|
Plagegeister aller Art und deren Bekämpfung: anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
20.11.2016, 06:32 | #1 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Hallo, Ich bin der Max und habe seit einer Woche ein Problem. Wenn ich ein Programm zu öffnen versuche erscheint immer wieder die gleiche Fehlermeldung mit dem selbem Fehlercode (0xc0000006). Angefange hat das ganze mit dem download einer korrupten Datei, da ich versucht hatte eine Datei zu downloaden aber ausversehen auf einen "fake" link geklickt habe. Mein Antivirus Programm (Avira free version) hat sofort reagiert und die Datei in Quarantäne verschoben. Ich habe nun einen Malewarebytes Suchlauf durchlaufen lassen und es wurden 2 Funde gemacht. Unten die log files davon. Ich bin mir nun sehr unsicher ob ein Virus/Trojaner diese Fehlermeldungen verursacht oder nicht. Ich habe vor ein paar Jahren ein Problem gehabt und hier wurde mir super geholfen, nun appeliere ich erneut an die klugen köpfe vom Trojanerboard um mir zu helfen. MFG Max. Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 20.11.2016 Suchlaufzeit: 04:27 Protokolldatei: malewarebytesprotokoll.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.11.20.01 Rootkit-Datenbank: v2016.10.31.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: Max-Henrik Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 307397 Abgelaufene Zeit: 8 Min., 22 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 2 PUP.Optional.AdvancedSystemProtector, C:\Users\Max-Henrik\Downloads\pc-wizard_2014.2.13-setup (1).exe, In Quarantäne, [6d140bb7d0ca23132c230194748f56aa], PUP.Optional.AdvancedSystemProtector, C:\Users\Max-Henrik\Downloads\pc-wizard_2014.2.13-setup.exe, In Quarantäne, [206116acd4c67eb81d32791c57acff01], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 20/11/2016 um 06:26:08 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-11-19.2 [Server] # Betriebssystem : Windows 10 Home (X64) # Benutzername : Max-Henrik - FIDEYS_PC # Gestartet von : C:\Users\Max-Henrik\Downloads\AdwCleaner_6.030.exe # Modus: Suchlauf # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** Keine schädlichen Dienste gefunden. ***** [ Ordner ] ***** Keine schädlichen Ordner gefunden. ***** [ Dateien ] ***** Datei Gefunden: C:\END ***** [ DLL ] ***** Keine infizierten DLLs gefunden. ***** [ WMI ] ***** Keine schädlichen Schlüssel gefunden. ***** [ Verknüpfungen ] ***** Keine infizierten Verknüpfungen gefunden. ***** [ Aufgabenplanung ] ***** Keine schädlichen Aufgaben gefunden. ***** [ Registrierungsdatenbank ] ***** Keine schädlichen Elemente in der Registrierungsdatenbank gefunden. ***** [ Internetbrowser ] ***** Keine schädlichen Elemente in Firefox basierten Browsern gefunden. Keine schädlichen Elemente in Chrome basierten Browsern gefunden. ************************* C:\AdwCleaner\AdwCleaner[S0].txt - [1186 Bytes] - [20/11/2016 06:26:08] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1259 Bytes] ########## |
20.11.2016, 06:55 | #2 |
/// TB-Ausbilder /// Anleitungs-Guru | anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System?Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
Hinweis: Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden. Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert. Adware & Co. können wir sehr gut entfernen. Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst. Los geht's: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff Posten in CODE-Tags: So gehts... Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert uns massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
20.11.2016, 07:14 | #3 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Hallo Jürgen, erst einmal danke, dass du dich meinem Problem animmst. Hier sind die FRST.txt sowie Addition.txt.
__________________FRST.txt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 19-11-2016 01 durchgeführt von Max-Henrik (Administrator) auf FIDEYS_PC (20-11-2016 07:05:54) Gestartet von C:\Users\Max-Henrik\Downloads Geladene Profile: Max-Henrik & (Verfügbare Profile: Max-Henrik) Platform: Windows 10 Home Version 1607 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Copyright (c) 2016 Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Spotify Ltd) C:\Users\Max-Henrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Hammer & Chisel, Inc.) C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\Discord.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Copyright (c) 2016 Plays.tv, LLC) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe (Hammer & Chisel, Inc.) C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\Discord.exe (Hammer & Chisel, Inc.) C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\Discord.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.winxp\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe () C:\Program Files (x86)\Raptr Inc\PlaysTV\QtWebEngineProcess.exe () C:\Program Files (x86)\Raptr Inc\PlaysTV\QtWebEngineProcess.exe () C:\Program Files (x86)\Raptr Inc\PlaysTV\QtWebEngineProcess.exe () C:\Program Files (x86)\Raptr Inc\PlaysTV\QtWebEngineProcess.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Raptr Inc.) C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_ep64.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe () C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.32\deploy\LoLLauncher.exe () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\LoLPatcher.exe () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\LoLPatcherUx.exe () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\LoLPatcherUx.exe () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\LoLPatcherUx.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040792 2015-07-07] (Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [15112312 2016-02-09] (Logitech Inc.) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2016-10-01] (Microsoft Corporation) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [916072 2016-10-25] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-19] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1178400 2015-07-10] (Intel Corporation) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2016-10-31] (Razer Inc.) HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [50899640 2016-09-14] (Hammer & Chisel, Inc.) HKLM-x32\...\Run: [PlaysTV] => C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv_launcher.exe [51984 2016-11-18] (Copyright (c) 2016 Plays.tv, LLC) HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2860832 2016-10-13] (Valve Corporation) HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\Run: [Spotify Web Helper] => C:\Users\Max-Henrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1431664 2016-11-18] (Spotify Ltd) HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd) HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\Run: [Discord] => C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\Discord.exe [62471352 2016-08-24] (Hammer & Chisel, Inc.) HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27011712 2016-10-17] (Skype Technologies S.A.) HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2860832 2016-10-13] (Valve Corporation) HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spotify Web Helper] => C:\Users\Max-Henrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1431664 2016-11-18] (Spotify Ltd) HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8591272 2015-11-16] (Piriform Ltd) HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Discord] => C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\Discord.exe [62471352 2016-08-24] (Hammer & Chisel, Inc.) HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27011712 2016-10-17] (Skype Technologies S.A.) ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Max-Henrik\AppData\Local\MEGAsync\ShellExtX64.dll Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Max-Henrik\AppData\Local\MEGAsync\ShellExtX64.dll Keine Datei ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Max-Henrik\AppData\Local\MEGAsync\ShellExtX64.dll Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Max-Henrik\AppData\Local\MEGAsync\ShellExtX32.dll Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Max-Henrik\AppData\Local\MEGAsync\ShellExtX32.dll Keine Datei ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Max-Henrik\AppData\Local\MEGAsync\ShellExtX32.dll Keine Datei ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 208.67.220.220 Tcpip\..\Interfaces\{1bca851c-703b-44aa-85b3-bb0abc306619}: [DhcpNameServer] 8.8.8.8 208.67.220.220 Internet Explorer: ================== SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3570775086-1545198752-834638216-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\ssv.dll [2016-02-15] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-02-15] (Oracle Corporation) FireFox: ======== FF DefaultProfile: 869e68z1.default FF ProfilePath: C:\Users\Max-Henrik\AppData\Roaming\Mozilla\Firefox\Profiles\869e68z1.default [2016-11-20] FF Extension: (Adblock Plus) - C:\Users\Max-Henrik\AppData\Roaming\Mozilla\Firefox\Profiles\869e68z1.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-10-28] FF Extension: (Greasemonkey) - C:\Users\Max-Henrik\AppData\Roaming\Mozilla\Firefox\Profiles\869e68z1.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2016-08-21] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-08] () FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-16] (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-08] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-02-15] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files (x86)\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-02-15] (Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-08-25] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-08-25] (NVIDIA Corporation) ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1089088 2016-10-25] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [475232 2016-10-25] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [475232 2016-10-25] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1488240 2016-10-25] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [324304 2016-08-19] (Avira Operations GmbH & Co. KG) R2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2016-11-15] (Hi-Rez Studios) [Datei ist nicht signiert] R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373744 2016-11-01] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [193144 2016-02-09] (Logitech Inc.) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) S3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) R2 PlaysService; C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe [55056 2016-11-18] (Copyright (c) 2016 Plays.tv, LLC) R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] () R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7184144 2016-07-06] (TeamViewer GmbH) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 ALSysIO; C:\Users\MAX-HE~1\AppData\Local\Temp\ALSysIO64.sys [35320 2016-10-21] (Arthur Liberman) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [151352 2016-10-25] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [153392 2016-10-05] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [35488 2015-12-03] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [78208 2016-06-17] (Avira Operations GmbH & Co. KG) S3 CM_VENDER_CMD; C:\Program Files\Common Files\Logitech\G430Install\CMVC64.sys [17104 2014-07-30] (Windows (R) Win 7 DDK provider) S3 HtcVCom32; C:\WINDOWS\System32\drivers\HtcVComV64.sys [121800 2010-03-09] (QUALCOMM Incorporated) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) S3 LGSHidFilt; C:\WINDOWS\System32\drivers\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-11-20] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d3851cb7c8216f9e\nvlddmkm.sys [14216760 2016-08-27] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S3 NW1900; C:\WINDOWS\System32\drivers\NW1900.sys [138096 2012-03-21] (SMART Technologies) S3 NWLowRider; C:\WINDOWS\System32\drivers\NWLowRider.sys [25456 2012-03-21] () R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [895256 2015-06-23] (Realtek ) S3 rzdaendpt; C:\WINDOWS\System32\drivers\rzdaendpt.sys [33448 2013-11-15] (Razer Inc) R3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc) S3 rzhnet; C:\WINDOWS\System32\Drivers\rzhnet.sys [21160 2013-11-15] (Razer Inc) S3 rzjstk; C:\WINDOWS\System32\drivers\rzjstk.sys [27816 2014-01-10] (Razer Inc) S3 rzkeypadendpt; C:\WINDOWS\System32\drivers\rzkeypadendpt.sys [32936 2013-11-15] (Razer Inc) S3 rzmpos; C:\WINDOWS\System32\drivers\rzmpos.sys [34984 2013-11-15] (Razer Inc) S3 rzp1endpt; C:\WINDOWS\System32\drivers\rzp1endpt.sys [39080 2013-11-15] (Razer Inc) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.) S3 rzvkeyboard; C:\WINDOWS\System32\drivers\rzvkeyboard.sys [30888 2013-11-15] (Razer Inc) S3 rzvmouse; C:\WINDOWS\System32\drivers\rzvmouse.sys [30888 2013-11-15] (Razer Inc) S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [115488 2014-05-16] (Oracle Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-20 07:04 - 2016-11-20 07:05 - 02413056 _____ (Farbar) C:\Users\Max-Henrik\Downloads\FRST64.exe 2016-11-20 06:38 - 2016-11-20 06:38 - 00001195 _____ C:\Users\Max-Henrik\Desktop\AdwCleaner[C0].txt 2016-11-20 06:24 - 2016-11-20 06:34 - 00000000 ____D C:\AdwCleaner 2016-11-20 06:24 - 2016-11-20 06:24 - 03910208 _____ C:\Users\Max-Henrik\Downloads\AdwCleaner_6.030.exe 2016-11-20 04:49 - 2016-11-20 04:49 - 00001478 _____ C:\Users\Max-Henrik\Desktop\malewarebytesprotokoll.txt 2016-11-20 04:26 - 2016-11-20 06:37 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-11-20 04:26 - 2016-11-20 04:26 - 00001171 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-11-20 04:26 - 2016-11-20 04:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-11-20 04:26 - 2016-11-20 04:26 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-20 04:26 - 2016-11-20 04:26 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-11-20 04:26 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-11-20 04:26 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-11-20 04:26 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-11-20 04:25 - 2016-11-20 04:26 - 22851472 _____ (Malwarebytes ) C:\Users\Max-Henrik\Downloads\mbam-setup-2.2.1.1043.exe 2016-11-19 02:51 - 2016-11-19 02:51 - 00000888 _____ C:\Users\Public\Desktop\Overwatch.lnk 2016-11-19 02:51 - 2016-11-19 02:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overwatch 2016-11-19 02:33 - 2016-11-20 03:13 - 00000000 ____D C:\Program Files (x86)\Overwatch 2016-11-17 