|
Plagegeister aller Art und deren Bekämpfung: BrowserModifier:Win32/SupTab!BlankWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
05.11.2016, 20:05 | #1 |
| BrowserModifier:Win32/SupTab!Blank Hallo Liebe Leute! Wie auch schon viele andere von euch, habe ich das selbe problem, windoof zeigt mir die ganze Zeit an, dass potenziell gefährliche software erkannt wurde. BrowserModifier:Win32/SupTab!Blank Da ich nun doch etwas panik habe, bitte ich hiermit um hilfe! Vielen Lieben Dank - Kstarrk Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-11-2016 durchgeführt von CallmeChris (Administrator) auf CALLMECHRIS-PC (05-11-2016 19:59:36) Gestartet von C:\Users\CallmeChris\Downloads Geladene Profile: CallmeChris & (Verfügbare Profile: CallmeChris) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe (Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DTSRVC.exe (Hi-Rez Studios) D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Portrait Displays, Inc.) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\pdisrvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe () C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpCtrl.exe () C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Floater.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Perfect World Entertainment Inc) D:\arc\Arc.exe () D:\arc\ArcChat.exe () D:\arc\ArcOSBrowser.exe () D:\arc\ArcOSBrowser.exe () D:\arc\ArcOSBrowser.exe (Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe (Zemana Ltd.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6470760 2012-05-08] (Realtek Semiconductor) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-10-01] (Microsoft Corporation) HKLM\...\Run: [ZAM] => C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [13823216 2016-10-04] (Zemana Ltd.) HKLM-x32\...\Run: [PivotSoftware] => C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\Pivot_startup.exe [110192 2010-05-13] () HKLM-x32\...\Run: [DT PLP] => C:\Program Files (x86)\Common Files\Portrait Displays\Shared\DT_startup.exe [122384 2013-08-12] (Portrait Displays, Inc.) HKLM-x32\...\Run: [] => [X] ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 217.68.161.141 217.68.161.171 8.8.8.8 Tcpip\..\Interfaces\{CEB992FF-2608-496D-9E78-4B477A26B9DF}: [DhcpNameServer] 217.68.161.141 217.68.161.171 8.8.8.8 Internet Explorer: ================== BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-22] (Oracle Corporation) BHO-x32: ArcPluginIEBHO Class -> {84BFE29A-8139-402a-B2A4-C23AE9E1A75F} -> D:\arc\Plugins\ArcPluginIE.dll [2016-10-21] (Perfect World Entertainment Inc) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-22] (Oracle Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) FireFox: ======== FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2015-10-29] (CANON INC.) FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-22] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-22] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-10-01] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-10-01] (NVIDIA Corporation) FF Plugin-x32: @perfectworld.com/npArcPlayNowPlugin -> D:\arc\Plugins\npArcPluginFF.dll [2016-10-21] (Perfect World Entertainment Inc) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default [2016-11-05] CHR Extension: (ProxFlow) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2016-10-12] CHR Extension: (Google Slides) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-05] CHR Extension: (Google Docs) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-05] CHR Extension: (Google Drive) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-24] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-03-14] CHR Extension: (YouTube) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-26] CHR Extension: (Adblock Plus) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-10-26] CHR Extension: (Google Search) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-31] CHR Extension: (Google Sheets) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-05] CHR Extension: (Google Docs Offline) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16] CHR Extension: (Chrome Web Store Payments) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-06] CHR Extension: (Gmail) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-29] CHR Extension: (Chrome Media Router) - C:\Users\CallmeChris\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-26] ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 ArcService; D:\arc\ArcService.exe [88024 2016-10-21] (Perfect World Entertainment Inc) R2 CIJSRegister; C:\Program Files (x86)\Canon\IJ Scan Utility\SETEVENT.exe [144464 2015-02-19] (CANON INC.) R2 DTSRVC; C:\Program Files (x86)\Common Files\Portrait Displays\Shared\dtsrvc.exe [138768 2013-08-12] (Portrait Displays, Inc.) U2 HiPatchService; D:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2016-10-10] (Hi-Rez Studios) [Datei ist nicht signiert] R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [29728 2016-08-15] (HP Inc.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [387144 2016-02-04] () R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1310960 2016-10-19] (Overwolf LTD) S3 PAExec; C:\Windows\PAExec.exe [189112 2016-05-25] (Power Admin LLC) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [Datei ist nicht signiert] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 ZAMSvc; C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [13823216 2016-10-04] (Zemana Ltd.) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-11-05] (Malwarebytes) R3 PdiPorts; C:\Windows\System32\DRIVERS\PdiPorts.sys [20784 2012-04-16] (Portrait Displays, Inc.) S3 sjcst; C:\Windows\system32\sjcsu64.sys [86352 2015-09-12] () R1 ZAM; C:\Windows\System32\drivers\zam64.sys [203680 2016-11-05] (Zemana Ltd.) R1 ZAM_Guard; C:\Windows\System32\drivers\zamguard64.sys [203680 2016-11-05] (Zemana Ltd.) S2 AODDriver4.01; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [X] S3 MSICDSetup; \??\E:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\E:\NTIOLib_X64.sys [X] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-05 19:21 - 2016-11-05 19:59 - 00074727 _____ C:\Windows\ZAM.krnl.trace 2016-11-05 19:21 - 2016-11-05 19:59 - 00010322 _____ C:\Windows\ZAM_Guard.krnl.trace 2016-11-05 19:21 - 2016-11-05 19:21 - 00203680 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zamguard64.sys 2016-11-05 19:21 - 2016-11-05 19:21 - 00203680 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zam64.sys 2016-11-05 19:21 - 2016-11-05 19:21 - 00001148 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk 2016-11-05 19:21 - 2016-11-05 19:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware 2016-11-05 19:21 - 2016-11-05 19:21 - 00000000 ____D C:\Program Files (x86)\Zemana AntiMalware 2016-11-05 19:20 - 2016-11-05 19:20 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\Zemana 2016-11-05 19:19 - 2016-11-05 19:20 - 05363600 _____ ( ) C:\Users\CallmeChris\Downloads\Zemana.AntiMalware.Setup.exe 2016-11-05 19:15 - 2016-11-05 19:21 - 00000000 ____D C:\Users\CallmeChris\AppData\Roaming\Arc 2016-11-05 19:15 - 2016-11-05 19:15 - 00000391 _____ C:\Users\Public\Desktop\Arc.lnk 2016-11-05 19:15 - 2016-11-05 19:15 - 00000000 ____D C:\Users\Public\Documents\Arc 2016-11-05 19:15 - 2016-11-05 19:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Perfect World Entertainment 2016-11-05 19:13 - 2016-11-05 19:13 - 00437920 _____ (Perfect World Entertainment) C:\Users\CallmeChris\Downloads\ArcSetup.exe 2016-11-05 19:13 - 2016-11-05 19:13 - 00000000 ____D C:\Users\CallmeChris\Downloads\Log 2016-11-05 19:13 - 2016-08-20 00:16 - 10005984 _____ (Perfect World Entertainment) C:\Users\CallmeChris\Downloads\ArcInstall_v20160818a.exe 2016-11-05 18:45 - 2016-11-05 19:40 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-11-05 18:45 - 2016-11-05 18:45 - 00001102 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-11-05 18:45 - 2016-11-05 18:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-11-05 18:45 - 2016-11-05 18:45 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-05 18:45 - 2016-11-05 18:45 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-11-05 18:45 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2016-11-05 18:45 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys 2016-11-05 18:45 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2016-11-05 18:30 - 2016-11-05 18:31 - 00058808 _____ C:\Users\CallmeChris\Downloads\Addition.txt 2016-11-05 18:29 - 2016-11-05 19:59 - 00012184 _____ C:\Users\CallmeChris\Downloads\FRST.txt 2016-11-05 18:25 - 2016-11-05 19:59 - 00000000 ____D C:\FRST 2016-11-05 18:24 - 2016-11-05 18:24 - 02409984 _____ (Farbar) C:\Users\CallmeChris\Downloads\FRST64.exe 2016-11-05 18:17 - 2016-11-05 18:18 - 22851472 _____ (Malwarebytes ) C:\Users\CallmeChris\Downloads\mbam-setup-2.2.1.1043.exe 2016-11-05 18:14 - 2016-11-05 18:15 - 09296344 _____ C:\Users\CallmeChris\Downloads\RevoUninstaller_Portable201.zip 2016-11-05 17:42 - 2016-11-05 17:42 - 06766720 _____ (ESET spol. s r.o.) C:\Users\CallmeChris\Downloads\ESETOnlineScanner_DEU.exe 2016-11-05 17:42 - 2016-11-05 17:42 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\ESET 2016-11-05 17:23 - 2016-11-05 18:42 - 00000000 ____D C:\AdwCleaner 2016-11-05 17:22 - 2016-11-05 17:22 - 03910208 _____ C:\Users\CallmeChris\Downloads\adwcleaner_6.030.exe 2016-11-01 11:48 - 2016-11-01 11:48 - 00000000 ____D C:\Users\CallmeChris\AppData\LocalLow\Cygames 2016-10-30 20:07 - 2016-10-30 20:07 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\OrionGame 2016-10-30 18:14 - 2016-10-30 18:14 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\UnrealEngine 2016-10-30 18:11 - 2016-10-30 18:12 - 40574976 _____ C:\Users\CallmeChris\Downloads\ParagonEpicGamesLauncherInstaller-2.12.14-3176191.msi 2016-10-30 18:11 - 2016-10-30 18:12 - 40574976 _____ C:\Users\CallmeChris\Downloads\ParagonEpicGamesLauncherInstaller-2.12.14-3176191 (1).msi 2016-10-27 19:53 - 2016-10-27 19:53 - 00003763 _____ C:\Users\CallmeChris\Downloads\olofmconfigQSwDGIPn.zip 2016-10-22 21:05 - 2016-10-22 21:05 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\HirezLauncherUI 2016-10-22 21:03 - 2016-10-22 21:16 - 00000000 ____D C:\ProgramData\Hi-Rez Studios 2016-10-22 21:03 - 2016-10-22 21:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2016-10-13 08:15 - 2016-10-13 08:15 - 00001638 _____ C:\Users\CallmeChris\Desktop\cnmigmain - Verknüpfung.lnk 2016-10-13 08:09 - 2016-10-13 08:09 - 00000000 ___HD C:\ProgramData\CanonIJMyPrinter 2016-10-11 19:34 - 2016-09-12 22:17 - 00077032 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2016-10-11 19:34 - 2016-09-12 22:08 - 01226752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2016-10-11 19:34 - 2016-09-09 16:54 - 01629184 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2016-10-11 19:34 - 2016-09-09 16:54 - 00586752 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2016-10-11 19:34 - 2016-09-09 16:54 - 00575488 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2016-10-11 19:34 - 2016-09-09 16:54 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2016-10-11 19:34 - 2016-09-09 16:54 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2016-10-11 19:34 - 2016-09-09 16:54 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2016-10-11 19:34 - 2016-09-09 16:54 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2016-10-11 19:33 - 2016-09-30 21:13 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-10-11 19:33 - 2016-09-30 20:28 - 00346312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-10-11 19:33 - 2016-09-30 16:37 - 05548264 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-10-11 19:33 - 2016-09-30 16:20 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-10-11 19:33 - 2016-09-30 16:20 - 03944680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-10-11 19:33 - 2016-09-30 08:55 - 25765376 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-10-11 19:33 - 2016-09-30 07:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-10-11 19:33 - 2016-09-30 07:40 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-10-11 19:33 - 2016-09-30 07:26 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-10-11 19:33 - 2016-09-30 07:25 - 02895360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-10-11 19:33 - 2016-09-30 07:25 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-10-11 19:33 - 2016-09-30 07:25 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-10-11 19:33 - 2016-09-30 07:25 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-10-11 19:33 - 2016-09-30 07:25 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-10-11 19:33 - 2016-09-30 07:18 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-10-11 19:33 - 2016-09-30 07:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-10-11 19:33 - 2016-09-30 07:14 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-10-11 19:33 - 2016-09-30 07:13 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-10-11 19:33 - 2016-09-30 07:13 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-10-11 19:33 - 2016-09-30 07:12 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-10-11 19:33 - 2016-09-30 07:12 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-10-11 19:33 - 2016-09-30 07:09 - 06048256 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-10-11 19:33 - 2016-09-30 07:05 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-10-11 19:33 - 2016-09-30 07:02 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-10-11 19:33 - 2016-09-30 06:55 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-10-11 19:33 - 2016-09-30 06:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-10-11 19:33 - 2016-09-30 06:54 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-10-11 19:33 - 2016-09-30 06:51 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-10-11 19:33 - 2016-09-30 06:50 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-10-11 19:33 - 2016-09-30 06:47 - 20306944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-10-11 19:33 - 2016-09-30 06:47 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-10-11 19:33 - 2016-09-30 06:46 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-10-11 19:33 - 2016-09-30 06:42 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-10-11 19:33 - 2016-09-30 06:42 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-10-11 19:33 - 2016-09-30 06:42 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-10-11 19:33 - 2016-09-30 06:42 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-10-11 19:33 - 2016-09-30 06:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-10-11 19:33 - 2016-09-30 06:38 - 02286592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-10-11 19:33 - 2016-09-30 06:36 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-10-11 19:33 - 2016-09-30 06:35 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-10-11 19:33 - 2016-09-30 06:35 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-10-11 19:33 - 2016-09-30 06:33 - 00724992 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-10-11 19:33 - 2016-09-30 06:33 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-10-11 19:33 - 2016-09-30 06:32 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-10-11 19:33 - 2016-09-30 06:32 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-10-11 19:33 - 2016-09-30 06:32 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-10-11 19:33 - 2016-09-30 06:32 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-10-11 19:33 - 2016-09-30 06:31 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-10-11 19:33 - 2016-09-30 06:31 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-10-11 19:33 - 2016-09-30 06:24 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-10-11 19:33 - 2016-09-30 06:21 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-10-11 19:33 - 2016-09-30 06:19 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-10-11 19:33 - 2016-09-30 06:19 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-10-11 19:33 - 2016-09-30 06:17 - 02920960 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-10-11 19:33 - 2016-09-30 06:17 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-10-11 19:33 - 2016-09-30 06:15 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-10-11 19:33 - 2016-09-30 06:14 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-10-11 19:33 - 2016-09-30 06:13 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-10-11 19:33 - 2016-09-30 06:12 - 04608512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-10-11 19:33 - 2016-09-30 06:07 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-10-11 19:33 - 2016-09-30 06:05 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-10-11 19:33 - 2016-09-30 06:05 - 01544192 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-10-11 19:33 - 2016-09-30 06:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-10-11 19:33 - 2016-09-30 06:05 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-10-11 19:33 - 2016-09-30 06:03 - 13653504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-10-11 19:33 - 2016-09-30 05:54 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-10-11 19:33 - 2016-09-30 05:46 - 02444288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-10-11 19:33 - 2016-09-30 05:43 - 01312768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-10-11 19:33 - 2016-09-30 05:42 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-10-11 19:33 - 2016-09-15 16:30 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-10-11 19:33 - 2016-09-15 16:30 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2016-10-11 19:33 - 2016-09-15 16:15 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-10-11 19:33 - 2016-09-15 16:15 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2016-10-11 19:33 - 2016-09-12 22:13 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-10-11 19:33 - 2016-09-12 22:13 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-10-11 19:33 - 2016-09-12 22:08 - 01465344 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\adsmsext.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-10-11 19:33 - 2016-09-12 22:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsmsext.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-10-11 19:33 - 2016-09-12 21:49 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-10-11 19:33 - 2016-09-12 21:39 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-10-11 19:33 - 2016-09-12 21:37 - 03218944 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-10-11 19:33 - 2016-09-12 21:32 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-10-11 19:33 - 2016-09-12 21:32 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-10-11 19:33 - 2016-09-12 21:32 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-10-11 19:33 - 2016-09-12 21:31 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-10-11 19:33 - 2016-09-12 21:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-10-11 19:33 - 2016-09-12 21:25 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-10-11 19:33 - 2016-09-12 20:08 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2016-10-11 19:33 - 2016-09-12 19:43 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2016-10-11 19:33 - 2016-09-12 19:43 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2016-10-11 19:33 - 2016-09-10 17:19 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2016-10-11 19:33 - 2016-09-10 16:53 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2016-10-11 19:33 - 2016-09-09 19:29 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-10-11 19:33 - 2016-09-09 19:26 - 00706280 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-10-11 19:33 - 2016-09-09 19:23 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:20 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 19:01 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-10-11 19:33 - 2016-09-09 19:00 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-10-11 19:33 - 2016-09-09 19:00 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-10-11 19:33 - 2016-09-09 19:00 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-10-11 19:33 - 2016-09-09 19:00 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:59 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:51 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2016-10-11 19:33 - 2016-09-09 18:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2016-10-11 19:33 - 2016-09-09 18:51 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2016-10-11 19:33 - 2016-09-09 18:48 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-10-11 19:33 - 2016-09-09 18:47 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-10-11 19:33 - 2016-09-09 18:43 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-10-11 19:33 - 2016-09-09 18:38 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-10-11 19:33 - 2016-09-09 18:38 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-10-11 19:33 - 2016-09-09 18:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-10-11 19:33 - 2016-09-09 18:38 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-10-11 19:33 - 2016-09-09 18:37 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-10-11 19:33 - 2016-09-09 18:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-10-11 19:33 - 2016-09-08 21:34 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2016-10-11 19:33 - 2016-09-08 21:34 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2016-10-11 19:33 - 2016-09-08 21:34 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2016-10-11 19:33 - 2016-09-08 21:34 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2016-10-11 19:33 - 2016-09-08 15:55 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2016-10-11 19:33 - 2016-09-08 15:55 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2016-10-11 19:33 - 2016-08-16 19:47 - 00419640 _____ C:\Windows\SysWOW64\locale.nls 2016-10-11 19:33 - 2016-08-16 19:47 - 00419640 _____ C:\Windows\system32\locale.nls 2016-10-11 19:33 - 2016-08-12 18:02 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2016-10-11 19:33 - 2016-08-12 18:02 - 12574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2016-10-11 19:33 - 2016-08-12 18:02 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2016-10-11 19:33 - 2016-08-12 18:02 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2016-10-11 19:33 - 2016-08-12 18:02 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2016-10-11 19:33 - 2016-08-12 17:47 - 12574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2016-10-11 19:33 - 2016-08-12 17:47 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2016-10-11 19:33 - 2016-08-12 17:31 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll 2016-10-11 19:33 - 2016-08-12 17:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx 2016-10-11 19:33 - 2016-08-12 17:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll 2016-10-11 19:33 - 2016-08-12 17:26 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2016-10-11 19:33 - 2016-08-06 16:31 - 02023424 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2016-10-11 19:33 - 2016-08-06 16:31 - 00347136 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll 2016-10-11 19:33 - 2016-08-06 16:31 - 00310784 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2016-10-11 19:33 - 2016-08-06 16:31 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll 2016-10-11 19:33 - 2016-08-06 16:31 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\WsmRes.dll 2016-10-11 19:33 - 2016-08-06 16:31 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\wsmplpxy.dll 2016-10-11 19:33 - 2016-08-06 16:15 - 01178112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2016-10-11 19:33 - 2016-08-06 16:15 - 00249344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll 2016-10-11 19:33 - 2016-08-06 16:15 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll 2016-10-11 19:33 - 2016-08-06 16:15 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll 2016-10-11 19:33 - 2016-08-06 16:15 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll 2016-10-11 19:33 - 2016-08-06 16:01 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe 2016-10-11 19:33 - 2016-08-06 16:01 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wsmprovhost.exe 2016-10-11 19:33 - 2016-08-06 15:53 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe 2016-10-11 19:33 - 2016-08-06 15:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe 2016-10-11 19:33 - 2016-08-06 15:53 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll 2016-10-11 19:33 - 2016-06-14 18:21 - 00094440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2016-10-11 19:33 - 2016-06-14 18:16 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 01573888 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 01483264 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00680448 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00632320 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00440320 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll 2016-10-11 19:33 - 2016-06-14 18:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll 2016-10-11 19:33 - 2016-06-14 18:11 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys 2016-10-11 19:33 - 2016-06-14 16:21 - 03209216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 01176064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00442368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll 2016-10-11 19:33 - 2016-06-14 16:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll 2016-10-11 19:33 - 2016-06-14 16:15 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2016-10-11 19:33 - 2016-06-14 16:15 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2016-10-11 19:33 - 2016-06-14 16:15 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2016-10-11 19:33 - 2016-06-14 16:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe 2016-10-11 19:33 - 2016-06-14 16:05 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe 2016-10-11 19:33 - 2016-06-14 16:00 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe 2016-10-11 19:33 - 2016-06-14 16:00 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe 2016-10-11 19:32 - 2016-08-29 16:31 - 14183424 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2016-10-11 19:32 - 2016-08-29 16:31 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2016-10-11 19:32 - 2016-08-29 16:31 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2016-10-11 19:32 - 2016-08-29 16:12 - 12880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2016-10-11 19:32 - 2016-08-29 16:12 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2016-10-11 19:32 - 2016-08-29 16:12 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2016-10-11 19:32 - 2016-08-29 16:04 - 03229696 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2016-10-11 19:32 - 2016-08-29 15:55 - 02972672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2016-10-11 19:32 - 2016-08-16 21:40 - 00343552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2016-10-11 19:32 - 2016-08-16 21:40 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2016-10-11 19:32 - 2016-08-16 21:40 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2016-10-11 19:32 - 2016-08-16 21:40 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2016-10-11 19:32 - 2016-08-16 21:40 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2016-10-11 19:32 - 2016-08-16 21:40 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2016-10-11 19:32 - 2016-08-16 21:40 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2016-10-11 19:32 - 2016-07-22 15:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2016-10-11 19:32 - 2016-07-22 15:51 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2016-10-07 08:07 - 2016-10-01 20:24 - 00133056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2016-10-07 08:07 - 2016-09-09 19:25 - 00269600 _____ C:\Windows\SysWOW64\vulkan-1.dll 2016-10-07 08:07 - 2016-09-09 19:25 - 00261920 _____ C:\Windows\system32\vulkan-1.dll 2016-10-07 08:07 - 2016-09-09 19:25 - 00110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2016-10-07 08:07 - 2016-09-09 19:24 - 00125216 _____ C:\Windows\system32\vulkaninfo.exe 2016-10-07 08:05 - 2016-10-01 22:15 - 40068544 _____ C:\Windows\system32\nvcompiler.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 35180992 _____ C:\Windows\SysWOW64\nvcompiler.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 34808768 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 19856296 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 17464952 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 14353328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 14126528 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2016-10-07 08:05 - 2016-10-01 22:15 - 10868472 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 10745848 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 10286296 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 09091648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 08877808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 08685352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 03594176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 03161024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 01935808 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437306.