118689A414108B04F43E2563946B2673C89324 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
15:21:08.0955 0x1294  atapi - ok
15:21:08.0959 0x1294  [ 2844157C854DDD7405C249632A661BF7, 739DA0E9071FD516F57B0DE8C4D03D486C557C28E9FA10F875B004048F436C24 ] AtiHDAudioService C:\WINDOWS\system32\drivers\AtihdWT6.sys
15:21:08.0966 0x1294  AtiHDAudioService - ok
15:21:08.0973 0x1294  [ 42BF7FA295F453618104B5A50BEE105B, AB44BA2AD2FC5AF3B6BE4489C444C03FD1AB02C22109BF5F39BE459294C4CB18 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
15:21:08.0985 0x1294  AudioEndpointBuilder - ok
15:21:09.0003 0x1294  [ 2A2C0983B6FE62F02E7183335B1F5C20, 07845269FE72894D31D3FC927EECE26333AE9A2149A995DA4AE007276B05C647 ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
15:21:09.0030 0x1294  Audiosrv - ok
15:21:09.0035 0x1294  [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt        C:\WINDOWS\system32\DRIVERS\avgntflt.sys
15:21:09.0040 0x1294  avgntflt - ok
15:21:09.0044 0x1294  [ 8EF22CC03EFA1CB6810003C6A3B287D3, 352FE3194713D86BBD900A74AF033D5FE96A71389CC63DFC4821B43A55837206 ] avipbb          C:\WINDOWS\system32\DRIVERS\avipbb.sys
15:21:09.0050 0x1294  avipbb - ok
15:21:09.0055 0x1294  [ 04B922C5BE92C42DD0C2B9D085D7C0CA, 7E1F76A1FB2D6CB78CD0A881A0A55DC8478BABC42F9BFE63FB838E087C7DA3AB ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
15:21:09.0062 0x1294  Avira.ServiceHost - ok
15:21:09.0065 0x1294  [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr          C:\WINDOWS\system32\DRIVERS\avkmgr.sys
15:21:09.0070 0x1294  avkmgr - ok
15:21:09.0073 0x1294  [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt        C:\WINDOWS\system32\DRIVERS\avnetflt.sys
15:21:09.0077 0x1294  avnetflt - ok
15:21:09.0080 0x1294  [ BF74DEABAD7D64199C95F6A947DD2C7C, 698CCE8CB789FFD59948872A9157109CE0BA68F6C749623E3E9CC84E24459D67 ] AWEAlloc        C:\WINDOWS\system32\DRIVERS\awealloc.sys
15:21:09.0083 0x1294  AWEAlloc - ok
15:21:09.0086 0x1294  [ 7062CE507814D5306DCA5D6A15B7B6B6, 9D60506003A66C2E516B1FCB70CC5B26FB3A9948B95D97C828DD0328E76F2C91 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
15:21:09.0098 0x1294  AxInstSV - ok
15:21:09.0107 0x1294  [ 6447BA6FA709514B6C803D159B4C7D1E, 549DDCEAD93DF333F6BBD56A9258A867E4DA219741C00D48C68F8F230A87B11A ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
15:21:09.0121 0x1294  b06bdrv - ok
15:21:09.0124 0x1294  [ B4AC08B1D04D0CE085435E5CD0E663C5, 61E641388E5692B2EB351E44BA1DB86B5305DD105EE56865D59072CA9407C8AC ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
15:21:09.0131 0x1294  BasicDisplay - ok
15:21:09.0134 0x1294  [ 25B5BB369DEE2BAE4BF459C978FF9035, DBC2157B2AC0BC92B4011CE5E01F2DCDAAE71E37D9D21102503C6455FAAC4DCA ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
15:21:09.0141 0x1294  BasicRender - ok
15:21:09.0147 0x1294  [ 2583ABE384B847C09F2FF68552267A70, A8898ABCD4346140EA5B863F700307D670C1DD336337FDFF7D85FD26E14FE13C ] bcbtums         C:\WINDOWS\system32\drivers\bcbtums.sys
15:21:09.0155 0x1294  bcbtums - ok
15:21:09.0157 0x1294  BCM42RLY - ok
15:21:09.0189 0x1294  [ 4F9633DC161B69E8950A54BFCE95C5EB, B580B1543311ABA50F15BE806B0858182DAB5D1EEB10AEEC5BEF7E0B7E4552BD ] BcmBtRSupport   C:\WINDOWS\system32\BtwRSupportService.exe
15:21:09.0229 0x1294  BcmBtRSupport - ok
15:21:09.0234 0x1294  [ 3F5523DCEFE42B385659C5CB46A6B810, CA24A3DF002B19E7BDEDE9B5EB60623F299D0E78B2E4F58DCFC028D76DEFE52D ] bcmfn           C:\WINDOWS\System32\drivers\bcmfn.sys
15:21:09.0241 0x1294  bcmfn - ok
15:21:09.0243 0x1294  [ 0B750A6A6D847E73CA48ADD7A0F5A393, 6A43020F23846EFB1AFA3C070465B0059E9DF60DEB16899E09559462DF30939F ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
15:21:09.0250 0x1294  bcmfn2 - ok
15:21:09.0402 0x1294  [ 466A2988DD831025040D7C56EAA3BE64, 30FE5847E5F2C083B0230B2E4EA7C7EF32CF0C0BD941FA067B8264BF80D1FE6E ] BCMWL63A        C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys
15:21:09.0555 0x1294  BCMWL63A - ok
15:21:09.0570 0x1294  [ F374C27099807E99A156953F8416D34A, D267B8CD837290F9FC6B4FFD2DB8F54867D808FB155698FC7713BCAB3AE475B5 ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
15:21:09.0583 0x1294  BDESVC - ok
15:21:09.0585 0x1294  [ 5A88834AEE15D97695FAE0837B73B3E4, 03035FB51DE218B8EDB15129A0376DDED0C7E7B6DA58DD95B12E4E5C8D852ED8 ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
15:21:09.0593 0x1294  Beep - ok
15:21:09.0607 0x1294  [ 37F5E2385CB4D10AB42186974B9C241A, D38FA2B8CE19AC32056060F04B04D031F1621C07528DEDCCD5A8C01AB0A35995 ] BFE             C:\WINDOWS\System32\bfe.dll
15:21:09.0629 0x1294  BFE - ok
15:21:09.0648 0x1294  [ 64582C924C48175D52AED0D0E64AB413, 75DC6BC01D26A4BABEDB8013F0C106780F0991CA63075798C7C24B66022F58E3 ] BITS            C:\WINDOWS\System32\qmgr.dll
15:21:09.0679 0x1294  BITS - ok
15:21:09.0683 0x1294  [ DA2C6F7ACE392193C424FEA975C5BFFB, 668F91F3E5F8EA170C10823D6959E0EDB32434C51FAA68BEA782EDDF5618690E ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
15:21:09.0690 0x1294  bowser - ok
15:21:09.0701 0x1294  [ 492FB85E61768950CDD27C87AED6E8FA, 1BFF11D899581E406D1AB5F2C66C9D816161ECF4B81AAACCCA3663875E86C0A5 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
15:21:09.0720 0x1294  BrokerInfrastructure - ok
15:21:09.0724 0x1294  [ A617BE5E429A035A1CA8217C1B16F0BB, 197EE6C6EB22FF8A626540886F5A2163CC4CB177504C5423856F54BF01EB0FF1 ] Browser         C:\WINDOWS\System32\browser.dll
15:21:09.0733 0x1294  Browser - ok
15:21:09.0742 0x1294  [ 5F1B5DFCC48208384F85BD5E770DEB06, 0588FC607DA3AC679829F5F900DC556A8F7F9A4EF9C7DB3C83F006244E57CA6C ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe
15:21:09.0753 0x1294  BstHdAndroidSvc - ok
15:21:09.0757 0x1294  [ FA475721CD756ABF85B5B809F9688B12, 60C2554C7C3437453A57E284E557D6C4438B84406F925C32C3C7195695B8A455 ] BstHdDrv        C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys
15:21:09.0763 0x1294  BstHdDrv - ok
15:21:09.0771 0x1294  [ 46336263A7EA32D99306DDE7DED3608B, 4361BB5A0C285AA280487AEA9BA6F97CE8E53E6AC32689CFBF7782129806CF4E ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
15:21:09.0780 0x1294  BstHdLogRotatorSvc - ok
15:21:09.0787 0x1294  [ 2EEFBB3B949276CA13F39176FA8445A5, F1D0F32C968054C2F5CBC3A4D157EC56FE2055255D044D4896A91FAC96FD4551 ] BstHdPlusAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
15:21:09.0797 0x1294  BstHdPlusAndroidSvc - ok
15:21:09.0812 0x1294  [ BA94155BABA8A30D475865A2EB36F43B, 7565981F2BB002476DBCE4EEFAAA37A8E45FA2CA77E4BF960D8FED5036111C64 ] BstHdUpdaterSvc C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
15:21:09.0829 0x1294  BstHdUpdaterSvc - ok
15:21:09.0834 0x1294  [ B6FC31F187DA42B7F3AB036030F82426, 0899A947589DD98B3169C54C3715E16731C2FF38CD159C55028C20741CB58E5E ] BstkDrv         C:\Program Files (x86)\BlueStacks\BstkDrv.sys
15:21:09.0841 0x1294  BstkDrv - ok
15:21:09.0844 0x1294  [ CAEC7BC11AF69A181AF7932E636E09E4, 503C69045F1E025CBEE2405043BB71CC58478985ECAF6587F73FCB57860F5709 ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
15:21:09.0852 0x1294  BthAvrcpTg - ok
15:21:09.0855 0x1294  [ A0718F7B48F08347800FB29844A6AF91, F43A8BCB1794D9EB8C09E95B3A672CBEA8C67034AD92ACEF3C897B5F2174B7AC ] BthEnum         C:\WINDOWS\System32\drivers\BthEnum.sys
15:21:09.0865 0x1294  BthEnum - ok
15:21:09.0868 0x1294  [ 5F2B4B32E986C058525D3BA2A475A16C, CEC5BB0B025DD9525CFBBEDF6EB6F63336534798495A4F95763CE112DF915088 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
15:21:09.0876 0x1294  BthHFEnum - ok
15:21:09.0879 0x1294  [ 5406289E8AE2CB52FC408154E0A64BA7, 0A3795F2E6E2B51198452CF69A99159D8E11650E95F41DF0B575CB72F9C6C6B5 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
15:21:09.0886 0x1294  bthhfhid - ok
15:21:09.0892 0x1294  [ BAB101E7826BE287F79C4BA721621989, E6DD25C89267FE87253B8226292F2894F5E702075D3B23B09339D3B28744C060 ] BthHFSrv        C:\WINDOWS\System32\BthHFSrv.dll
15:21:09.0906 0x1294  BthHFSrv - ok
15:21:09.0911 0x1294  [ 3B3BF88BB54CB9A18DE1EF07292B5A3D, 7B9C1E7E07435B976E4AE89425F10541E1DEB153172A375CBC2D03A4D7B7F3D2 ] BthLEEnum       C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys
15:21:09.0923 0x1294  BthLEEnum - ok
15:21:09.0926 0x1294  [ A76F20CCCA31895A1DA78A875E50F946, ECD4B3670DA5984AA24F4354457B4E45983938A89FF6DB03B556A633B4B37E3C ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
15:21:09.0933 0x1294  BTHMODEM - ok
15:21:09.0937 0x1294  [ 09C3DB1B137B269A822F941D867A6BB6, CC99FBD76DA19D951864D4967EA9F3C048811E9BB7BBB67B724FC82A50B14516 ] BthPan          C:\WINDOWS\System32\drivers\bthpan.sys
15:21:09.0947 0x1294  BthPan - ok
15:21:09.0962 0x1294  [ A289FE26F5D8B5121D84DDEE6241CC26, 76549DBC55ACDB53FDA8A4F87EC8A52408ADDED469D2F3DAAE54C0218B8A872E ] BTHPORT         C:\WINDOWS\System32\drivers\BTHport.sys
15:21:09.0989 0x1294  BTHPORT - ok
15:21:09.0992 0x1294  [ 7A177E18AA6A6A6365E6351C2BF8EDAE, A35224A20014B1215A6824AE5E17B8869A775EA272EF7F25EAFFA18733F8D09D ] bthserv         C:\WINDOWS\system32\bthserv.dll
15:21:10.0000 0x1294  bthserv - ok
15:21:10.0003 0x1294  [ 281439D412441B2A39B63D20EE3E5D88, CAE6312F622427309C07017508291EF02C7DE2EA3B1929745C1D9B4A069AE726 ] BTHUSB          C:\WINDOWS\System32\drivers\BTHUSB.sys
15:21:10.0012 0x1294  BTHUSB - ok
15:21:10.0017 0x1294  [ 9667D279C41AA1C31631E52EE6709559, 4859C95AB462A8A821731303F51822B0D0C35D01F731C0DA56F50CC4D5F0A336 ] btwampfl        C:\WINDOWS\system32\DRIVERS\btwampfl.sys
15:21:10.0026 0x1294  btwampfl - ok
15:21:10.0030 0x1294  [ 8B092498F1A98FB1DC0C331007B2CAE2, 1073700A137D4E1E7B351EB8541CB36057207CC821021D3E04C0D88FD0328C10 ] btwaudio        C:\WINDOWS\system32\drivers\btwaudio.sys
15:21:10.0036 0x1294  btwaudio - ok
15:21:10.0041 0x1294  [ 4B86046A90D2F46AE710FFE16D30B90B, 6AC52E78FBCC1824366EF28CBA2F1783A694647DA839374F6A038A89D2B58B3E ] btwavdt         C:\WINDOWS\system32\drivers\btwavdt.sys
15:21:10.0048 0x1294  btwavdt - ok
15:21:10.0072 0x1294  [ EB2FCDBE3D9E5C575F6F71BC92AC624B, 2BD5F04277926E906EF6D360A6DFEA0E41CCADE8B9E6839AA8A04B96BFE6DF89 ] btwdins         C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
15:21:10.0091 0x1294  btwdins - ok
15:21:10.0094 0x1294  [ C3C8974D99F976C927165363855690CD, 2B73E11FE341DE581CFF655E58C5671B83F4331529C30DADCAA9B6BE615D5E1F ] btwl2cap        C:\WINDOWS\system32\DRIVERS\btwl2cap.sys
15:21:10.0097 0x1294  btwl2cap - ok
15:21:10.0099 0x1294  [ 4C8895543813CC6F86629F4696222FEF, 9863127C8AFC9A44BFA0E8292885C7210E26738D3D900267D25F4F182AB6A5B8 ] btwrchid        C:\WINDOWS\System32\drivers\btwrchid.sys
15:21:10.0103 0x1294  btwrchid - ok
15:21:10.0105 0x1294  [ BF89BDBA5D3A0B4256D3F6FC8D31880D, 940F3BF55B88261C9E9A951A092331559FC5B24FE3BA0F1E1AB3450D2CA364C1 ] buttonconverter C:\WINDOWS\System32\drivers\buttonconverter.sys
15:21:10.0112 0x1294  buttonconverter - ok
15:21:10.0134 0x1294  [ C8D931D734FC0097478CE2583A75C4DF, 60C5F97D7E5A8B81A7123A5DB333577B0C7B9302C1D1C98D47BA96C0A3FB7417 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
15:21:10.0159 0x1294  c2cautoupdatesvc - ok
15:21:10.0184 0x1294  [ 8E1CC0517DE17DF83CF80BFCE9F0C000, 13F7929D531914FA2ED1223977E15A7F45E3FF3DA1392ECC4B15F5619B37B754 ] c2cpnrsvc       C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
15:21:10.0212 0x1294  c2cpnrsvc - ok
15:21:10.0216 0x1294  [ C24C27FDF93B85A4EFCF25F830253AA2, 35C87518BB59663B57C2361A13AD4E57E37392598F1EB9F07F86CA5A6321AF5A ] CapImg          C:\WINDOWS\System32\drivers\capimg.sys
15:21:10.0225 0x1294  CapImg - ok
15:21:10.0229 0x1294  [ 7F9C7226D743B232907ED2537B8A574F, 2211AFC30E8F8FA03020DB48EE14914CD31E50BB6A63FF20AC7C6FA481E72C18 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
15:21:10.0238 0x1294  cdfs - ok
15:21:10.0243 0x1294  [ 0A92DC116CFC7F6BE8167DD25CB925CC, 50CAC7BE14FF69B10C029E049F7C441A5572540F027F95F940B185C76C689409 ] CDPSvc          C:\WINDOWS\System32\CDPSvc.dll
15:21:10.0257 0x1294  CDPSvc - ok
15:21:10.0262 0x1294  [ 82D97776BF982AA143BDC7DFB5054EA8, 954F56728371E6B3514586DCEAF15C4727BAED6CAFBF788654C4E03BD702942C ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
15:21:10.0271 0x1294  cdrom - ok
15:21:10.0276 0x1294  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
15:21:10.0289 0x1294  CertPropSvc - ok
15:21:10.0292 0x1294  [ 8D8BE531B5A6BDD194F02FC09F48AB47, D5CD3E9D4067486534F20DAEC8B8C37E1C7303F4EAC1AD2979DF35437FCCCFCD ] chip1click      C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe
15:21:10.0296 0x1294  chip1click - detected UnsignedFile.Multi.Generic ( 1 )
15:21:12.0666 0x1294  chip1click ( UnsignedFile.Multi.Generic ) - warning
15:21:15.0025 0x1294  [ 0505C1D991D0F9D47F3353BB98597C7E, 3B801CCF4980256327A4A9FBD98007DA1E3ACE9C94E5A4C23AB21303B46E8B5A ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
15:21:15.0033 0x1294  circlass - ok
15:21:15.0041 0x1294  [ 8B4B39C507ABA09AAFE8E3932D1B392C, 734700155A658BC08FC96E8F99A01DE7F7251D7DDEFA79D258B2EEB370BA7AA8 ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
15:21:15.0052 0x1294  CLFS - ok
15:21:15.0063 0x1294  [ F7526C133AC265F283012E9CD751F873, 6AABDD92FD880F49F63C1CC478C3D8291AF670802CEC58B32730E7675D858D88 ] ClipSVC         C:\WINDOWS\System32\ClipSVC.dll
15:21:15.0079 0x1294  ClipSVC - ok
15:21:15.0084 0x1294  [ 95832B049E2833B9F5189823CDF946C7, 72773A42A89220B4A6AC72D1633B16F11191A44D876A44FAB5CEFB717CE3223D ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
15:21:15.0091 0x1294  CmBatt - ok
15:21:15.0102 0x1294  [ 3B866F8CB10719A5AF9E410B1B149714, B0A32B526290ED8E1DD93C70AB49DD417B82CA23D6B815163131247091D61DBA ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
15:21:15.0117 0x1294  CNG - ok
15:21:15.0120 0x1294  [ 58D640BC2294C71BDE0953F12D4B432F, 0B3B7659FCB97791A2A1F895C8E6F9078F855C94C13EB47464492588C4B02B85 ] cnghwassist     C:\WINDOWS\system32\DRIVERS\cnghwassist.sys
15:21:15.0126 0x1294  cnghwassist - ok
15:21:15.0135 0x1294  [ 14F9883588398A1BDE49C75098C75DE6, D9D82DE89FAFE60BC902683BC44C7555533A030150FD5E5A35A24542FACC5CAD ] CompositeBus    C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_amd64_912dfdedc3d2f520\CompositeBus.sys
15:21:15.0142 0x1294  CompositeBus - ok
15:21:15.0144 0x1294  COMSysApp - ok
15:21:15.0147 0x1294  [ 02B8E49148DE5E0A2F6FDF28CE94A6AC, EEA405823F441CA604BEAA44EB71A1D20BC80E124FF7B27380D0201AAF2E0849 ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
15:21:15.0153 0x1294  condrv - ok
15:21:15.0165 0x1294  [ 86BE19C6A177AEB93302EA5C4FBE2D11, 5404AB84D270549B1A46574EBDC857525F71B117BE3BA0098FA0A696E56D5C39 ] CoreMessagingRegistrar C:\WINDOWS\system32\coremessaging.dll
15:21:15.0183 0x1294  CoreMessagingRegistrar - ok
15:21:15.0188 0x1294  [ 2CE0D74AED86A372997E9D77AE10B9F5, 1AFAA22C68FD0B81F73CE0EB763AD77AB97E78916752843A5056E1352F0FEA82 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
15:21:15.0197 0x1294  CryptSvc - ok
15:21:15.0207 0x1294  [ 5D578EAAFB6FD4F59523E5878B541296, 73573124787B79179880AFAF9CB8427237A1605A9F13D7783228DE24D18963C0 ] CSC             C:\WINDOWS\system32\drivers\csc.sys
15:21:15.0224 0x1294  CSC - ok
15:21:15.0236 0x1294  [ 5F07CCEE514894C9474AEDCA50B6C2C7, 38F54897C91A2E7D80D00852CEB173B26E822D7C68F35D31228245F811E028A8 ] CscService      C:\WINDOWS\System32\cscsvc.dll
15:21:15.0258 0x1294  CscService - ok
15:21:15.0261 0x1294  [ 2619DC483579DB9FE804044C1ADFFD1A, 23A5420288735A980917091532BE7BB36EB51660AA4555C615AF736357EB02EC ] dam             C:\WINDOWS\system32\drivers\dam.sys
15:21:15.0268 0x1294  dam - ok
15:21:15.0283 0x1294  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
15:21:15.0309 0x1294  DcomLaunch - ok
15:21:15.0314 0x1294  [ 620921E77351FB651632322AD2C195C4, 5A98971995D7A2B5AE6BEA69344FCC6687B582FEF74BDA206D32FB2E6CEB0478 ] DcpSvc          C:\WINDOWS\system32\dcpsvc.dll
15:21:15.0327 0x1294  DcpSvc - ok
15:21:15.0336 0x1294  [ 6129EA4294C5C69E4665801E95B16AB2, CE419186CF0F57434426FF925A09F13BE87639679CBB5F2074B0E1A243349D27 ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
15:21:15.0357 0x1294  defragsvc - ok
15:21:15.0366 0x1294  [ D12B9B6A6C4885824876422AACC89954, 5853ED5CAF84B7AAFF3EDC5C71FE23EB121DB681D81267D77118424BA9AB6F88 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
15:21:15.0381 0x1294  DeviceAssociationService - ok
15:21:15.0385 0x1294  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
15:21:15.0397 0x1294  DeviceInstall - ok
15:21:15.0469 0x1294  [ 0B24043732807EE3AA25389356F4DE7C, 6A9A65B38968FF704C3938BEF5E6C1226447FF4F78997473B1694EA8D3D519DF ] DevoloNetworkService C:\Program Files (x86)\devolo\dlan\devolonetsvc.exe
15:21:15.0520 0x1294  DevoloNetworkService - ok