15:20 - 2016-11-17 15:20 - 00000003 _____ C:\WINDOWS\SysWOW64\HRUPPROG.TXT 2016-11-17 15:20 - 2016-11-17 15:20 - 00000003 _____ C:\WINDOWS\SysWOW64\HRUPPROG.EXIT 2016-11-16 23:12 - 2016-11-20 06:38 - 00000000 ____D C:\Users\Max-Henrik\AppData\LocalLow\Mozilla 2016-11-16 07:24 - 2016-11-20 03:38 - 00000000 ____D C:\Program Files\Mozilla Firefox 2016-11-12 18:58 - 2016-11-02 12:13 - 00773720 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2016-11-12 18:58 - 2016-11-02 12:09 - 02257104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-11-12 18:58 - 2016-11-02 12:08 - 00576408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2016-11-12 18:58 - 2016-11-02 12:08 - 00186424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2016-11-12 18:58 - 2016-11-02 12:05 - 00959112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-11-12 18:58 - 2016-11-02 12:02 - 00682816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2016-11-12 18:58 - 2016-11-02 12:01 - 01263856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-11-12 18:58 - 2016-11-02 12:01 - 00545936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2016-11-12 18:58 - 2016-11-02 12:00 - 01274712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-11-12 18:58 - 2016-11-02 11:39 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\zipfldr.dll 2016-11-12 18:58 - 2016-11-02 11:29 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2016-11-12 18:58 - 2016-11-02 11:28 - 04423680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2016-11-12 18:58 - 2016-11-02 11:28 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenterCPL.dll 2016-11-12 18:58 - 2016-11-02 11:28 - 00432128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-11-12 18:58 - 2016-11-02 11:28 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chartv.dll 2016-11-12 18:58 - 2016-11-02 11:26 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-11-12 18:58 - 2016-11-02 11:17 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-11-12 18:58 - 2016-11-02 11:16 - 01359360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2016-11-12 18:57 - 2016-11-02 13:01 - 00484584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2016-11-12 18:57 - 2016-11-02 13:01 - 00315744 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2016-11-12 18:57 - 2016-11-02 12:22 - 01570672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-11-12 18:57 - 2016-11-02 12:22 - 00601712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2016-11-12 18:57 - 2016-11-02 12:20 - 00590960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2016-11-12 18:57 - 2016-11-02 12:13 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-11-12 18:57 - 2016-11-02 12:12 - 02255712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2016-11-12 18:57 - 2016-11-02 12:12 - 00376672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2016-11-12 18:57 - 2016-11-02 12:12 - 00341344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-11-12 18:57 - 2016-11-02 12:10 - 02323728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2016-11-12 18:57 - 2016-11-02 12:05 - 06657176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2016-11-12 18:57 - 2016-11-02 12:05 - 03892352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2016-11-12 18:57 - 2016-11-02 12:05 - 00951904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-11-12 18:57 - 2016-11-02 12:05 - 00405856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-11-12 18:57 - 2016-11-02 12:04 - 04312248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-11-12 18:57 - 2016-11-02 12:03 - 02750936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-11-12 18:57 - 2016-11-02 12:03 - 00714592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2016-11-12 18:57 - 2016-11-02 12:02 - 00238056 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2016-11-12 18:57 - 2016-11-02 12:01 - 01425000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2016-11-12 18:57 - 2016-11-02 12:01 - 01415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2016-11-12 18:57 - 2016-11-02 12:00 - 22223968 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-11-12 18:57 - 2016-11-02 12:00 - 08156080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2016-11-12 18:57 - 2016-11-02 12:00 - 00534096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2016-11-12 18:57 - 2016-11-02 11:59 - 04673304 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-11-12 18:57 - 2016-11-02 11:50 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-11-12 18:57 - 2016-11-02 11:49 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2016-11-12 18:57 - 2016-11-02 11:49 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2016-11-12 18:57 - 2016-11-02 11:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2016-11-12 18:57 - 2016-11-02 11:47 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2016-11-12 18:57 - 2016-11-02 11:46 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll 2016-11-12 18:57 - 2016-11-02 11:44 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-11-12 18:57 - 2016-11-02 11:44 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthExt.dll 2016-11-12 18:57 - 2016-11-02 11:43 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-11-12 18:57 - 2016-11-02 11:42 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll 2016-11-12 18:57 - 2016-11-02 11:42 - 00549376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActionCenterCPL.dll 2016-11-12 18:57 - 2016-11-02 11:42 - 00506880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll 2016-11-12 18:57 - 2016-11-02 11:42 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2016-11-12 18:57 - 2016-11-02 11:42 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-11-12 18:57 - 2016-11-02 11:40 - 00896512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontext.dll 2016-11-12 18:57 - 2016-11-02 11:40 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-11-12 18:57 - 2016-11-02 11:39 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppBroker.dll 2016-11-12 18:57 - 2016-11-02 11:38 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2016-11-12 18:57 - 2016-11-02 11:37 - 19415040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-11-12 18:57 - 2016-11-02 11:36 - 19415552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-11-12 18:57 - 2016-11-02 11:36 - 07626752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-11-12 18:57 - 2016-11-02 11:34 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-11-12 18:57 - 2016-11-02 11:33 - 12349952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-11-12 18:57 - 2016-11-02 11:33 - 03307520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2016-11-12 18:57 - 2016-11-02 11:32 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsext.dll 2016-11-12 18:57 - 2016-11-02 11:31 - 03196416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2016-11-12 18:57 - 2016-11-02 11:31 - 01228288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2016-11-12 18:57 - 2016-11-02 11:31 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe 2016-11-12 18:57 - 2016-11-02 11:31 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll 2016-11-12 18:57 - 2016-11-02 11:31 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll 2016-11-12 18:57 - 2016-11-02 11:31 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2016-11-12 18:57 - 2016-11-02 11:31 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-11-12 18:57 - 2016-11-02 11:30 - 12175360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-11-12 18:57 - 2016-11-02 11:30 - 09131008 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-11-12 18:57 - 2016-11-02 11:30 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll 2016-11-12 18:57 - 2016-11-02 11:30 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2016-11-12 18:57 - 2016-11-02 11:30 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll 2016-11-12 18:57 - 2016-11-02 11:30 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2016-11-12 18:57 - 2016-11-02 11:29 - 07469056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2016-11-12 18:57 - 2016-11-02 11:29 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-11-12 18:57 - 2016-11-02 11:29 - 01247232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2016-11-12 18:57 - 2016-11-02 11:29 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkBindingEngineMigPlugin.dll 2016-11-12 18:57 - 2016-11-02 11:29 - 00314880 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll 2016-11-12 18:57 - 2016-11-02 11:29 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll 2016-11-12 18:57 - 2016-11-02 11:29 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 06044160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00690176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCenter.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkDesktopSettings.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2016-11-12 18:57 - 2016-11-02 11:28 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 23677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 02458112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themecpl.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 01388544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 00580608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hgcpl.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2016-11-12 18:57 - 2016-11-02 11:27 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll 2016-11-12 18:57 - 2016-11-02 11:27 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 02747392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 02484736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gameux.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 01509376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 00912896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ddraw.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 00388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\zipfldr.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stobject.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll 2016-11-12 18:57 - 2016-11-02 11:26 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-11-12 18:57 - 2016-11-02 11:25 - 02998272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-11-12 18:57 - 2016-11-02 11:25 - 01556480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2016-11-12 18:57 - 2016-11-02 11:25 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll 2016-11-12 18:57 - 2016-11-02 11:25 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll 2016-11-12 18:57 - 2016-11-02 11:24 - 00940032 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontext.dll 2016-11-12 18:57 - 2016-11-02 11:23 - 03106304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2016-11-12 18:57 - 2016-11-02 11:23 - 02104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2016-11-12 18:57 - 2016-11-02 11:23 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys 2016-11-12 18:57 - 2016-11-02 11:22 - 13441024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-11-12 18:57 - 2016-11-02 11:22 - 13081600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-11-12 18:57 - 2016-11-02 11:22 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-11-12 18:57 - 2016-11-02 11:22 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2016-11-12 18:57 - 2016-11-02 11:21 - 05111296 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2016-11-12 18:57 - 2016-11-02 11:21 - 00942080 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 08127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 08075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 00981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\chartv.dll 2016-11-12 18:57 - 2016-11-02 11:19 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2016-11-12 18:57 - 2016-11-02 11:18 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2016-11-12 18:57 - 2016-11-02 11:18 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll 2016-11-12 18:57 - 2016-11-02 11:18 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll 2016-11-12 18:57 - 2016-11-02 11:17 - 04746752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-11-12 18:57 - 2016-11-02 11:17 - 01282048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2016-11-12 18:57 - 2016-11-02 11:17 - 00982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2016-11-12 18:57 - 2016-11-02 11:17 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2016-11-12 18:57 - 2016-11-02 11:17 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 03400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncCenter.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 03133440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 02688512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 02669056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 02512384 _____ (Microsoft Corporation) C:\WINDOWS\system32\themecpl.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 01779712 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 01637888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 00881664 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 00770560 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\hgcpl.