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 01585088 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437306.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 01018816 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00958520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00943672 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00893376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00688784 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00578240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00521096 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00493792 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00437696 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00436088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00409296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00388544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00180136 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00157464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00153184 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2016-10-07 08:05 - 2016-10-01 22:15 - 00131720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-05 19:39 - 2014-10-02 18:18 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-11-05 19:26 - 2014-10-02 18:05 - 00000000 ____D C:\Users\CallmeChris 2016-11-05 19:19 - 2009-07-14 05:45 - 00028720 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-11-05 19:19 - 2009-07-14 05:45 - 00028720 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-11-05 19:16 - 2011-04-12 08:43 - 00699416 _____ C:\Windows\system32\perfh007.dat 2016-11-05 19:16 - 2011-04-12 08:43 - 00149556 _____ C:\Windows\system32\perfc007.dat 2016-11-05 19:16 - 2009-07-14 06:13 - 01620612 _____ C:\Windows\system32\PerfStringBackup.INI 2016-11-05 19:16 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-11-05 19:15 - 2012-11-28 18:33 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2016-11-05 19:11 - 2014-10-02 18:18 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2016-11-05 19:10 - 2013-01-03 14:28 - 00000000 ____D C:\ProgramData\NVIDIA 2016-11-05 19:10 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\Downloaded Program Files 2016-11-05 19:10 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-11-05 18:36 - 2016-07-25 12:57 - 00000000 ____D C:\Users\CallmeChris\Desktop\RevoUninstaller_Portable 2016-11-05 17:26 - 2016-09-24 11:24 - 00000356 _____ C:\Windows\Tasks\HPCeeScheduleForCallmeChris.job 2016-11-05 17:24 - 2016-07-22 11:57 - 00000000 ____D C:\Users\CallmeChris\AppData\Roaming\Yahoo! 2016-11-05 14:36 - 2016-09-24 11:24 - 00003222 _____ C:\Windows\System32\Tasks\HPCeeScheduleForCallmeChris 2016-11-05 08:06 - 2014-10-04 15:27 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\Battle.net 2016-11-01 20:15 - 2014-10-02 18:18 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\Google 2016-11-01 12:56 - 2015-02-14 20:29 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\Steam 2016-10-31 12:35 - 2014-10-02 18:34 - 00000000 ____D C:\Program Files (x86)\Overwolf 2016-10-30 18:15 - 2014-11-10 10:12 - 00000000 ____D C:\ProgramData\Package Cache 2016-10-26 16:29 - 2010-11-21 04:27 - 00485032 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2016-10-26 13:40 - 2014-10-02 18:18 - 00002187 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-10-26 13:40 - 2014-10-02 18:18 - 00002175 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2016-10-23 16:18 - 2014-10-02 18:33 - 00000000 ____D C:\Users\CallmeChris\AppData\Roaming\TS3Client 2016-10-22 21:16 - 2014-10-04 18:31 - 00000033 _____ C:\Users\CallmeChris\Desktop\R4WE X7T8 76GU 8AH6 27JB.txt 2016-10-22 21:15 - 2014-10-04 18:34 - 00000000 ____D C:\Users\CallmeChris\Documents\My Games 2016-10-13 08:19 - 2009-07-14 05:45 - 00299088 _____ C:\Windows\system32\FNTCACHE.DAT 2016-10-13 08:15 - 2014-10-02 18:18 - 00065152 _____ C:\Users\CallmeChris\AppData\Local\GDIPFONTCACHEV1.DAT 2016-10-13 08:12 - 2016-10-05 09:19 - 00000000 ___HD C:\ProgramData\CanonIJMIG 2016-10-13 08:12 - 2016-10-04 15:56 - 00000000 ____D C:\Users\CallmeChris\AppData\Roaming\Canon 2016-10-13 08:11 - 2015-12-03 11:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2016-10-13 08:11 - 2015-12-03 11:41 - 00000000 ____D C:\Program Files (x86)\HP 2016-10-13 08:10 - 2015-12-03 11:41 - 00000000 ____D C:\ProgramData\HP 2016-10-13 08:09 - 2016-10-04 15:54 - 00000000 ____D C:\ProgramData\CanonIJPLM 2016-10-13 08:09 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp 2016-10-13 08:07 - 2016-06-05 10:13 - 00000000 ____D C:\Users\CallmeChris\Desktop\Chrissi 2016-10-12 07:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\Dism 2016-10-12 07:59 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\Dism 2016-10-12 07:58 - 2014-12-14 13:39 - 00000000 ____D C:\Windows\system32\appraiser 2016-10-12 07:58 - 2014-10-04 11:26 - 00000000 ___SD C:\Windows\system32\CompatTel 2016-10-11 22:35 - 2015-01-05 22:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-10-11 22:34 - 2015-01-05 22:13 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-10-11 22:34 - 2015-01-05 22:13 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2016-10-07 20:35 - 2016-10-04 15:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities 2016-10-07 20:34 - 2016-05-25 20:36 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\NVIDIA Corporation 2016-10-07 20:34 - 2016-05-25 20:35 - 00000000 ____D C:\Users\CallmeChris\AppData\Local\NVIDIA 2016-10-07 20:34 - 2016-05-25 20:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2016-10-07 20:34 - 2016-05-25 20:33 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2016-10-07 20:34 - 2016-05-25 20:33 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2016-10-07 20:34 - 2013-01-03 14:27 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2016-10-07 08:07 - 2016-05-21 16:47 - 00000000 ____D C:\Program Files (x86)\VulkanRT ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-12-03 11:41 - 2015-12-03 11:41 - 0000057 _____ () C:\ProgramData\Ament.ini 2016-07-22 11:46 - 2016-10-13 08:17 - 0005547 _____ () C:\ProgramData\hpzinstall.log Einige Dateien in TEMP: ==================== C:\Users\CallmeChris\AppData\Local\Temp\dxwebsetup.exe C:\Users\CallmeChris\AppData\Local\Temp\FP_AX_MSI_INSTALLER.exe C:\Users\CallmeChris\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe C:\Users\CallmeChris\AppData\Local\Temp\jre-8u101-windows-au.exe C:\Users\CallmeChris\AppData\Local\Temp\jre-8u31-windows-au.exe C:\Users\CallmeChris\AppData\Local\Temp\libeay32.dll C:\Users\CallmeChris\AppData\Local\Temp\MSETUP4.EXE C:\Users\CallmeChris\AppData\Local\Temp\msvcr120.dll C:\Users\CallmeChris\AppData\Local\Temp\nvSCPAPI.dll C:\Users\CallmeChris\AppData\Local\Temp\nvStInst.exe C:\Users\CallmeChris\AppData\Local\Temp\sqlite3.dll C:\Users\CallmeChris\AppData\Local\Temp\vcredist_x86.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-10-05 15:10 ==================== Ende von FRST.txt ============================ |
05.11.2016, 20:06 | #2 |
| BrowserModifier:Win32/SupTab!BlankCode:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016 durchgeführt von CallmeChris (05-11-2016 20:00:30) Gestartet von C:\Users\CallmeChris\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2014-10-02 17:05:25) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-415233740-3912015075-937546813-500 - Administrator - Disabled) CallmeChris (S-1-5-21-415233740-3912015075-937546813-1002 - Administrator - Enabled) => C:\Users\CallmeChris Gast (S-1-5-21-415233740-3912015075-937546813-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-415233740-3912015075-937546813-1004 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 64 Bit HP CIO Components Installer (Version: 6.2.2 - Hewlett-Packard) Hidden Aliens vs. Predator (HKLM-x32\...\Steam App 10680) (Version: - Rebellion) AMD Catalyst Install Manager (HKLM\...\{9AFAAEAF-7256-793D-AE2B-B4B2C5B3A807}) (Version: 3.0.838.0 - Advanced Micro Devices, Inc.) Ansel (Version: 373.06 - NVIDIA Corporation) Hidden Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.9668 - Perfect World Entertainment) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlerite (HKLM\...\Steam App 504370) (Version: - Stunlock Studios) Boss Monster (HKLM-x32\...\Steam App 362350) (Version: - Plain Concepts Corp) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.20.13 - Canon Inc.) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 5.2.0 - Canon Inc.) Canon MG5700 series Benutzerregistrierung (HKLM-x32\...\Canon MG5700 series Benutzerregistrierung) (Version: - *Canon Inc.) Canon MG5700 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5700_series) (Version: 1.00 - Canon Inc.) Canon MG5700 series On-screen Manual (HKLM-x32\...\Canon MG5700 series On-screen Manual) (Version: 7.8.0 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.5.1 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.5.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.) Cards and Castles (HKLM-x32\...\Steam App 360730) (Version: - Bit Mass, LLC) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Don't Starve Together Beta (HKLM-x32\...\Steam App 322330) (Version: - Klei Entertainment) Dungeon Defenders II (HKLM-x32\...\Steam App 236110) (Version: - Trendy Entertainment) Dungeon of the Endless (HKLM-x32\...\Steam App 249050) (Version: - AMPLITUDE Studios) Dungeon Rushers (HKLM\...