15:21:15.0524 0x1294  [ 5BF8BD9B19D665452494C8D56DF4B28D, E5FC649207EF42C04B6737D442FECD3383E82F8998B140319FF400773F1D0978 ] DevQueryBroker  C:\WINDOWS\system32\DevQueryBroker.dll
15:21:15.0531 0x1294  DevQueryBroker - ok
15:21:15.0535 0x1294  [ 935823F79CBEDB91637B63D37E3A5A36, BE9A46F1CA631B9252C71758901D55456DC3C143053003D9FA7D67811A1E5026 ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
15:21:15.0545 0x1294  Dfsc - ok
15:21:15.0552 0x1294  [ 5841A361D28069DFC82E1E98040FDC3F, 3A48DB7ADE90654242CB54DAD07F5FF0CD5CABF372C50D5B2C4D7AED068986E1 ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
15:21:15.0566 0x1294  Dhcp - ok
15:21:15.0569 0x1294  [ 9F5AC03F5A0000DD96FA29CD68A6605B, 6964E077635E65DA902CA6C69E704A9DCD5856D22BA75E1CF823E63E62266AF7 ] diagnosticshub.standardcollector.service C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe
15:21:15.0576 0x1294  diagnosticshub.standardcollector.service - ok
15:21:15.0599 0x1294  [ 15D174719872A30F2FDD6B5B1B8BA5D9, B0E6FF6FC47B731C204F110D4B768231906B144B31F602ECE8EAC24D70BA880D ] DiagTrack       C:\WINDOWS\system32\diagtrack.dll
15:21:15.0630 0x1294  DiagTrack - ok
15:21:15.0641 0x1294  [ FDF8D35491E812BC3597F393F9BFE731, 8126DD4D313FC400040EE9CD5E2B04CDBCA36C7EF2975BEB72E4CDD2DDC2667E ] DigitalWave.Update.Service C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
15:21:15.0649 0x1294  DigitalWave.Update.Service - ok
15:21:15.0652 0x1294  [ 4904B152E4942BF700F2D73228B4D477, 0E5646DCA05A24C71F057C9F9F64AE992D338DA72DF3126175C2FA178854C30F ] disk            C:\WINDOWS\system32\drivers\disk.sys
15:21:15.0660 0x1294  disk - ok
15:21:15.0666 0x1294  [ 49F069E2D22F33955A69D44DFD1B5179, 739C52C7B961BA683E8C7CCDB0E95423C17561B2F1F506BAE923DC53DB96B067 ] DmEnrollmentSvc C:\WINDOWS\system32\Windows.Internal.Management.dll
15:21:15.0680 0x1294  DmEnrollmentSvc - ok
15:21:15.0683 0x1294  [ 0197AE4B9790A4E73751CACFAA480126, 86BBB398F1A93754B2C329271F13A88FD2F285F30225C38F068F565CCA14EB9F ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
15:21:15.0689 0x1294  dmvsc - ok
15:21:15.0691 0x1294  [ 5EF8EC71A7A91F3DF7798BEFE6786B0E, A3A56B43C72926881C66B7A17C9EAA35C2D9603C8D3849438838536BCD3F4633 ] dmwappushservice C:\WINDOWS\system32\dmwappushsvc.dll
15:21:15.0701 0x1294  dmwappushservice - ok
15:21:15.0708 0x1294  [ 5839A317C25F70979433E0905DFABB1B, 7F1CD50C77A33A10259D8A208A355BE7ECAFEA69F810AD908EF8878A792741AF ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
15:21:15.0721 0x1294  Dnscache - ok
15:21:15.0722 0x1294  doroghtshejasmoduleservice - ok
15:21:15.0729 0x1294  [ 1B15297A3A2CAB6BD586676154F389D8, 623D5F5FC8622B7D9AEEEB1787E6846C1570F0EEF94341239440B616D09D672A ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
15:21:15.0743 0x1294  dot3svc - ok
15:21:15.0747 0x1294  [ 316C2D8B8E3C0727969F1C3790EF7193, 631F8578FDB26578C8436E4B9C4DF21E1F58FCFE6DA66E5769AAC3739005D465 ] DPS             C:\WINDOWS\system32\dps.dll
15:21:15.0757 0x1294  DPS - ok
15:21:15.0760 0x1294  [ 25FA06D3B49D6ADF8E874FFCDCD76B50, 9AF09B96ED79D94EA36581ABE6CC73313A72891779774B15860D018BEA2BBA0F ] drmkaud         C:\WINDOWS\system32\DRIVERS\drmkaud.sys
15:21:15.0766 0x1294  drmkaud - ok
15:21:15.0771 0x1294  [ 16EE6701115BECF8C657D9D6E123F6A1, 16E115B5245C3C988F8B58B90D30F183021C7C7792D3D1C74BEC606E49672B2A ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
15:21:15.0782 0x1294  DsmSvc - ok
15:21:15.0786 0x1294  [ FBC8C56814642A7CA88ACBCA8DD1121F, 108690704A359991C3D6577477E232F5F2F46B36DF6B4B0738A893EF05D7D4EB ] DsSvc           C:\WINDOWS\System32\DsSvc.dll
15:21:15.0795 0x1294  DsSvc - ok
15:21:15.0825 0x1294  [ 48D8729FACC784900B831212AE56F824, 6AAE1E78B84D0C12B99BE050B787AA167E6BA0B5AA621BEE0DB5312A4771DA63 ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
15:21:15.0862 0x1294  DXGKrnl - ok
15:21:15.0872 0x1294  [ 2AAC97A2DDFE3149851A9F8E002F2721, 7CDCB2BA56A6417C49A94D45BC674678073EB6B999FB0665EC329A26C5E9BCA7 ] e1dexpress      C:\WINDOWS\system32\DRIVERS\e1d65x64.sys
15:21:15.0887 0x1294  e1dexpress - ok
15:21:15.0891 0x1294  [ 0CDF6B61D7F7FFCD195AF0113B9B2C16, 828D3FA31742B54075EAED2E67BBB5166D2EF4F84B791077E96DC0BD5557F11E ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
15:21:15.0903 0x1294  Eaphost - ok
15:21:15.0951 0x1294  [ 491275B864B704B54EC08168344E0F38, B4849400C3F819CF7809A2001EA2ECB527022483F7DFE31C3930F951EAFE50CE ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
15:21:16.0010 0x1294  ebdrv - ok
15:21:16.0015 0x1294  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] EFS             C:\WINDOWS\System32\lsass.exe
15:21:16.0023 0x1294  EFS - ok
15:21:16.0026 0x1294  [ CEF108FCE06892CFA5F1B49527D4BF49, FA337584024B6E6EE4AF519F57FFA4C0FCA19EDC148FF309336C4CCA8F9C9CE8 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
15:21:16.0034 0x1294  EhStorClass - ok
15:21:16.0037 0x1294  [ 5B1EAAE3001A7A320C106FC3859F4111, 700BA2C7D4DFAFFEB78D3804B310A4EE5B4295C84600442665693FF661673951 ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
15:21:16.0045 0x1294  EhStorTcgDrv - ok
15:21:16.0048 0x1294  [ E34DEFC09F2843C2C24C2248F1ABE6D8, 1FD67EB5820A1D2F4402DE9D95DE288DB69D421A8473074FF23491D7CA8B5ACE ] embeddedmode    C:\WINDOWS\System32\embeddedmodesvc.dll
15:21:16.0058 0x1294  embeddedmode - ok
15:21:16.0065 0x1294  [ 062152DD5B225518A991DFCD8536770C, 5C8EF4E0C7DE3B24387FF239A8D0CDA39C2376826F16EAFF09739A6C7EDA01E0 ] EntAppSvc       C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
15:21:16.0077 0x1294  EntAppSvc - ok
15:21:16.0080 0x1294  [ 7A2705148A4BB3CA255F81624338B461, 68AC8F8D2DD8AA4E8F2224A0054DE2AF67EA199217E87CD3C7299B021048F14F ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
15:21:16.0087 0x1294  ErrDev - ok
15:21:16.0097 0x1294  [ 17BE4A35829B37C742084DC02D48E5F0, 7FDA62B56DF585C3F2C6FFB10AC7C0D8F70FA921C4DEA47B2789745CFE2618CE ] EventSystem     C:\WINDOWS\system32\es.dll
15:21:16.0114 0x1294  EventSystem - ok
15:21:16.0120 0x1294  [ DFE8A33FBCF6F38182631A4D6097B92D, F9D06780830E74FD5309E6DC5C3EEDB9334A8AE284F381FA91EF2729297F8632 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
15:21:16.0134 0x1294  exfat - ok
15:21:16.0140 0x1294  [ C330883C06E2D4CE4F6982F048265D37, 26044DE176056B7F5BF2A50A659243CFD7F25CFEE035B3A3C3165B3699872926 ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
15:21:16.0152 0x1294  fastfat - ok
15:21:16.0164 0x1294  [ 952F10D2116B91BA433842D07879AE7A, 9E1EC0C719877EF198AA4DDBE896E9DDEAD360AAC1FC6DF305E7C5C73C7A761D ] Fax             C:\WINDOWS\system32\fxssvc.exe
15:21:16.0184 0x1294  Fax - ok
15:21:16.0187 0x1294  [ 9D299AE86D671488926126A84DF77BFD, C076EEDD0524B7D88BC56C97089E0A836CC1AD725E1A544CC4F8DDBB6670C366 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
15:21:16.0195 0x1294  fdc - ok
15:21:16.0197 0x1294  [ 47D09B8C312658ACE433E46DDF51C3A5, E76948DA0F51C7DC6D69B7E36D63CE6E98FDE619FA30E91637F75B5084107D22 ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
15:21:16.0206 0x1294  fdPHost - ok
15:21:16.0209 0x1294  [ 177AC945B20C81400A1525ED7B49A425, FD215A2E718EA38A95D985F53AB3DD44B50C2549AA67F44BA98C4709E492051F ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
15:21:16.0219 0x1294  FDResPub - ok
15:21:16.0222 0x1294  [ 3E78BEC276DA5A062E4D55F3291B3463, 62983457F506C70D1F89F527AB61C1C0F4D1B002631256A2708F9AF092A8C95E ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
15:21:16.0235 0x1294  fhsvc - ok
15:21:16.0238 0x1294  [ 8F2523C9D8F1448FF2156452AF60FA00, 1D39CA54F5F1E62385D9EC041F9445BDDCB63740859B9418AE904FDF3D8388ED ] FileCrypt       C:\WINDOWS\system32\drivers\filecrypt.sys
15:21:16.0245 0x1294  FileCrypt - ok
15:21:16.0249 0x1294  [ 92ECCFA58C8195B8EA33ED942469D4E6, 8DB12E8CF80ECA22182F9A1F4CA922336A430297F1F596F204ECF4D9D19F30D9 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
15:21:16.0256 0x1294  FileInfo - ok
15:21:16.0258 0x1294  [ 87C51FDD50C17882BA93E28BBABB9847, 8987D80FB77D1D3F9E89B491B1287B027DA26FFC4E4BA7B01E07D4D4FC69E236 ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
15:21:16.0268 0x1294  Filetrace - ok
15:21:16.0270 0x1294  [ E99261DD76D1C9E05AF575939CAE5AC5, A789724FD2E22AFB2F921836F5C19A21D17F4BBD604771E2908C2651BD31989C ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
15:21:16.0277 0x1294  flpydisk - ok
15:21:16.0284 0x1294  [ 25D7A58625E1453E40D36825DE74E4F1, 74119803D35E3C3CC349B44C6CD9EDF6B797F88584B847F0BF9EED542719B86B ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
15:21:16.0296 0x1294  FltMgr - ok
15:21:16.0320 0x1294  [ 4387DE200BF8DD0E2EE828E655434B9A, 9148D65E54663EEC139E754091F47ABF439A637BEA83F600D30736522DAA845D ] FontCache       C:\WINDOWS\system32\FntCache.dll
15:21:16.0362 0x1294  FontCache - ok
15:21:16.0366 0x1294  [ E79DAC43A5E191FC4DDB04197A704BFA, 2FA6C8B5B2DFE66C05828E3F55DFD6268A8210E9BD083F2D09367AD59AF1C6C1 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
15:21:16.0372 0x1294  FontCache3.0.0.0 - ok
15:21:16.0375 0x1294  [ B4175E8BE60B099686FF55CA7D692316, 3158FC5B4D1A2F1FC1346754392AE24AE58999B9061B1CE78A65E785BFFADD52 ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
15:21:16.0381 0x1294  FsDepends - ok
15:21:16.0384 0x1294  [ CC71372CEB811A72F1DC99089C5CBF53, BB9DDE74D60E534A6F8A51B63DDBB441245F06A00A0AFD37DBBE86255690946D ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
15:21:16.0390 0x1294  Fs_Rec - ok
15:21:16.0401 0x1294  [ DA3973288935149A6EF1C45BF1B39B98, D02D0BFEC8AF504FD69871DFF7BE70DB6C5AFC2F585EA850B68CCBFC78EA36C0 ] Futuremark SystemInfo Service C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe
15:21:16.0412 0x1294  Futuremark SystemInfo Service - ok
15:21:16.0424 0x1294  [ 50DFE05C698E9B0A63D95E3D669A105C, 3A7D5AE4A01B90C2ECF22AD2783A84C2329EAB9BACFA5237A7DCC3DC5995A864 ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
15:21:16.0440 0x1294  fvevol - ok
15:21:16.0443 0x1294  [ B9981A4CB9F728B3312A3885BFAA7204, 12FB2EB2E5D2A912769823DD9C1B33DB358CD0B7FBFC788529EF83DD584334F8 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
15:21:16.0449 0x1294  gagp30kx - ok
15:21:16.0451 0x1294  [ 77555B11B264991DDC26872FFCF1AB97, D5F230EEF74EB869F771F8A4AB19C1E6C845BB0EF4A1234882EBDA4FDC431E44 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
15:21:16.0458 0x1294  gencounter - ok
15:21:16.0461 0x1294  [ F3AC9652D88BF87BA6596CBEA28CE10F, 115F3C0A5B9903B17ADEA80E1825FE927B7361F5BDDF80CE3685EF2D327EDF4F ] genericusbfn    C:\WINDOWS\System32\drivers\genericusbfn.sys
15:21:16.0467 0x1294  genericusbfn - ok
15:21:16.0471 0x1294  [ F802FBABF0C4DF1BAA733187B2E476F5, E2533284CEBBB872196B013DD1FBBCA794DB1CAAA37D64849BD9264ECDD2CEE6 ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
15:21:16.0479 0x1294  GPIOClx0101 - ok
15:21:16.0500 0x1294  [ B55458A83395A2CFD4E745E9EC4AB5F2, EAB06B089D8A7DBC9AE2A1C919B489911690D341013A5F8F906819C68431CA85 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
15:21:16.0537 0x1294  gpsvc - ok
15:21:16.0540 0x1294  [ D011B0ADB15F4815310CE1BF4780B33E, 3860630917F83A89FE7A6407CC544505FA4BD754619CF273DD630ABFBAAE42EE ] GpuEnergyDrv    C:\WINDOWS\system32\drivers\gpuenergydrv.sys
15:21:16.0549 0x1294  GpuEnergyDrv - ok
15:21:16.0552 0x1294  [ 84BC034B6BB763733C1949B7B9BAF976, 18C2C0F15BAFA46197F0BB629C4F585D893C2A78324CA198F88A04527D524F23 ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
15:21:16.0560 0x1294  HDAudBus - ok
15:21:16.0562 0x1294  [ 6B8CB114B8E64C0636EB49F7B914D1FC, 1AD7A43CC5CD99DCEF60C61242B6843D4AD925CE93BA5D75CD8395C7125EF5A7 ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
15:21:16.0569 0x1294  HidBatt - ok
15:21:16.0572 0x1294  [ D1AD197CCDAAC0CB4819DA1D6EB17BAE, C370F974D0A1F7B60F47EAFF57B6CCABE82913187F8BFEE169B8237AE91247B1 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
15:21:16.0580 0x1294  HidBth - ok
15:21:16.0583 0x1294  [ 64909DECCFCC6FB5D9A5BAFDCCB31FEE, E19C91FD8D5102A8C4F6C6FF70CA058BB272FEC1B6E9CBA3A473C49948E6AC7E ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
15:21:16.0590 0x1294  hidi2c - ok
15:21:16.0593 0x1294  [ F510F7B7BF61DEAAC04E65C3B65E8D59, 11566086B06FB08B6A179E3068E022DA381C762DC8962D1E1D63DC646DD4D301 ] hidinterrupt    C:\WINDOWS\System32\drivers\hidinterrupt.sys
15:21:16.0599 0x1294  hidinterrupt - ok
15:21:16.0602 0x1294  [ 90F3ED42D423C942BA5EA54E2FFE7AC7, BF7DE0C8141CD20A6235657BA897A019ABEFF6A01AA3FB202C73C33433CDEAF8 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
15:21:16.0610 0x1294  HidIr - ok
15:21:16.0612 0x1294  [ 46DE2EF6382DD9613CB506760648F262, 419555220794380134A64E1956B83B2FD1D1B6E403C5FC729A9107E14A12E968 ] hidserv         C:\WINDOWS\system32\hidserv.dll
15:21:16.0619 0x1294  hidserv - ok
15:21:16.0621 0x1294  [ 128DEDDD61915DBA4D451D91D21F0513, 961A0DDA02B0879989300C15E4FF9022882A4CD895D65335C263AC0DD1918314 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
15:21:16.0629 0x1294  HidUsb - ok
15:21:16.0634 0x1294  [ 5B3A29CDC535A40B440B9A0BB44AB731, BEAF53AC93C77DA70A2CD0152AB008C572B6F6E6C5F4A4F4915B557BF03A5E78 ] HiSuiteOuc64.exe C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
15:21:16.0641 0x1294  HiSuiteOuc64.exe - ok
15:21:16.0647 0x1294  [ 7CEC266216126BC9A0E1072E1A7E5702, 6B2C0768C8F2590E65B9520D266C07D1A9D89B9E185CC359B0453F399836759F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
15:21:16.0660 0x1294  HomeGroupListener - ok
15:21:16.0668 0x1294  [ E2145534FB853921788F52701BED0CAB, DF71F842772FAC21DD8994C97F578A78AC43D06C5F26F752FB69B47DFE3BB112 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
15:21:16.0684 0x1294  HomeGroupProvider - ok
15:21:16.0687 0x1294  [ FF442DCDCE1F6E9FAA9C8AD0CD1D199B, A239414E97B310C9545995B0E723B5E792B08D71F651450EB006AD4D1765E4F7 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
15:21:16.0694 0x1294  HpSAMD - ok
15:21:16.0712 0x1294  [ 63C3F74DC398A1C1A77E39DFB9C312CA, 283A13899838B4313BFBC406E832042696C549640A1AB11E23C0B9E499289836 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
15:21:16.0734 0x1294  HTTP - ok
15:21:16.0739 0x1294  [ 3E6BD2FC52B963B48E67D76F458066E5, 9ABA9F3E9F2231383985E54519AEC4F18B810A4BA9C2BD3D7777F21F1154B57D ] HuaweiHiSuiteService64.exe C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
15:21:16.0747 0x1294  HuaweiHiSuiteService64.exe - ok
15:21:16.0752 0x1294  [ CB32F01890953A2FEE8FE01F289DF726, 77B3A619945F301CFC8B2E9E1D5D9355822EC3370928049247EA2BCB4E4D7E63 ] HWHandSet       C:\WINDOWS\system32\DRIVERS\hw_quusbmdm.sys
15:21:16.0762 0x1294  HWHandSet - ok
15:21:16.0774 0x1294  [ E5805896A55D4166C20F216249F40FA3, F426BF60D5B916E7A778EF24C49FE1FFE1B2977C2ABD2977FD5C38C6E6CB139F ] HWiNFO32        C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS
15:21:16.0778 0x1294  HWiNFO32 - ok
15:21:16.0780 0x1294  [ CBA5E88A0F0475B7F49653BB72150BEF, 0F03560D9C30E069D117A555AEE729C81E6BCAE443FA25172D0E9E6903695C67 ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
15:21:16.0786 0x1294  hwpolicy - ok
15:21:16.0788 0x1294  [ D668FAB4B0397B426EE3D41683B9A1C0, 66F3E3B2ABC3C9B25A0DADBF09818547ED301230374AC5302B4794629A95DDF8 ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
15:21:16.0795 0x1294  hyperkbd - ok
15:21:16.0797 0x1294  [ 40115A0F8E7FF9E786EBBD1D33D39AD7, 5190D3970950251CD0946521C428BF26BF7D68C2984B990B8EFDD406EC9CDFE1 ] HyperVideo      C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
15:21:16.0804 0x1294  HyperVideo - ok
15:21:16.0808 0x1294  [ 53FDD9E69189E546DE4740F8C4D8AB2F, 45ED5B229ED5FD0CEE8BF52EFF88FD8B1889BF348ED7187926F290B3AD48A76D ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
15:21:16.0816 0x1294  i8042prt - ok
15:21:16.0818 0x1294  [ 9A2A2F3C69B9A30B6E78536F6D258BAD, 5E28E132A7300E6F5E0C6439D6BA00F1AEF66D729FF671FDA91274A25A921463 ] iai2c           C:\WINDOWS\System32\drivers\iai2c.sys
15:21:16.0827 0x1294  iai2c - ok
15:21:16.0831 0x1294  [ 59A20F5AD9F4AE54098154359519408E, E27B7389C9D123CDDA4EC9CBDB06C4AA5000012391F940EE1492419B593608FE ] iaLPSS2i_I2C    C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys
15:21:16.0841 0x1294  iaLPSS2i_I2C - ok
15:21:16.0844 0x1294  [ 16A10CCEDCF5AC4CAAE43DC9FC40392F, F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0 ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
15:21:16.0849 0x1294  iaLPSSi_GPIO - ok
15:21:16.0852 0x1294  [ EB82A11613326691508D9ED9A4FE29E7, 8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
15:21:16.0861 0x1294  iaLPSSi_I2C - ok
15:21:16.0883 0x1294  [ 5F6CA62BE8ECC4D0E1F5D4D4A02B456B, F720A1F14C9053D24C5B42827E5F9578A27F3E62A6C65A3CFA068E580F02F072 ] iaStorA         C:\WINDOWS\system32\drivers\iaStorA.sys
15:21:16.0908 0x1294  iaStorA - ok