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 00579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll 2016-11-12 18:57 - 2016-11-02 11:15 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2016-11-12 18:57 - 2016-11-02 11:15 - 02611200 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameux.dll 2016-11-12 18:57 - 2016-11-02 11:15 - 01513472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-11-12 18:57 - 2016-11-02 11:15 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2016-11-12 18:57 - 2016-11-02 11:15 - 00483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll 2016-11-12 18:57 - 2016-11-02 11:14 - 01726976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2016-11-12 18:57 - 2016-11-02 11:13 - 03496960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2016-11-12 18:57 - 2016-11-02 09:20 - 00446896 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-11-12 18:56 - 2016-11-02 12:20 - 00378720 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-11-12 18:56 - 2016-11-02 12:15 - 01051112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-11-12 18:56 - 2016-11-02 12:15 - 00894096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-11-12 18:56 - 2016-11-02 12:14 - 07816544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-11-12 18:56 - 2016-11-02 12:13 - 01354320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-11-12 18:56 - 2016-11-02 12:13 - 01173496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-11-12 18:56 - 2016-11-02 12:13 - 00423776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe 2016-11-12 18:56 - 2016-11-02 12:08 - 00602464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2016-11-12 18:56 - 2016-11-02 12:08 - 00111968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll 2016-11-12 18:56 - 2016-11-02 12:05 - 20969928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-11-12 18:56 - 2016-11-02 12:04 - 02678056 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2016-11-12 18:56 - 2016-11-02 12:04 - 00596832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2016-11-12 18:56 - 2016-11-02 12:02 - 00848736 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2016-11-12 18:56 - 2016-11-02 12:02 - 00148832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll 2016-11-12 18:56 - 2016-11-02 12:01 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll 2016-11-12 18:56 - 2016-11-02 12:01 - 00092512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2016-11-12 18:56 - 2016-11-02 12:00 - 04130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2016-11-12 18:56 - 2016-11-02 12:00 - 01061968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-11-12 18:56 - 2016-11-02 11:56 - 01609920 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2016-11-12 18:56 - 2016-11-02 11:56 - 01572768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2016-11-12 18:56 - 2016-11-02 11:56 - 01418312 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-11-12 18:56 - 2016-11-02 11:56 - 00628552 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2016-11-12 18:56 - 2016-11-02 11:56 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll 2016-11-12 18:56 - 2016-11-02 11:55 - 00048992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys 2016-11-12 18:56 - 2016-11-02 11:48 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll 2016-11-12 18:56 - 2016-11-02 11:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsext.dll 2016-11-12 18:56 - 2016-11-02 11:47 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BlockedShutdown.dll 2016-11-12 18:56 - 2016-11-02 11:47 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BcastDVRHelper.dll 2016-11-12 18:56 - 2016-11-02 11:46 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll 2016-11-12 18:56 - 2016-11-02 11:45 - 00492032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2016-11-12 18:56 - 2016-11-02 11:45 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.BioFeedback.dll 2016-11-12 18:56 - 2016-11-02 11:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll 2016-11-12 18:56 - 2016-11-02 11:44 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll 2016-11-12 18:56 - 2016-11-02 11:43 - 00731136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8.dll 2016-11-12 18:56 - 2016-11-02 11:43 - 00270336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2016-11-12 18:56 - 2016-11-02 11:43 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FSClient.dll 2016-11-12 18:56 - 2016-11-02 11:43 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2016-11-12 18:56 - 2016-11-02 11:42 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Cred.dll 2016-11-12 18:56 - 2016-11-02 11:42 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.HumanInterfaceDevice.dll 2016-11-12 18:56 - 2016-11-02 11:41 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2016-11-12 18:56 - 2016-11-02 11:40 - 00548352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ddraw.dll 2016-11-12 18:56 - 2016-11-02 11:39 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll 2016-11-12 18:56 - 2016-11-02 11:38 - 22563840 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-11-12 18:56 - 2016-11-02 11:36 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetailsUpdate.dll 2016-11-12 18:56 - 2016-11-02 11:35 - 00336896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe 2016-11-12 18:56 - 2016-11-02 11:34 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-11-12 18:56 - 2016-11-02 11:33 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-11-12 18:56 - 2016-11-02 11:32 - 00045056 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-11-12 18:56 - 2016-11-02 11:31 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\BcastDVRHelper.dll 2016-11-12 18:56 - 2016-11-02 11:31 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll 2016-11-12 18:56 - 2016-11-02 11:31 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll 2016-11-12 18:56 - 2016-11-02 11:30 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll 2016-11-12 18:56 - 2016-11-02 11:30 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll 2016-11-12 18:56 - 2016-11-02 11:30 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ErrorDetails.dll 2016-11-12 18:56 - 2016-11-02 11:29 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll 2016-11-12 18:56 - 2016-11-02 11:29 - 00276992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2016-11-12 18:56 - 2016-11-02 11:29 - 00211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-11-12 18:56 - 2016-11-02 11:29 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2016-11-12 18:56 - 2016-11-02 11:28 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2016-11-12 18:56 - 2016-11-02 11:28 - 00748544 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-11-12 18:56 - 2016-11-02 11:28 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkUXBroker.dll 2016-11-12 18:56 - 2016-11-02 11:28 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.HumanInterfaceDevice.dll 2016-11-12 18:56 - 2016-11-02 11:28 - 00260608 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2016-11-12 18:56 - 2016-11-02 11:27 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2016-11-12 18:56 - 2016-11-02 11:26 - 01880576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-11-12 18:56 - 2016-11-02 11:26 - 01595392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-11-12 18:56 - 2016-11-02 11:26 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2016-11-12 18:56 - 2016-11-02 11:26 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll 2016-11-12 18:56 - 2016-11-02 11:25 - 02256384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-11-12 18:56 - 2016-11-02 11:25 - 00956416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2016-11-12 18:56 - 2016-11-02 11:25 - 00772608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2016-11-12 18:56 - 2016-11-02 11:25 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll 2016-11-12 18:56 - 2016-11-02 11:24 - 03778560 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2016-11-12 18:56 - 2016-11-02 11:23 - 02356736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2016-11-12 18:56 - 2016-11-02 11:23 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll 2016-11-12 18:56 - 2016-11-02 11:23 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetailsUpdate.dll 2016-11-12 18:56 - 2016-11-02 11:22 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe 2016-11-12 18:56 - 2016-11-02 11:20 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2016-11-12 18:56 - 2016-11-02 11:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ErrorDetails.dll 2016-11-12 18:56 - 2016-11-02 11:18 - 01690112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2016-11-12 18:56 - 2016-11-02 11:16 - 04148736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2016-11-12 18:56 - 2016-11-02 11:16 - 01490944 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-11-12 18:56 - 2016-11-02 11:16 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll 2016-11-12 18:56 - 2016-11-02 11:15 - 03616768 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-11-12 18:56 - 2016-11-02 11:15 - 01348608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll 2016-11-12 18:56 - 2016-11-02 11:13 - 03299840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2016-11-12 18:56 - 2016-11-02 11:13 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll 2016-11-12 18:56 - 2016-11-02 10:11 - 00788624 _____ C:\WINDOWS\SysWOW64\locale.nls 2016-11-12 18:56 - 2016-11-02 10:11 - 00788624 _____ C:\WINDOWS\system32\locale.nls 2016-11-12 18:56 - 2016-08-02 05:30 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-11-12 18:14 - 2016-11-12 18:15 - 00537876 _____ C:\WINDOWS\Minidump\111216-25250-01.dmp 2016-11-07 05:50 - 2016-11-07 05:50 - 00006129 _____ C:\Users\Max-Henrik\Downloads\LOL_OPGG_Observer_1557477382_spectate.bat 2016-11-05 02:44 - 2016-11-05 02:44 - 113651192 _____ (Riot Games, Inc) C:\Users\Max-Henrik\Downloads\League client alpha installer EUW.exe 2016-11-05 02:44 - 2016-11-05 02:44 - 00000745 _____ C:\Users\Max-Henrik\Desktop\League client alpha.lnk 2016-11-05 02:44 - 2016-11-05 02:44 - 00000000 ____D C:\Users\Max-Henrik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\League client alpha 2016-11-04 20:47 - 2016-09-17 02:12 - 00044144 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpmgrk.sys 2016-11-01 23:06 - 2016-11-01 23:06 - 39862848 _____ (Intel Corporation) C:\WINDOWS\system32\igdumdim64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 38903912 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdumdim32.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 33479360 _____ (Intel Corporation) C:\WINDOWS\system32\igd11dxva64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 12680800 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10iumd32.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 06696832 _____ (Intel Corporation) C:\WINDOWS\system32\igdusc64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 05140472 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdusc32.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 02393176 _____ (Intel Corporation) C:\WINDOWS\system32\igdmd64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 01816720 _____ (Intel Corporation) C:\WINDOWS\system32\iglhsip64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 01814064 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhsip32.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 00242160 _____ (Intel Corporation) C:\WINDOWS\system32\iglhcp64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 00205360 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\iglhcp32.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 00183984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmrt64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 00182960 _____ (Intel Corporation) C:\WINDOWS\system32\igfx11cmrt64.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 00160272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmrt32.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 00160272 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfx11cmrt32.dll 2016-11-01 23:06 - 2016-11-01 23:06 - 00055248 _____ (Intel Corporation) C:\WINDOWS\system32\igfxexps.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 29101576 _____ (Intel Corporation) C:\WINDOWS\system32\common_clang64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 19861512 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\common_clang32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 15837984 _____ (Intel Corporation) C:\WINDOWS\system32\igd10iumd64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 15488928 _____ (Intel Corporation) C:\WINDOWS\system32\igc64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 13483208 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igc32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 11742216 _____ (Intel Corporation) C:\WINDOWS\system32\ig75icd64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 08732168 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\ig75icd32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 05688840 _____ (Intel Corporation) C:\WINDOWS\system32\igdmcl64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 05262856 _____ (Intel Corporation) C:\WINDOWS\system32\GfxResources.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 04928528 _____ (Intel Corporation) C:\WINDOWS\system32\igdrcl64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 04363784 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdrcl32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 04270680 _____ (Intel Corporation) C:\WINDOWS\system32\igd12umd64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 04239704 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd12umd32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 03971592 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmcl32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 01858640 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdmd32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 01590792 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcmjit64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 01178632 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxcmjit32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 01027056 _____ C:\WINDOWS\system32\igfxSDK.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00968168 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv4_0.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00964592 _____ (Intel Corporation) C:\WINDOWS\system32\Gfxv2_0.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00705032 _____ (Intel Corporation) C:\WINDOWS\system32\MetroIntelGenericUIFramework.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00536560 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiUMS64.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00466920 _____ (Intel Corporation) C:\WINDOWS\system32\GfxUIEx.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00448496 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCpHDCPSvc.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00439304 _____ (Intel Corporation) C:\WINDOWS\system32\igdbcl64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00416264 _____ (Intel Corporation) C:\WINDOWS\system32\IntelOpenCL64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00401896 _____ C:\WINDOWS\system32\igfxTray.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00390152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxOSP.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00388616 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdbcl32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00350184 _____ (Intel Corporation) C:\WINDOWS\system32\IntelWiDiMCComp64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00318472 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelOpenCL32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00312304 _____ (Intel Corporation) C:\WINDOWS\system32\igd10idpp64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00301552 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00297168 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd10idpp32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00273416 _____ C:\WINDOWS\system32\igfxCPL.cpl 2016-11-01 23:05 - 2016-11-01 23:05 - 00268784 _____ (Intel Corporation) C:\WINDOWS\system32\igfxHK.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00266248 _____ (Intel Corporation) C:\WINDOWS\system32\igdfcl64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00254984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDTCM.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00237040 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00232432 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyApp.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00231920 _____ (Intel Corporation) C:\WINDOWS\system32\DPTopologyAppv2_0.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00225288 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdfcl32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00223248 _____ (Intel Corporation) C:\WINDOWS\system32\igdde64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00212488 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCoIn_v4531.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00193032 _____ (Intel Corporation) C:\WINDOWS\system32\igdail64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00181840 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdde32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00175088 _____ (Intel Corporation) C:\WINDOWS\system32\difx64.exe 2016-11-01 23:05 - 2016-11-01 23:05 - 00174088 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igdail32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00111624 _____ ( ) C:\WINDOWS\system32\igfxSDKLibv2_0.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00103952 _____ (Khronos Group) C:\WINDOWS\SysWOW64\Intel_OpenCL_ICD32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00103432 _____ C:\WINDOWS\system32\igfxCUIServicePS.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00100872 _____ ( ) C:\WINDOWS\system32\igfxSDKLib.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00099848 _____ (Khronos Group) C:\WINDOWS\system32\Intel_OpenCL_ICD64.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00095240 _____ ( ) C:\WINDOWS\system32\igfxDHLibv2_0.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00084488 _____ ( ) C:\WINDOWS\system32\igfxDHLib.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00052744 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igfxexps32.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00029192 _____ ( ) C:\WINDOWS\system32\igfxDILibv2_0.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00029192 _____ ( ) C:\WINDOWS\system32\igfxDILib.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00027656 _____ ( ) C:\WINDOWS\system32\igfxEMLibv2_0.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00027656 _____ ( ) C:\WINDOWS\system32\igfxEMLib.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00022536 _____ ( ) C:\WINDOWS\system32\igfxLHMLibv2_0.dll 2016-11-01 23:05 - 2016-11-01 23:05 - 00022536 _____ ( ) C:\WINDOWS\system32\igfxLHMLib.dll 2016-10-29 15:58 - 2016-10-29 15:58 - 00295690 _____ C:\Users\Max-Henrik\Downloads\SBOnlineZahltraeger(2).pdf 2016-10-28 10:44 - 2016-10-28 10:44 - 00238780 _____ C:\Users\Max-Henrik\Downloads\SBExmatrikulationsbescheinigung.pdf 2016-10-28 10:43 - 2016-10-28 10:43 - 00295690 _____ C:\Users\Max-Henrik\Downloads\SBOnlineZahltraeger(1).pdf 2016-10-28 10:43 - 2016-10-28 10:43 - 00205582 _____ C:\Users\Max-Henrik\Downloads\SBOnlineBeitragsbescheid(2).pdf 2016-10-28 10:40 - 2016-10-28 10:40 - 00000000 ____D C:\Users\Max-Henrik\.QtWebEngineProcess 2016-10-28 10:40 - 2016-10-28 10:40 - 00000000 ____D C:\Users\Max-Henrik\.Plays.tv 2016-10-28 03:55 - 2016-10-15 05:34 - 01969912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hevcdecoder.dll 2016-10-28 03:55 - 2016-10-15 05:19 - 00272720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2016-10-28 03:55 - 2016-10-15 05:15 - 01853776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2016-10-28 03:55 - 2016-10-15 05:15 - 01557808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2016-10-28 03:55 - 2016-10-15 05:15 - 01123368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2016-10-28 03:55 - 2016-10-15 05:15 - 00687936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2016-10-28 03:55 - 2016-10-15 05:11 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-10-28 03:55 - 2016-10-15 05:10 - 00254656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll 2016-10-28 03:55 - 2016-10-15 05:06 - 05685760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2016-10-28 03:55 - 2016-10-15 05:00 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\stdole2.tlb 2016-10-28 03:55 - 2016-10-15 04:57 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll 2016-10-28 03:55 - 2016-10-15 04:57 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2016-10-28 03:55 - 2016-10-15 04:56 - 00306688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentutl.exe 2016-10-28 03:55 - 2016-10-15 04:54 - 00410112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2016-10-28 03:55 - 2016-10-15 04:54 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoplay.dll 2016-10-28 03:55 - 2016-10-15 04:54 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll 2016-10-28 03:55 - 2016-10-15 04:52 - 00288256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systemcpl.dll 2016-10-28 03:55 - 2016-10-15 04:50 - 02333184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2016-10-28 03:55 - 2016-10-15 04:50 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2016-10-28 03:55 - 2016-10-15 04:49 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2016-10-28 03:55 - 2016-10-15 04:49 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSManHTTPConfig.exe 2016-10-28 03:55 - 2016-10-15 04:48 - 01323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2016-10-28 03:55 - 2016-10-15 04:47 - 04612608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2016-10-28 03:55 - 2016-10-15 04:47 - 01113600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2016-10-28 03:55 - 2016-10-15 04:46 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.BackgroundMediaPlayback.dll 2016-10-28 03:55 - 2016-10-15 04:44 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoteNaturalLanguage.dll 2016-10-28 03:55 - 2016-10-15 04:44 - 00636928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2016-10-28 03:55 - 2016-10-15 04:44 - 00470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-28 03:55 - 2016-10-15 04:43 - 02748928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2016-10-28 03:55 - 2016-10-15 04:42 - 06108672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2016-10-28 03:55 - 2016-10-15 04:42 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Playback.MediaPlayer.dll 2016-10-28 03:55 - 2016-10-15 04:42 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\powercfg.exe 2016-10-28 03:55 - 2016-10-15 04:41 - 05376000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2016-10-28 03:55 - 2016-10-15 04:38 - 00675840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.dll 2016-10-28 03:55 - 2016-10-15 04:37 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2016-10-28 03:55 - 2016-10-15 04:37 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2016-10-28 03:55 - 2016-10-15 04:36 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-10-28 03:55 - 2016-10-15 04:36 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2016-10-28 03:55 - 2016-10-15 04:36 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmifw.dll 2016-10-28 03:55 - 2016-10-15 04:35 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2016-10-28 03:54 - 2016-10-15 05:33 - 00455040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2016-10-28 03:54 - 2016-10-15 05:20 - 02276736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2016-10-28 03:54 - 2016-10-15 05:18 - 02166232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2016-10-28 03:54 - 2016-10-15 05:18 - 01556712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2016-10-28 03:54 - 2016-10-15 05:18 - 00846560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2016-10-28 03:54 - 2016-10-15 05:18 - 00749920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvstore.dll 2016-10-28 03:54 - 2016-10-15 05:00 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2016-10-28 03:54 - 2016-10-15 04:59 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfksproxy.dll 2016-10-28 03:54 - 2016-10-15 04:56 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2016-10-28 03:54 - 2016-10-15 04:56 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2016-10-28 03:54 - 2016-10-15 04:55 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.WiFi.dll 2016-10-28 03:54 - 2016-10-15 04:51 - 13868544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-10-28 03:54 - 2016-10-15 04:51 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll 2016-10-28 03:54 - 2016-10-15 04:50 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2016-10-28 03:54 - 2016-10-15 04:41 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsiwmi.dll 2016-10-28 03:54 - 2016-10-15 04:39 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll 2016-10-28 03:54 - 2016-10-15 04:39 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Geolocation.dll 2016-10-28 03:54 - 2016-10-15 04:38 - 01993216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2016-10-28 03:54 - 2016-10-15 04:37 - 03733504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2016-10-28 03:54 - 2016-10-15 04:35 - 02708992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2016-10-28 03:54 - 2016-10-15 04:35 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2016-10-28 03:51 - 2016-10-15 05:51 - 02186896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hevcdecoder.dll 2016-10-28 03:51 - 2016-10-15 05:41 - 05622088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-10-28 03:51 - 2016-10-15 05:38 - 00409952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2016-10-28 03:51 - 2016-10-15 05:30 - 00509280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2016-10-28 03:51 - 2016-10-15 05:30 - 00341936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2016-10-28 03:51 - 2016-10-15 05:26 - 01694712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2016-10-28 03:51 - 2016-10-15 05:26 - 00691080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2016-10-28 03:51 - 2016-10-15 05:22 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-10-28 03:51 - 2016-10-15 05:21 - 02537824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-10-28 03:51 - 2016-10-15 05:21 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2016-10-28 03:51 - 2016-10-15 05:00 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2016-10-28 03:51 - 2016-10-15 05:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2016-10-28 03:51 - 2016-10-15 04:57 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2016-10-28 03:51 - 2016-10-15 04:54 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll 2016-10-28 03:51 - 2016-10-15 04:54 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2016-10-28 03:51 - 2016-10-15 04:53 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2016-10-28 03:51 - 2016-10-15 04:52 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2016-10-28 03:51 - 2016-10-15 04:50 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2016-10-28 03:51 - 2016-10-15 04:50 - 00438784 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDec.dll 2016-10-28 03:51 - 2016-10-15 04:50 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2016-10-28 03:51 - 2016-10-15 04:49 - 01913344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-10-28 03:51 - 2016-10-15 04:49 - 00187904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2016-10-28 03:51 - 2016-10-15 04:49 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSManHTTPConfig.exe 2016-10-28 03:51 - 2016-10-15 04:48 - 01554944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-10-28 03:51 - 2016-10-15 04:46 - 03287552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-10-28 03:51 - 2016-10-15 04:42 - 00539136 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2016-10-28 03:51 - 2016-10-15 04:39 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2016-10-28 03:51 - 2016-10-15 04:39 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2016-10-28 03:51 - 2016-10-15 04:37 - 01980416 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-10-28 03:51 - 2016-10-15 04:37 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-10-28 03:51 - 2016-10-15 04:36 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2016-10-28 03:51 - 2016-10-15 04:35 - 02315264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-10-28 03:51 - 2016-10-15 04:35 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-10-28 03:50 - 2016-10-15 05:51 - 01637728 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-10-28 03:50 - 2016-10-15 05:51 - 00595296 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-10-28 03:50 - 2016-10-15 05:51 - 00283488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-10-28 03:50 - 2016-10-15 05:51 - 00137568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-10-28 03:50 - 2016-10-15 05:51 - 00078688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-10-28 03:50 - 2016-10-15 05:48 - 00498952 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2016-10-28 03:50 - 2016-10-15 05:37 - 00063328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2016-10-28 03:50 - 2016-10-15 05:31 - 02827864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-10-28 03:50 - 2016-10-15 05:31 - 02190688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-10-28 03:50 - 2016-10-15 05:31 - 00658272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-10-28 03:50 - 2016-10-15 05:31 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-10-28 03:50 - 2016-10-15 05:30 - 01851696 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2016-10-28 03:50 - 2016-10-15 05:29 - 02913104 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2016-10-28 03:50 - 2016-10-15 05:29 - 01267504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2016-10-28 03:50 - 2016-10-15 05:29 - 00908640 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvstore.dll 2016-10-28 03:50 - 2016-10-15 05:29 - 00079200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys 2016-10-28 03:50 - 2016-10-15 05:26 - 01990648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2016-10-28 03:50 - 2016-10-15 05:26 - 01600632 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2016-10-28 03:50 - 2016-10-15 05:26 - 01472536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2016-10-28 03:50 - 2016-10-15 05:26 - 00811416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2016-10-28 03:50 - 2016-10-15 05:26 - 00160096 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2016-10-28 03:50 - 2016-10-15 05:25 - 00882680 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2016-10-28 03:50 - 2016-10-15 05:25 - 00742704 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2016-10-28 03:50 - 2016-10-15 05:21 - 01100128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2016-10-28 03:50 - 2016-10-15 05:21 - 00292872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll 2016-10-28 03:50 - 2016-10-15 05:05 - 07216640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2016-10-28 03:50 - 2016-10-15 05:01 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2016-10-28 03:50 - 2016-10-15 04:59 - 00272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfksproxy.dll 2016-10-28 03:50 - 2016-10-15 04:59 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2016-10-28 03:50 - 2016-10-15 04:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole2.tlb 2016-10-28 03:50 - 2016-10-15 04:57 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll 2016-10-28 03:50 - 2016-10-15 04:56 - 00339968 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe 2016-10-28 03:50 - 2016-10-15 04:56 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-10-28 03:50 - 2016-10-15 04:56 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.WiFi.dll 2016-10-28 03:50 - 2016-10-15 04:56 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll 2016-10-28 03:50 - 2016-10-15 04:56 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\HttpsDataSource.dll 2016-10-28 03:50 - 2016-10-15 04:56 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll 2016-10-28 03:50 - 2016-10-15 04:55 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll 2016-10-28 03:50 - 2016-10-15 04:55 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll 2016-10-28 03:50 - 2016-10-15 04:55 - 00236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll 2016-10-28 03:50 - 2016-10-15 04:55 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll 2016-10-28 03:50 - 2016-10-15 04:54 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll 2016-10-28 03:50 - 2016-10-15 04:54 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingFolder.dll 2016-10-28 03:50 - 2016-10-15 04:53 - 00313856 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2016-10-28 03:50 - 2016-10-15 04:52 - 06285312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2016-10-28 03:50 - 2016-10-15 04:52 - 00410624 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2016-10-28 03:50 - 2016-10-15 04:52 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll 2016-10-28 03:50 - 2016-10-15 04:50 - 17188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-10-28 03:50 - 2016-10-15 04:50 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll 2016-10-28 03:50 - 2016-10-15 04:49 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2016-10-28 03:50 - 2016-10-15 04:48 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2016-10-28 03:50 - 2016-10-15 04:47 - 07792640 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2016-10-28 03:50 - 2016-10-15 04:47 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundMediaPlayback.dll 2016-10-28 03:50 - 2016-10-15 04:47 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2016-10-28 03:50 - 2016-10-15 04:46 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.BackgroundMediaPlayer.dll 2016-10-28 03:50 - 2016-10-15 04:45 - 01790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2016-10-28 03:50 - 2016-10-15 04:45 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Playback.MediaPlayer.dll 2016-10-28 03:50 - 2016-10-15 04:44 - 00090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\powercfg.exe 2016-10-28 03:50 - 2016-10-15 04:43 - 01365504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2016-10-28 03:50 - 2016-10-15 04:43 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\energy.dll 2016-10-28 03:50 - 2016-10-15 04:43 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll 2016-10-28 03:50 - 2016-10-15 04:42 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Geolocation.dll 2016-10-28 03:50 - 2016-10-15 04:41 - 07654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2016-10-28 03:50 - 2016-10-15 04:41 - 00945664 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2016-10-28 03:50 - 2016-10-15 04:41 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll 2016-10-28 03:50 - 2016-10-15 04:39 - 04474368 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2016-10-28 03:50 - 2016-10-15 04:39 - 01060864 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2016-10-28 03:50 - 2016-10-15 04:39 - 01005568 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2016-10-28 03:50 - 2016-10-15 04:38 - 00913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll 2016-10-28 03:50 - 2016-10-15 04:37 - 01029632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2016-10-28 03:50 - 2016-10-15 04:37 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmifw.dll 2016-10-28 03:50 - 2016-10-15 04:36 - 02290176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2016-10-28 03:50 - 2016-10-15 04:36 - 00983040 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll 2016-10-28 03:50 - 2016-10-15 04:36 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2016-10-28 03:50 - 2016-10-15 04:36 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2016-10-28 03:50 - 2016-10-15 04:36 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcpl.dll 2016-10-28 03:50 - 2016-10-15 04:35 - 03054080 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2016-10-28 03:50 - 2016-10-15 04:35 - 00905216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2016-10-28 03:50 - 2016-10-15 04:35 - 00701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2016-10-28 03:50 - 2016-10-15 04:34 - 02476544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2016-10-28 03:50 - 2016-10-15 04:34 - 01840640 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-10-28 03:50 - 2016-10-15 04:34 - 00936448 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2016-10-28 03:50 - 2016-10-15 04:32 - 00886784 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2016-10-28 03:50 - 2016-08-27 06:12 - 00244816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2016-10-28 03:50 - 2016-08-06 05:17 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-10-28 03:49 - 2016-10-15 05:51 - 01235296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2016-10-28 03:49 - 2016-10-15 05:51 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2016-10-28 03:49 - 2016-10-15 05:51 - 00322912 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2016-10-28 03:49 - 2016-10-15 05:51 - 00232800 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2016-10-28 03:49 - 2016-10-15 05:43 - 01356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2016-10-28 03:49 - 2016-10-15 05:38 - 00500064 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2016-10-28 03:49 - 2016-10-15 05:30 - 00557408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2016-10-28 03:49 - 2016-10-15 05:29 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2016-10-28 03:49 - 2016-10-15 04:58 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2016-10-28 03:49 - 2016-10-15 04:56 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSrvPolicyManager.dll 2016-10-28 03:49 - 2016-10-15 04:56 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2016-10-28 03:49 - 2016-10-15 04:55 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-10-28 03:49 - 2016-10-15 04:54 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2016-10-28 03:49 - 2016-10-15 04:52 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoplay.dll 2016-10-28 03:49 - 2016-10-15 04:51 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2016-10-28 03:49 - 2016-10-15 04:45 - 00406016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2016-10-28 03:49 - 2016-10-15 04:39 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll 2016-10-28 03:49 - 2016-10-15 04:31 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys 2016-10-28 03:49 - 2016-09-10 14:21 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys 2016-10-24 19:09 - 2016-10-24 19:09 - 00000000 ____D C:\Users\Max-Henrik\AppData\Roaming\LoL Ping Checker 2016-10-21 17:03 - 2016-10-21 17:04 - 01196656 _____ (ALCPU ) C:\Users\Max-Henrik\Downloads\Core-Temp-setup.exe 2016-10-21 14:17 - 2016-10-21 14:17 - 00205582 _____ C:\Users\Max-Henrik\Downloads\SBOnlineBeitragsbescheid(1).pdf ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-20 07:05 - 2014-05-07 01:17 - 00021142 _____ C:\Users\Max-Henrik\Downloads\FRST.txt 2016-11-20 07:05 - 2014-05-07 01:17 - 00000000 ____D C:\FRST 2016-11-20 06:49 - 2016-01-02 03:01 - 00000000 ____D C:\Users\Max-Henrik\AppData\Roaming\Skype 2016-11-20 06:42 - 2016-10-01 19:31 - 00000000 ____D C:\Users\Max-Henrik 2016-11-20 06:37 - 2016-10-07 17:24 - 00000000 ____D C:\Users\Max-Henrik\AppData\Roaming\PlaysTV 2016-11-20 06:37 - 2016-01-02 02:18 - 00000000 ____D C:\Program Files (x86)\Steam 2016-11-20 06:36 - 2016-10-15 06:35 - 00000000 ____D C:\Program Files (x86)\Hi-Rez Studios 2016-11-20 06:36 - 2016-10-01 19:26 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2016-11-20 06:36 - 2015-08-03 21:22 - 00000000 __SHD C:\Users\Max-Henrik\IntelGraphicsProfiles 2016-11-20 06:35 - 2016-10-01 19:46 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-11-20 06:35 - 2016-10-01 19:27 - 00000000 ____D C:\ProgramData\NVIDIA 2016-11-20 06:35 - 2016-07-16 07:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI 2016-11-20 04:38 - 2016-07-16 23:50 - 00000000 ____D C:\WINDOWS\DigitalLocker 2016-11-20 04:21 - 2016-07-16 07:04 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2016-11-20 03:55 - 2016-01-02 03:32 - 00000000 ____D C:\Users\Max-Henrik\AppData\Local\Battle.net 2016-11-20 03:45 - 2016-01-02 02:48 - 00000000 ____D C:\ProgramData\Package Cache 2016-11-20 03:42 - 2016-01-02 03:31 - 00000000 ____D C:\Program Files (x86)\Battle.net 2016-11-20 03:38 - 2016-01-02 02:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-20 00:00 - 2016-10-01 19:24 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-11-19 23:14 - 2016-07-16 12:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-11-19 23:14 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-11-18 21:38 - 2016-01-02 02:43 - 00000000 ____D C:\Users\Max-Henrik\AppData\Local\Spotify 2016-11-18 17:30 - 2016-01-02 02:45 - 00000000 ____D C:\Users\Max-Henrik\AppData\Roaming\Spotify 2016-11-18 07:56 - 2016-01-04 11:09 - 00000000 ____D C:\Users\Max-Henrik\AppData\Roaming\TS3Client 2016-11-17 06:42 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\rescache 2016-11-16 02:11 - 2016-01-02 03:01 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-11-16 02:11 - 2016-01-02 03:01 - 00000000 ____D C:\ProgramData\Skype 2016-11-16 02:09 - 2016-07-16 12:45 - 00000000 ____D C:\WINDOWS\INF 2016-11-16 02:09 - 2015-08-03 21:23 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-11-16 01:14 - 2016-10-01 19:24 - 00194328 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-11-16 01:12 - 2016-07-16 12:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-11-16 01:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2016-11-16 01:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\oobe 2016-11-16 01:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\migwiz 2016-11-16 01:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-11-16 01:12 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\bcastdvr 2016-11-13 05:10 - 2016-07-16 12:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-11-12 18:21 - 2016-07-16 23:51 - 00654402 _____ C:\WINDOWS\system32\perfh007.dat 2016-11-12 18:21 - 2016-07-16 23:51 - 00134162 _____ C:\WINDOWS\system32\perfc007.dat 2016-11-12 18:21 - 2016-01-02 01:42 - 01763438 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-11-12 18:19 - 2016-09-14 23:28 - 00000000 ____D C:\Users\Max-Henrik\AppData\Roaming\discord 2016-11-12 18:15 - 2016-01-05 15:20 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-11-12 18:14 - 2016-10-10 21:10 - 1063336854 _____ C:\WINDOWS\MEMORY.DMP 2016-11-12 18:14 - 2016-10-10 21:10 - 00000000 ____D C:\WINDOWS\Minidump 2016-11-12 03:31 - 2016-01-04 10:27 - 00000000 ____D C:\Program Files (x86)\Diablo III 2016-11-11 19:36 - 2016-01-02 04:38 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-11-11 19:34 - 2016-01-04 13:23 - 141011376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-11-09 01:06 - 2016-01-05 11:27 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2016-11-08 16:53 - 2016-10-01 19:46 - 00003870 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-11-08 16:53 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-11-08 16:53 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-11-07 01:00 - 2016-03-10 08:38 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2016-11-02 16:43 - 2016-10-01 19:26 - 00000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2016-11-01 23:06 - 2016-05-27 14:53 - 34823872 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\igd11dxva32.dll 2016-11-01 23:05 - 2016-10-01 19:26 - 00103952 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2016-11-01 23:05 - 2016-10-01 19:26 - 00099848 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2016-11-01 23:05 - 2016-05-27 14:50 - 07966192 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd64.sys 2016-11-01 23:05 - 2016-05-27 14:50 - 02142224 _____ (Intel Corporation) C:\WINDOWS\system32\igfxLHM.dll 2016-11-01 23:05 - 2016-05-27 14:50 - 00756744 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDH.dll 2016-11-01 23:05 - 2016-05-27 14:50 - 00398856 _____ (Intel Corporation) C:\WINDOWS\system32\igfxDI.dll 2016-11-01 23:05 - 2016-05-27 14:50 - 00373744 _____ (Intel Corporation) C:\WINDOWS\system32\igfxCUIService.exe 2016-11-01 23:05 - 2016-05-27 14:50 - 00354800 _____ (Intel Corporation) C:\WINDOWS\system32\igfxEM.exe 2016-10-29 00:56 - 2016-07-16 12:49 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-10-29 00:56 - 2016-07-16 12:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-10-28 05:18 - 2016-07-16 12:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-10-28 05:17 - 2016-07-16 12:47 - 00015425 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2016-10-25 14:22 - 2016-01-02 02:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-10-25 14:21 - 2016-01-02 02:47 - 00151352 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-10-21 17:04 - 2016-08-02 22:29 - 00000989 _____ C:\Users\Max-Henrik\Desktop\Core Temp.lnk 2016-10-21 17:04 - 2016-08-02 22:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Core Temp 2016-10-21 17:04 - 2016-08-02 22:29 - 00000000 ____D C:\Program Files\Core Temp ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-10-01 19:27 - 2016-10-01 19:27 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Max-Henrik\AppData\Local\Temp\avgnt.exe C:\Users\Max-Henrik\AppData\Local\Temp\libeay32.dll C:\Users\Max-Henrik\AppData\Local\Temp\msvcr120.dll C:\Users\Max-Henrik\AppData\Local\Temp\SkypeSetup.exe C:\Users\Max-Henrik\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-19 23:25 ==================== Ende von FRST.txt ============================ |
20.11.2016, 07:15 | #4 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Adittion.