\Steam App 429620) (Version: - Goblinz Studio) Epic Games Launcher Prerequisites (x64) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Eternal Launcher (HKLM-x32\...\{5CDC246E-B10D-43C4-89D9-7582FD6940B3}) (Version: 1.0.779 - Dire Wolf Digital, LLC) Faeria (HKLM-x32\...\Steam App 397060) (Version: - Abrakam SA) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.71 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Halfway (HKLM-x32\...\Steam App 253150) (Version: - Robotality) Hammerwatch (HKLM-x32\...\Steam App 239070) (Version: - Crackshell) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hero Defense - Haunted Island (HKLM\...\Steam App 423620) (Version: - Happy Tuesday) Hero Siege (HKLM-x32\...\Steam App 269210) (Version: - Elias Viglione) Heroes of Might & Magic III - HD Edition (HKLM\...\Steam App 297000) (Version: - DotEmu) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) HP Deskjet 2050 J510 series - Grundlegende Software für das Gerät (HKLM\...\{DF37555F-0259-43DA-B60C-47106FA14AA3}) (Version: 28.0.1313.0 - Hewlett-Packard Co.) HP Support Assistant (HKLM-x32\...\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}) (Version: 8.3.34.7 - HP Inc.) HP Support Solutions Framework (HKLM-x32\...\{3A1CB1B8-8646-41A0-B496-35DC48916904}) (Version: 12.5.32.37 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) Launcher Prerequisites (x64) (x32 Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Magic Duels (HKLM-x32\...\Steam App 316010) (Version: - Stainless Games Ltd.) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}) (Version: 1.20.146.0 - Microsoft) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Might & Magic Heroes VI - Shades of Darkness (HKLM-x32\...\{745D37C2-26F4-4B65-BA13-F9840EBFA75B}) (Version: 2.1.0 - Ubisoft) Might & Magic: Clash of Heroes (HKLM-x32\...\Steam App 61700) (Version: - Capybara Games) Might & Magic: Duel of Champions (HKLM-x32\...\Steam App 256410) (Version: - Ubisoft Quebec) Might and Magic Heroes VII (HKLM-x32\...\Uplay Install 1176) (Version: - Ubisoft) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 373.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 373.06 - NVIDIA Corporation) NVIDIA Grafiktreiber 373.06 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 373.06 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.1.2 (HKLM-x32\...\{F5CAB1AF-7B1A-4CEC-B829-A3F699473AE1}) (Version: 4.12.9782 - Apache Software Foundation) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.99.10.0 - Overwolf Ltd.) Overwolf.Setup.VC100CRTx86.Dist (x32 Version: 1.0.0 - Overwolf) Hidden Pivot Pro Plugin (x32 Version: 9.50.110 - Portrait Displays, Inc.) Hidden Plants vs. Zombies: Game of the Year (HKLM-x32\...\Steam App 3590) (Version: - PopCap Games, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.53.216.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6631 - Realtek Semiconductor Corp.) Recettear: An Item Shop's Tale (HKLM-x32\...\Steam App 70400) (Version: - EasyGameStation) Rise of the Tomb Raider (HKLM\...\Steam App 391220) (Version: - Crystal Dynamics) SDK (x32 Version: 2.31.009 - Portrait Displays, Inc.) Hidden Secrets of Grindea (HKLM-x32\...\Steam App 269770) (Version: - Pixel Ferrets) Shadowverse (HKLM\...\Steam App 453480) (Version: - Cygames, Inc.) Simple Port Forwarding (HKLM-x32\...\Simple Port Forwarding) (Version: 3.8.5 - PcWinTech.com) SmartControl (HKLM-x32\...\{F4EF231A-7218-41B1-AB84-F5B48B74C50A}) (Version: 2.23.002 - Portrait Displays, Inc.) SolForge (HKLM\...\Steam App 232450) (Version: - Stone Blade Entertainment) Spotify (HKU\S-1-5-21-415233740-3912015075-937546813-1002\...\Spotify) (Version: 1.0.1.1060.gc75ebdfd - Spotify AB) Spotify (HKU\S-1-5-21-415233740-3912015075-937546813-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Spotify) (Version: 1.0.1.1060.gc75ebdfd - Spotify AB) Stardew Valley (HKLM\...\Steam App 413150) (Version: - ConcernedApe) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Tales of Zestiria (HKLM-x32\...\Steam App 351970) (Version: - BANDAI NAMCO Studio Inc.) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Total War: WARHAMMER (HKLM\...\Steam App 364360) (Version: - Creative Assembly) Tree of Savior (English Ver.) (HKLM\...\Steam App 372000) (Version: - IMCGAMES Co.,Ltd.) Unholy Heights (HKLM-x32\...\Steam App 249330) (Version: - Petit Depotto) Uplay (HKLM-x32\...\Uplay) (Version: 4.3 - Ubisoft) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) WinRAR 5.30 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) Zemana AntiMalware (HKLM-x32\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.50.133 - Zemana Ltd.) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0A14347C-55F5-4340-8AEB-C49FF0E7A774} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.) Task: {11EA1EBE-7FFB-4D0A-84F2-C5E4A6FAC68A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {1C85D92D-F85A-44C0-B1B2-8691B0F04F72} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2016-10-19] (Overwolf LTD) Task: {54102904-8603-4247-95AF-CD88A7589E55} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.) Task: {72FC471D-0836-4924-BF31-51DDE9367F9A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.) Task: {7B82A8D8-1162-43FA-A8EA-9246429590AA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {8BA5ED9C-72F5-431D-8D16-DF4D093C4B3D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {A74BF3B9-0888-46D7-86A8-162673F82150} - System32\Tasks\HPCeeScheduleForCallmeChris => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.) Task: {B1020D66-CD28-472C-8EF9-AE27A990A4C8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {B8151855-6CE5-4FFA-898E-7297F16CC0F6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2016-10-12] (HP Inc.) Task: {CF38F59D-2D83-4944-B601-F63371AC76A2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForCallmeChris.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\CallmeChris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Simple Port Forwarding\SPF - Basic UI Mode.lnk -> C:\Program Files (x86)\Simple Port Forwarding\basic_ui.bat () ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-05-25 20:34 - 2016-10-01 20:44 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-10-04 15:54 - 2016-02-04 10:53 - 00387144 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 2014-10-02 18:19 - 2010-05-13 15:34 - 00674928 _____ () C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\wpctrl.exe 2014-10-02 18:19 - 2010-05-13 15:34 - 00711792 _____ () C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\floater.exe 2016-10-21 16:55 - 2016-10-21 16:55 - 02516952 _____ () D:\arc\ArcChat.exe 2016-10-21 16:55 - 2016-10-21 16:55 - 01386456 _____ () D:\arc\ArcOSBrowser.exe 2016-10-21 16:56 - 2016-10-21 16:56 - 00174040 _____ () D:\arc\ZUnZip.dll 2016-10-21 16:54 - 2016-10-21 16:54 - 00747480 _____ () D:\arc\ArcPipe2.dll 2016-10-21 16:56 - 2016-10-21 16:56 - 00174040 _____ () D:\arc\ZUnZip_utf8.dll 2016-10-21 16:55 - 2016-10-21 16:55 - 00325592 _____ () D:\arc\LogCppLog.dll 2016-10-21 16:55 - 2016-10-21 16:55 - 01193944 _____ () D:\arc\CoreUI.dll 2016-10-21 16:55 - 2016-10-21 16:55 - 00530392 _____ () D:\arc\BJPatcherLib.dll 2016-10-21 16:55 - 2016-10-21 16:55 - 38591448 _____ () D:\arc\libcef.dll 2016-10-21 16:55 - 2016-10-21 16:55 - 00885720 _____ () D:\arc\libglesv2.dll 2016-10-21 16:55 - 2016-10-21 16:55 - 00109016 _____ () D:\arc\libegl.dll 2016-10-21 16:55 - 2016-10-21 16:55 - 00879576 _____ () D:\arc\ffmpegsumo.dll 2016-10-26 13:40 - 2016-10-20 09:47 - 01819240 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.71\libglesv2.dll 2016-10-26 13:40 - 2016-10-20 09:47 - 00093288 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.71\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PAexec => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PAexec => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-415233740-3912015075-937546813-1002\...\aeriagames.com -> hxxps://aeriagames.com IE trusted site: HKU\S-1-5-21-415233740-3912015075-937546813-1002\...\aeriagames.com -> hxxp://aeriagames.com IE trusted site: HKU\S-1-5-21-415233740-3912015075-937546813-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\aeriagames.com -> hxxps://aeriagames.com IE trusted site: HKU\S-1-5-21-415233740-3912015075-937546813-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\aeriagames.com -> hxxp://aeriagames.