15:21:16.0920 0x1294  [ 6B0029A0253098CCE28EACCFDB9E7208, E33AD69644E1683A971DA1169B704FBCFD9F715E9550816058E420BB5DE4D946 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
15:21:16.0936 0x1294  iaStorAV - ok
15:21:16.0940 0x1294  [ D524B034148F14C60F1CA66D267EE56A, 18045270C5CA718501285EE05EDED8B0EF998A881ACF19D9602F91A2A30E40AB ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
15:21:16.0944 0x1294  IAStorDataMgrSvc - ok
15:21:16.0952 0x1294  [ 9652E1E35A92D8C75710C17A63B15796, 72F8C4A49B874226DEE9B7C9704F0E0A98DAA2DF4EAE2F2258E8324ACBD242E4 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
15:21:16.0964 0x1294  iaStorV - ok
15:21:16.0972 0x1294  [ FFADF691F7BF727AF5C863454A372723, FCF5A5595E8C9C937BE9F1C3AB5D9BD0EFE82DE1298D12085E0CCD84A186D2F2 ] ibbus           C:\WINDOWS\System32\drivers\ibbus.sys
15:21:16.0984 0x1294  ibbus - ok
15:21:16.0988 0x1294  [ 80BF2990E01E774D64F6E13F30661942, ADFEA2280D29F2C7B0A556C61709301D6327C288064FF5A4D29358403DF41DCE ] icssvc          C:\WINDOWS\System32\tetheringservice.dll
15:21:16.0999 0x1294  icssvc - ok
15:21:17.0001 0x1294  IEEtwCollectorService - ok
15:21:17.0017 0x1294  [ 95A03F67830FDCB950E70261128D540D, D052CB703500E2871CF51E015E444F2A99FA9A7579AC422104F0E411F6107BD0 ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
15:21:17.0043 0x1294  IKEEXT - ok
15:21:17.0109 0x1294  [ 93E07E34AC803B37CD196662FDBA38F8, 540DC5C9EA3361C686A78CFCD4CB0AAA15827A00D4D2F7FFA0D6B791D41BC986 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
15:21:17.0177 0x1294  IntcAzAudAddService - ok
15:21:17.0186 0x1294  [ B35FBA69CA2A77D7B51B4185CDAB5D5E, 9E380AD526A4B07AD6FD0426F369545DB25597460C5E8098087803D93195358C ] Intel(R) PROSet Monitoring Service C:\WINDOWS\system32\IProsetMonitor.exe
15:21:17.0195 0x1294  Intel(R) PROSet Monitoring Service - ok
15:21:17.0197 0x1294  [ ECDB27420D3A98424666904525A8562A, BDA98C3C95F2AD79945EF8213D5C65064052C09C82DD36F0D6724E1D21DCC30A ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
15:21:17.0203 0x1294  intelide - ok
15:21:17.0205 0x1294  [ 8FF1978643EFD219C5BA49690191D701, 6FD78A8490107C80090D7125644B8C910855374BE1373D1D6B199307C79680BA ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
15:21:17.0211 0x1294  intelpep - ok
15:21:17.0215 0x1294  [ B61B60F36E1C8022FA8166ABF0F66B07, 23161F1DA51D44D936329E62DF4C2DAEE3DDD4B3D62CC501A888C0E149788968 ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
15:21:17.0224 0x1294  intelppm - ok
15:21:17.0227 0x1294  [ CA0D42029AFFC4514D295E1EF823D02D, F2A05CB2B2E8C843FD02DC37E86F23CF928A4B2F9044424A60DE4E82B87DF5C3 ] IoQos           C:\WINDOWS\system32\drivers\ioqos.sys
15:21:17.0232 0x1294  IoQos - ok
15:21:17.0235 0x1294  [ 6E3F9D95235DFC9417384080A216F310, 6F13D72661038A91CFABB360621F4B169D78955C3EAD64956A7C825ABAEC5121 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
15:21:17.0245 0x1294  IpFilterDriver - ok
15:21:17.0260 0x1294  [ 6E75B731A8A7EFED0821327B08DAB46D, A77B746447824BD3C68B82D7329B82D62098B2409F8AEE4738FA23CB1561E629 ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
15:21:17.0288 0x1294  iphlpsvc - ok
15:21:17.0292 0x1294  [ 4F527ECB5EAB47D8EAF34A469666C469, 8FFBEEF42515B6A7758BE579ED69E3911856CBF7710D9785011332C5E3DFE495 ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
15:21:17.0300 0x1294  IPMIDRV - ok
15:21:17.0304 0x1294  [ 9E5E8F2A1996F23B7E9687846AA81B01, 29E59384A4F92B3B4F2974942C91A12380113C13D3800900B5F44E2355D05455 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
15:21:17.0313 0x1294  IPNAT - ok
15:21:17.0315 0x1294  [ C317EB660138BC9CBFE37CCDE56351AE, F3AF6C573419D7F65C96A4841D4F056CA281CD5AFACDC7A5F586A390DC6E615B ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
15:21:17.0324 0x1294  IRENUM - ok
15:21:17.0326 0x1294  [ 531994A6D9399D9B74BE12B5BB58A81E, 6D5CF540C777F4828E1D4C5FE58EE41E6C2F5F399C554DC85F19D1E52229B094 ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
15:21:17.0332 0x1294  isapnp - ok
15:21:17.0337 0x1294  [ 68D5354A4A9692EEC24664C60F47D4A2, 92124E98B6E286B6127DC6D0BFACC9C6D293D58EAE2B47B45532714CE6A6D0CD ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
15:21:17.0347 0x1294  iScsiPrt - ok
15:21:17.0350 0x1294  [ 701D7DB13B0815E7076EF4CB4CE981F8, 02585661656C0069AC318B82DE83DAC660451A0B970FDBCA0F7A8B4CBF7D93A9 ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
15:21:17.0357 0x1294  kbdclass - ok
15:21:17.0359 0x1294  [ 884EBBDDBF5968003B40185BD96FF0E6, E3934D0FF0BEDDF5526AF529F7D15BA8BE479383894975B1AF1A1818C394A6E3 ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
15:21:17.0366 0x1294  kbdhid - ok
15:21:17.0368 0x1294  [ 6B3A0C7902811E6372643447E41F7048, 30667B56A306CFD5D15BC46F8E7D9E167612E71B6C8F554406E706A6330F5B94 ] kdnic           C:\WINDOWS\System32\drivers\kdnic.sys
15:21:17.0375 0x1294  kdnic - ok
15:21:17.0377 0x1294  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] KeyIso          C:\WINDOWS\system32\lsass.exe
15:21:17.0384 0x1294  KeyIso - ok
15:21:17.0388 0x1294  [ 982C795DE20CED7AEDD2E7899B5D9BC1, 9F4E7536DB253CD83AA2AB89E9F3311714CD70F13AFD16F9B4D4CD86A70FC164 ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
15:21:17.0396 0x1294  KSecDD - ok
15:21:17.0400 0x1294  [ 7D8B9214692C4D0F1646215D9984E19A, DC73503A8CA67F4E167DEA69AADDEA5F2D756E1C1F4FF42B6ECEA7E637BB80AB ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
15:21:17.0408 0x1294  KSecPkg - ok
15:21:17.0411 0x1294  [ E9BB0023D730701BB5D9839B44F5E6B5, 19D4BAC09424D331922472CFD2D0E32BEFA9188A6AF194C8D1F93FD77CE36691 ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
15:21:17.0418 0x1294  ksthunk - ok
15:21:17.0425 0x1294  [ 71DE1AD9B23661EEC4F2A6EAA5A7D33D, 3219AEF3D6AE5933AE669FD2ED9ED95A8780612E39F31DB3DB9ED6B6244C5F7B ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
15:21:17.0439 0x1294  KtmRm - ok
15:21:17.0446 0x1294  [ 8BBB2B4429AF340481520C20C17FC5B6, 9E32815349195FC4B1BE213600FD407F2EAEEC8368289EB3E6B769125A739C08 ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
15:21:17.0460 0x1294  LanmanServer - ok
15:21:17.0466 0x1294  [ 1F5D48B1DA1B812BD2411CA44D75DD32, D1BDB8142CB13E8C6DD6F42E07C9D19BBBF6410D5122A04C01B34B95B442DD95 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
15:21:17.0478 0x1294  LanmanWorkstation - ok
15:21:17.0482 0x1294  [ 02C54C5C7EBE371EC0C59795ED22213F, 712AFE0EDF40436124F3FD55ED9B5A3A33A8761A58F4D482BB65229741B1C270 ] lfsvc           C:\WINDOWS\System32\lfsvc.dll
15:21:17.0489 0x1294  lfsvc - ok
15:21:17.0491 0x1294  [ 01BF128CC327A2E53898F732AF52B3DB, D62ACDA69D9942F9CEF400874DBB6EAF9811D9657CBFEF89174F88D76BB8D8EA ] LicenseManager  C:\WINDOWS\system32\LicenseManagerSvc.dll
15:21:17.0498 0x1294  LicenseManager - ok
15:21:17.0502 0x1294  [ EC34EED89C34B27C292166B725AC7A7B, 58F1BA0CB7743314AC012A82F8CE4072CBDD05D9570C52BC18DC551882F5B1BA ] lltdio          C:\WINDOWS\system32\drivers\lltdio.sys
15:21:17.0511 0x1294  lltdio - ok
15:21:17.0516 0x1294  [ 2C23283A0815B048C06D8C0ED76AAD95, 4335546939C1A98CFE9A4403CC82D79CC713439E4DFD1F4760FDD867305151E0 ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
15:21:17.0530 0x1294  lltdsvc - ok
15:21:17.0533 0x1294  [ CB6365E995F4DB856866500EDD8F61C1, 717ED387F245CAC68217B0F393D7B8AB3805721AB2C4D2D43430FE6E740F0856 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
15:21:17.0540 0x1294  lmhosts - ok
15:21:17.0544 0x1294  [ 961F28D879D345BFA50AF51285C90F2E, F9931A436651F695B746BC0C07E833D9C9F64126746DF976E691E6CAE26DAC9B ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
15:21:17.0551 0x1294  LSI_SAS - ok
15:21:17.0555 0x1294  [ 6BFB8D1B3407518BE06B6F81F92FA0F5, DE0818DCC0D8D1D30A29AB167C65461A78100ABE2368637CEB9D0ED2B4E88D8E ] LSI_SAS2i       C:\WINDOWS\system32\drivers\lsi_sas2i.sys
15:21:17.0562 0x1294  LSI_SAS2i - ok
15:21:17.0565 0x1294  [ BE0E47988D78F731DEC2C0CB03E765CB, CA0015E87A3962611DBF714253FA618A6568346BAE640884432C1D44DE4C8684 ] LSI_SAS3i       C:\WINDOWS\system32\drivers\lsi_sas3i.sys
15:21:17.0573 0x1294  LSI_SAS3i - ok
15:21:17.0576 0x1294  [ F99BF02BE9219986817BF094981EEB18, 4303C772366065885C5D937B2E9AC0BF80C84BFB2737716055AD57BF6AADD673 ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
15:21:17.0582 0x1294  LSI_SSS - ok
15:21:17.0594 0x1294  [ FFAA37FBBDD161E8C200C83B40F7872E, 0637B3119FC220CB8E23EE6694A9F1F25CF8D61008B14F6E30FDC17DCF9E077E ] LSM             C:\WINDOWS\System32\lsm.dll
15:21:17.0616 0x1294  LSM - ok
15:21:17.0620 0x1294  [ 2FCF837196082864F66CFD9CAB256275, 8BE01C3BCBC1E6E5D1FD7F49E936482E61ACB805F397AB81B8D39C2F0F1083BD ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
15:21:17.0633 0x1294  luafv - ok
15:21:17.0636 0x1294  [ 56B24B359838BE86B013C2CFD38BDFC4, 38EA2D320F0CD80E3654AA1A5CA1CCAB1CA5519A562EEE41DC2E5EDF47CEF3F4 ] MapsBroker      C:\WINDOWS\System32\moshost.dll
15:21:17.0644 0x1294  MapsBroker - ok
15:21:17.0646 0x1294  [ 2ED29B635F35E31A1C0D3DDB7DD2AD03, F70CC20B98C2DBCD13B0D509D92B3BC3828D1B88F3ACD60C860E163064844181 ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
15:21:17.0653 0x1294  megasas - ok
15:21:17.0664 0x1294  [ 22E3CB85870879CBAE13C5095A8B12E3, 5FA5A8EFBA117089CFDBE09743A16BC3A7CC2042C96ABA1F57901747493106BF ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
15:21:17.0679 0x1294  megasr - ok
15:21:17.0684 0x1294  [ 6ECDA51525C123C55ABC470F2144F925, 7B2E8976F126219AF0953FD641E613A9336CCC80843AF4A37AA71067D55CCBBB ] MEIx64          C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys
15:21:17.0690 0x1294  MEIx64 - ok
15:21:17.0692 0x1294  [ F2C23E25636BCA3543E6AD7858E861B7, 0CAB0A037471B4858CE9477E49BF50A5E3E6685E05F8A4BD2D9238551D5073A6 ] MessagingService C:\WINDOWS\System32\MessagingService.dll
15:21:17.0702 0x1294  MessagingService - ok
15:21:17.0721 0x1294  [ D41920FBFFF2BBCBBC69A5B383AD022E, E66218A8303422EA10C19BA12343740B9A1A70B11B39E185E805B4F74CD2B75E ] mlx4_bus        C:\WINDOWS\System32\drivers\mlx4_bus.sys
15:21:17.0738 0x1294  mlx4_bus - ok
15:21:17.0741 0x1294  [ 64BD0C87064EA20C2D3DC4199F9C239C, ED69706277A58ED2C5F2B1B4E9A4A9C7C20173D46EB57FB31D8B63340BA23193 ] MMCSS           C:\WINDOWS\system32\drivers\mmcss.sys
15:21:17.0747 0x1294  MMCSS - ok
15:21:17.0750 0x1294  [ 8D4B46FA84A3A3702EDADD37FAC6EDBA, E3B9E12BD324FE637C365FDC5E490C41889047004D4FC8F7D78339484F2F717B ] Modem           C:\WINDOWS\system32\drivers\modem.sys
15:21:17.0759 0x1294  Modem - ok
15:21:17.0761 0x1294  [ 78FEC1BDB168370F131BFBFEA0A04E9D, E07B1BC429C2CFBD6162F89A6502C67A4BAD904ADC05D3505D87A0B2BCE1061B ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
15:21:17.0768 0x1294  monitor - ok
15:21:17.0771 0x1294  [ D1CC0833CFBC4222A95CAA5D0C8C78FF, 54F04374C6D3EFF5C1B794C069870458F10757E5773AEE911957089EAF51EC8D ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
15:21:17.0778 0x1294  mouclass - ok
15:21:17.0780 0x1294  [ C2E05EC6B80BCF5AE362DA873E1BCE64, 4ABE5CA2005A54E92259EDB52205A5C59BDB83026FC0CD7CBB1E3A003C2B535B ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
15:21:17.0787 0x1294  mouhid - ok
15:21:17.0789 0x1294  [ D5B7668A8F6C67C51FA5C6C513396D6C, 35985AD89344A8464BD78B8DA6A772E4E60A2EB93072AC23673A86EFD0B2270A ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
15:21:17.0797 0x1294  mountmgr - ok
15:21:17.0801 0x1294  [ FC9A9C09B35A93F76A03D5E355FA862C, B7ED57B9D39D547BA2927FC5F02C2475BF131FDB8AD40FFDE72C966506756B56 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
15:21:17.0807 0x1294  MozillaMaintenance - ok
15:21:17.0810 0x1294  [ 5FBCB85D127BE21E3A9DAF11A13C00EA, D00AB99CC813E26B0BD2D39161D4138AB89A06B3E3A28712F2D5BCA60905BEC4 ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
15:21:17.0818 0x1294  mpsdrv - ok
15:21:17.0832 0x1294  [ 0B28F2ACE5103586D322AD98FAA01309, CE3053DEB6E452C6DCDFD371CF113EB0D740DED6C1C537CB749D1BE5E97FAB09 ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
15:21:17.0857 0x1294  MpsSvc - ok
15:21:17.0861 0x1294  [ BF6CA7EA5ECD6CF72D3D76652A9B8280, 8EC031D0D8E75CB583B129CBA518701097697498621307108388FA05FBF604BB ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
15:21:17.0871 0x1294  MRxDAV - ok
15:21:17.0879 0x1294  [ 0B3B0C1D86050355676640488FA897D3, DBED9D6F7AAFB11F4C00C1F69DB7A887A3058E5FA66615A1640242439822B60C ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
15:21:17.0891 0x1294  mrxsmb - ok
15:21:17.0897 0x1294  [ 1A490555FD330CA2764D89191177C867, 1004AE2F80BEA9A6DBA3E6B5D2DDFA44FBA253F7137D60B000B094699DE1CB12 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
15:21:17.0910 0x1294  mrxsmb10 - ok
15:21:17.0915 0x1294  [ 0F47A6C09F0A7FB5513D322A2B9BE4EC, 00A17CB55D232E11F3D24D0B43FE4FA9E55F7EF5E5607B26ED84C13108AAC4FA ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
15:21:17.0924 0x1294  mrxsmb20 - ok
15:21:17.0928 0x1294  [ A4411C522D41707D5BCA817A5BB9E30B, EF7505BE475ECAB2B5E66A7419EDAF42A7E7A65BAD3BBE346A8CEE5DD69782CC ] MsBridge        C:\WINDOWS\system32\drivers\bridge.sys
15:21:17.0937 0x1294  MsBridge - ok
15:21:17.0941 0x1294  [ 807A6636828E5F43C10A01474B8907EE, F275645F4F0D0A796C33C03EA7FA563A0B890AB3A93E5F99C5EA166F91D249B1 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
15:21:17.0950 0x1294  MSDTC - ok
15:21:17.0954 0x1294  [ D123343DDB02E372B02BF2C4293F835F, 8E02D9F7E5DA717B64538444B3FE1C55AA4B0F26F51DA20947E971D27EA09D12 ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
15:21:17.0961 0x1294  Msfs - ok
15:21:17.0964 0x1294  [ B3358F380BA3F29F56BE0F7734C24D5F, 229D9E72C429AC51BF6E7C8306218620CB1AA50FE39BA6C11ED0F643E7AF90E5 ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
15:21:17.0970 0x1294  msgpiowin32 - ok
15:21:17.0972 0x1294  [ B2044D5D125F249680508EC0B2AAEFAC, 9631FF42DA5A7CEE1F2607AA8972EF0A67616F0EEEBC95F97B1C8F5A577ED5C4 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
15:21:17.0979 0x1294  mshidkmdf - ok
15:21:17.0981 0x1294  [ 36ABE7FC80BED4FE44754AE5CFB51432, FB89DF3A50C52B69D4E831A370157D1901810093A0D7D7120A120FC5C6E14BF5 ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
15:21:17.0988 0x1294  mshidumdf - ok
15:21:17.0990 0x1294  [ 59307FEAFC9E72EEEC56B7FD7D294F4C, 56576635870FC68980977FFA0E7F8E8D69A7981DECF5B52D0B2A82E3BA6685EA ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
15:21:17.0995 0x1294  msisadrv - ok
15:21:18.0000 0x1294  [ 236A38F5CB0A23BF0ACCD70ED0BD7F70, 8106B528458E6C8E4437D9064D58F10FF195E67CD308AEBBD5F860AD2D59DCC4 ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
15:21:18.0010 0x1294  MSiSCSI - ok
15:21:18.0012 0x1294  msiserver - ok
15:21:18.0014 0x1294  [ E9457EDFEBC774199F907395C6D09CA2, C3655CE83F4AD1258382722E9A99C33FDD3AA40B62CFEB8DFDD141E254E6DCE2 ] MSKSSRV         C:\WINDOWS\system32\DRIVERS\MSKSSRV.sys
15:21:18.0021 0x1294  MSKSSRV - ok
15:21:18.0024 0x1294  [ C85D79735641D27C5821C35ECDDC2334, C1BAFD98122B04665870171C143EC119181351D10777A83680A63BF305703FF3 ] MsLldp          C:\WINDOWS\system32\drivers\mslldp.sys
15:21:18.0033 0x1294  MsLldp - ok
15:21:18.0035 0x1294  [ EF75184B64356850D0F04D049C253526, 325476F53372BD70201347F044C8EFEC0DB939E1926454B6DCC0CF7864969650 ] MSPCLOCK        C:\WINDOWS\system32\DRIVERS\MSPCLOCK.sys
15:21:18.0043 0x1294  MSPCLOCK - ok
15:21:18.0045 0x1294  [ 543933D166C618E7588EA77707EC1683, 84A65D277E28FDD7CE2345188891093AC88B577E4C528AD39AB629E341199688 ] MSPQM           C:\WINDOWS\system32\DRIVERS\MSPQM.sys
15:21:18.0051 0x1294  MSPQM - ok
15:21:18.0058 0x1294  [ 182711E9DDF70121A20EBB61B2DFB9E8, 70606503F6280EA3175B9AEC8370A8F461575755DA86EF6E9C9D04EAD61481FA ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
15:21:18.0070 0x1294  MsRPC - ok
15:21:18.0073 0x1294  [ E887FFDD6734C496407E9219225CB6FF, 0EC9A79224BCE5D0A782E62CC38E3494E8FB65DFC07C66D25C5A1A351121C27D ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
15:21:18.0080 0x1294  mssmbios - ok
15:21:18.0083 0x1294  MSSQL$ASUSHOMECLOUD - ok
15:21:18.0085 0x1294  [ 8E8E74C953EB0C4F8828D99D6F27FD6F, 94AFB1B09A6E92302D29B3C563B1744CECC5F5487418962BE537B7C57717CA42 ] MSSQLServerADHelper100 c:\Program Files (x86)\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
15:21:18.0090 0x1294  MSSQLServerADHelper100 - ok
15:21:18.0092 0x1294  [ 83A2AB75951000D681FABDB80C07AEFC, 3B2F582F097E3F934C4587B27CB05525350F36924B74CA6BCD364878FA8EC273 ] MSTEE           C:\WINDOWS\system32\DRIVERS\MSTEE.sys
15:21:18.0098 0x1294  MSTEE - ok
15:21:18.0101 0x1294  [ 4FA0483896FC16583851EFB733FCB083, BB59243ABE32FBE92EC1B04D24239BE2DF7C2354A407C2EFF97623F07DCBDA35 ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
15:21:18.0108 0x1294  MTConfig - ok
15:21:18.0112 0x1294  [ 60F88248608315E13391C2F1C3B4473F, 99E8B74118A01FC281A1C6B323EFD1A8EA1997B81A013442205066F55327D555 ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