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 19-11-2016 01 durchgeführt von Max-Henrik (20-11-2016 07:07:27) Gestartet von C:\Users\Max-Henrik\Downloads Windows 10 Home Version 1607 (X64) (2016-10-01 18:50:17) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-3570775086-1545198752-834638216-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3570775086-1545198752-834638216-503 - Limited - Disabled) Gast (S-1-5-21-3570775086-1545198752-834638216-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3570775086-1545198752-834638216-1007 - Limited - Enabled) Max-Henrik (S-1-5-21-3570775086-1545198752-834638216-1001 - Administrator - Enabled) => C:\Users\Max-Henrik ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Ansel (Version: 372.70 - NVIDIA Corporation) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.23.58 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{82dc2ab6-088f-4e0a-8e27-bb829481d3bc}) (Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Diablo II (HKLM-x32\...\Diablo II) (Version: - ) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Diablo III Public Test (HKLM-x32\...\Diablo III Public Test) (Version: - Blizzard Entertainment) Discord (HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.) Discord (HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.) Dota 2 (HKLM\...\Steam App 570) (Version: - Valve) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.7.4 - Hi-Rez Studios) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (x32 Version: 10.1.1.8 - Intel(R) Corporation) Hidden Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Item Set Creator 6.14 (HKLM-x32\...\Item Set Creator 6.14) (Version: 6.14 - League of Legends Math) Java 8 Update 73 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218073F0}) (Version: 8.0.730.2 - Oracle Corporation) League client alpha (HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\League client alpha 1.0) (Version: 1.0 - Riot Games, Inc) League client alpha (HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\League client alpha 1.0) (Version: 1.0 - Riot Games, Inc) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games ) League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden Logitech G430 Driver (HKLM-x32\...\G430_Driver) (Version: 8.53.0.2 - Logitech) Logitech Gaming Software 8.79 (HKLM\...\Logitech Gaming Software) (Version: 8.79.77 - Logitech Inc.) Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Mozilla Firefox 50.0 (x64 de) (HKLM\...\Mozilla Firefox 50.0 (x64 de)) (Version: 50.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.0.6152 - Mozilla) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 372.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 372.70 - NVIDIA Corporation) NVIDIA Grafiktreiber 372.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 372.70 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.16.8-r118433-release - Plays.tv, LLC) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.15.1031 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7553 - Realtek Semiconductor Corp.) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.) Smite (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}) (Version: 3.21.3732.0 - Hi-Rez Studios) Spotify (HKU\S-1-5-21-3570775086-1545198752-834638216-1001\...\Spotify) (Version: 1.0.42.151.g19de0aa6 - Spotify AB) Spotify (HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Spotify) (Version: 1.0.42.151.g19de0aa6 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.15.0 - Synaptics Incorporated) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.62308 - TeamViewer) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1-2) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.11.1 (Version: 1.0.11.1 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) WinRAR 5.30 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {22A67AFD-88E5-4A9B-80A5-D52E3C9209FE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) Task: {8402B5C4-3239-4A59-BA86-41D0B2C65622} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) Task: {9CADD0B6-4759-49D6-BEFD-4A4DABFD99DE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) Task: {B0266274-D438-4B14-86E3-311FAAC93118} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) Task: {BA2D61E5-E1BE-402B-8692-58CB8C61004E} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-08] (Adobe Systems Incorporated) Task: {D8739EB2-4BBC-445C-8598-3E64BC5BA163} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd) Task: {F412D51C-D846-4657-860B-582A19A68BF7} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-11-11] (Microsoft Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-10-06 21:12 - 2016-09-15 18:25 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-10-01 19:27 - 2016-08-25 22:12 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-05-19 09:11 - 2015-05-19 09:11 - 00007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 2016-09-25 00:20 - 2016-09-25 00:21 - 00189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2016-10-06 21:12 - 2016-09-15 18:25 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-10-02 02:02 - 2016-10-02 02:02 - 01864384 _____ () C:\Users\Max-Henrik\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll 2016-10-01 20:15 - 2016-10-01 20:15 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-11-12 18:57 - 2016-11-02 11:30 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-11-12 18:57 - 2016-11-02 11:21 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-11-12 18:57 - 2016-11-02 11:15 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-11-12 18:57 - 2016-11-02 11:14 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-11-12 18:57 - 2016-11-02 11:15 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-11-12 18:57 - 2016-11-02 11:16 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-11-12 18:57 - 2016-11-02 11:17 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-11-17 01:47 - 2016-11-17 01:47 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-11-17 01:47 - 2016-11-17 01:47 - 00178688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-11-17 01:47 - 2016-11-17 01:47 - 41609728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.261.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2015-03-07 01:07 - 2015-03-07 01:07 - 00908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2016-02-09 20:34 - 2016-02-09 20:34 - 01095448 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2015-03-07 01:07 - 2015-03-07 01:07 - 00060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2016-02-09 20:34 - 2016-02-09 20:34 - 00240408 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2015-11-16 17:55 - 2015-11-16 17:55 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00020240 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\QtWebEngineProcess.exe 2016-11-08 16:53 - 2016-11-08 16:53 - 27071680 _____ () C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll 2014-01-21 16:54 - 2015-02-02 19:14 - 01294336 _____ () C:\Riot Games\League of Legends\RADS\system\rads_user_kernel.exe 2016-11-18 02:42 - 2016-11-18 02:42 - 02794488 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_launcher\releases\0.0.1.32\deploy\LoLLauncher.exe 2016-11-18 02:42 - 2016-11-18 02:42 - 05008888 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\LoLPatcher.exe 2016-11-18 02:42 - 2016-11-18 02:42 - 03167736 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\LoLPatcherUx.exe 2016-11-18 03:26 - 2016-11-18 03:26 - 00033280 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\cx_Logging.cp35-win32.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00103424 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00111616 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes35.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00041984 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00405504 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom35.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00173568 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 01934336 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 01780736 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00505856 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 03812864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd 2016-01-04 10:32 - 2016-06-14 21:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-10-02 02:00 - 2016-10-02 02:00 - 01383616 _____ () C:\Users\Max-Henrik\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll 2016-10-02 02:00 - 2016-10-02 02:00 - 00118976 _____ () C:\Users\Max-Henrik\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll 2016-01-04 13:58 - 2016-09-08 04:14 - 00784672 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2016-01-04 13:58 - 2016-09-01 02:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2016-01-04 13:58 - 2016-10-13 02:58 - 02321696 _____ () C:\Program Files (x86)\Steam\video.dll 2016-01-04 13:58 - 2016-01-27 08:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2016-01-04 13:58 - 2016-01-27 08:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2016-01-04 13:58 - 2016-01-27 08:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2016-01-04 13:58 - 2016-01-27 08:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2016-01-04 13:58 - 2016-01-27 08:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2016-01-04 13:58 - 2016-09-01 02:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2016-01-04 13:58 - 2016-09-01 02:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2016-01-04 13:58 - 2016-10-13 02:58 - 00836896 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-03-10 16:40 - 2016-07-04 23:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2016-09-14 23:31 - 2016-08-24 16:49 - 01950392 _____ () C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\ffmpeg.dll 2016-09-14 23:31 - 2016-11-16 02:10 - 01058816 _____ () \\?\C:\Users\Max-Henrik\AppData\Roaming\discord\0.0.296\modules\discord_voice\discord_voice.node 2016-09-14 23:31 - 2016-11-16 02:10 - 03801088 _____ () \\?\C:\Users\Max-Henrik\AppData\Roaming\discord\0.0.296\modules\discord_voice\libdiscord.dll 2016-09-14 23:31 - 2016-09-14 23:31 - 00894136 _____ () \\?\C:\Users\Max-Henrik\AppData\Roaming\discord\0.0.296\modules\discord_utils\discord_utils.node 2016-09-14 23:31 - 2016-09-14 23:31 - 01119416 _____ () \\?\C:\Users\Max-Henrik\AppData\Roaming\discord\0.0.296\modules\discord_toaster\discord_toaster.node 2016-11-01 08:58 - 2016-11-01 08:58 - 00143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00021504 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00113171 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlc.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 02396691 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlccore.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00124416 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32file.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00152064 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebEngineWidgets.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00033792 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebEngineCore.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00032256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebChannel.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00372736 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32com.shell.shell.pyd 2016-11-18 03:26 - 2016-11-18 03:26 - 00013824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libEGL.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 01983488 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libGLESv2.dll 2016-09-02 19:09 - 2016-08-26 00:27 - 00686712 _____ () C:\WINDOWS\SYSTEM32\nvfatbinaryLoader.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00027667 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libdirectsound_plugin.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00031251 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libwaveout_plugin.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 00066579 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\video_output\libdirectdraw_plugin.dll 2016-11-18 03:26 - 2016-11-18 03:26 - 02620112 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\ltc_host_ex.DLL 2016-11-18 03:26 - 2016-11-18 03:26 - 00035328 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\simplejson._speedups.pyd 2016-09-14 23:31 - 2016-08-24 16:49 - 02230456 _____ () C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\libglesv2.dll 2016-09-14 23:31 - 2016-08-24 16:49 - 00088760 _____ () C:\Users\Max-Henrik\AppData\Local\Discord\app-0.0.296\libegl.dll 2016-11-20 06:38 - 2016-11-20 06:38 - 00170496 _____ () \\?\C:\Users\Max-Henrik\AppData\Local\Temp\6279.tmp.node 2016-09-14 23:31 - 2016-10-14 01:15 - 02658304 _____ () \\?\C:\Users\Max-Henrik\AppData\Roaming\discord\0.0.296\modules\discord_rpc\discord_rpc.node 2016-10-24 18:25 - 2016-08-04 21:56 - 49825056 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.winxp\libcef.dll 2015-07-10 23:37 - 2015-07-10 23:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 00611832 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\RiotLauncher.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 34851320 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\libcef.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 01383416 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\icui18n.