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-415233740-3912015075-937546813-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\CallmeChris\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-415233740-3912015075-937546813-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\CallmeChris\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 217.68.161.141 - 217.68.161.171 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\CallmeChris\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: ShadowPlay => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: Spotify => "C:\Users\CallmeChris\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\CallmeChris\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{59B88A21-8A7B-406B-8AC9-1793B3BDBD99}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe FirewallRules: [{62245C49-C9B5-4B46-86F0-24AFB1F95323}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe FirewallRules: [{42CF7FAD-ADA3-41CA-A5D0-8BEE84361267}] => (Allow) D:\Games\Battle.net\Battle.net.exe FirewallRules: [{9C45AE1F-0A3D-4550-A1FC-247C91B7AB9A}] => (Allow) D:\Games\Battle.net\Battle.net.exe FirewallRules: [{92241E93-3368-49D1-8E23-31CB0A2BB177}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{9371B3B6-8621-4F52-8BA5-93AE759750E0}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe FirewallRules: [{7D996AE8-5F12-4BBB-B8F0-FA15A4766732}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{03091E10-3074-4277-928A-EA5B4434AE7F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe FirewallRules: [{AD44A3AD-B3DA-4A69-B640-7D3B70F565DA}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{229F2781-FD3D-41BE-B131-79177D76F023}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe FirewallRules: [{35BCBA6D-423A-4A78-8B1D-35A3EB1423A6}] => (Allow) D:\Games\Steam\Steam.exe FirewallRules: [{184DFC5E-BD14-45A6-AB94-6E3AB6B4CA04}] => (Allow) D:\Games\Steam\Steam.exe FirewallRules: [{C21444A1-3AB5-4CC1-828E-E3D7365A902A}] => (Allow) D:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{FF764041-A4E3-4E63-A60F-4B2FCF53030C}] => (Allow) D:\Games\Steam\bin\steamwebhelper.exe FirewallRules: [{EBC89BFD-6BD7-41DC-B162-4ACDAE1E2F63}] => (Allow) D:\Games\Steam\SteamApps\common\Might & Magic - Duel of Champions\Game.exe FirewallRules: [{F9D502EC-C455-49A4-91F8-B59E343AF37C}] => (Allow) D:\Games\Steam\SteamApps\common\Might & Magic - Duel of Champions\Game.exe FirewallRules: [TCP Query User{2AE97E76-0C61-4DC4-B53F-2AB8BD151B41}D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [UDP Query User{4EB6FD88-9F58-4835-81B5-FCA5428861E5}D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe FirewallRules: [TCP Query User{E8186BB4-F6C8-401E-81C0-040AEE1EBCB4}D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [UDP Query User{D8191C02-2BAC-44E4-8102-CC93862D84C4}D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) D:\games\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe FirewallRules: [{EA2EDD46-4B81-4EC0-86D9-7909893F55CC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{38630D43-A909-4851-96D9-D80056D97D9B}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{989F9643-B7A7-4DE1-A490-95C57BF07251}] => (Allow) D:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{F05F1489-2A3F-497E-AC8C-43B1229DA94A}] => (Allow) D:\Games\Steam\SteamApps\common\Hammerwatch\Hammerwatch.exe FirewallRules: [{EBF784A6-4903-4291-8CD8-781D09679BA6}] => (Allow) D:\Games\Steam\SteamApps\common\Dungeon of the Endless\DungeonoftheEndless.exe FirewallRules: [{B21BDBC1-95A1-476E-BFFF-DA2F17B0F476}] => (Allow) D:\Games\Steam\SteamApps\common\Dungeon of the Endless\DungeonoftheEndless.exe FirewallRules: [{AA951237-3690-4EC7-B89A-2DAFBFB3B2D1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{393C5E56-3E46-4977-88F9-C3A6C3C3D4EE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{E04EA804-DA58-47E7-9CB0-B7C4F1A33B6C}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [{46CD91C7-EFDB-43E2-AC5A-297A86BC4D73}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3715\Agent.exe FirewallRules: [TCP Query User{9B21D74A-785C-42B4-8C31-645EDB50F361}D:\games\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe] => (Allow) D:\games\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{5C064F25-9275-4857-96DB-83BB8748BA00}D:\games\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe] => (Allow) D:\games\heroes of the storm\versions\base33684\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{E16D6BC5-3B05-4C6E-9753-6A47C9DBD3B1}D:\games\heroes of the storm\versions\base33684\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base33684\heroesofthestorm.exe FirewallRules: [UDP Query User{426F4FE2-C197-4EBC-8EBF-8B17316AEFE4}D:\games\heroes of the storm\versions\base33684\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base33684\heroesofthestorm.exe FirewallRules: [{ADDEDF27-FC71-4598-944A-8C01362282E9}] => (Allow) D:\Games\Hearthstone\Hearthstone.exe FirewallRules: [{8C28E89A-9DB6-4803-B77B-BC6BF065DEE1}] => (Allow) D:\Games\Hearthstone\Hearthstone.exe FirewallRules: [TCP Query User{136805B7-7EAF-4B7E-9D1E-8DAC2448640D}D:\games\heroes of the storm\versions\base34053\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base34053\heroesofthestorm.exe FirewallRules: [UDP Query User{F96BD3CA-E842-435C-AA5A-32694773FC06}D:\games\heroes of the storm\versions\base34053\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base34053\heroesofthestorm.exe FirewallRules: [{C9BD9B55-E126-4434-B492-227AE870A186}] => (Allow) D:\Games\Diablo III\Diablo III.exe FirewallRules: [{63500D14-20BA-4245-BBEF-EF35581513E2}] => (Allow) D:\Games\Diablo III\Diablo III.exe FirewallRules: [{BCC14DA4-ACB2-44EB-95D1-B19FD9FBC67E}] => (Allow) D:\Games\Steam\SteamApps\common\Unholy Heights\UnholyHeights.exe FirewallRules: [{13E68530-DF28-4487-A013-CBFB559B49C5}] => (Allow) D:\Games\Steam\SteamApps\common\Unholy Heights\UnholyHeights.exe FirewallRules: [TCP Query User{0FC10182-7DE2-453C-8278-27CB764AEA36}C:\users\callmechris\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\callmechris\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{CBB2F95A-6B11-4FF6-B16F-4821FF54FBF0}C:\users\callmechris\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\callmechris\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{ABEB0AA1-059B-442C-85B1-D687212A4484}C:\users\callmechris\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\callmechris\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{C25A69FA-4577-49AD-A816-876585108C1C}C:\users\callmechris\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\callmechris\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{73CA4FF7-53A0-4253-AB89-15523C9DFAB5}D:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe] => (Allow) D:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe FirewallRules: [UDP Query User{9D34ACDD-A54B-4C86-AEAF-7BC1C7379843}D:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe] => (Allow) D:\games\steam\steamapps\common\lord of the rings online\lotroclient.exe FirewallRules: [{C08EA8C2-6D3D-41B6-BAC4-582966075B5A}] => (Allow) D:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{C5B7D3AC-FDDA-4C09-A2EA-AC68F3AD5DA6}] => (Allow) D:\Games\Steam\SteamApps\common\Hammerwatch\editor\HammerEditor.exe FirewallRules: [{F0247E01-C6DE-44B4-BE42-7A04EEA3D3CE}] => (Allow) D:\Games\Steam\SteamApps\common\Aliens vs Predator\AvP_Launcher.exe FirewallRules: [{366C4852-D921-47EB-B68E-E33D376C3622}] => (Allow) D:\Games\Steam\SteamApps\common\Aliens vs Predator\AvP_Launcher.exe FirewallRules: [{180AA2DB-74B4-4072-9865-88D2FE2A8C79}] => (Allow) D:\Games\Steam\SteamApps\common\Aliens vs Predator\AvP_DX11.exe FirewallRules: [{7F511449-7D22-4DEA-9952-61BFBE0D3533}] => (Allow) D:\Games\Steam\SteamApps\common\Aliens vs Predator\AvP_DX11.exe FirewallRules: [{111D5B32-D135-4706-AA50-E67DF77AE937}] => (Allow) D:\Games\Steam\SteamApps\common\Aliens vs Predator\AvP.exe FirewallRules: [{D689AC06-9426-4A8B-BEB6-4951B9369579}] => (Allow) D:\Games\Steam\SteamApps\common\Aliens vs Predator\AvP.exe FirewallRules: [TCP Query User{8EE3EEB3-0AE4-4849-B890-E907504DE0E5}D:\games\heroes of the storm\versions\base35360\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base35360\heroesofthestorm.exe FirewallRules: [UDP Query User{27E9E401-109E-4621-91EA-FF7E3850F90B}D:\games\heroes of the storm\versions\base35360\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base35360\heroesofthestorm.exe FirewallRules: [TCP Query User{9D1E4CAA-5164-495F-926B-53060830B812}D:\games\heroes of the storm\versions\base35702\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base35702\heroesofthestorm.exe FirewallRules: [UDP Query User{707701F5-6D6C-4AA6-8B90-6233B24B2877}D:\games\heroes of the storm\versions\base35702\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base35702\heroesofthestorm.exe FirewallRules: [TCP Query User{7F0233D1-B742-4AFE-B25F-15ACEAF6BD71}D:\games\heroes of the storm\versions\base36144\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base36144\heroesofthestorm.exe FirewallRules: [UDP Query User{F4F7765C-C0B6-4452-8D54-F14D7C9E7BCB}D:\games\heroes of the storm\versions\base36144\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base36144\heroesofthestorm.exe FirewallRules: [{DA6A9F3F-9AD2-40CB-94E1-9FA4EF4393ED}] => (Allow) D:\Games\Steam\SteamApps\common\Recettear\recettear.exe FirewallRules: [{D96B7D19-583E-4C21-8DAE-86F55208291B}] => (Allow) D:\Games\Steam\SteamApps\common\Recettear\recettear.exe FirewallRules: [{0F1BEB9B-076A-4C84-B265-7DEC986BE309}] => (Allow) D:\Games\Steam\SteamApps\common\Recettear\custom.exe FirewallRules: [{5CFC1CA6-5DDE-4326-AA5C-6EC53B01EF09}] => (Allow) D:\Games\Steam\SteamApps\common\Recettear\custom.exe FirewallRules: [{D62109BA-7F65-47AC-8B94-33C105023F58}] => (Allow) D:\Games\EE\EdenEternal\launcher.exe FirewallRules: [{8F9D5800-9892-4CF4-AB5A-9908D607B02F}] => (Allow) D:\Games\EE\EdenEternal\launcher.exe FirewallRules: [TCP Query User{AD10A0F1-2657-4237-BB18-25CF01B5E4E8}D:\games\heroes of the storm\versions\base37569\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base37569\heroesofthestorm.exe FirewallRules: [UDP Query User{299A038F-C5AC-4995-BC98-D1ADD652895E}D:\games\heroes of the storm\versions\base37569\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base37569\heroesofthestorm.exe FirewallRules: [{69C1EC4C-AC9C-4C29-9EA3-E783D5979E5F}] => (Allow) D:\Games\EE\EdenEternal\_Launcher.exe FirewallRules: [{FC32EEFA-F317-416D-9B69-32A80D077429}] => (Allow) D:\Games\EE\EdenEternal\_Launcher.exe FirewallRules: [TCP Query User{A2244E0D-348D-4D51-9AF2-F5C864170823}D:\games\heroes of the storm\versions\base37795\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base37795\heroesofthestorm.exe FirewallRules: [UDP Query User{E4FFE17D-59D8-4A4B-B4A2-C032C6A96CD0}D:\games\heroes of the storm\versions\base37795\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base37795\heroesofthestorm.exe FirewallRules: [{48D036B1-6906-4C05-959A-7D8DAF8F7788}] => (Allow) D:\Games\AK\AuraKingdom-DE\game.bin FirewallRules: [{E87055EA-B937-48EE-B5AE-E1B067A4D4F9}] => (Allow) D:\Games\AK\AuraKingdom-DE\game.bin FirewallRules: [{273BB3B5-0196-42E2-8DF0-BF9ACF7E3440}] => (Allow) D:\Games\Steam\SteamApps\common\Boss Monster\DBMGameSteam.exe FirewallRules: [{BA4F600A-D564-408E-8DD5-BB2D3679FBC1}] => (Allow) D:\Games\Steam\SteamApps\common\Boss Monster\DBMGameSteam.exe FirewallRules: [{FEF129F8-368A-4450-B884-EDCB5AF24080}] => (Allow) D:\Games\Steam\SteamApps\common\Might and Magic Clash of Heroes\ClashOfHeroes.exe FirewallRules: [{BB56993A-A3F2-4381-A856-3DDB2F09BEF6}] => (Allow) D:\Games\Steam\SteamApps\common\Might and Magic Clash of Heroes\ClashOfHeroes.exe FirewallRules: [TCP Query User{20BA6217-FDFA-4989-B1F8-ABADB75BBE9F}D:\games\ubi\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Allow) D:\games\ubi\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe FirewallRules: [UDP Query User{A29C19D7-4E2D-41EC-B15E-79F5A1BAB560}D:\games\ubi\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Allow) D:\games\ubi\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe FirewallRules: [{C3F64790-26B7-40DA-8D94-F1C98D68AFE1}] => (Allow) D:\Games\Ubi\Might and Magic Heroes VII\Binaries\Win32\MMH7Game-Win32-Shipping.exe FirewallRules: [{EEA0364C-0EA7-4282-BB6E-F448AFEF2F1B}] => (Allow) D:\Games\Ubi\Might and Magic Heroes VII\Binaries\Win64\MMH7Game-Win64-Shipping.exe FirewallRules: [{D954740B-3937-48D2-BE3C-40469F8262F8}] => (Allow) C:\Program Files (x86)\Simple Port Forwarding\spf.exe FirewallRules: [{72BD2EC8-43BD-4796-B218-8DA2513FEE26}] => (Allow) C:\Program Files (x86)\Simple Port Forwarding\spf.exe FirewallRules: [{6FE1F4A9-8334-4A2E-B7EC-38CA3CA81BFC}] => (Allow) D:\Games\Ubi\Might & Magic Heroes VI.exe FirewallRules: [{BAF51773-89E9-400A-BEF9-2E7A87100100}] => (Allow) D:\Games\Ubi\Might & Magic Heroes VI.exe FirewallRules: [{30F33B32-9C2E-44B9-B471-8B2720E8A204}] => (Allow) D:\Games\DragomonHunter-US\Game.bin FirewallRules: [{EAE61AE0-AE1B-4FB9-AFAD-27AB9FDD40F0}] => (Allow) D:\Games\DragomonHunter-US\Game.bin FirewallRules: [{5E7BF0E3-EC23-4D09-98A9-26C6BE4B65E9}] => (Allow) D:\Games\Steam\SteamApps\common\Dungeon Defenders 2\DunDefLauncher.exe FirewallRules: [{E45BD856-F05A-43F5-8A36-88EC09D5E028}] => (Allow) D:\Games\Steam\SteamApps\common\Dungeon Defenders 2\DunDefLauncher.exe FirewallRules: [TCP Query User{7E11C7ED-9628-4120-B085-DA39453A691C}D:\games\heroes of the storm\versions\base38793\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base38793\heroesofthestorm.exe FirewallRules: [UDP Query User{3E51818E-133E-4066-AECE-DA638D2260BB}D:\games\heroes of the storm\versions\base38793\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base38793\heroesofthestorm.exe FirewallRules: [{0B7DB607-E67B-4C2E-8D09-E988CA4FB35D}] => (Allow) D:\Games\Steam\SteamApps\common\Tales of Zestiria\Tales of Zestiria.exe FirewallRules: [{38436A0C-CBFF-499B-8F08-010097D18940}] => (Allow) D:\Games\Steam\SteamApps\common\Tales of Zestiria\Tales of Zestiria.exe FirewallRules: [TCP Query User{D96458F0-334F-4128-AE56-84298057CCB5}D:\games\heroes of the storm\versions\base39153\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39153\heroesofthestorm.exe FirewallRules: [UDP Query User{5C311255-E6B9-4794-8BC5-D68EF874C834}D:\games\heroes of the storm\versions\base39153\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39153\heroesofthestorm.exe FirewallRules: [TCP Query User{D7038212-2C12-4495-A93B-A094CA00BEBE}D:\games\heroes of the storm\versions\base39271\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39271\heroesofthestorm.exe FirewallRules: [UDP Query User{40029EDD-EB54-4727-B62B-8452A5A2790E}D:\games\heroes of the storm\versions\base39271\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39271\heroesofthestorm.exe FirewallRules: [{2045CDD7-DB8A-42F8-B251-14343AAC068E}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe FirewallRules: [{DA725EBF-0110-48E0-B518-271E85AA38CD}] => (Allow) D:\Games\Steam\SteamApps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [{18DB33E6-2439-435A-B5CE-677ACEFD7138}] => (Allow) D:\Games\Steam\SteamApps\common\HeroSiege\bin\Hero_Siege.exe FirewallRules: [{7197A834-7AB1-419A-997F-8A8A50C0CC43}] => (Allow) D:\Games\Steam\SteamApps\common\Don't Starve Together Beta\bin\dontstarve_steam.exe FirewallRules: [{2660206D-1F33-46B1-8189-99F9C0EBE6C9}] => (Allow) D:\Games\Steam\SteamApps\common\Don't Starve Together Beta\bin\dontstarve_steam.exe FirewallRules: [{507C93C5-8255-4CCB-A357-9F79C517DBF3}] => (Allow) D:\Games\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{A8033183-9954-452A-9E8F-8739BA2B8281}] => (Allow) D:\Games\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{4C9897E5-CD9A-4969-A634-71BA21C02EB1}] => (Allow) D:\Games\Steam\SteamApps\common\Cards and Castles\Cards and Castles.exe FirewallRules: [{30948D55-A92E-41C8-BBFC-65146DDA50DB}] => (Allow) D:\Games\Steam\SteamApps\common\Cards and Castles\Cards and Castles.exe FirewallRules: [TCP Query User{AB6DA8C8-3774-4935-9CC2-E56FBD53F6E3}D:\games\heroes of the storm\versions\base39595\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39595\heroesofthestorm.exe FirewallRules: [UDP Query User{8014B9CE-D1D2-4A76-9800-C14284C53F90}D:\games\heroes of the storm\versions\base39595\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39595\heroesofthestorm.exe FirewallRules: [{A3ABCD1C-4CF4-4F1D-95F6-32A033D5B7A7}] => (Allow) D:\Games\Steam\SteamApps\common\Halfway\Halfway.exe FirewallRules: [{DC87F17E-7C84-419E-B50C-F97F913A404B}] => (Allow) D:\Games\Steam\SteamApps\common\Halfway\Halfway.exe FirewallRules: [{69A6D5E2-903C-44E9-9802-7E6F8FC7193D}] => (Allow) D:\Games\Steam\SteamApps\common\Plants Vs Zombies\PlantsVsZombies.exe FirewallRules: [{C74FECF6-0542-4B67-9176-DC69C95FDD14}] => (Allow) D:\Games\Steam\SteamApps\common\Plants Vs Zombies\PlantsVsZombies.exe FirewallRules: [TCP Query User{831BF2B9-0693-481B-824D-5E79144C6171}D:\games\heroes of the storm\versions\base39951\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39951\heroesofthestorm.exe FirewallRules: [UDP Query User{3AC939A2-D7B6-4188-AE98-BFEB3DEF8545}D:\games\heroes of the storm\versions\base39951\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base39951\heroesofthestorm.exe FirewallRules: [{E685E231-8286-4B80-93AE-ABAD25095941}] => (Allow) D:\Games\Steam\SteamApps\common\Faeria\Faeria.exe FirewallRules: [{033F3475-DE02-42CE-B1B7-61138A47C7D4}] => (Allow) D:\Games\Steam\SteamApps\common\Faeria\Faeria.exe FirewallRules: [TCP Query User{0A9CDD1C-5391-47F0-8FF4-5635FD7C792F}D:\games\overwatch\overwatch.exe] => (Allow) D:\games\overwatch\overwatch.exe FirewallRules: [UDP Query User{8752F709-6A5B-4625-A59B-B9CD74B35F5C}D:\games\overwatch\overwatch.exe] => (Allow) D:\games\overwatch\overwatch.exe FirewallRules: [TCP Query User{077C1434-4BB8-4E4D-A578-18695EB79074}D:\games\heroes of the storm\versions\base42506\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base42506\heroesofthestorm.exe FirewallRules: [UDP Query User{417B1C6B-B8BF-4111-A8D9-7386E04BF5F7}D:\games\heroes of the storm\versions\base42506\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base42506\heroesofthestorm.exe FirewallRules: [TCP Query User{77F86C57-8036-4123-A4D6-6BF3E22CD1B0}D:\games\heroes of the storm\versions\base42958\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base42958\heroesofthestorm.exe FirewallRules: [UDP Query User{71A40613-552C-4642-87B5-D93196920BCE}D:\games\heroes of the storm\versions\base42958\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base42958\heroesofthestorm.exe FirewallRules: [TCP Query User{FA4089F4-9B54-4608-AFA3-53BAFB698898}D:\games\heroes of the storm\versions\base43170\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base43170\heroesofthestorm.exe FirewallRules: [UDP Query User{FA368D24-D3E0-4F9D-A854-8A847F7E5C18}D:\games\heroes of the storm\versions\base43170\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base43170\heroesofthestorm.exe FirewallRules: [{957D6D64-3F43-4804-BC1F-F1B0F945943B}] => (Allow) D:\Games\Steam\SteamApps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{C58B6865-58A8-47BE-80DC-D0F5266FCEFE}] => (Allow) D:\Games\Steam\SteamApps\common\Rise of the Tomb Raider\ROTTR.exe FirewallRules: [{2EDEDE75-AFD2-442E-AE61-357BF72AF303}] => (Allow) D:\Games\Steam\SteamApps\common\Hero Defense - Haunted Island\HauntedIsland.exe FirewallRules: [{FF2BC64B-D6EA-4105-B802-9B53C2715AB1}] => (Allow) D:\Games\Steam\SteamApps\common\Hero Defense - Haunted Island\HauntedIsland.exe FirewallRules: [TCP Query User{4BB59D00-282F-4B4C-AB41-AB69D9BE124C}D:\games\heroes of the storm\versions\base43905\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base43905\heroesofthestorm.exe FirewallRules: [UDP Query User{D23C8DD5-6C78-4D29-B9D7-0E94F8B528E3}D:\games\heroes of the storm\versions\base43905\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base43905\heroesofthestorm.exe FirewallRules: [{A6F55781-6F9E-49E9-82CA-6222720CB47C}] => (Allow) D:\Games\Steam\SteamApps\common\Dungeon_Rushers\Dungeon Rushers.exe FirewallRules: [{42814835-D25A-43E0-85F0-5995EBCF9DE4}] => (Allow) D:\Games\Steam\SteamApps\common\Dungeon_Rushers\Dungeon Rushers.exe FirewallRules: [{0E3A6FCE-F1DB-45D4-A705-57C42949EBC7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{5FB1F15F-A7E0-4594-AA55-360C4BDEE665}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{A9F80173-D970-4D4D-940E-F2D5FA826978}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{49A877B3-6293-402F-B163-F165B83AB57F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{3576DA5D-8984-432C-84D8-981F63135469}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{DA8949FA-9094-4246-AAAA-9AB24656C3E3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{7927C230-C489-443C-BDFA-253BFAC8A5D9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{8B48126C-F8C2-4B27-BA6D-95BA4FF37C3A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{E2C7E9E3-80A9-4055-9C57-080D4396DF02}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{AC631535-9273-415F-9AF6-E70CF1FA1716}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{F3B569D3-1414-4A6E-8FF3-CF1A27320BE2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{A4A97605-A5A6-4302-BD81-6D592B7D42B2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{CE9DA0BA-C43A-43FE-A78D-3F8821F728FA}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{3958F8B9-37C2-4E30-9099-91B9CCAB05FF}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe FirewallRules: [TCP Query User{7E4A95AB-E424-4037-B9FD-F3D4C54C4E8F}D:\games\heroes of the storm\versions\base44797\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base44797\heroesofthestorm.exe FirewallRules: [UDP Query User{76C3BC5F-E076-4D57-9EC8-3735E983625D}D:\games\heroes of the storm\versions\base44797\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base44797\heroesofthestorm.exe FirewallRules: [{9D629BDC-FCE7-4B55-983F-B4279F8078FA}] => (Allow) D:\Games\Steam\SteamApps\common\SolForge\solforge.exe FirewallRules: [{D572E867-EA33-4C79-A17E-12B5954CA930}] => (Allow) D:\Games\Steam\SteamApps\common\SolForge\solforge.exe FirewallRules: [{3427EF09-BD84-4D1D-AB46-A42FF9B69310}] => (Allow) D:\Games\Steam\SteamApps\common\Heroes of Might & Magic III - HD Edition\HOMM3Launcher.exe FirewallRules: [{5467F597-54B7-4D59-9C4A-AA15A33336A8}] => (Allow) D:\Games\Steam\SteamApps\common\Heroes of Might & Magic III - HD Edition\HOMM3Launcher.exe FirewallRules: [TCP Query User{0527289B-8C50-4A9C-B7B5-3A3748D43A45}D:\games\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\games\steam\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [UDP Query User{4659F0F2-CF56-492E-B6E8-3F3EB6D76E24}D:\games\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) D:\games\steam\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [{813192B0-098A-4F9D-89A4-D1A5FE005DF3}] => (Allow) D:\Games\Steam\SteamApps\common\Battlerite\Battlerite.exe FirewallRules: [{1FA5BDA1-4719-4063-9ABF-B1CC51F616E0}] => (Allow) D:\Games\Steam\SteamApps\common\Battlerite\Battlerite.exe FirewallRules: [{70A6654F-6D8E-49CA-84D0-33FA1F6AC851}] => (Allow) D:\Games\Steam\SteamApps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{EC4A9EDB-9AE0-48F7-9895-F0A9B52442AD}] => (Allow) D:\Games\Steam\SteamApps\common\Stardew Valley\Stardew Valley.exe FirewallRules: [{4B38A217-EDFA-44BD-9336-7181B9E0CDC8}] => (Allow) D:\Games\Steam\SteamApps\common\Magic Duels\MagicDuels.exe FirewallRules: [{2F9780C6-F97A-493D-8CDF-EF5773FA1690}] => (Allow) D:\Games\Steam\SteamApps\common\Magic Duels\MagicDuels.exe FirewallRules: [{02733531-60E0-4703-9F1B-7869DC9E2C36}] => (Allow) D:\Games\Steam\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [{2605B1E7-9C38-428E-A782-73E6E40FD838}] => (Allow) D:\Games\Steam\SteamApps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [TCP Query User{D82FFFC8-4FAA-4135-BAAE-BB52E5F6DA2C}D:\games\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\games\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [UDP Query User{12729DF7-96EB-492C-9518-8F2CFF73724D}D:\games\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\games\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [{7B43C6F3-5EDA-46E5-855E-D584BF1CB825}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{EA145116-D07B-4283-ADCC-6EE855BBB003}D:\games\heroes of the storm\versions\base47479\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base47479\heroesofthestorm.exe FirewallRules: [UDP Query User{78E43FBC-38AD-415A-8966-B4CCDA1D398C}D:\games\heroes of the storm\versions\base47479\heroesofthestorm.exe] => (Allow) D:\games\heroes of the storm\versions\base47479\heroesofthestorm.exe FirewallRules: [TCP Query User{A05C679C-C584-4CAD-BCCC-F0B2EDB28D7A}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{D04E35A4-D75B-454D-BB11-FDC3BF1D7625}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{FE814D73-6297-44D6-B7CB-F4EDA7C62080}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{C4C3043E-121E-4DBF-ABF5-CE06C570CD1F}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{D8784F5D-9CC0-4348-9B5C-3EC196108B1A}] => (Allow) D:\Games\Steam\SteamApps\common\Shadowverse\Shadowverse.exe FirewallRules: [{6DF3698B-CEA4-416A-9B72-9863AF95A224}] => (Allow) D:\Games\Steam\SteamApps\common\Shadowverse\Shadowverse.exe ==================== Wiederherstellungspunkte ========================= 22-10-2016 21:03:33 Installed Hi-Rez Studios Games 22-10-2016 21:04:36 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 22-10-2016 21:04:44 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 22-10-2016 21:05:06 DirectX wurde installiert 25-10-2016 09:10:58 Windows Update 30-10-2016 18:13:46 DirectX wurde installiert 30-10-2016 18:15:41 DirectX wurde installiert 01-11-2016 09:01:33 Windows Update 04-11-2016 17:35:33 Windows Update 05-11-2016 14:44:12 Windows Defender Checkpoint 05-11-2016 18:26:16 Revo Uninstaller's restore point - Reimage Protector 05-11-2016 19:14:51 Installiert Arc ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: AODDriver4.01 Description: AODDriver4.01 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: AODDriver4.01 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/05/2016 07:12:25 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (11/05/2016 06:45:18 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (11/05/2016 06:26:13 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert . Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess. Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {f1fe5cc3-0ede-4bff-a187-b371b388a44e} Error: (11/05/2016 05:27:41 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (11/05/2016 02:44:11 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert . Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess. Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {c70d6d45-6162-40dc-a466-fc069313d749} Error: (11/05/2016 07:51:24 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (11/04/2016 05:32:28 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (11/03/2016 08:41:29 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Error: (11/02/2016 11:12:16 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: tos.exe, Version: 1.0.0.1, Zeitstempel: 0x57186ecc Name des fehlerhaften Moduls: tos.exe, Version: 1.0.0.1, Zeitstempel: 0x57186ecc Ausnahmecode: 0x40000015 Fehleroffset: 0x001f8edb ID des fehlerhaften Prozesses: 0xa44 Startzeit der fehlerhaften Anwendung: 0x01d234f0735e02ed Pfad der fehlerhaften Anwendung: D:\Games\Steam\steamapps\common\TreeOfSavior\release\patch\tos.exe Pfad des fehlerhaften Moduls: D:\Games\Steam\steamapps\common\TreeOfSavior\release\patch\tos.exe Berichtskennung: d43dfcf5-a0e4-11e6-b476-448a5b2dd85e Error: (11/02/2016 07:31:21 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist. Systemfehler: ============= Error: (11/05/2016 07:10:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "AODDriver4.01" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (11/05/2016 07:09:47 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Der Server "{E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/05/2016 06:43:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "AODDriver4.01" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann den angegebenen Pfad nicht finden. Error: (11/05/2016 06:42:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/05/2016 06:42:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/05/2016 06:42:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "HP Support Solutions Framework Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/05/2016 06:42:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Portrait Displays SDK Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/05/2016 06:42:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Hi-Rez Studios Authenticate and Update Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/05/2016 06:42:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Portrait Displays Display Tune Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/05/2016 06:42:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "German Canon IJ Scan Utility register event" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. ==================== Speicherinformationen =========================== Prozessor: AMD FX(tm)-4300 Quad-Core Processor Prozentuale Nutzung des RAM: 26% Installierter physikalischer RAM: 8190.18 MB Verfügbarer physikalischer RAM: 5983.29 MB Summe virtueller Speicher: 16378.54 MB Verfügbarer virtueller Speicher: 13987.15 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:195.21 GB) (Free:101.8 GB) NTFS Drive d: () (Fixed) (Total:736.2 GB) (Free:523.02 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 33252FBE) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=195.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=736.2 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
10.11.2016, 15:39 | #3 |
/// Winkelfunktion /// TB-Süch-Tiger™ | BrowserModifier:Win32/SupTab!Blank Das issen Fehlalarm => https://heise.de/-3458138
__________________
__________________ |
Themen zu BrowserModifier:Win32/SupTab!Blank |
andere, bla, blank, browsermodifier, canon, erkannt, gefährliche, hilfe, hilfe!, leute, liebe, lieben, panik, problem, software, win, windoof |