15:21:18.0119 0x1294  Mup - ok
15:21:18.0122 0x1294  [ 218705233D02776AE4D19CC37D985C1B, 3D92925867B6B8FFAF78E4080139DCB3D45E1E6E1D0AFB6A4FE248B002BD8471 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
15:21:18.0128 0x1294  mvumis - ok
15:21:18.0139 0x1294  [ AA4CD20708B7E0412A5316D7E2875103, 4E60A0865B7656735F3AB34AF5FE48304138F47DE961D4D16661617D711DEBC0 ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
15:21:18.0156 0x1294  NativeWifiP - ok
15:21:18.0160 0x1294  [ A340A4B27CC7DEDDF953B7E2C9699747, 4C5AB23BD0C69B17E9BD29CAFEDC100A6EFC78BAB645B007FCAE4318C459D345 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
15:21:18.0171 0x1294  NcaSvc - ok
15:21:18.0178 0x1294  [ 24146738C422814EEB2A98FF1FC5C6E1, 3C70C6768681CE63DED339822EFB36194037B987D92456B9E955061A3A3C63BC ] NcbService      C:\WINDOWS\System32\ncbservice.dll
15:21:18.0192 0x1294  NcbService - ok
15:21:18.0195 0x1294  [ 476466DC3AB2327E2DBFAEC11798E2EE, 9ACD74720664CF3F239601DF0BE80AC443AF0FBF666CBB8509169364FB22B95D ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
15:21:18.0208 0x1294  NcdAutoSetup - ok
15:21:18.0211 0x1294  [ B57CE307DA101C739885B7CC0678077F, F7F45DB6D306060F0FE0E59F39C3B95F6A9B6173930F22C5C41B2003895D6642 ] ndfltr          C:\WINDOWS\System32\drivers\ndfltr.sys
15:21:18.0218 0x1294  ndfltr - ok
15:21:18.0245 0x1294  [ E582DA849A58524E645545FB68B6625D, B74E2CF078F6C575EFC4A2E4293D03FE6BA933307D656E0E57FFA17EF324948D ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
15:21:18.0268 0x1294  NDIS - ok
15:21:18.0271 0x1294  [ 202260E7CDD731A32AF62ABD1ABEE008, 0E019FAE09B2659CC3267756DB962CCD69172BA67E3288B491F7B455287A5392 ] NdisCap         C:\WINDOWS\system32\drivers\ndiscap.sys
15:21:18.0279 0x1294  NdisCap - ok
15:21:18.0282 0x1294  [ A1D473D0CF10561F29B58EA7C5412A92, 3DBFC1D769E03E30C87FF4F30A9B523A69A7E0CD4EB87F8A9ECE190FEB84C569 ] NdisImPlatform  C:\WINDOWS\system32\drivers\NdisImPlatform.sys
15:21:18.0293 0x1294  NdisImPlatform - ok
15:21:18.0295 0x1294  [ 1A0AE283B8DE6BB76412A0F8213D45AC, 91AFFDC7A9277EB59CD54021049BEA715078F90470B8A12F3E9F1386DF068D2D ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
15:21:18.0304 0x1294  NdisTapi - ok
15:21:18.0306 0x1294  [ A74EE2D2C0BFF5EC3A6185791868C4CA, A346320DEBEAE890575B4C6594FB3A3A9890A0E86881ADD8376E442282C88D38 ] Ndisuio         C:\WINDOWS\system32\drivers\ndisuio.sys
15:21:18.0314 0x1294  Ndisuio - ok
15:21:18.0316 0x1294  [ 32A9BD1342640D48AD85C8B3E812B984, B702B05A0180472139B35B105DD3B6B6F75AEDC9DD1EE342FB576259076455AE ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
15:21:18.0323 0x1294  NdisVirtualBus - ok
15:21:18.0328 0x1294  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] NdisWan         C:\WINDOWS\System32\drivers\ndiswan.sys
15:21:18.0340 0x1294  NdisWan - ok
15:21:18.0344 0x1294  [ 6A6A8CF5EE61801375A38EBB871D4057, AE8EFF18D82BBE83101B380189A6889822891A993EB865E2E81C1D2F60B77C4C ] ndiswanlegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
15:21:18.0356 0x1294  ndiswanlegacy - ok
15:21:18.0359 0x1294  [ 50AEF8EF0064A91ABB08D858D039C9DE, 16F1CBE1EC3778D157CC054261068C8D7F8A72D85853CB70178F8DF81D238C8F ] ndproxy         C:\WINDOWS\system32\DRIVERS\NDProxy.sys
15:21:18.0367 0x1294  ndproxy - ok
15:21:18.0371 0x1294  [ D358DF634F52247CB43F0781218F4D6E, D375E9E681551467FC5F7AB2AC053C9F22AAC541C0BCBA57090211F45009342C ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
15:21:18.0380 0x1294  Ndu - ok
15:21:18.0382 0x1294  [ 026618ECF6C4BEBDCB7885D42EC0DBE4, 8E7E13361DCF8748FA3AD518B3DE0A3DCE932316EE32E5529E75785BC5395AD1 ] NetBIOS         C:\WINDOWS\system32\drivers\netbios.sys
15:21:18.0389 0x1294  NetBIOS - ok
15:21:18.0396 0x1294  [ F51C02D992A8D6BC5EC4D990F227D4C7, DBBDA422BFA82219403689637BE8D6B0D0A893895143E807FA5A007C166454CB ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
15:21:18.0408 0x1294  NetBT - ok
15:21:18.0411 0x1294  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] Netlogon        C:\WINDOWS\system32\lsass.exe
15:21:18.0418 0x1294  Netlogon - ok
15:21:18.0422 0x1294  [ 7FD4C3D32DAE890608F44074A3437CD8, 5B7D9E9AEE26896B818F3C5DBE4C96A33D43CE2CF7716B95AAB7203611C03BFE ] Netman          C:\WINDOWS\System32\netman.dll
15:21:18.0436 0x1294  Netman - ok
15:21:18.0446 0x1294  [ A059F75402710535A90A8D043674A514, E98536DF74A2B75FDBA6B866DC1909544292DFE5E14F984941470FBA6E8D810C ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
15:21:18.0465 0x1294  netprofm - ok
15:21:18.0471 0x1294  [ 9C6EE1DE9CF7B77FF550A737816EB6DB, 586D561E1A318778668D148B8367D1F7452E770D1743ED5F8EE6EAB03DB31916 ] NetSetupSvc     C:\WINDOWS\System32\NetSetupSvc.dll
15:21:18.0482 0x1294  NetSetupSvc - ok
15:21:18.0488 0x1294  [ 9E9BEB22644CE1DA521A1D7821BF891F, 5480D52AE1942205B513F916DBCBF5B5F2FFF92D927F4E598FBA618E75BBC2E9 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
15:21:18.0495 0x1294  NetTcpPortSharing - ok
15:21:18.0498 0x1294  [ 2BB62723C835F75F0C7C9E6A736881FB, CBA690F5205BE8AE1E8ED8A47BC1594E05391DAC30AAEE0A055366F24602346C ] netvsc          C:\WINDOWS\System32\drivers\netvsc.sys
15:21:18.0507 0x1294  netvsc - ok
15:21:18.0511 0x1294  [ 44A55A80E99C9EBED345D1D58602EC58, 2FC83271C50340DB0F5DE8CF56B4B6E7E598E37444821A64999B2C4AAC8C8363 ] NFC_Driver      C:\WINDOWS\system32\drivers\NFC_Driver.sys
15:21:18.0515 0x1294  NFC_Driver - ok
15:21:18.0521 0x1294  [ 0FB83658FBB2C5A18AB98C5C94DB9FAF, 2D15A49F47D8185D7914D26916D1237FCBE2F8351A64877CDDDDE26E766C3D2F ] NgcCtnrSvc      C:\WINDOWS\System32\NgcCtnrSvc.dll
15:21:18.0533 0x1294  NgcCtnrSvc - ok
15:21:18.0545 0x1294  [ 7AAA9916AA10F4B0E9743798A5BA6549, 2E38EEF3F487A7DD0B719A048FFA0EB36B2487A1068BB322553E9DD2FCE46711 ] NgcSvc          C:\WINDOWS\system32\ngcsvc.dll
15:21:18.0566 0x1294  NgcSvc - ok
15:21:18.0572 0x1294  [ 1B8F07B59F7DAE02264FB8A16088C467, 1795DA9F72C34A9F47D9AAF5E95D40C3296948EB89D9600679AB4660671A5C65 ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
15:21:18.0588 0x1294  NlaSvc - ok
15:21:18.0591 0x1294  [ 465DC580170CD844206D7E3EF1DBF2A1, 5A14001029BE154C708CCA34449B280905DB79978FC7F0BE0CF20B20E47752CF ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
15:21:18.0600 0x1294  Npfs - ok
15:21:18.0612 0x1294  [ 49697C2C761ACB5C0DE99CC8FE93E95B, 02EEA7FB21D28B235A05FE0A6061170F366470EF6E45C9B21D7C8C0E7C728FC5 ] NPF_devolo      C:\WINDOWS\sysWOW64\drivers\npf_devolo.sys
15:21:18.0616 0x1294  NPF_devolo - ok
15:21:18.0618 0x1294  [ 29395C214D2CD4C81F73166AB988A797, 3631EB2EA17E455ECD151C0BC9A3DF6EC87C75B15DC9B607CFB68D7C463E04B7 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
15:21:18.0625 0x1294  npsvctrig - ok
15:21:18.0627 0x1294  [ AF8B7848E102A83AAECCD24B181CEBE5, B2AAE3567EE3A7975CDFCB3FE41D33C74D4486BFF35FF56E0516A01C744BA52B ] nsi             C:\WINDOWS\system32\nsisvc.dll
15:21:18.0634 0x1294  nsi - ok
15:21:18.0637 0x1294  [ 2871225495F832A8C8A7DD1A17EDB3DC, 2F6664C7F5FB2341B2AAF3C5A258FA0D7AEEE447562D7F39FD5A4EE905C18C6D ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
15:21:18.0644 0x1294  nsiproxy - ok
15:21:18.0676 0x1294  [ 19BD8A88AAC580592668B070AC0727D9, 60DB84895C40E6412BEB2D0E4D7F05891446B9DE992D70579CC90BA3FB27FC01 ] NTFS            C:\WINDOWS\system32\drivers\NTFS.sys
15:21:18.0721 0x1294  NTFS - ok
15:21:18.0724 0x1294  [ 6DBD703320484C37CEA9E4E2D266A8CE, 85D6F73C0E3FDE16829C9BC0D13DD89E64183EAE02F84607F6B8440CB7F366E6 ] Null            C:\WINDOWS\system32\drivers\Null.sys
15:21:18.0730 0x1294  Null - ok
15:21:18.0735 0x1294  [ 604D27CC38CC23493F218D0BB834B3FF, EF5E5759CCF16DD97271C82DAF47FB2086EBCA5DE7D05177B70CA1197B95F41E ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
15:21:18.0743 0x1294  nvraid - ok
15:21:18.0747 0x1294  [ 8B50D897657AB4A15FD9E251BBF7D107, 36036130DD46D9BF105AC7176E219F3BE7D1168A660A0F8DFF76F61FBFA4B417 ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
15:21:18.0756 0x1294  nvstor - ok
15:21:18.0759 0x1294  [ 31F990B2B6B91E9D7A667405CE12FCB1, 907E095D1E83CDAFF34BE789FC41CDD7BB4DEE23261E1D03C1CF0D4D030534AC ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
15:21:18.0767 0x1294  nv_agp - ok
15:21:18.0773 0x1294  [ 7F3A0D052B8E00E730316210B1DD092F, 14BD026EA759F6C81ED6B4DBB04E0584B7F6456725503FC73CD4347B7743005F ] OneSyncSvc      C:\WINDOWS\System32\APHostService.dll
15:21:18.0789 0x1294  OneSyncSvc - ok
15:21:18.0803 0x1294  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
15:21:18.0818 0x1294  p2pimsvc - ok
15:21:18.0826 0x1294  [ 4A5634915AF62C983E08425905D0C04C, 09BC3F7AD9F79C5FF59520933D06FE155AC21CD0ABAFE66B81C9F87D83A2339F ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
15:21:18.0841 0x1294  p2psvc - ok
15:21:18.0845 0x1294  [ 7D0FC96264C0F8F2C1321E33E8EB646C, 82A06437B9B096BCCF5CE31BDF3539696E2E41DFA9870C358566EEE2F7D3B447 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
15:21:18.0853 0x1294  Parport - ok
15:21:18.0857 0x1294  [ 24AC0FD10325FBC2303B29A5F237AEB0, D94B26A36EBE4EFE8EA270FA6600811206830480BE953809F74FAB80628DF879 ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
15:21:18.0864 0x1294  partmgr - ok
15:21:18.0874 0x1294  [ 0ECA2ADD5FBCE73183A68935C71B40B7, 08CC5F2F10D1DD1A1396CC29196314003491D3AF3DE59CADB281F252577F1860 ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
15:21:18.0888 0x1294  PcaSvc - ok
15:21:18.0895 0x1294  [ CFFE69B6C276A3418687109EA8AC9E7D, A516B2F4BFB0CD8B38219E3BF783C0BD99CD9EA1BACBE2284987F6DC0976BD36 ] pci             C:\WINDOWS\system32\drivers\pci.sys
15:21:18.0906 0x1294  pci - ok
15:21:18.0908 0x1294  [ 2B4D98DF0CA57FB9536DBC80D2449D1F, AB34FA8585A20854369C0FAEB18BF5C7734D7E3C791F644B0576E40D609FCD09 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
15:21:18.0914 0x1294  pciide - ok
15:21:18.0918 0x1294  [ F4D5793BF2E58AF15C6CF2FEEF9E73EB, 9B5A40AF8838063F8F0A2B1480B39A2711AAE78BD972CDA60CCA0EB2BA211A87 ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
15:21:18.0926 0x1294  pcmcia - ok
15:21:18.0928 0x1294  [ 22A53744CEEADFFFD33BA010FAD95229, 30B775EC9795105B8BF785BD63115C160955E7EFF74B995D3EC288138D1825A3 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
15:21:18.0935 0x1294  pcw - ok
15:21:18.0937 0x1294  [ 67B9684B8272D5EBD1CCBB1DBD425EC8, 09BE2A2EB3A71E594D08B8D817820965DEEAD283029EBB0B74CCC658A2706233 ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
15:21:18.0944 0x1294  pdc - ok
15:21:18.0980 0x1294  [ DFEF059EBBDC137DD242326EB67770C7, FEA245E7316A0567D4A0930F96C502BCB37350C80742F3FFEA668512EC5B9225 ] PDF Architect 4 C:\Program Files\PDF Architect 4\ws.exe
15:21:19.0017 0x1294  PDF Architect 4 - ok
15:21:19.0035 0x1294  [ 82AA78BB5365D76F5D9EF4A978BFEF5A, C5A99C748E1E43134CEADEF89CD439E411465242741241B38BA99032710D84A7 ] PDF Architect 4 CrashHandler C:\Program Files\PDF Architect 4\crash-handler-ws.exe
15:21:19.0051 0x1294  PDF Architect 4 CrashHandler - ok
15:21:19.0065 0x1294  [ 462724DA4AD38C159F8AFDB8F6A55BE2, 189F5C1B470DF6EAF9E02A8E294FA3B33DBCAD36695C6C17747B1D56FE8FC78D ] PDF Architect 4 Creator C:\Program Files\PDF Architect 4\creator-ws.exe
15:21:19.0080 0x1294  PDF Architect 4 Creator - ok
15:21:19.0096 0x1294  [ 08DAD53D89403158FC493FABAE217773, 833BF76818B984FE26A87A8DB75BA15A1143C9FCC0BBB5A8708656C7C09D6A28 ] PDF Architect 4 Manager C:\ProgramData\pdfforge\PDF Architect 4 Manager\PDF Architect 4\Architect Manager.exe
15:21:19.0113 0x1294  PDF Architect 4 Manager - ok
15:21:19.0125 0x1294  [ E2F8376F9731D12A009C522036C6073A, 5B8B68D3C013AAA8ED368C97042984C35E8D023542DBA404E7A03E89F2357E66 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
15:21:19.0148 0x1294  PEAUTH - ok
15:21:19.0178 0x1294  [ C7D210982B6C8454E52191D0DCF6DC52, D53D575CD9A0AB7EA94E7D1B9730ABE0A582CA3460AEAC4680D01034D69D3949 ] PeerDistSvc     C:\WINDOWS\system32\peerdistsvc.dll
15:21:19.0225 0x1294  PeerDistSvc - ok
15:21:19.0229 0x1294  [ 1398A85E59698067CBBE1D66A9C13ADF, E3609F183068BFAED756B2F9237181D60A6F6D78691248B8BF5B0AEB6A367E3D ] percsas2i       C:\WINDOWS\system32\drivers\percsas2i.sys
15:21:19.0236 0x1294  percsas2i - ok
15:21:19.0240 0x1294  [ 35F7C7AD709D909D618D9EDF987FC3ED, EE713E33688E74C5A2546CC58EBD8EA8F8116F25E42DCF8DA21DCBC7C7590E0E ] percsas3i       C:\WINDOWS\system32\drivers\percsas3i.sys
15:21:19.0245 0x1294  percsas3i - ok
15:21:19.0248 0x1294  [ 0DAF7B7D85F7AF38E29161460899C63F, F2609F2BD02C714857F5D5E6EF580643429C54E175AA72D38467F8F3A4E7F59F ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
15:21:19.0256 0x1294  PerfHost - ok
15:21:19.0271 0x1294  [ 57606281E23B0F53347527691E947B2B, 7030182E706CEBE6BD52BDC71CA8F2230AD445AE6554188E76F09A5E2612BD2E ] PhoneSvc        C:\WINDOWS\System32\PhoneService.dll
15:21:19.0293 0x1294  PhoneSvc - ok
15:21:19.0299 0x1294  [ 04F7878E7017105AB782353231561749, FB2811D98216720D4FDF0AC0EDF16C6CD33D7224B4CAFA752B4D2A839E6DD88A ] PimIndexMaintenanceSvc C:\WINDOWS\System32\PimIndexMaintenance.dll
15:21:19.0311 0x1294  PimIndexMaintenanceSvc - ok
15:21:19.0339 0x1294  [ A546F72EFFE5CBBC98003A0CA19DA0F8, 89AE396676A37D851F46427E421E8E8ED5B4BADC33023F1E215CC352A4110F44 ] pla             C:\WINDOWS\system32\pla.dll
15:21:19.0379 0x1294  pla - ok
15:21:19.0384 0x1294  [ BDBD132ECB9FC08F8E2490BB8F62F9ED, F1574179393D1408568EC463311679E702BDAC904FAB85B47983AF3544C96064 ] PlaysService    C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe
15:21:19.0388 0x1294  PlaysService - ok
15:21:19.0391 0x1294  [ 15BA68662CED4B0618010A54478E18E5, 1B913BFA7AA11F3A82D80E95FC4857B810D341F9E68545710F90EBE44DAC1DF8 ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
15:21:19.0404 0x1294  PlugPlay - ok
15:21:19.0406 0x1294  [ 6BF7093B27EA90FD9222845D19C1BE5F, CF8A6764BB6B369258F21FD303E4CAE08632195620A0BD66B62F62F5D7B762B8 ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
15:21:19.0414 0x1294  PNRPAutoReg - ok
15:21:19.0420 0x1294  [ 334131C162B118EF49930D41B0E17825, 10EF08870B6E118AED2E0E3F45E06BA8A485439823BE98F44E34E7D2B65AA2EF ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
15:21:19.0435 0x1294  PNRPsvc - ok
15:21:19.0443 0x1294  [ 5A91C28F99043215121499257468C4BD, 816D2AEBA29B8A050747E01CE11EB12A05C1CDDF91835C44BBB6A7B9D348B15A ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
15:21:19.0459 0x1294  PolicyAgent - ok
15:21:19.0463 0x1294  [ AE3B1056FC1795F18D990C4908A6ECBF, 1C41F7714EBF54DF358D9B19D6AFE7281D3EABE20038B568A12031B76E1D50D9 ] Power           C:\WINDOWS\system32\umpo.dll
15:21:19.0473 0x1294  Power - ok
15:21:19.0476 0x1294  [ 5BA6B9AD03B81546BA64E488C4EF9D17, C43442577685FA1A7C32094B2F14FC92BA6B511FD9FDBA6FD82473A1B165FC61 ] PptpMiniport    C:\WINDOWS\System32\drivers\raspptp.sys
15:21:19.0486 0x1294  PptpMiniport - ok
15:21:19.0535 0x1294  [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify     C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
15:21:19.0612 0x1294  PrintNotify - ok
15:21:19.0617 0x1294  [ 21AECFF3EB5748CBE12538A2500EFDE5, A1679F21363E99E3698B9C6F7E7E3BB2877D47089BC381AF0C51B1DD8B24325B ] Processor       C:\WINDOWS\System32\drivers\processr.sys
15:21:19.0625 0x1294  Processor - ok
15:21:19.0632 0x1294  [ 7E0078F1EFEB6F8F47CF85C1D73C7EBC, 831BC3CE72F29AD259DEE7121D6F785CE0A8462CFB69DD7FB1F3BDAF16CDBF3E ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
15:21:19.0647 0x1294  ProfSvc - ok
15:21:19.0651 0x1294  [ 596FB6C5A72F34B7566930985E543806, 870B43783DB4CF845FA72BC5E40CE76BE6DFC66FE9E9B4B0A52D6B7FE7EA65FC ] Psched          C:\WINDOWS\system32\drivers\pacer.sys
15:21:19.0659 0x1294  Psched - ok
15:21:19.0665 0x1294  [ E84F66BA185934C166F8DF0FA8F88455, 2E0380E98DA29B3F43FB3FE0E1ECA52B3C9AEF54CE982D5514F70FAE81758449 ] QWAVE           C:\WINDOWS\system32\qwave.dll
15:21:19.0678 0x1294  QWAVE - ok
15:21:19.0681 0x1294  [ CFBA9C976CBF6796E5DC39EF59984021, A1C956AD828FC70ED92D702516E0F88A4BDAF8C93C571D7CA20F1695FD8E70C2 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
15:21:19.0688 0x1294  QWAVEdrv - ok
15:21:19.0690 0x1294  [ 7B2AD8C55217B514C14281AB97B4E21D, A1E295897B864B9C0177FF1C502EB060084A1783C0E7E53636291F901C2E2AA8 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
15:21:19.0697 0x1294  RasAcd - ok
15:21:19.0700 0x1294  [ E15A9CE1E2E7D1C8DF97A4FC1FFE6289, 44B53418D6BC51ACC567CF6917A0981889B44AE420489C9C03F5A30418B37267 ] RasAgileVpn     C:\WINDOWS\System32\drivers\AgileVpn.sys
15:21:19.0710 0x1294  RasAgileVpn - ok
15:21:19.0713 0x1294  [ D60BA4C76D194472D6602FF3D2D51ADE, 01272663897685C75FFBC3F1C0CFDB8D0E1A58182049E0B607D634536A8F6400 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
15:21:19.0722 0x1294  RasAuto - ok
15:21:19.0725 0x1294  [ E3C82823B22463BC38AA4F8ADA852624, FF601B117F4003E2CC65B6143C2A270331EB257EE82B3BC020247D1AB1CD625F ] Rasl2tp         C:\WINDOWS\System32\drivers\rasl2tp.sys
15:21:19.0734 0x1294  Rasl2tp - ok
15:21:19.0745 0x1294  [ 3655D86C5E2982B131FC0935DE24F98F, 0386B31FECDDED77450609A807097B2307361CB59B236DEC41037BDC95897463 ] RasMan          C:\WINDOWS\System32\rasmans.dll
15:21:19.0768 0x1294  RasMan - ok
15:21:19.0771 0x1294  [ 3369023EB5790A75BA7DABA14B75D922, 36B63D5B74FDC932AAF1A876514024602D2F3EAF2CA33D1247CBA1E52FDB0418 ] RasPppoe        C:\WINDOWS\System32\drivers\raspppoe.sys
15:21:19.0781 0x1294  RasPppoe - ok
15:21:19.0784 0x1294  [ 1E32A8CD65C4AD0A827CFEB13034DA29, 5D9A92E13020D994CCD39F701BACAFE2177A40A9CC89649441B91E3F3DECD911 ] RasSstp         C:\WINDOWS\System32\drivers\rassstp.sys
15:21:19.0793 0x1294  RasSstp - ok
15:21:19.0801 0x1294  [ 2B648363E4C5E34B469C58596F377DD9, 30F82770468BBA562CEA0E9E39B24ACEFBE022343D0180C82E2ACE8957B73E44 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
15:21:19.0814 0x1294  rdbss - ok
15:21:19.0817 0x1294  [ D0221C13960E274CC539D72D5A842ED0, A5A961506B9D7429D97D0635FD69E74736C0E8405487E1D22BB5CD978A60044C ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
15:21:19.0824 0x1294  rdpbus - ok
15:21:19.0828 0x1294  [ 1DC2CC74B51E4DC4CD5A20C1021E4010, 46B7D17EE27439F2191504D1C6F6C70B2540BD4F2261DBB1F4BE783BEA99B04C ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
15:21:19.0838 0x1294  RDPDR - ok
15:21:19.0841 0x1294  [ 177DF954D0DEC0465A380C75F6E7F65F, 6B30C78223029BD5DBA586BF961968F85762209BA55CD031460A215B20F93AB2 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
15:21:19.0848 0x1294  RdpVideoMiniport - ok
15:21:19.0853 0x1294  [ 5D1680871054D2B0B8A971BC8AB3B837, 9CAB0B2E3857829D34A82A78B120D07E292D4D5060168D964295EB23339B7DE7 ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
15:21:19.0862 0x1294  rdyboost - ok
15:21:19.0877 0x1294  [ 341E6830DA70F65730300DAB4CB0B490, 341EC8DB5E39963EF89E726F08730AFB2356C3BAD71CCE9EECCAB4D9B31C4863 ] ReFSv1          C:\WINDOWS\system32\drivers\ReFSv1.sys
15:21:19.0900 0x1294  ReFSv1 - ok
15:21:19.0910 0x1294  [ 8355BCA85B0928382DFCDD02FCD1681A, F306F038DA09C8D2095C311818E2F991B55BCD96B40B95D2A53A60EA6AC37014 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
15:21:19.0929 0x1294  RemoteAccess - ok
15:21:19.0933 0x1294  [ 2C82F4DCABAB389CEBB1C9E86C715C9C, 70354621D3D467616A419A818C54D2C89EA013C5050BA9944E3A7A4F25CAD6BA ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
15:21:19.0946 0x1294  RemoteRegistry - ok
15:21:19.0963 0x1294  [ CFF943806EBAD5CFAC26FD3DF304E79F, 4992AFB7CE3E2117A11B97FD92ED2EC02183D461F89179B6EA42C8F5AC973374 ] RetailDemo      C:\WINDOWS\system32\RDXService.dll
15:21:19.0993 0x1294  RetailDemo - ok
15:21:19.0999 0x1294  [ AEEF76F938188EBF27DF70C1806877F2, 08560C5DE13EBC46EE77F369E92B89350135D5E01A2AF61AA2EA46BEC41EEDD6 ] RFCOMM          C:\WINDOWS\System32\drivers\rfcomm.sys
15:21:20.0009 0x1294  RFCOMM - ok
15:21:20.0012 0x1294  [ 176D8470B15CD9080861594F9A33FA01, CFB66D7FEB9465985C2866D64EA03B7E7BE830DCF6C02B3FE2244D7F7E5343E2 ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
15:21:20.0020 0x1294  RpcEptMapper - ok
15:21:20.0023 0x1294  [ 1A563653DAEDFE4CA81936E0D2FD8B56, 308B0DFEBA63333D407093C449A08ABFECE118C9274100809356BDAF7FA32EB6 ] RpcLocator      C:\WINDOWS\system32\locator.exe
15:21:20.0030 0x1294  RpcLocator - ok
15:21:20.0044 0x1294  [ B339861C6A2A86FBCA67C2006B461473, 228ADC8A8603C0A4342C6CBC6F2CC919271D42391365061AF660E0D7151C66A4 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
15:21:20.0070 0x1294  RpcSs - ok
15:21:20.0073 0x1294  [ 0AC5FCDC29ED97ECDEF1276425EE2059, 8A12D1732D4AA18A9ED8416F4D4A49B81CE7C4C86ABCEE8FF28A16EA61993CFE ] rspndr          C:\WINDOWS\system32\drivers\rspndr.sys
15:21:20.0083 0x1294  rspndr - ok
15:21:20.0085 0x1294  [ 044890BB0D6CF1E23C1087234D320509, FA6C79D24BE4ACCFAC617D2850B922BFAA7C2766AE625C725F3ACF43C934EFAF ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
15:21:20.0091 0x1294  s3cap - ok
15:21:20.0094 0x1294  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] SamSs           C:\WINDOWS\system32\lsass.exe
15:21:20.0101 0x1294  SamSs - ok
15:21:20.0104 0x1294  [ 530F797129776AA7E81994783A97E2AD, F131EF036702C6E741E5A6851AE07E81043CE8BAEED0768838C0F31CE14FEC1A ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
15:21:20.0112 0x1294  sbp2port - ok
15:21:20.0117 0x1294  [ 0C12493B333B96797AFC5F3C7831C051, BEE786D7ED14221B1A9450060597393AC44116D776B913E045B5F6066D720F74 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
15:21:20.0131 0x1294  SCardSvr - ok
15:21:20.0135 0x1294  [ 40110802D217FE1CB581D9A70B1FD16F, CCB920593CCC6663676039F3F731536DFEF535C3F715F6DB6F34D0D733BEF89B ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
15:21:20.0148 0x1294  ScDeviceEnum - ok
15:21:20.0151 0x1294  [ 9B6B1D4DB35A3D9BEAF023BC95E1F49D, CA44124CA3E9958FB77A891CD234A993B63E8AC6632AE801CDEC6666267E7C7E ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
15:21:20.0161 0x1294  scfilter - ok
15:21:20.0176 0x1294  [ EA195B8BC11C1CDB313CFD456EFFA0E9, EEDF349C59ED0645B04040707906BB4496527243858C2A6BE46BE7029B4A7F37 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
15:21:20.0204 0x1294  Schedule - ok
15:21:20.0209 0x1294  [ 4E9158CECF77A029AB98E8FBB43FCED5, AFF8BDB8F8F8DDF4FC0D65712E031DC360856CD3CE5C8A4C8FF960388F37462F ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
15:21:20.0222 0x1294  SCPolicySvc - ok
15:21:20.0228 0x1294  [ B24408471C1BCB17FC44F5B47EA8DEA3, 1CFE07C793F2A3D883E9071B8703C01A7619C8C0A02AAEBAA1130F36654AFD4F ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
15:21:20.0237 0x1294  sdbus - ok
15:21:20.0241 0x1294  [ 811EC0B1221402FCED0BA37E112BF627, 366EB8AF04C603BED6CF53652CC937099B247D5DD8C58D699D0D8DA22F8FDD51 ] SDRSVC          C:\WINDOWS\System32\SDRSVC.dll
15:21:20.0252 0x1294  SDRSVC - ok
15:21:20.0255 0x1294  [ DE6D7DC78D956928F59F7415A0F41E13, C0F8EEED29BF63A0D8FB5A0286C1C768BFEF598EC52715D910B5BB1A76231805 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
15:21:20.0262 0x1294  sdstor - ok
15:21:20.0265 0x1294  [ EBD07BD20B5E0E92A398566EF8720F79, 8A88C861D4113B9938C32CBD28FD3D7F1C3133E700E23E17F5DFD7B26CCDA04A ] seclogon        C:\WINDOWS\system32\seclogon.dll
15:21:20.0273 0x1294  seclogon - ok
15:21:20.0276 0x1294  [ B7B9EEBCB7466338403A75D15AC120D7, B8F79DA71F8CD0F30983F7D92B625A431C212DD543DE2B3DC03EC5A68C41B00D ] SENS            C:\WINDOWS\System32\sens.dll
15:21:20.0286 0x1294  SENS - ok
15:21:20.0307 0x1294  [ D14DD7D766664F880FECF44CE6017966, ECF966E3ACF4EBD5A3259468A076619A539E35F1B97AB6A98FBD7882F1FBBBAB ] SensorDataService C:\WINDOWS\System32\SensorDataService.exe
15:21:20.0345 0x1294  SensorDataService - ok
15:21:20.0352 0x1294  [ 45D26646E3AD737E5DE3DB91CCCE7DBA, B05AB32700998C8347BC5797B18EB97F303FCB2302BED852348F2703DEDE72F9 ] SensorService   C:\WINDOWS\system32\SensorService.dll
15:21:20.0366 0x1294  SensorService - ok
15:21:20.0371 0x1294  [ 7363A65C738F5A5292D7BDBE55D8C3C2, C53C10A0AE58613DFCC91E62E004D9B188E4793C2A19B4BE871A705EEE77048E ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
15:21:20.0382 0x1294  SensrSvc - ok
15:21:20.0384 0x1294  [ 67585C295FF2D221679E376B68893B35, 4B5E9A8DA8C6F7B1F7129F80A0603503D467E5650306FB4C309977D74037E46B ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
15:21:20.0391 0x1294  SerCx - ok
15:21:20.0395 0x1294  [ B8C4852CBCAAC1374C08EC7445443824, DDE577A81B3E11B5B56096317BC47AA6E286573042407B96A9D29BE981F3FA4D ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
15:21:20.0404 0x1294  SerCx2 - ok
15:21:20.0406 0x1294  [ D3A103944A8FCD78FD48B2B19092790C, 252DB8395DA8639E748658D3BE7863C1700E27AA5C41BB700CFCE193FE3F04E9 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
15:21:20.0413 0x1294  Serenum - ok
15:21:20.0416 0x1294  [ 249A563C48DFD9E42A37587653E003BB, D022FAE2B7AC9D99B9F230A4DF0B045891588162587E1F468B5E05C8DA98AA9A ] Serial          C:\WINDOWS\System32\drivers\serial.sys
15:21:20.0424 0x1294  Serial - ok
15:21:20.0426 0x1294  [ 0F5B43074AE731D2C6F061241C9D84A6, 05CFEB30A4FC11441552D37687608C8C2FD6DC2F2266AE9D6526753E26283DE6 ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
15:21:20.0433 0x1294  sermouse - ok
15:21:20.0442 0x1294  [ CD90E445F6458512A5BA884D561EFCF1, E792FAB8AFF4126C1977024060842D788A06475139782896AFD7B39C85FCDF3F ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
15:21:20.0457 0x1294  SessionEnv - ok
15:21:20.0460 0x1294  [ D9FE59276BD56A9643C32D5FACE2F251, 591862D868A545F468496DE97DEE42C9DB3AFBFC0881CBA79EB6641A254AF033 ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
15:21:20.0467 0x1294  sfloppy - ok
15:21:20.0475 0x1294  [ F8083C536BEDE61AFB4069D8A8C16DA7, 13AADAD7B5582911B8ABBE0CF7132CC517F7413A361CCF8ED502F803D061FFA3 ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
15:21:20.0491 0x1294  SharedAccess - ok
15:21:20.0502 0x1294  [ AE6E4D3172FBF45B944668CB3998B8A8, E7D7F98CB464C236A17069987F7B678D7688D9D577334151EF09DF5C6F22AFFC ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
15:21:20.0527 0x1294  ShellHWDetection - ok
15:21:20.0530 0x1294  [ ABBE803FE0BDAE0E5BE74DDEFBE62F23, 5009F489F7A6D66628C23A0FA3D7632399D0AD72BD11A1B70D7E768ED507377D ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
15:21:20.0536 0x1294  SiSRaid2 - ok
15:21:20.0539 0x1294  [ 6043DF55CFE3C7ACF477645FA64DEA98, 0E18EF8EC589841BC319C17FBABA7383FD247C9441ABF64A0D830976F3E611AE ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
15:21:20.0545 0x1294  SiSRaid4 - ok
15:21:20.0554 0x1294  [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
15:21:20.0563 0x1294  SkypeUpdate - ok
15:21:20.0566 0x1294  [ B922D32039A3B5991E64429EC4EE52A9, 5EB7EB1F6D2C25F06044D8CA9F3BA0471FB40C8C96432BDC2C80CC36DC49BA0B ] smphost         C:\WINDOWS\System32\smphost.dll
15:21:20.0577 0x1294  smphost - ok
15:21:20.0587 0x1294  [ F07301C282AA222C33F8C28B4F545275, 2938943A3A62B33C8296DF3B57897D32293F5395A5E2A01C76B0160A98C12520 ] SmsRouter       C:\WINDOWS\system32\SmsRouterSvc.dll
15:21:20.0607 0x1294  SmsRouter - ok
15:21:20.0611 0x1294  [ 0B6BECB2651EF947249CDC3715E8B9CC, EB7281AF3529DE16FE8CD0C0C0C8877641865A5864D58628DBAB865B510B0D0B ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
15:21:20.0619 0x1294  SNMPTRAP - ok
15:21:20.0629 0x1294  [ 1A6CB30F0EFC1632E6F1B852CA892583, 0E6BDCEE837AEC3D02C437478143C75550C94A50E36895DDB095F54A2FA18E2A ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
15:21:20.0644 0x1294  spaceport - ok
15:21:20.0647 0x1294  [ E1C158F6C00359278727A2CEE5D2ED71, 1591F942C6DD99D3BA7FD4D72D957864117B2263F205468A15F1D1417C6F799D ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
15:21:20.0653 0x1294  SpbCx - ok
15:21:20.0666 0x1294  [ D1241DFC397FA8CCFB4BB4B63AAD31AC, F8C57C2F7CA8B6D8FEE1505A143A3FECF502C8DCFFC375F9C8848A87D9714C9E ] Spooler         C:\WINDOWS\System32\spoolsv.exe
15:21:20.0689 0x1294  Spooler - ok
15:21:20.0779 0x1294  [ 7C58AFEC26E9F7730A8AA7FD40225937, 546EAD8889F2A1BB6DCCB7781976B975F34DA1C9047F95FEAA52CF38EC60C6DD ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
15:21:20.0888 0x1294  sppsvc - ok
15:21:20.0900 0x1294  [ C04D8EFB3906A8B1718ABD7FD21B2918, 870E248B77C034D4FAB5E3572B5AEFCE34D696C2F927FA8D0A507A096AAD0DA3 ] SQLAgent$ASUSHOMECLOUD c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\SQLAGENT.EXE
15:21:20.0911 0x1294  SQLAgent$ASUSHOMECLOUD - ok
15:21:20.0918 0x1294  [ 7F37589E64A7C35AB67D0D8C8F53652B, D389FDF5CF7F4926BFDE966E2E92FAE3AFE5C0ACBDAB40E74A1B5D9F3525101E ] SQLBrowser      c:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
15:21:20.0926 0x1294  SQLBrowser - ok
15:21:20.0931 0x1294  [ F98DDFBFE0EE66D4C4B00693512B9527, 322FF75D1CA460368FD72ADCD93273F1D5AA5CF2C4DF65A94BF9ABAA2E695150 ] SQLWriter       c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
15:21:20.0936 0x1294  SQLWriter - ok
15:21:20.0944 0x1294  [ ACC1709EC7FE6EB8999DBC91C50C2B34, 83ABF51751A264291C53A32B86239A607361E56CB045CD2CBE6E41DBB8A01F54 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
15:21:20.0959 0x1294  srv - ok
15:21:20.0970 0x1294  [ AFBCFC946FAE7483E27BD316D03F94A5, CC9478EA717E85C38304957E923997821DFE2A995D7C8DF98C15267D952BEFBE ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
15:21:20.0991 0x1294  srv2 - ok
15:21:20.0996 0x1294  [ 107C1EBE79710E4A759449BD6604245A, 963D693F4E61EDC7B3AA9006CC274D56E577CE0035A61DDB2A6DE72116D5C52B ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
15:21:21.0007 0x1294  srvnet - ok
15:21:21.0013 0x1294  [ 8C1786C073A496B8C0C8A5450A4FFD5B, 13BF3B42A63CE6C461259D4CE767FB0DE1F10433512A11D2B2C033E36E652542 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
15:21:21.0026 0x1294  SSDPSRV - ok
15:21:21.0031 0x1294  [ 217A982201052EFC8C3C0C88D229791C, 11509E3446ED7B75C9A05CDC4A7AF18926CB463E0D98BAE1CD5DB43E88F94F90 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
15:21:21.0044 0x1294  SstpSvc - ok
15:21:21.0058 0x1294  [ 9DA3B55B17B54789AFB8C657D4ACE4D7, 5E4599E682327E3B8097A88A69ED73F96254A29054744D5DFB782054863F131E ] ss_conn_service C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe
15:21:21.0072 0x1294  ss_conn_service - ok
15:21:21.0112 0x1294  [ 58863C57E4598C4F9DA967C5C36CFA5D, BB34FBC324E84E05128258CE3755241ECB63F7F2AE7F96716AC373931FAF92A8 ] StateRepository C:\WINDOWS\system32\windows.staterepository.dll
15:21:21.0175 0x1294  StateRepository - ok
15:21:21.0190 0x1294  [ BE826A247D22F2FDF24B92AD40049F89, 06996ECCE5A694DEFDC99DB56F45DD0ABD9A2150581F1FD132FBBD863C474DE3 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe
15:21:21.0205 0x1294  Steam Client Service - ok
15:21:21.0208 0x1294  [ CCDA497C880AD16D87EDFAEFCFB2EDF5, 622599AA35ACFF0375DA252210BE42E7E90F30EDFEFF2F62FDB14AE6E45B5F88 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
15:21:21.0214 0x1294  stexstor - ok
15:21:21.0226 0x1294  [ 75476CAA8FA0A4E573948CDE8C7F0304, 68C4405CACA77AEED71761875A9AF60BCFBDD39E356BEA1BA8226E099BAA5FA4 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
15:21:21.0246 0x1294  stisvc - ok
15:21:21.0250 0x1294  [ BF8EA6FC3358C2F69678E3E94F764F84, D274DAD7B5756DD49CA44277C73497F1EC465C8E365CC730CD194932C3825920 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
15:21:21.0258 0x1294  storahci - ok
15:21:21.0261 0x1294  [ 32FF460DA8C1F370F5C08B7654899B73, 0C9D5D38D033109BA672ABAFEF0F0CD295E9FFA108ACFCA9044429D9B2CA9057 ] storflt         C:\WINDOWS\system32\drivers\vmstorfl.sys
15:21:21.0267 0x1294  storflt - ok
15:21:21.0270 0x1294  [ CC21DB3EF619B9480FE31A4EFE92CBEB, 256EFCA2F231F41D34250E1460BF88894D943EAE83A0B153FCADE700AB4DE11E ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
15:21:21.0277 0x1294  stornvme - ok
15:21:21.0280 0x1294  [ 390B8A75768E2689586539C224520895, D72F52E6D7AC5DC318FF9C1DF1F4E8A435D65B6BB59D7F1642222EC026BC54DB ] storqosflt      C:\WINDOWS\system32\drivers\storqosflt.sys
15:21:21.0287 0x1294  storqosflt - ok
15:21:21.0298 0x1294  [ FE42F8A07885E518ED1E846C93E4B78C, 264B21A5E07654F159A3E324F3B38A8C11AF619F61B5779A46367DD99EBD00A6 ] StorSvc         C:\WINDOWS\system32\storsvc.dll
15:21:21.0319 0x1294  StorSvc - ok
15:21:21.0322 0x1294  [ 770A92D9D3A0BF61C97C3AFCB36847D9, 21A8CC3F8E63B971C4FF8DDED5C7032E093A7B0F16E2128A9BD2E890BA76A1D9 ] storufs         C:\WINDOWS\system32\drivers\storufs.sys
15:21:21.0328 0x1294  storufs - ok
15:21:21.0330 0x1294  [ 736A2418E3E7F3DB3CF6EB0A55D1D581, 2D3BBC4E0C7B51EDE7479A978E4BCD5F47A7257745179F01D2D9ECFD83CCCC82 ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
15:21:21.0337 0x1294  storvsc - ok
15:21:21.0339 0x1294  [ FA8F6E3AD3F92B35D2673CC9FD20429C, 62F81CBACF7E16FEF9DE3BE95FA5C9BDB51BAE4667AE5AE71399864A390FF6D5 ] svsvc           C:\WINDOWS\system32\svsvc.dll
15:21:21.0350 0x1294  svsvc - ok
15:21:21.0352 0x1294  [ BD98B0225BCD49E8A62F4F8EE1D1F613, CDAD11969B2DA417079547724BECC3DB4FC4711B3C01590EB0D02774B69B6D90 ] swenum          C:\WINDOWS\System32\drivers\swenum.sys
15:21:21.0358 0x1294  swenum - ok
15:21:21.0366 0x1294  [ 22E539A9B96C66A713583EC017562616, 210DA61DFC7AA9AD23277D9CC0239B781F4EABD322D0803AEC9434D68B81FABD ] swprv           C:\WINDOWS\System32\swprv.dll
15:21:21.0387 0x1294  swprv - ok
15:21:21.0390 0x1294  [ CAE4B27B469C583131EA5AAE622F5D76, 3979006EB22489D1AAD2EC2E9F32C286EEDCDB83B37B97E58BA831263EC33B84 ] Synth3dVsc      C:\WINDOWS\System32\drivers\Synth3dVsc.sys
15:21:21.0397 0x1294  Synth3dVsc - ok
15:21:21.0414 0x1294  [ 34A3EB84B2A830E6F450B8F885AE4E6E, E61AC6D17B815CB71F26D71CA3CCAFD9E66A170E3ED2E64A4F20D097A0C683B5 ]
         
__________________

Alt 04.06.2016, 14:24   #4
Destination
 
Tencent qqpctry eingefangen - Standard

Tencent qqpctry eingefangen



Code:
ATTFilter
SysMain         C:\WINDOWS\system32\sysmain.dll
15:21:21.0447 0x1294  SysMain - ok
15:21:21.0455 0x1294  [ AF2C8D7C1D4DCFD5C31501F009DF42B7, 3DDF9353F014EE99B031BBC969620CA07647FBB8D78EB4697C8D633021B46B11 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
15:21:21.0470 0x1294  SystemEventsBroker - ok
15:21:21.0474 0x1294  [ 6979A147C0D5C5CAB621ADC394D32B80, C30B8E3D271A1591D965559EA4A11A1BE63A34D832ED53B26CE91799C888DF77 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
15:21:21.0486 0x1294  TabletInputService - ok
15:21:21.0492 0x1294  [ 86B62FC8CB89946446F9B24FE49A66FD, 7B095310D1C78B82E5ACAC4713E101DD1323A3CF6FB39218C2E78ABE2B0385B5 ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
15:21:21.0505 0x1294  TapiSrv - ok
15:21:21.0541 0x1294  [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
15:21:21.0585 0x1294  Tcpip - ok
15:21:21.0620 0x1294  [ 083A727D784009F9CCFB120C7841B7AF, 14242ECC3EB17154AD856A2C5229324BA6914291F4E2CD93E6AE251A31130448 ] Tcpip6          C:\WINDOWS\system32\drivers\tcpip.sys
15:21:21.0664 0x1294  Tcpip6 - ok
15:21:21.0669 0x1294  [ 17F37EC9042D84561C550620643D9A85, B01620BA319A1383D403E6E50C7724879520F3267654556D975CAFFF91A82C78 ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
15:21:21.0678 0x1294  tcpipreg - ok
15:21:21.0682 0x1294  [ 91D3F2A6253EF83EFBD7903028F58C4D, C15768CCCF734093B0F8A5E76882B35927B716E4F14D91ACEE897E1C078D43D1 ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
15:21:21.0690 0x1294  tdx - ok
15:21:21.0692 0x1294  [ E730D0EB1B84EBC98423FC8D285EDBC0, 442DD433F9D22304E64EC7ACFC4E04892D4D92D8AC545A3530FC932A2EEC4767 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
15:21:21.0698 0x1294  terminpt - ok
15:21:21.0715 0x1294  [ 14307D4801C8CEF0A615907C09E886B3, C7F34C294D70DE689F673E0B5E9253B27EFEBBE6FA38B68B3B0B0374A896407E ] TermService     C:\WINDOWS\System32\termsrv.dll
15:21:21.0743 0x1294  TermService - ok
15:21:21.0747 0x1294  [ D009D1BC14FD5F2AC93D1878735F6C39, D8BCE505B66E05BC00075E46B38359CA4D0FA484EB7981A74221885E8A1FFB87 ] Themes          C:\WINDOWS\system32\themeservice.dll
15:21:21.0761 0x1294  Themes - ok
15:21:21.0767 0x1294  [ 5F27DE2082E16D4C1D6C627C8ECBD341, 08DA3EB3EF2B2006B6F9F2C8C149DF55DE6738975D556206A814096CAB5C1411 ] TieringEngineService C:\WINDOWS\system32\TieringEngineService.exe
15:21:21.0783 0x1294  TieringEngineService - ok
15:21:21.0792 0x1294  [ 82BC3D304654F8EBEFABDDC2AD70AFE3, 466334A46F6579E7C3F619B15243B270AACE9D04FE06E5228B4759FD619BDDD9 ] tiledatamodelsvc C:\WINDOWS\system32\tileobjserver.dll
15:21:21.0810 0x1294  tiledatamodelsvc - ok
15:21:21.0814 0x1294  [ 7E81E3E0D7F83BFE3C3975020B6C7F12, 316F9415646CC7A4E9A5F1E07310D433457E623B3E589543E4A6C73C4F77712C ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
15:21:21.0825 0x1294  TimeBroker - ok
15:21:21.0830 0x1294  [ 169B0A246067457FEF8A18EED7EED9D5, BF5AC0CB29E1E456253B881CD0608B578D7343E9DFE1738A14598D1DFFE1AB66 ] TPM             C:\WINDOWS\System32\drivers\tpm.sys
15:21:21.0839 0x1294  TPM - ok
15:21:21.0843 0x1294  [ AA84AF93CE5AF1F05838B51D20295419, 85B3EE773C691EEDFA080CD9C59D31CB58A5BC577AEE91A929F5DFBE1368AB6D ] TrkWks          C:\WINDOWS\System32\trkwks.dll
15:21:21.0852 0x1294  TrkWks - ok
15:21:21.0856 0x1294  [ E50DD57F496CED8873FA3E7D38BCCD42, 36B95F6F2CF48078C6B19FB452C87BB07E95C8804A5C6B526D349AC6227CAB26 ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
15:21:21.0865 0x1294  TrustedInstaller - ok
15:21:21.0869 0x1294  [ 48E828C66AB016E48F2CB4DD585315FD, 063809B610F6B177B65D62D12605FB94F108DB26A9FD3067E6D6C51F0D92E774 ] tsusbflt        C:\WINDOWS\system32\drivers\TsUsbFlt.sys
15:21:21.0877 0x1294  tsusbflt - ok
15:21:21.0879 0x1294  [ 267C76EE60736EA5A1811A53FA02AABE, 28D4C4CB972534204B8336D0403B70E4EFE4F8369ABDE7401FFCCF7D4E3EA165 ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
15:21:21.0886 0x1294  TsUsbGD - ok
15:21:21.0890 0x1294  [ 8CE72F094B822AD5EE9C3A3AFC0C16B6, 827CCD849544E1DA364B03DBC82A848D2F93AD32BA14ED52709C609BC70CE5CA ] tunnel          C:\WINDOWS\System32\drivers\tunnel.sys
15:21:21.0901 0x1294  tunnel - ok
15:21:21.0904 0x1294  [ 56C238ACFE4CB020D3E38508249039EA, 172868080F07D98175229A02410FE751B5958ED5A3D567D4AE5736F4025DF432 ] tzautoupdate    C:\WINDOWS\system32\tzautoupdate.dll
15:21:21.0913 0x1294  tzautoupdate - ok
15:21:21.0916 0x1294  [ 42C546414F80BD6C0137FC3A106F8A69, 067FFCAF0059935851888BD984E848E4E1A6CC1941A8F4534067CCF0B2A3B2E6 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
15:21:21.0923 0x1294  uagp35 - ok
15:21:21.0926 0x1294  [ 1686DBC81748B096232B15F16C302985, 63D72D1838C42A95599AF3C0B19A069E310ADB091208011D7D6FBAC968D1A59A ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
15:21:21.0933 0x1294  UASPStor - ok
15:21:21.0936 0x1294  [ 82D3B1F4D80057826AA649D78147DE36, 344A738F6866BFD3095BB802206DDB2F9E9AD89DC39CAA7DE96455F410683829 ] UcmCx0101       C:\WINDOWS\system32\Drivers\UcmCx.sys
15:21:21.0944 0x1294  UcmCx0101 - ok
15:21:21.0946 0x1294  [ 1C95F7CE37D9EFB90EBE987A9712356C, B9EE7743ADA50276F05D735C5C29E44039D630A7DC93766A0EAF400DA037E4AF ] UcmUcsi         C:\WINDOWS\System32\drivers\UcmUcsi.sys
15:21:21.0953 0x1294  UcmUcsi - ok
15:21:21.0958 0x1294  [ AED081772091C98173905E2DF28C223B, 08541CF3354EBB634BD590E0019128F70A6FCA9075B7E785A9E9BD82EC234DD3 ] Ucx01000        C:\WINDOWS\system32\drivers\ucx01000.sys
15:21:21.0968 0x1294  Ucx01000 - ok
15:21:21.0970 0x1294  [ DCA34A111C29E4578DF2B8CEA3C7CDBD, 86BCE4C8EC228724D5896067A85A4768B6069D10A482ECC51A8F828DBD3880C9 ] UdeCx           C:\WINDOWS\system32\drivers\udecx.sys
15:21:21.0978 0x1294  UdeCx - ok
15:21:21.0984 0x1294  [ 718A956AE00CE086F381044AB66CC29C, E4EED1600C72CECE1D4507827C329A93D356BBA027470FCF6C4B5C1651DED643 ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
15:21:22.0000 0x1294  udfs - ok
15:21:22.0002 0x1294  [ BA760F8E66428BA9FF1E8BFBC6248136, BE7DCBB293B12672CB3653E640C46F669BD738D320F34F4FA4A26F6B248561F0 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
15:21:22.0007 0x1294  UEFI - ok
15:21:22.0013 0x1294  [ 28B8E1C6CBCF9FFE2FABFF3160C26ADF, 1C90E6C4E17C9B5555151943970BB6CC196E7EFC6665D9B9DCBB1EC51C70C715 ] Ufx01000        C:\WINDOWS\system32\drivers\ufx01000.sys
15:21:22.0023 0x1294  Ufx01000 - ok
15:21:22.0028 0x1294  [ 2B1DABA97DDF5365FC66EE7DEDD86A13, 2FF3355862938B37EE63FCA149415CE5032BF54747B07517BB21460733B65AD8 ] UfxChipidea     C:\WINDOWS\System32\drivers\UfxChipidea.sys
15:21:22.0035 0x1294  UfxChipidea - ok
15:21:22.0039 0x1294  [ 2A87EA182EA333D79AA0B03833EA67F2, 227792A8B4E63CF60A3DEECF829448C8FD59A40DEF3F42414E432820F8D34F64 ] ufxsynopsys     C:\WINDOWS\System32\drivers\ufxsynopsys.sys
15:21:22.0047 0x1294  ufxsynopsys - ok
15:21:22.0050 0x1294  [ 63451BD694651307254B8DD37A3D79C7, C781E2D876AF42D5972CCDCF86B7A59F6AF8AF0C6350647F3FA1B209119B5EF9 ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
15:21:22.0061 0x1294  UI0Detect - ok
15:21:22.0064 0x1294  [ 6DE78C04BF32ECA7AF3064F53687C9A5, 164D3BB24EBA3EAF613799928063FE75220A4E583D985F53A895017782C18600 ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
15:21:22.0071 0x1294  uliagpkx - ok
15:21:22.0073 0x1294  [ 67D1E0E6E4D5D33AF0AEF0E33B4DA0F4, BA2E6F16B6B3B54C943F1E7B9F79A6D1332A7ED228D754CC5AE70E3CD78B1F37 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
15:21:22.0081 0x1294  umbus - ok
15:21:22.0083 0x1294  [ 11680607944A719EF20E0E740785712A, 1567C2B3AAD702DCC2DC9C6B7B92EE5B681C06701A39DAC3AA7E2BE9E1E04F47 ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
15:21:22.0089 0x1294  UmPass - ok
15:21:22.0095 0x1294  [ FD949725D9EB52C0B87435CDE1134668, 96E2B3D3379E9AE225E5A4C5251207F1E7DA573901F4F026758EDE9FAEF4F2C5 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
15:21:22.0108 0x1294  UmRdpService - ok
15:21:22.0126 0x1294  [ CB902A15DD21B363FECA5DCCF34F5C57, 6A0836A12A410EBD5C667982852B58CA9E9EDB11EA666C413CC0F811E01A549D ] UnistoreSvc     C:\WINDOWS\System32\unistore.dll
15:21:22.0159 0x1294  UnistoreSvc - ok
15:21:22.0174 0x1294  [ B85A8CF2BE74DFF1E80097AC94584112, B1DBACC33A4143FEE2CF54E567590A69580312AD7A053BCC85B487C4D451FBDA ] upnphost        C:\WINDOWS\System32\upnphost.dll
15:21:22.0192 0x1294  upnphost - ok
15:21:22.0195 0x1294  [ 2410A0C20D21A25E6C01979FA886BE90, DD3F92D8CF110D47B9E36BA0EB10EB34C0FDD28FE0D57E4B60F9326703388F75 ] UrsChipidea     C:\WINDOWS\System32\drivers\urschipidea.sys
15:21:22.0201 0x1294  UrsChipidea - ok
15:21:22.0204 0x1294  [ 6E59CE43B6BA5AA1ADCF36A4DBBB92BB, 647D66775A90F67D803043DE8C8AE8BC2F7A042A8DCF9C95BF5458C79609481B ] UrsCx01000      C:\WINDOWS\system32\drivers\urscx01000.sys
15:21:22.0211 0x1294  UrsCx01000 - ok
15:21:22.0213 0x1294  [ E8A59FA109A22FC07E44BDFCC9727DBD, 0DC5928C0FF7E5B38917660D6EFECCC22172DB0BB9B23216F33E750790529C16 ] UrsSynopsys     C:\WINDOWS\System32\drivers\urssynopsys.sys
15:21:22.0218 0x1294  UrsSynopsys - ok
15:21:22.0222 0x1294  [ D8A44550ECE102B6443F5D54DCE7DAB3, 97F5AE7B17DAC4A4F3186C77116BC8E49874FB0018C99D8E2CDA29D89E8B0912 ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
15:21:22.0230 0x1294  usbccgp - ok
15:21:22.0234 0x1294  [ 66B3D22DAB5312FF238ABF5C6D9F8FAB, 4A644AFC1C27D692D352BEB8801398A00EA5B4055476063AF905A0A46DDBF8BB ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
15:21:22.0243 0x1294  usbcir - ok
15:21:22.0246 0x1294  [ 3E4F20DB902D2E2914F3FF3DB9772200, F3D32BE06A26164B5F6E8DB67160D1DBBDC6D14666EEF84EA43C78CB7706E31C ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
15:21:22.0253 0x1294  usbehci - ok
15:21:22.0261 0x1294  [ 41F7F00D76904416EF1F9EFA1A4C37A2, 7A4250EB2E2E0037B3AE1480C13B229ECFF5C575E68E4F934EE011DB1833B46A ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
15:21:22.0275 0x1294  usbhub - ok
15:21:22.0285 0x1294  [ E7463CE8579A0418A98BE9BE42C647D7, 923CD51C82FCF9DC4E9EEA99E53634EE07EBF62FB5DFC337F01309D7D5C7622C ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
15:21:22.0300 0x1294  USBHUB3 - ok
15:21:22.0302 0x1294  [ DAB35CCA86F5FBE77D870A40089BC4A1, 4A47D59D882D0F2B93F2EE7F10995E7D68B58009434E2CBD04C659E0D1F059D8 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
15:21:22.0309 0x1294  usbohci - ok
15:21:22.0312 0x1294  [ 21162F65C7756AAECAEBED9E67D0A5FE, DE3B43964171DB5B0464DA5E7A674A5D200A8695E6EF1AE2030681066ABA2688 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
15:21:22.0318 0x1294  usbprint - ok
15:21:22.0321 0x1294  [ D67B6A4A6FB99D29444C2DBA2B636799, 62BC778D60593B2AB0DA13C4DB3EA5971895AE09DA06E8AB2D03973C940C890C ] usbscan         C:\WINDOWS\system32\DRIVERS\usbscan.sys
15:21:22.0328 0x1294  usbscan - ok
15:21:22.0331 0x1294  [ 4AAD6547953D373A1EB5B2DF583D868B, 4E3DCEC9644550996C314FCC39F885DDE4AA7AD821B8596D96C5BEA5D60795F7 ] usbser          C:\WINDOWS\System32\drivers\usbser.sys
15:21:22.0339 0x1294  usbser - ok
15:21:22.0343 0x1294  [ 8949F77132A4F8F3BA17C6727099F002, 86AD4A2263B34983335180FDAE775D1744E042D2A11300D27DF546F15F285A25 ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
15:21:22.0350 0x1294  USBSTOR - ok
15:21:22.0353 0x1294  [ 8B3E458A8851F9A3B2109B1680EE1159, 753AC8F82F65564F00EA2F60B43E4B815FEAABE0DA35B6356210A5F4B1CA3EFC ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
15:21:22.0359 0x1294  usbuhci - ok
15:21:22.0367 0x1294  [ 9E9D58F5E1702955B2F4D62996F80E8E, 6C21C250B9D98346D0D5CB7D6C11AB120A1D195C28313BDB0CE532663F0114E2 ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
15:21:22.0378 0x1294  USBXHCI - ok
15:21:22.0401 0x1294  [ 2771EBB565F5C121E66060B173991D4D, 1EB34A6262A18E47ADCA392FDB2D58E8428A1CA43EB4196D76A897F74A03CA7F ] UserDataSvc     C:\WINDOWS\System32\userdataservice.dll
15:21:22.0439 0x1294  UserDataSvc - ok
15:21:22.0460 0x1294  [ 36EC82F0E399F36BD25F593D63DC144A, 2A9E916A098ACD5A5074A5FD053ECAB027A0932A348C728F20CD63EF16289533 ] UserManager     C:\WINDOWS\System32\usermgr.dll
15:21:22.0485 0x1294  UserManager - ok
15:21:22.0493 0x1294  [ 05F4CB5991D897E4253BF61FA5E828F8, 25B5B6751B4455491E9A050DF5C12F788B5677F70FB4844E0BF851090AC1F74C ] UsoSvc          C:\WINDOWS\system32\usocore.dll
15:21:22.0509 0x1294  UsoSvc - ok
15:21:22.0512 0x1294  [ 889459F1FDDC5EC58B437AA6C436F33F, 8ACC32C88D81943A8A90FDAF4772C3EDE06CAB5F489F59525BEA7AAB99DAAE73 ] VaultSvc        C:\WINDOWS\system32\lsass.exe
15:21:22.0519 0x1294  VaultSvc - ok
15:21:22.0521 0x1294  [ E1BE37312785A71862516F66B3FD24CE, D248C513DBEACB192653C6E46809209F341771B146544BBF43B86369280B4F8B ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
15:21:22.0527 0x1294  vdrvroot - ok
15:21:22.0539 0x1294  [ 67A6E949395A09914AD8B38FE14B8D15, 593F2FAA880B2E0468F98BD58B5214A170E5890907B25294D7A47C66505A3D45 ] vds             C:\WINDOWS\System32\vds.exe
15:21:22.0563 0x1294  vds - ok
15:21:22.0568 0x1294  [ E42C0F2850735FF9D908B9DB581E6314, E2204A56BF37FC57CD2ED96E3F908882D72B4BFF1BFB97C5172C851F1E4F9650 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
15:21:22.0577 0x1294  VerifierExt - ok
15:21:22.0588 0x1294  [ EC15FD6A28757793E2DA394CD94ABD52, DC758BBEE9C6952D7B3F7171EF67B037B4068E88189A2C4A894122D1D1209468 ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
15:21:22.0606 0x1294  vhdmp - ok
15:21:22.0608 0x1294  [ D0C9632C350F46786643A069251BC249, CF65BA0D3F3D2B821C10E2D4F53F5B6BF6236CA9767419392A561CFA79254C3B ] vhf             C:\WINDOWS\System32\drivers\vhf.sys
15:21:22.0615 0x1294  vhf - ok
15:21:22.0619 0x1294  [ E886CB75DA2B6EB35469EF10135624C7, 3AFC59A0709B984F517A918D5BBEBEB1C80001BEC87C133447DCEAEDE00E516D ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
15:21:22.0625 0x1294  vmbus - ok
15:21:22.0627 0x1294  [ 46D2EC27820EC0F798F85821E53C2942, D298A7D6AC16F76A069F843C8DD323ECB340D361733CB9B076BCDE8FC5F1FEFC ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
15:21:22.0634 0x1294  VMBusHID - ok
15:21:22.0644 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
15:21:22.0661 0x1294  vmicguestinterface - ok
15:21:22.0670 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
15:21:22.0686 0x1294  vmicheartbeat - ok
15:21:22.0696 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
15:21:22.0713 0x1294  vmickvpexchange - ok
15:21:22.0722 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
15:21:22.0739 0x1294  vmicrdv - ok
15:21:22.0748 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
15:21:22.0765 0x1294  vmicshutdown - ok
15:21:22.0774 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
15:21:22.0790 0x1294  vmictimesync - ok
15:21:22.0799 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvmsession   C:\WINDOWS\System32\ICSvc.dll
15:21:22.0817 0x1294  vmicvmsession - ok
15:21:22.0826 0x1294  [ 9AFCCEBFC4D311B62EF0C5457FBB405C, 965736DD97D7BF23AA62D4DFB4563534B252E26C66A3FDD1461024FD2315C53A ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
15:21:22.0842 0x1294  vmicvss - ok
15:21:22.0846 0x1294  [ B9265F47E7A354BAAA0AF5CBA3F8F7CE, F836E7BEDC7CAB1C01225164D171A0210D8F909F52992E4C0BF3C92B365BCD52 ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
15:21:22.0853 0x1294  volmgr - ok
15:21:22.0860 0x1294  [ BEE9C8B72AB752B794F69C2B9B3678AA, 49A5093C26F3CDCD60577F7F2D7F936C7B2BD010B27F2C49A7B6AA41E42DF98D ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
15:21:22.0871 0x1294  volmgrx - ok
15:21:22.0879 0x1294  [ E1F91A727A04C9F8199D04FF3BBBF63C, 076CAEE621DBF7DE24ED92BA239C440879FDB674CF3213DF3E35AEC03D0D2031 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
15:21:22.0891 0x1294  volsnap - ok
15:21:22.0894 0x1294  [ F7B1B1101271E31F43CC76E890704F51, 2282D82B220C3D13FF980ED8E40443C83816D3DA9557EACEA137873F92BB9CF4 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
15:21:22.0901 0x1294  vpci - ok
15:21:22.0905 0x1294  [ D48ED0A08BD2FD25A833E6AC99623091, 6CA7580878D3893E14B4938023A00CDFC9BE215A0CE4ED59A94F95DFD9FDF4D8 ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
15:21:22.0914 0x1294  vsmraid - ok
15:21:22.0936 0x1294  [ 4CF5A1E0C4FCA956ACD6C654E2A8610E, 57F3C7200C25E8717AF92AF2ED7615C6605179D3514B432220FA6EA94CAB4F2E ] VSS             C:\WINDOWS\system32\vssvc.exe
15:21:22.0977 0x1294  VSS - ok
15:21:22.0984 0x1294  [ 6990D4AFDF545669D4E6C232F26DE1FB, 9B8F99A035188FD96BA79E935E8EF387BEA2223ECA0B74CF64AB993DABAA5722 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
15:21:22.0994 0x1294  VSTXRAID - ok
15:21:22.0997 0x1294  [ 1EE11F0508C58EF081F4176E66D6970B, 9069B3FC8850C7CF617909C6DBFC3753FEB59A9E708379CC57190F4097FB374E ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
15:21:23.0005 0x1294  vwifibus - ok
15:21:23.0008 0x1294  [ 938E4EF58E42D252B742B0E243011B90, AC0C21FBAF15924CB271CA43ACB7A86287936C78B4852BCFC59EC7EC703E036C ] vwififlt        C:\WINDOWS\system32\drivers\vwififlt.sys
15:21:23.0018 0x1294  vwififlt - ok
15:21:23.0020 0x1294  [ 3BE5AAC930447FD18D4A8255A2FEC95C, A517357188FE4A5BD98A3CDB2165ACCE96CCE4BE2B90DDBEAF70B6DDF393F506 ] vwifimp         C:\WINDOWS\System32\drivers\vwifimp.sys
15:21:23.0029 0x1294  vwifimp - ok
15:21:23.0038 0x1294  [ 48C1A256591297C43ECFC4E30D144EAA, 8E66833ED2CEB6D7E499EB2E4282B4F9DFA28B6D21757BB88EC52FD069D7FACE ] W32Time         C:\WINDOWS\system32\w32time.dll
15:21:23.0059 0x1294  W32Time - ok
15:21:23.0062 0x1294  [ 00C27B64C758C111E5D78A70DE6CA2B6, C99761B9B671B3A1FF1C52796CCA3F4F825BF50D9657D13B551E849CDD82055D ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
15:21:23.0070 0x1294  WacomPen - ok
15:21:23.0078 0x1294  [ D76D1AC4F2C642D09A68227D129A4726, D14D6C4D94E9660848C74B220359683D91A4A3D70750E781A20B6D86D46794CE ] WalletService   C:\WINDOWS\system32\WalletService.dll
15:21:23.0097 0x1294  WalletService - ok
15:21:23.0099 0x1294  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarp          C:\WINDOWS\system32\DRIVERS\wanarp.sys
15:21:23.0109 0x1294  wanarp - ok
15:21:23.0111 0x1294  [ 8CB53620B2C2F0641DD7563EA0FDF491, D62FE75C908409A54949F0E3C39558DC7A8F11AF7496ED7B0872D80D08CB67A7 ] wanarpv6        C:\WINDOWS\system32\DRIVERS\wanarp.sys
15:21:23.0121 0x1294  wanarpv6 - ok
15:21:23.0144 0x1294  [ 2598BBF11C9E7D0885DCA52E7FD5BCBD, 46B1FB080A2CD88C89A0EB8BA2594A1FA2C341ED77A6C6835CBFFE42907FAC55 ] wbengine        C:\WINDOWS\system32\wbengine.exe
15:21:23.0184 0x1294  wbengine - ok
15:21:23.0196 0x1294  [ 642EFABF900374FA85639D83B5533AFD, 292692D6AAC2A785D237ADFBC7CA3D379E8FC79FA366A8CE7D06F5CA5CE6866B ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
15:21:23.0216 0x1294  WbioSrvc - ok
15:21:23.0227 0x1294  [ 0BF8D8C7EC9FB15D6480A12101E88B71, E7BC6A4E53D8C9D73BF83097DFE43ED8038B7BED0AE56E5AF7983F74562F15A3 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
15:21:23.0247 0x1294  Wcmsvc - ok
15:21:23.0256 0x1294  [ 53A036CED1270F2459E708A05922FD49, 2F281A72E4B0408DE6C8153F5988C9AA38591FB1E72558767D389637D0666A85 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
15:21:23.0276 0x1294  wcncsvc - ok
15:21:23.0278 0x1294  [ 965B6197A659782B6A0F68411A180AAD, 5541AB78B71E4FA655BCBF2D80D574B2A3B4AA8871F65D26620BDE549FA5459A ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
15:21:23.0286 0x1294  WcsPlugInService - ok
15:21:23.0289 0x1294  [ 069D3D6E20AD753B34FCE856F0436869, CF8C12295DDAA56E7350019AADBA533D7857CFB3F20DEE14E557963645A9331B ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
15:21:23.0296 0x1294  WdBoot - ok
15:21:23.0308 0x1294  [ 6CC727E94CD84E9720FDCDA8089CABCC, BCF66056B06DED6BC2D329E910FCD3E685D627BAD3B5D7F4B0E970B45CD9CEF4 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
15:21:23.0325 0x1294  Wdf01000 - ok
15:21:23.0332 0x1294  [ E3E97151A1D1E87BB2D5371F66C5F169, 0ED0B9852FE0533816F5EE2F06045B3964A00FD749A7011DB3C663AB6FA369E2 ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
15:21:23.0342 0x1294  WdFilter - ok
15:21:23.0345 0x1294  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
15:21:23.0358 0x1294  WdiServiceHost - ok
15:21:23.0362 0x1294  [ 75DC67553051103547B693898CB32D08, 4FCF2C3DBBE85461364B1F3A3F3629B52C8664487D30142D15937A4C96EF6A8F ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
15:21:23.0377 0x1294  WdiSystemHost - ok
15:21:23.0388 0x1294  [ 2BC2E99623119521EEF7910A11D0FDE0, 3F3E48A79534F0F65F961D9B170D534562E04901B630127B16DF02E6D42F2BBF ] wdiwifi         C:\WINDOWS\system32\DRIVERS\wdiwifi.sys
15:21:23.0409 0x1294  wdiwifi - ok
15:21:23.0413 0x1294  [ 07B043160399AF4009054E2EA3464BF4, 8D652D7CD75F8FB2B5414155355F0C970015914E1AC6522DBB8387BB8662F542 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
15:21:23.0420 0x1294  WdNisDrv - ok
15:21:23.0422 0x1294  WdNisSvc - ok
15:21:23.0428 0x1294  [ 9972D395DBD05D91DA5EDADEB9325680, 9382D846793F285721A1A0FED42F914035A53D856B902FADB0B7144C471BDA91 ] WebClient       C:\WINDOWS\System32\webclnt.dll
15:21:23.0443 0x1294  WebClient - ok
15:21:23.0448 0x1294  [ B6BF579761489720BCE787F723F596E5, 879B17F6A4F23F5E85A09126B7B407955DDCEB1BA4A8FFC0A418B7F47311C056 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
15:21:23.0461 0x1294  Wecsvc - ok
15:21:23.0464 0x1294  [ 10C9CF8771A2A87F575F9FB56821474E, 15E3DFFE9CF6777F67E426ECF797D2DF743EA152DEE336DCC9C2F92A0E6EB9A3 ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
15:21:23.0475 0x1294  WEPHOSTSVC - ok
15:21:23.0478 0x1294  [ 357C083FE35D030D991D163AAF622A06, F301852D49DBDEF0D28F56CD74CBDC71CA003EBD07D3F46EA5C870DC1BD07896 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
15:21:23.0491 0x1294  wercplsupport - ok
15:21:23.0495 0x1294  [ 2235AF716D15D9DFE4C59DC2AC0C440C, 2DCFCEBEA77E7E40CEF9A785BE1A794B390B36E40FBCF49B494F9CEA3F6A28C4 ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
15:21:23.0508 0x1294  WerSvc - ok
15:21:23.0512 0x1294  [ C11272713719922DE5711094333BD166, 61D4F07E02AECF04964FF51EEA31069A2B0EAA549AD2B29B5FD3E1E6BB543593 ] WFPLWFS         C:\WINDOWS\system32\drivers\wfplwfs.sys
15:21:23.0520 0x1294  WFPLWFS - ok
15:21:23.0524 0x1294  [ 205A1FAE910F5C493D236245850BB62A, DBA4D1D734BAA3CDEB8A7F9C81A8DAA88CEA55AF5C4C5908E76FB8E522C5EC8A ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
15:21:23.0533 0x1294  WiaRpc - ok
15:21:23.0536 0x1294  [ EF536C54AB9281FDC4E83B07279FCFC4, 22E4F133170682EE14413CA8FDC2DBE73AB31960D6ACB728A6B398229FDDFD3B ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
15:21:23.0542 0x1294  WIMMount - ok
15:21:23.0543 0x1294  WinDefend - ok
15:21:23.0549 0x1294  [ D8966A76408107224C6013993135DD78, 6159F69BC26FF817078E68C70E6DFC9075FEBF9EF9F4F046C7A65BC377544AE6 ] WindowsTrustedRT C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys
15:21:23.0556 0x1294  WindowsTrustedRT - ok
15:21:23.0558 0x1294  [ 8B102A7B6CE326FD4208CC7C2D183343, E47C1D76CBFD2A382C3A7BB048D752FB6DD4616FADDEB1C3ADD5DDAE149742AF ] WindowsTrustedRTProxy C:\WINDOWS\system32\drivers\WindowsTrustedRTProxy.sys
15:21:23.0564 0x1294  WindowsTrustedRTProxy - ok
15:21:23.0578 0x1294  [ FFD04E8263FC9CDB89BAD8C27C337223, 7021161D354F1536DA261D001524B92301466631DCFA161A7C6355AAC86BBE40 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
15:21:23.0601 0x1294  WinHttpAutoProxySvc - ok
15:21:23.0604 0x1294  [ 4A53441C1C4D2878BEF27E381138BB2D, C221E74491E6FD2AF472B53876B46788D5CF62F4E645457F3B3816FD0ED2BAA1 ] WinMad          C:\WINDOWS\System32\drivers\winmad.sys
15:21:23.0611 0x1294  WinMad - ok
15:21:23.0616 0x1294  [ 1033C37122C7404C3B926ADF84874832, 163B3A7112F13AE7BB2655A28C6B19AF9B263F2AD2FF1B75314BE3E2B9118903 ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
15:21:23.0628 0x1294  Winmgmt - ok
15:21:23.0666 0x1294  [ 703D0F62C5AA4D08EE8756516C0D125D, 02015A5E62490C11EC968160C528C2AFD1D7194AACA27F407B06EB462657511F ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
15:21:23.0727 0x1294  WinRM - ok
15:21:23.0734 0x1294  [ 260907CE034FE327AC99BDA4153AB22F, B96501F43248713C2E153B9D22B78D51412A3C6989A2FB5F53A406C6CDC98D30 ] WINUSB          C:\WINDOWS\System32\drivers\WinUSB.SYS
15:21:23.0742 0x1294  WINUSB - ok
15:21:23.0745 0x1294  [ 40A3E8D729F458B2C9A8BD9380FF83D5, CD42FFC138969EF8C9588FD113F0B9A98FBA282D46A5B6BCFA765F55ED6E97A1 ] WinVerbs        C:\WINDOWS\System32\drivers\winverbs.sys
15:21:23.0752 0x1294  WinVerbs - ok
15:21:23.0784 0x1294  [ 453740989239803FE363FF8B40EA2E08, 25499705627C38D3431B3C336E0CF3BF55ABB0C461B88DA6D3767CAAE1E2B893 ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
15:21:23.0839 0x1294  WlanSvc - ok
15:21:23.0870 0x1294  [ E48BBF1363F843E030757EC190DD33E6, B37199495115ED423BA99B7317377CE865BB482D4E847861E871480AC49D4A84 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
15:21:23.0920 0x1294  wlidsvc - ok
15:21:23.0923 0x1294  [ 8F010BF65238F3F822D22BA12831796E, 2CA830F259B742D2F5CDD0437960BF512D40FB4A4C2342E3BABB38D468F79694 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
15:21:23.0930 0x1294  WmiAcpi - ok
15:21:23.0936 0x1294  [ 74ACA5A7880C1F0BB9D60E32E1705A70, A89817BCCBFF94D7394614DA81D1C6C4F53AF47A539E674EEF6DC3FC496BF702 ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
15:21:23.0947 0x1294  wmiApSrv - ok
15:21:23.0948 0x1294  WMPNetworkSvc - ok
15:21:23.0953 0x1294  [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
15:21:23.0963 0x1294  Wof - ok
15:21:23.0990 0x1294  [ 4090C6738AA92B428220857B4D44F638, 4A3EE47494051E5BA8393F2AC8226EF434DA3AA1895CF4BADC9BC1BC378647C6 ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
15:21:24.0036 0x1294  workfolderssvc - ok
15:21:24.0040 0x1294  [ 22C52D7EE7C7D0E02C8EFD8CAE8E3A71, 126605A12CEC9CC07DE3050F12E43CECABEAF0D00DF12300AF70F34700F7FE8E ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
15:21:24.0047 0x1294  wpcfltr - ok
15:21:24.0050 0x1294  [ 45FA01F8B7971ACB65202038E34D04A3, 9B2C2ABC7DB716295B0BD0AF04DA08E6B4200D7CF1C7DB59DD8FD8FEBD56D94C ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
15:21:24.0060 0x1294  WPDBusEnum - ok
15:21:24.0062 0x1294  [ 1C08E424CBDD5065BB7266F8C048C1B1, 0452C85EDA6CBAB75C2617886C5D8117ED25D91F1BE0F8377B08D55B6629B028 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
15:21:24.0068 0x1294  WpdUpFltr - ok
15:21:24.0071 0x1294  [ 2C6EEFFBB7FB1C51CCD3737C77AB9109, 8C2ED309FAF4312512E7BCCBBC51B1353603A3499077A1DE21991F0692AF1620 ] WpnService      C:\WINDOWS\system32\WpnService.dll
15:21:24.0079 0x1294  WpnService - ok
15:21:24.0081 0x1294  [ 638B43D39A3D0B47024555CF1095E6F1, C7EA0A6ED227A5256EB02CA76FEC538DF196B8DC38DA2A567757D2B221C9473E ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
15:21:24.0089 0x1294  ws2ifsl - ok
15:21:24.0094 0x1294  [ 9C17CF2D05F8DA5AC66880B6BEE64E7D, 8930079A1AFA97657BE567038EE57C988D3DE9A6C24EA46160E2974837082535 ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
15:21:24.0105 0x1294  wscsvc - ok
15:21:24.0107 0x1294  WSearch - ok
15:21:24.0157 0x1294  [ 6E04BBE242E2889B37300C4DF5CE1126, FBDAEAC62C48A4FC5EF412AE47FF10590AE83E8871412F76F6F9BAE910542DFA ] WSService       C:\WINDOWS\System32\WSService.dll
15:21:24.0219 0x1294  WSService - ok
15:21:24.0253 0x1294  [ 8A88DBA247BFF23BD284C2189F41FDA5, 86A617CB7C7473306DA2889AA30B488ABB9B824F7DCA31AA675DA6EB3974887C ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
15:21:24.0308 0x1294  wuauserv - ok
15:21:24.0312 0x1294  [ A928F25CB62232F413EE655352856E10, 1D2B278A24DDDE8792ADE7649FF90A98E186B79F13AA296C30E4180293BE906A ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
15:21:24.0321 0x1294  WudfPf - ok
15:21:24.0326 0x1294  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
15:21:24.0337 0x1294  WUDFRd - ok
15:21:24.0340 0x1294  [ 1336DA39FE006EAB2733CA4DE5B3560C, F0D6C71ADCB66D4D14EC6D09FD43F5521A3A8CA53F248DFD01696FB4F033BE77 ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
15:21:24.0351 0x1294  wudfsvc - ok
15:21:24.0355 0x1294  [ A932391623D5CEC4EF4A2A17D3CEBFCD, 54AA17F385347DED262BDA84F2D99106DC5D9BF8765D647BD76265356193BDFA ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
15:21:24.0367 0x1294  WUDFWpdFs - ok
15:21:24.0386 0x1294  [ 5DA95027DF2317174E8C39B4A8D1FCD8, 99B356411CB08B8BCCF2348DBF1FD5D4F417EA509D9C7CE23E5877C333F4D304 ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
15:21:24.0418 0x1294  WwanSvc - ok
15:21:24.0435 0x1294  [ 5DFAF8BE5A3CABAABF6795BC09EB7876, 1AFD0BC50EA5C2CCB2874E97FE5205175C80849BD6C9BDAF9FBC49174D478997 ] XblAuthManager  C:\WINDOWS\System32\XblAuthManager.dll
15:21:24.0462 0x1294  XblAuthManager - ok
15:21:24.0480 0x1294  [ 7118498F6E48758A2EF5A7D1982E2B62, 1FF75AE64CB6DB263E8B35515E092B325AA71A6B2210F8F2B0AD087B3BA33345 ] XblGameSave     C:\WINDOWS\System32\XblGameSave.dll
15:21:24.0511 0x1294  XblGameSave - ok
15:21:24.0517 0x1294  [ F279536122B83FD0D8E158AA753E1B7C, 6A542F28E24B30DBDC2EEE24DA33C2F4ADB3596AEDDD71DC1495DD40577CE4BB ] xboxgip         C:\WINDOWS\System32\drivers\xboxgip.sys
15:21:24.0528 0x1294  xboxgip - ok
15:21:24.0544 0x1294  [ 69E727F94BEA64E66C284F3C482F33E6, B3E0F287E7A251E0FC17C41089C45737027E54F0213BDE847356AC882B4D3700 ] XboxNetApiSvc   C:\WINDOWS\system32\XboxNetApiSvc.dll
15:21:24.0574 0x1294  XboxNetApiSvc - ok
15:21:24.0577 0x1294  [ DA0807D87A62D076C29C4E30F1E84F46, CA3079350038091AEE04D4DA7C06865E9DB3095120AE61AAB575AA77E86A6223 ] xinputhid       C:\WINDOWS\System32\drivers\xinputhid.sys
15:21:24.0583 0x1294  xinputhid - ok
15:21:24.0585 0x1294  ================ Scan global ===============================
15:21:24.0588 0x1294  [ 82E25186617BA6C15010F0D47C705705, 5BF9E38918E6EAE86448137E2D120B80318AA1143CDDF539A2BFBEE227646816 ] C:\WINDOWS\system32\basesrv.dll
15:21:24.0593 0x1294  [ E2899695BD30B5F93EC626EBBEF2CB69, B190D2903A109D2C146D881F90769060A0E971942F4AA61AEAD81861032D89C3 ] C:\WINDOWS\system32\winsrv.dll
15:21:24.0598 0x1294  [ 09E92888FFF86F3334E59778724DCA6F, 2344763B52395EF565A9DE5F55BEDCA026AD2E8072FFD06F826BF366B3BA2AB4 ] C:\WINDOWS\system32\sxssrv.dll
15:21:24.0606 0x1294  [ 6FF8248F3A9D69A095C7F3F42BC29CB2, 9077B1AA0AFB8DB329FDED0E51085DE1C51B22A986162F29037FCA404A80D512 ] C:\WINDOWS\system32\services.exe
15:21:24.0612 0x1294  [ Global ] - ok
15:21:24.0613 0x1294  ================ Scan MBR ==================================
15:21:24.0614 0x1294  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
15:21:24.0670 0x1294  \Device\Harddisk0\DR0 - ok
15:21:24.0671 0x1294  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
15:21:24.0960 0x1294  \Device\Harddisk1\DR1 - ok
15:21:24.0960 0x1294  ================ Scan VBR ==================================
15:21:24.0961 0x1294  [ 1FD3580D3308DBB0D984C9AC3024B3EB ] \Device\Harddisk0\DR0\Partition1
15:21:24.0962 0x1294  \Device\Harddisk0\DR0\Partition1 - ok
15:21:24.0963 0x1294  [ F626CB27FF82FCCAFC35D9061720BEC7 ] \Device\Harddisk0\DR0\Partition2
15:21:24.0965 0x1294  \Device\Harddisk0\DR0\Partition2 - ok
15:21:24.0966 0x1294  [ 5A4B7552F0A2605D9F82218FA8895B07 ] \Device\Harddisk1\DR1\Partition1
15:21:24.0997 0x1294  \Device\Harddisk1\DR1\Partition1 - ok
15:21:24.0997 0x1294  ================ Scan generic autorun ======================
15:21:25.0117 0x1294  [ 52A3173C9E3BD923E2408392A4210719, 328A1BFA9A819C2478E6931C20055888542409C4BB5A2C05E59D04E6963C86EE ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
15:21:25.0236 0x1294  RTHDVCPL - ok
15:21:25.0243 0x1294  [ F14327BA386AAA2246585BFADD8FE8E8, 2804D7985B116C808942B4501362D4F4BAE4B540E9A6AC9B176B30DD448BA5AC ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe
15:21:25.0246 0x1294  IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 )
15:21:27.0576 0x1294  Detect skipped due to KSN trusted
15:21:27.0576 0x1294  IAStorIcon - ok
15:21:27.0667 0x1294  [ E7079E1F6631F12750B7708FB8F5D007, E4CB290D7AF6A28C02A26221618B83C29DD86BF9B26460B91FD42F4C7DEE4218 ] C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
15:21:27.0756 0x1294  StartCN - ok
15:21:27.0787 0x1294  [ 08FAF24CE82A0A01AF07800BD4866525, D55AE06C10E278AE6EF322318B84AADE0DF15DB10FF0F3059C185D207E54E98D ] C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\ShareEdit.exe
15:21:27.0815 0x1294  ASUS Media Streamer ShareEdit - ok
15:21:27.0840 0x1294  [ CBAF8873AB45A19F7D51667917CF2166, D5909927B83862E9A72EDFDAE00EC0612FE51DC01F47EDF6E4EDC6348A954B2F ] C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMS\AODMS.exe
15:21:27.0867 0x1294  ASUS Media Streamer DMS - ok
15:21:27.0870 0x1294  [ D38048C0642B2551DB6A793E89643562, F99EA42B7D6E8B739A44C9D30E40D55729E2D136E82D7935BACCB827D053F6F0 ] C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\ASUSWSAgent.exe
15:21:27.0875 0x1294  ASUS Media Streamer WSAgent - ok
15:21:27.0900 0x1294  [ E2FA8AABD8439DF068E57FE4A2EF5D5C, 9D8B721F7CBDEE08A40113FE8DF42C40CE0A2F1F9E53C6DDB028906920F4226C ] C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe
15:21:27.0929 0x1294  ASUS WiFi GO! FileTransfer Execute - ok
15:21:27.0959 0x1294  [ 21AF53232CC69573FA7BA42EBD18B34E, 69715E866AAD453239C6EE167DF876F828C9E0FE0958AF6EAE65FFD0504E9632 ] C:\Program Files (x86)\ASUS\HomeCloud\Wi-Fi GO! AssistTool\S5WOW_App\RtlS5Wake\RtlS5Wake.exe
15:21:28.0006 0x1294  RtlS5Wake Execute - detected UnsignedFile.Multi.Generic ( 1 )
15:21:30.0341 0x1294  Detect skipped due to KSN trusted
15:21:30.0342 0x1294  RtlS5Wake Execute - ok
15:21:30.0345 0x1294  [ 29372F09EF45337713E2127A2F6529D2, 1E5F3CCD00F953423133D842CE97CCB3163B85E48D9A5CFAC37FC3330952998B ] C:\Program Files (x86)\ASUS\WebStorage\2.0.1.213\ASUSWSLoader.exe
15:21:30.0350 0x1294  WebStorage - ok
15:21:30.0366 0x1294  [ F316A9C0C8BBA9D2A98BE70EE0D8CA96, 20C83B6D1706DED7B645008CD29346A5FD14A4F67FCF17FED28E7A17F021E15B ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
15:21:30.0380 0x1294  avgnt - ok
15:21:30.0383 0x1294  [ 57EC74A47981099D5F55B595F73442D3, 2AACEA8A01770685113C3CF0BF3833E14DDEEC2D4FFE82473824EC44C945396F ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
15:21:30.0389 0x1294  Avira SystrayStartTrigger - ok
15:21:30.0398 0x1294  [ D0B1DA5382433AFBF52DE8815298EB0C, A326D01783359CCA1054210D82F17533638A9769A7A08C2BD0621DE016909359 ] C:\Program Files (x86)\ROCCAT\Isku Keyboard\IskuMonitor.EXE
15:21:30.0412 0x1294  RoccatIsku - detected UnsignedFile.Multi.Generic ( 1 )
15:21:32.0741 0x1294  RoccatIsku ( UnsignedFile.Multi.Generic ) - warning
15:21:35.0124 0x1294  [ EB9596C3D95ED4BB59BE1F68CD40CC79, 328A953062FF94B91A1AC30013DC39ECE6EB79B7BC5542C01AA79B71AB440E19 ] C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE
15:21:35.0138 0x1294  RoccatKoneXTD - detected UnsignedFile.Multi.Generic ( 1 )
15:21:37.0467 0x1294  RoccatKoneXTD ( UnsignedFile.Multi.Generic ) - warning
15:21:39.0832 0x1294  [ 41396A5B8D53B23EF02C861BCB2A5553, 6CCCCE51F53188E8D79ECE2EA340797C0634BEC5250EC4A801E1CDB73646705A ] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
15:21:39.0851 0x1294  BlueStacks Agent - ok
15:21:39.0854 0x1294  [ 5B157E747F5C6A98D7AC64597D10B3C5, D1CC7FB409A289BDBEAAD7ADD96D32A0F83014BE4D43CD81696898B067A3E047 ] C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe
15:21:39.0859 0x1294  PlaysTV - ok
15:21:39.0863 0x1294  [ 89E2275225B59A7C7F9F27B9ACF97EAA, E91056142E439F594D5929FC3710C88AE2B1FE5CE1FDD29A64C615741BFE89F8 ] C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe
15:21:39.0868 0x1294  Raptr - ok
15:21:39.0890 0x1294  [ CB8A6B1FC6F8D1BFBD61C543B4E9F105, 3E799F410F772BAA1A1A6F412985DB2F95DC3140CAE6F52F5678AB739F509603 ] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
15:21:39.0911 0x1294  CanonQuickMenu - ok
15:21:40.0027 0x1294  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
15:21:40.0137 0x1294  OneDriveSetup - ok
15:21:40.0248 0x1294  [ 88F8A731DEA7F49D92F84A0A77C5CC67, 030458922DA43AAF6C95EC430860A73032616851E03E58170F71E918720717CB ] C:\Windows\SysWOW64\OneDriveSetup.exe
15:21:40.0356 0x1294  OneDriveSetup - ok
15:21:40.0424 0x1294  [ 341ADA552AAC541FD34C262296C256EE, 32672460EDDD46550955508343904705D8F26E10F713E3CACDC84689567A9ECF ] F:\Steam\steam.exe
15:21:40.0483 0x1294  Steam - ok
15:21:40.0603 0x1294  [ C224456660839CFCAD2CD8DFB293F38B, D99B862217BBF99BF26B78615B3FDC1484607BA0A34E61C445345CD8D49501D4 ] C:\Program Files\CCleaner\CCleaner64.exe
15:21:40.0721 0x1294  CCleaner Monitoring - ok
15:21:40.0734 0x1294  [ 73CD9AE91EB02E76AE19FC4F7A9F1A01, 1DD6C400828E2007B6579A53C6D6233E30242BAD0D58907FA91D317DC885E94A ] C:\Program Files\ASUSTeKcomputer.Inc\SR2\UserInterface\SR2UILauncher.exe
15:21:40.0745 0x1294  SR2UILauncher - ok
15:21:40.0746 0x1294  Skype - ok
15:21:40.0762 0x1294  [ 41396A5B8D53B23EF02C861BCB2A5553, 6CCCCE51F53188E8D79ECE2EA340797C0634BEC5250EC4A801E1CDB73646705A ] C:\Program Files (x86)\BlueStacks\HD-Agent.exe
15:21:40.0778 0x1294  BlueStacks Agent - ok
15:21:40.0810 0x1294  [ D0278FA8947ED54A112893F71917F46A, 11DAD4AFB2704B5AC8ACA88434A5A0C68F119FA6F9694D322F97D1364DDE1FE4 ] C:\Users\Stephan\AppData\Roaming\uTorrent\uTorrent.exe
15:21:40.0842 0x1294  uTorrent - ok
15:21:40.0843 0x1294  Waiting for KSN requests completion. In queue: 11
15:21:41.0844 0x1294  Waiting for KSN requests completion. In queue: 11
15:21:42.0845 0x1294  Waiting for KSN requests completion. In queue: 11
15:21:43.0850 0x1294  AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.17.264 ), 0x41000 ( enabled : updated )
15:21:43.0851 0x1294  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x62100 ( disabled : updated )
15:21:43.0852 0x1294  Win FW state via NFP2: enabled ( trusted )
15:21:46.0211 0x1294  ============================================================
15:21:46.0211 0x1294  Scan finished
15:21:46.0211 0x1294  ============================================================
15:21:46.0214 0x1cf0  Detected object count: 3
15:21:46.0214 0x1cf0  Actual detected object count: 3
15:22:01.0953 0x1cf0  chip1click ( UnsignedFile.Multi.Generic ) - skipped by user
15:22:01.0953 0x1cf0  chip1click ( UnsignedFile.Multi.Generic ) - User select action: Skip 
15:22:01.0953 0x1cf0  RoccatIsku ( UnsignedFile.Multi.Generic ) - skipped by user
15:22:01.0953 0x1cf0  RoccatIsku ( UnsignedFile.Multi.Generic ) - User select action: Skip 
15:22:01.0954 0x1cf0  RoccatKoneXTD ( UnsignedFile.Multi.Generic ) - skipped by user
15:22:01.0954 0x1cf0  RoccatKoneXTD ( UnsignedFile.Multi.Generic ) - User select action: Skip
         

Alt 05.06.2016, 16:01   #5
Destination
 
Tencent qqpctry eingefangen - Standard

Tencent qqpctry eingefangen



Seit dem habe ich jetz immer wieder Bluescreens oder Games stürzen ab ect. ich hoffe ihr könnt mir helfen


Alt 08.06.2016, 10:16   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Tencent qqpctry eingefangen - Standard

Tencent qqpctry eingefangen



Zitat:
C:\Users\Stephan\Downloads\Adobe Photoshop CC 2015 (20150529.r.88) (32+64Bit) + Crack


Zitat:
C:\Windows\AutoKMS\AutoKMS.exe
Berüchtigter activator für Software von MS. Ist denn wenigstens dein Windows legal?


Lesestoff:
Illegale Software: Cracks, Keygens und Co

Bitte lesen => http://www.trojaner-board.de/95393-c...-software.html

Es geht weiter wenn du alles Illegale entfernt hast.

Bei wiederholten Crack/Keygen Verstößen behalte ich es mir vor, den Support einzustellen, d.h. Hilfe nur noch bei der Datensicherung und Neuinstallation des Betriebssystems.
__________________
--> Tencent qqpctry eingefangen

Antwort

Themen zu Tencent qqpctry eingefangen
adware, anti, avira, bluestacks, brauch, canon, datei, daten, deinstallieren, dnsapi.dll, download, eingefangen, entfernen, firefox, gen, komplett, krieg, malware, neu, ordner, programme, software, system, virus, virus malware, wegbekomme, windows, zugang




Ähnliche Themen: Tencent qqpctry eingefangen


  1. Tencent qq, chinesische Zeichen ect. wie kann ich den deinstallieren?
    Log-Analyse und Auswertung - 25.05.2016 (2)
  2. Kann Chinesische Malware Tencent nicht Löschen, habe erfolglos versucht das Problem selbst zu lösen
    Plagegeister aller Art und deren Bekämpfung - 07.04.2016 (20)
  3. tencent win10
    Plagegeister aller Art und deren Bekämpfung - 25.03.2016 (25)
  4. Windows 7: Tencent Technology Shenzhen - ständige Anfrage auf Zulassen von Programmänderung
    Log-Analyse und Auswertung - 14.03.2016 (7)
  5. Tencent Malware entfernen.
    Log-Analyse und Auswertung - 11.02.2016 (18)
  6. Komische Chineschische Zeichen/ Neuer Ordner (Tencent) der scheinbar was damit zu schaffen hat. Löschversuche via revo gehen auch nicht!
    Plagegeister aller Art und deren Bekämpfung - 26.01.2016 (5)
  7. Freeware Virenschutz Programme von Qihoo, Baidu und Tencent
    Antiviren-, Firewall- und andere Schutzprogramme - 08.09.2015 (166)
  8. Trojaner "Tencent"?
    Log-Analyse und Auswertung - 08.06.2015 (15)
  9. Tencent nicht deinstallierbar + AMWB Server nicht erreichbar
    Plagegeister aller Art und deren Bekämpfung - 17.03.2015 (15)
  10. Was hab ich mir da eingefangen?
    Plagegeister aller Art und deren Bekämpfung - 08.07.2013 (3)
  11. RAT eingefangen was nun?
    Plagegeister aller Art und deren Bekämpfung - 06.04.2013 (2)
  12. Hab ich mir da was eingefangen?
    Log-Analyse und Auswertung - 07.03.2011 (26)
  13. Hab ich mir was eingefangen?
    Mülltonne - 26.09.2008 (1)
  14. Hab mir was eingefangen...
    Plagegeister aller Art und deren Bekämpfung - 25.07.2008 (16)
  15. Hab mir was eingefangen
    Log-Analyse und Auswertung - 24.04.2007 (11)
  16. Hab mir was eingefangen!!!
    Log-Analyse und Auswertung - 29.12.2005 (3)
  17. Hab ich mir was eingefangen?
    Log-Analyse und Auswertung - 16.08.2005 (3)

Zum Thema Tencent qqpctry eingefangen - hallo liebe Com. ich bin neu hier und bin leider was Virus Malware Adware ect anbelangt nicht so ausgebildet Ich habe mir bei einem Download ein Chinesisches Program eingefangen das - Tencent qqpctry eingefangen...
Archiv
Du betrachtest: Tencent qqpctry eingefangen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.