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 01142264 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\icuuc.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 04382200 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\v8.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 01339896 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\libglesv2.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 00198648 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\libegl.dll 2016-11-18 02:42 - 2016-11-18 02:42 - 00953336 _____ () C:\Riot Games\League of Legends\RADS\projects\lol_patcher\releases\0.0.0.72\deploy\ffmpegsumo.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Vorlagen:gs5sys [2048] AlternateDataStreams: C:\Users\Max-Henrik\Desktop\desktop.ini:gs5sys [3074] AlternateDataStreams: C:\Users\Max-Henrik\Documents\desktop.ini:gs5sys [3074] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2016-01-02 01:09 - 2016-01-02 01:07 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-3570775086-1545198752-834638216-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Max-Henrik\Downloads\überdenwolken.jpg HKU\S-1-5-21-3570775086-1545198752-834638216-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Max-Henrik\Downloads\überdenwolken.jpg DNS Servers: 8.8.8.8 - 208.67.220.220 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == HKLM\...\StartupApproved\Run: => "SynTPEnh" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{D582D247-4225-4613-A015-D0A6CAF7CD90}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{39A6311E-B777-47C4-AD37-47E93F009148}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [{BE038175-93CF-454F-96AF-F1F7B51DE950}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{82BD82CB-B0EA-4D8E-9D44-5DE7D78BE48F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{BD753516-9E57-4889-806C-95CAD041334E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{1CD587BD-32EC-4030-AF8D-367671DE3F7D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{7B7355DA-1C89-4502-9BBD-4E1399653826}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{899250F5-964B-4779-93D9-10E9265433A5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [UDP Query User{3C7E8CBE-9C9E-48BD-A35B-D55C642788DE}C:\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{D57E7D92-8C89-4723-B623-BF6817E04C36}C:\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{1629D716-B1A0-4861-89C7-A2C5E601539D}C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{B47C2EA7-D7F9-44E3-B0C5-B43D1938EDBF}C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{B5C1C8FF-B789-4BC7-B812-5878CEA7BF55}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{15099224-8BD6-4055-B3AA-A48C6377353E}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{50906431-CE5E-4AE6-AEAF-56A01986D8BD}C:\program files (x86)\diablo iii public test\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii public test\diablo iii.exe FirewallRules: [TCP Query User{6DF51B1C-9262-4EA4-BC8C-4EF4DCEDA86A}C:\program files (x86)\diablo iii public test\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii public test\diablo iii.exe FirewallRules: [UDP Query User{2ABCA2C1-C019-4D3E-A976-FACC7F943CA2}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{658F2680-9300-43B6-9383-C867A0D3479D}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{67C2494F-AB06-4AFB-8192-DA8D3C0556A6}C:\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{12BF0ACD-E6B7-4FB0-BF15-43726BA59C38}C:\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{FA95C5DF-04B0-4FD5-BCD6-1B70CFCEC387}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{9C108DBD-3547-4371-B543-18D341DA3BFE}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [{D9126C35-C434-4AB9-BB08-5C587887C72F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{CE1C0231-C554-4684-9F6A-E352D6D73B17}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [UDP Query User{ABD45C24-ECF0-4D08-AD3B-B5C0D01A3492}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{25A1FDA0-7C50-47EC-8350-76AF3E38238F}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [{D871D680-B134-4228-A883-52DD8D3D3306}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{7E4B77B0-1149-44D4-B7BA-7D3B5058D357}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{17627BAA-1FC8-40FD-9298-10EBFE34C716}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{531D0CC5-0093-44C7-BB2E-30204CE99ABA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{76F41A37-BF18-4DB9-86AD-B3E6DE256D38}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{DD67C5A8-149C-43DD-96E3-D4A86389E2C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{8C893A3A-7073-4AFD-B38D-5F738654D1AF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{CC48A4EF-D1F5-4F94-8264-C572D120B1CD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{749BBF2C-C860-47BC-8831-9AB55ED67B2D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{D30D7FBE-1BC7-492F-BA82-79069A60F9B0}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{95DD954F-1299-4FE7-82AB-8E76CDA75F3F}C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{D3FD4A44-6053-4431-A989-0E01E70856EE}C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe] => (Allow) C:\windows.old\users\max-henrik\appdata\roaming\spotify\spotify.exe FirewallRules: [{E48FA1A3-C5DC-4333-8E8D-75D685C2F2DD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{09731764-E837-4F89-A416-9C963B760144}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A3D168FD-20E0-4192-AE67-2E87E90A0CC0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{7F01915F-3947-4259-AC11-BD2646B53457}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{BD1391E1-5C77-4061-9B73-5D41CA48FCC7}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [UDP Query User{E9256C6B-54A8-4EAF-BE37-F4AA5EF6BDB4}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe FirewallRules: [{A1E66CB4-12DF-4471-AE0E-B4EC44B604DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{8A64B647-30F0-41F5-88A0-B21A623B2C84}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2cfg.exe FirewallRules: [{2F013DB8-A3AC-4837-9C0F-269E5658612E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{629F208C-5691-4B3C-A027-43D9C1E91923}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{6A9A24E7-33EE-484F-84C2-25A8C93B7122}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{597A1DA1-4B87-46D5-BCB0-2EE6122CF0FD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{183CF4A7-BDD0-4668-AAC0-BFC885499D18}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [{5739AA6D-4288-4CA0-B7BE-BC611326F2B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe FirewallRules: [TCP Query User{D92BB526-FCAA-4137-852A-DBA4D24AEC5A}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{2F1132B5-3607-41D1-996F-7FE62A149701}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{33504C57-5A3A-415B-A09C-7BB2969181CA}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{E8C3BFD9-C374-4B77-95C0-B00BB619CD61}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe ==================== Wiederherstellungspunkte ========================= 02-11-2016 16:41:21 Windows Update 11-11-2016 19:30:31 Windows Update 19-11-2016 06:24:08 Geplanter Prüfpunkt ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/20/2016 06:35:04 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: FIDEYS_PC) Description: Bei der Aktivierung der App „Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. Error: (11/20/2016 04:28:34 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "c:\program files\logitech gaming software\drivers\installers\CallScanReg.exe". Die abhängige Assemblierung "Microsoft.VC90.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (11/19/2016 06:24:14 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll. System Error: Zugriff verweigert . Error: (11/19/2016 06:22:15 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Error: (11/19/2016 05:31:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NvStreamUserAgent.exe, Version: 7.1.2084.9592, Zeitstempel: 0x57605c64 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.447, Zeitstempel: 0x5819bc32 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003061d ID des fehlerhaften Prozesses: 0x2bd0 Startzeit der fehlerhaften Anwendung: 0x01d2421db7b395a8 Pfad der fehlerhaften Anwendung: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 55cf67fa-0751-4ef9-a1cb-dfd74e002339 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/19/2016 02:54:24 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "c:\program files\logitech gaming software\drivers\installers\CallScanReg.exe". Die abhängige Assemblierung "Microsoft.VC90.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (11/18/2016 02:39:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SndVol.exe, Version: 10.0.14393.0, Zeitstempel: 0x57899b42 Name des fehlerhaften Moduls: SndVol.exe, Version: 10.0.14393.0, Zeitstempel: 0x57899b42 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000000137dc ID des fehlerhaften Prozesses: 0xda8 Startzeit der fehlerhaften Anwendung: 0x01d2412d82718e60 Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\SndVol.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\system32\SndVol.exe Berichtskennung: 2f6fd2da-d046-4e4c-8684-d1ae9c19bae6 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/17/2016 06:51:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NvStreamUserAgent.exe, Version: 7.1.2084.9592, Zeitstempel: 0x57605c64 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.447, Zeitstempel: 0x5819bc32 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003061d ID des fehlerhaften Prozesses: 0x1124 Startzeit der fehlerhaften Anwendung: 0x01d240fb3b840ccd Pfad der fehlerhaften Anwendung: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 5d134275-27ef-4722-ad8a-0cf71ebae685 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/17/2016 03:17:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: NvStreamUserAgent.exe, Version: 7.1.2084.9592, Zeitstempel: 0x57605c64 Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.14393.447, Zeitstempel: 0x5819bc32 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000003061d ID des fehlerhaften Prozesses: 0x29e0 Startzeit der fehlerhaften Anwendung: 0x01d240dd43efe559 Pfad der fehlerhaften Anwendung: C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll Berichtskennung: 38d95c2a-a308-4dc7-9ec3-fc60360d24bd Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/17/2016 06:15:46 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Systemfehler: ============= Error: (11/20/2016 06:36:47 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} und der APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (11/20/2016 06:35:04 AM) (Source: DCOM) (EventID: 10010) (User: FIDEYS_PC) Description: Der Server "App.AppX85gcbw533amccd2rr8qswxymhfj649t2.mca" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/20/2016 06:34:35 AM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Search" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: Es wird bereits eine Instanz des Dienstes ausgeführt. Error: (11/20/2016 06:34:12 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Security Assist" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/20/2016 06:34:12 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/20/2016 06:34:12 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/20/2016 06:34:06 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/20/2016 06:34:05 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Avira Service Host" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/20/2016 06:34:05 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/20/2016 06:34:05 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Plays.tv Update Service (PlaysService)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. CodeIntegrity: =================================== Date: 2016-10-29 16:59:26.672 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-117536.dll that did not meet the Store signing level requirements. Date: 2016-10-29 16:58:55.951 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-117536.dll that did not meet the Store signing level requirements. Date: 2016-10-28 11:45:19.753 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-117536.dll that did not meet the Store signing level requirements. Date: 2016-10-28 11:44:46.871 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-117536.dll that did not meet the Store signing level requirements. Date: 2016-10-21 15:17:46.573 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-116716.dll that did not meet the Store signing level requirements. Date: 2016-10-21 15:17:15.613 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-116716.dll that did not meet the Store signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5-4570 CPU @ 3.20GHz Prozentuale Nutzung des RAM: 48% Installierter physikalischer RAM: 8070.98 MB Verfügbarer physikalischer RAM: 4191.6 MB Summe virtueller Speicher: 16262.98 MB Verfügbarer virtueller Speicher: 10266.29 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:930.73 GB) (Free:608.03 GB) NTFS Drive d: (Expansion) (CDROM) (Total:0.53 GB) (Free:0 GB) CDFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 004FD80E) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=930.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) ==================== Ende von Addition.txt ============================ |
20.11.2016, 14:04 | #5 |
/// TB-Ausbilder /// Anleitungs-Guru | anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Hi, Schritt 1 Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
20.11.2016, 23:35 | #6 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? TDSSKiller.exe Scanresultat. Code:
ATTFilter 23:23:44.0276 0x0c88 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01 23:26:50.0585 0x0c88 ============================================================ 23:26:50.0585 0x0c88 Current date / time: 2016/11/20 23:26:50.0585 23:26:50.0585 0x0c88 SystemInfo: 23:26:50.0585 0x0c88 23:26:50.0585 0x0c88 OS Version: 10.0.14393 ServicePack: 0.0 23:26:50.0585 0x0c88 Product type: Workstation 23:26:50.0585 0x0c88 ComputerName: FIDEYS_PC 23:26:50.0585 0x0c88 UserName: Max-Henrik 23:26:50.0585 0x0c88 Windows directory: C:\WINDOWS 23:26:50.0585 0x0c88 System windows directory: C:\WINDOWS 23:26:50.0585 0x0c88 Running under WOW64 23:26:50.0585 0x0c88 Processor architecture: Intel x64 23:26:50.0585 0x0c88 Number of processors: 4 23:26:50.0585 0x0c88 Page size: 0x1000 23:26:50.0585 0x0c88 Boot type: Normal boot 23:26:50.0585 0x0c88 CodeIntegrityOptions = 0x00000001 23:26:50.0585 0x0c88 ============================================================ 23:26:50.0780 0x0c88 KLMD registered as C:\WINDOWS\system32\drivers\47006110.sys 23:26:50.0780 0x0c88 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 14393.447, osProperties = 0x19 23:26:51.0135 0x0c88 System UUID: {9E2D3EE5-9E82-7343-D753-5E637E5FA3DF} 23:26:51.0851 0x0c88 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 23:26:51.0854 0x0c88 ============================================================ 23:26:51.0854 0x0c88 \Device\Harddisk0\DR0: 23:26:51.0854 0x0c88 MBR partitions: 23:26:51.0854 0x0c88 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAF000 23:26:51.0854 0x0c88 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xAF800, BlocksNum 0x74575800 23:26:51.0854 0x0c88 ============================================================ 23:26:51.0870 0x0c88 C: <-> \Device\Harddisk0\DR0\Partition2 23:26:51.0870 0x0c88 ============================================================ 23:26:51.0870 0x0c88 Initialize success 23:26:51.0870 0x0c88 ============================================================ 23:27:40.0520 0x19d0 ============================================================ 23:27:40.0520 0x19d0 Scan started 23:27:40.0520 0x19d0 Mode: Manual; 23:27:40.0520 0x19d0 ============================================================ 23:27:40.0520 0x19d0 KSN ping started 23:27:40.0740 0x19d0 KSN ping finished: true 23:27:44.0923 0x19d0 ================ Scan system memory ======================== 23:27:44.0923 0x19d0 System memory - ok 23:27:44.0925 0x19d0 ================ Scan services ============================= 23:27:45.0025 0x19d0 1394ohci - ok 23:27:45.0028 0x19d0 3ware - ok 23:27:45.0037 0x19d0 ACPI - ok 23:27:45.0040 0x19d0 AcpiDev - ok 23:27:45.0049 0x19d0 acpiex - ok 23:27:45.0052 0x19d0 acpipagr - ok 23:27:45.0062 0x19d0 AcpiPmi - ok 23:27:45.0065 0x19d0 acpitime - ok 23:27:45.0120 0x19d0 [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 23:27:45.0187 0x19d0 AdobeFlashPlayerUpdateSvc - ok 23:27:45.0242 0x19d0 ADP80XX - ok 23:27:45.0267 0x19d0 AFD - ok 23:27:45.0283 0x19d0 ahcache - ok 23:27:45.0298 0x19d0 AJRouter - ok 23:27:45.0307 0x19d0 ALG - ok 23:27:45.0382 0x19d0 [ 23CB92EE5654BA92619D796E3AC7DB86, DD4536B55F021990DDAD8864F9BAECCDE40B2B532F6FB0D6CF9EB1A6B112A983 ] ALSysIO C:\Users\MAX-HE~1\AppData\Local\Temp\ALSysIO64.sys 23:27:45.0391 0x19d0 ALSysIO - ok 23:27:45.0395 0x19d0 AmdK8 - ok 23:27:45.0398 0x19d0 AmdPPM - ok 23:27:45.0401 0x19d0 amdsata - ok 23:27:45.0405 0x19d0 amdsbs - ok 23:27:45.0408 0x19d0 amdxata - ok 23:27:45.0471 0x19d0 [ 04B856A07EDCFEE14C4CB0D389531020, 38094E6FECF22FBC72B46C4A78519F9E698092DF28A81C5742332FCA6609CB9B ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe 23:27:45.0484 0x19d0 AntiVirMailService - ok 23:27:45.0504 0x19d0 [ FE817303FA4308B6149D2FC1D07D0DF2, 471EA57785EE40FE244BB2AF10FB5F5B113F1D79F34CAE28CC46177AB3F15141 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe 23:27:45.0510 0x19d0 AntiVirSchedulerService - ok 23:27:45.0530 0x19d0 [ FE817303FA4308B6149D2FC1D07D0DF2, 471EA57785EE40FE244BB2AF10FB5F5B113F1D79F34CAE28CC46177AB3F15141 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe 23:27:45.0536 0x19d0 AntiVirService - ok 23:27:45.0569 0x19d0 [ 82A7739C01B7FBD6738B08C6FEB13CE5, 49BD8764CC7BB8F3AEFD8A8585A2F492C0B48A6AAACA86BDE7CB6D182EADD703 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe 23:27:45.0587 0x19d0 AntiVirWebService - ok 23:27:45.0591 0x19d0 AppID - ok 23:27:45.0594 0x19d0 AppIDSvc - ok 23:27:45.0602 0x19d0 Appinfo - ok 23:27:45.0611 0x19d0 applockerfltr - ok 23:27:45.0623 0x19d0 AppReadiness - ok 23:27:45.0647 0x19d0 AppXSvc - ok 23:27:45.0650 0x19d0 arcsas - ok 23:27:45.0653 0x19d0 AsyncMac - ok 23:27:45.0669 0x19d0 atapi - ok 23:27:45.0671 0x19d0 AudioEndpointBuilder - ok 23:27:45.0680 0x19d0 Audiosrv - ok 23:27:45.0706 0x19d0 [ 5BAD6576E9DB51C6FB1AA4F74A1491F0, 60BE48FD4C15D49425EAB2B53731D73CD19ED456F42EE2C2D32FE9FD0638A1D0 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 23:27:45.0759 0x19d0 avgntflt - ok 23:27:45.0794 0x19d0 [ E73A2960A54F83B96415BAE10E66CCB2, C44CE2A638D2CB219A0BCDFEE2855E14A9BEAB032788D7661992735726EFC983 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 23:27:45.0840 0x19d0 avipbb - ok 23:27:45.0884 0x19d0 [ A177265C1777ABE56B22D921F91DDC38, D4E9C5BFC65063EDA015723058805B03C51F5B7456B404A4548CEC8DF6A3F7B7 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe 23:27:45.0895 0x19d0 Avira.ServiceHost - ok 23:27:45.0924 0x19d0 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 23:27:45.0929 0x19d0 avkmgr - ok 23:27:45.0952 0x19d0 [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys 23:27:45.0975 0x19d0 avnetflt - ok 23:27:45.0978 0x19d0 AxInstSV - ok 23:27:45.0981 0x19d0 b06bdrv - ok 23:27:45.0984 0x19d0 BasicDisplay - ok 23:27:45.0987 0x19d0 BasicRender - ok 23:27:45.0990 0x19d0 bcmfn - ok 23:27:45.0992 0x19d0 bcmfn2 - ok 23:27:46.0039 0x19d0 BDESVC - ok 23:27:46.0042 0x19d0 Beep - ok 23:27:46.0050 0x19d0 BFE - ok 23:27:46.0064 0x19d0 BITS - ok 23:27:46.0079 0x19d0 bowser - ok 23:27:46.0081 0x19d0 BrokerInfrastructure - ok 23:27:46.0085 0x19d0 Browser - ok 23:27:46.0087 0x19d0 BthAvrcpTg - ok 23:27:46.0090 0x19d0 BthHFEnum - ok 23:27:46.0092 0x19d0 bthhfhid - ok 23:27:46.0098 0x19d0 BthHFSrv - ok 23:27:46.0101 0x19d0 BTHMODEM - ok 23:27:46.0104 0x19d0 bthserv - ok 23:27:46.0106 0x19d0 buttonconverter - ok 23:27:46.0121 0x19d0 CapImg - ok 23:27:46.0123 0x19d0 cdfs - ok 23:27:46.0126 0x19d0 CDPSvc - ok 23:27:46.0129 0x19d0 CDPUserSvc - ok 23:27:46.0153 0x19d0 cdrom - ok 23:27:46.0156 0x19d0 CertPropSvc - ok 23:27:46.0159 0x19d0 cht4iscsi - ok 23:27:46.0161 0x19d0 cht4vbd - ok 23:27:46.0164 0x19d0 circlass - ok 23:27:46.0166 0x19d0 CLFS - ok 23:27:46.0169 0x19d0 ClipSVC - ok 23:27:46.0196 0x19d0 clreg - ok 23:27:46.0203 0x19d0 CmBatt - ok 23:27:46.0258 0x19d0 [ 84FC81FF9F291A0FC8D10933C1748F66, 46B6C64659A24C1D4917963FECEC2D6AED516C047762F0B4E67651CF8241A7D8 ] CM_VENDER_CMD C:\Program Files\Common Files\Logitech\G430Install\CMVC64.sys 23:27:46.0280 0x19d0 CM_VENDER_CMD - ok 23:27:46.0301 0x19d0 CNG - ok 23:27:46.0303 0x19d0 cnghwassist - ok 23:27:46.0353 0x19d0 CompositeBus - ok 23:27:46.0355 0x19d0 COMSysApp - ok 23:27:46.0359 0x19d0 condrv - ok 23:27:46.0377 0x19d0 CoreMessagingRegistrar - ok 23:27:46.0435 0x19d0 [ 75C568E62A2BD89A869C34119A66D19B, 2954F25E511947728FE50AA76ACECE0B6952D1984301027F499E2F3DAAEB65D3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 23:27:46.0970 0x19d0 cphs - ok 23:27:46.0975 0x19d0 CryptSvc - ok 23:27:46.0991 0x19d0 dam - ok 23:27:47.0005 0x19d0 DcomLaunch - ok 23:27:47.0008 0x19d0 DcpSvc - ok 23:27:47.0011 0x19d0 defragsvc - ok 23:27:47.0033 0x19d0 DeviceAssociationService - ok 23:27:47.0036 0x19d0 DeviceInstall - ok 23:27:47.0038 0x19d0 DevQueryBroker - ok 23:27:47.0044 0x19d0 Dfsc - ok 23:27:47.0066 0x19d0 Dhcp - ok 23:27:47.0106 0x19d0 diagnosticshub.standardcollector.service - ok 23:27:47.0124 0x19d0 DiagTrack - ok 23:27:47.0138 0x19d0 disk - ok 23:27:47.0150 0x19d0 DmEnrollmentSvc - ok 23:27:47.0152 0x19d0 dmvsc - ok 23:27:47.0155 0x19d0 dmwappushservice - ok 23:27:47.0160 0x19d0 Dnscache - ok 23:27:47.0168 0x19d0 dot3svc - ok 23:27:47.0170 0x19d0 DPS - ok 23:27:47.0179 0x19d0 drmkaud - ok 23:27:47.0182 0x19d0 DsmSvc - ok 23:27:47.0184 0x19d0 DsSvc - ok 23:27:47.0226 0x19d0 DXGKrnl - ok 23:27:47.0229 0x19d0 EapHost - ok 23:27:47.0232 0x19d0 ebdrv - ok 23:27:47.0244 0x19d0 EFS - ok 23:27:47.0247 0x19d0 EhStorClass - ok 23:27:47.0257 0x19d0 EhStorTcgDrv - ok 23:27:47.0262 0x19d0 embeddedmode - ok 23:27:47.0265 0x19d0 EntAppSvc - ok 23:27:47.0268 0x19d0 ErrDev - ok 23:27:47.0276 0x19d0 EventSystem - ok 23:27:47.0278 0x19d0 exfat - ok 23:27:47.0281 0x19d0 fastfat - ok 23:27:47.0286 0x19d0 Fax - ok 23:27:47.0288 0x19d0 fdc - ok 23:27:47.0290 0x19d0 fdPHost - ok 23:27:47.0292 0x19d0 FDResPub - ok 23:27:47.0295 0x19d0 fhsvc - ok 23:27:47.0322 0x19d0 FileCrypt - ok 23:27:47.0325 0x19d0 FileInfo - ok 23:27:47.0327 0x19d0 Filetrace - ok 23:27:47.0330 0x19d0 flpydisk - ok 23:27:47.0332 0x19d0 FltMgr - ok 23:27:47.0334 0x19d0 FontCache - ok 23:27:47.0404 0x19d0 FontCache3.0.0.0 - ok 23:27:47.0419 0x19d0 FrameServer - ok 23:27:47.0421 0x19d0 FsDepends - ok 23:27:47.0423 0x19d0 Fs_Rec - ok 23:27:47.0437 0x19d0 fvevol - ok 23:27:47.0442 0x19d0 gencounter - ok 23:27:47.0444 0x19d0 genericusbfn - ok 23:27:47.0449 0x19d0 GPIOClx0101 - ok 23:27:47.0461 0x19d0 gpsvc - ok 23:27:47.0463 0x19d0 GpuEnergyDrv - ok 23:27:47.0466 0x19d0 HDAudBus - ok 23:27:47.0468 0x19d0 HidBatt - ok 23:27:47.0470 0x19d0 HidBth - ok 23:27:47.0472 0x19d0 hidi2c - ok 23:27:47.0474 0x19d0 hidinterrupt - ok 23:27:47.0476 0x19d0 HidIr - ok 23:27:47.0479 0x19d0 hidserv - ok 23:27:47.0514 0x19d0 HidUsb - ok 23:27:47.0552 0x19d0 [ 2FA521C68E0CD492E6C216EA617EE4AB, D6FE38E23CD8D2CB879FC9AC91213A6E24DF5CC831E8FAE83807C6629025CAEE ] HiPatchService C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe 23:27:47.0581 0x19d0 HiPatchService - ok 23:27:47.0598 0x19d0 HomeGroupListener - ok 23:27:47.0642 0x19d0 HomeGroupProvider - ok 23:27:47.0661 0x19d0 HpSAMD - ok 23:27:47.0702 0x19d0 [ 7C7C986776D00E575BFBDE5DCBDC615D, 4CF12851A5A45917C3A9139B19D79434F2038611B617F83A714506CC7A1A6C61 ] HtcVCom32 C:\WINDOWS\System32\drivers\HtcVComV64.sys 23:27:47.0799 0x19d0 HtcVCom32 - ok 23:27:47.0811 0x19d0 HTTP - ok 23:27:47.0835 0x19d0 HvHost - ok 23:27:47.0872 0x19d0 hvservice - ok 23:27:47.0875 0x19d0 hwpolicy - ok 23:27:47.0888 0x19d0 hyperkbd - ok 23:27:47.0898 0x19d0 i8042prt - ok 23:27:47.0900 0x19d0 iagpio - ok 23:27:47.0910 0x19d0 iai2c - ok 23:27:47.0923 0x19d0 iaLPSS2i_GPIO2 - ok 23:27:47.0925 0x19d0 iaLPSS2i_I2C - ok 23:27:47.0928 0x19d0 iaLPSSi_GPIO - ok 23:27:47.0935 0x19d0 iaLPSSi_I2C - ok 23:27:48.0422 0x19d0 [ 12859E1215AA083A42E7ADCDE5C061D1, 262F9C65C3FA7EB69C4FA7C6547E1C79DB49697A083309909BC78726A116557F ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 23:27:48.0442 0x19d0 iaStorA - ok 23:27:48.0449 0x19d0 iaStorAV - ok 23:27:48.0539 0x19d0 [ 14E3DB5ADA7E2187A404129F4E5CE336, 5925C8E9DC00A6C682D6A3B37C6EBF2C325D37C8E4BF584F0B5AAC5A7B666E47 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 23:27:48.0610 0x19d0 IAStorDataMgrSvc - ok 23:27:48.0616 0x19d0 iaStorV - ok 23:27:48.0621 0x19d0 ibbus - ok 23:27:48.0656 0x19d0 icssvc - ok 23:27:48.0978 0x19d0 [ 658287D76E8D77C08AE98989F99B8948, DBA67B5772E1FE43ABDB3908A1CF86D76F2774BABC20359D2511F06A2A8CAC57 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 23:27:49.0254 0x19d0 igfx - ok 23:27:49.0281 0x19d0 [ A105AD05696D55E6E4F078ED850F6305, 8121A4226D2941EDD4809D516E7684E5C7164ADCF5AA4C8BC6620110625D3E8D ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 23:27:49.0924 0x19d0 igfxCUIService2.0.0.0 - ok 23:27:49.0930 0x19d0 IKEEXT - ok 23:27:49.0945 0x19d0 IndirectKmd - ok 23:27:50.0070 0x19d0 [ D172E06EFE08DF148155A59DB716C1B6, F059B0B37C5E944D70626E9F029BC6311029E0A9D778C9C75DDDDC59A5AF1605 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 23:27:50.0361 0x19d0 IntcAzAudAddService - ok 23:27:50.0403 0x19d0 [ E300D1E37B737ED14F7A08CD5604E5D9, 5C1135081E29D7F4A97D5CAA2C8FBE1DD04EC7A3D8E648E69F2AA9EBDD88EBBB ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 23:27:50.0411 0x19d0 IntcDAud - ok 23:27:50.0462 0x19d0 [ B63CF22D1AD2ABDC39D85851B2BEAA6D, 37E9043BABB5895BFD2B59AFB60C438B992C6EAA1B5FDE5B3445314343F4C406 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 23:27:50.0522 0x19d0 Intel(R) Capability Licensing Service TCP IP Interface - ok 23:27:50.0581 0x19d0 [ 8213094EA736A9C575AB0E22AD09B0BA, 12670A466B5AA37283BD4CB481D000DE3AE2A8D1BD159F67A41703A6FE5675EC ] Intel(R) Security Assist C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe 23:27:50.0612 0x19d0 Intel(R) Security Assist - ok 23:27:50.0635 0x19d0 intelide - ok 23:27:50.0644 0x19d0 intelpep - ok 23:27:50.0647 0x19d0 intelppm - ok 23:27:50.0650 0x19d0 iorate - ok 23:27:50.0652 0x19d0 IpFilterDriver - ok 23:27:50.0665 0x19d0 iphlpsvc - ok 23:27:50.0667 0x19d0 IPMIDRV - ok 23:27:50.0669 0x19d0 IPNAT - ok 23:27:50.0672 0x19d0 irda - ok 23:27:50.0674 0x19d0 IRENUM - ok 23:27:50.0680 0x19d0 irmon - ok 23:27:50.0689 0x19d0 [ 1DFC3CCA51785254C5604238BB1A5467, 31451A90A91AEE14C6B24F84CB9816E5C77179D411B8B3E8547F538235BEEFB0 ] isaHelperSvc C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 23:27:50.0689 0x19d0 isaHelperSvc - ok 23:27:50.0705 0x19d0 isapnp - ok 23:27:50.0708 0x19d0 iScsiPrt - ok 23:27:50.0747 0x19d0 [ DE70C5C10803C700DC1CFDE2D5CF207A, 4D11DE8B986C6966B66E1D6E931A72A1E9FA8D0B5B9EF57EF3EEDD09D0BE0B4E ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 23:27:50.0774 0x19d0 jhi_service - ok 23:27:50.0799 0x19d0 kbdclass - ok 23:27:50.0811 0x19d0 kbdhid - ok 23:27:50.0823 0x19d0 kdnic - ok 23:27:50.0825 0x19d0 KeyIso - ok 23:27:50.0832 0x19d0 KSecDD - ok 23:27:50.0846 0x19d0 KSecPkg - ok 23:27:50.0848 0x19d0 ksthunk - ok 23:27:50.0862 0x19d0 KtmRm - ok 23:27:50.0887 0x19d0 [ 305BB2AC00D46542E0A653AB63F4ABB1, E3BE57A0EBB1194656D20C11688863A7864B06223419F688D82881F9F49604B6 ] LADF_CaptureOnly C:\WINDOWS\system32\DRIVERS\ladfGSCamd64.sys 23:27:50.0899 0x19d0 LADF_CaptureOnly - ok 23:27:50.0911 0x19d0 [ 28CDDC7D478A6313F55077416DCBD0DE, EE4174FC9444856DF0693D1A5F16EB88352A3B012AA82D49C462980703981A7A ] LADF_RenderOnly C:\WINDOWS\system32\DRIVERS\ladfGSRamd64.sys 23:27:50.0936 0x19d0 LADF_RenderOnly - ok 23:27:50.0961 0x19d0 LanmanServer - ok 23:27:50.0963 0x19d0 LanmanWorkstation - ok 23:27:50.0967 0x19d0 lfsvc - ok 23:27:50.0984 0x19d0 [ 17325C9B9ADB2BB99049936D0C9812C8, 70ADDC85FD5757BC9C4B97F382B25A19851FF8275021FFC04A81E208A604F83E ] LGBusEnum C:\WINDOWS\system32\drivers\LGBusEnum.sys 23:27:51.0011 0x19d0 LGBusEnum - ok 23:27:51.0071 0x19d0 [ 2D7F1C02B94D6F0F3E10107E5EA8E141, 93B266F38C3C3EAAB475D81597ABBD7CC07943035068BB6FD670DBBE15DE0131 ] LGCoreTemp C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys 23:27:51.0077 0x19d0 LGCoreTemp - ok 23:27:51.0095 0x19d0 [ C7AF05942E041D4B1F345ACF79993BB3, E8FAAE356C99A11F6CF17640FD9C67F87AFBFEFB70C458CB85178F2AD94DF848 ] LGJoyXlCore C:\WINDOWS\system32\drivers\LGJoyXlCore.sys 23:27:51.0105 0x19d0 LGJoyXlCore - ok 23:27:51.0127 0x19d0 [ 94AF1384A67B9FCF5651E70BC9D4C526, 9C025F7BBB5BBE9DAF3DEF2F6385CE77C8F413912C4D16930814F6D19B62B367 ] LGSHidFilt C:\WINDOWS\System32\drivers\LGSHidFilt.Sys 23:27:51.0153 0x19d0 LGSHidFilt - ok 23:27:51.0189 0x19d0 [ 1DDB8DE3D6EEF31EDCF4977B2D2FAACC, 24291B522A596E2D9A1CDAC192DB1C7422D5DD0E87E5C8A5F5E2CAA90296BF23 ] LGVirHid C:\WINDOWS\system32\drivers\LGVirHid.sys 23:27:51.0216 0x19d0 LGVirHid - ok 23:27:51.0219 0x19d0 LicenseManager - ok 23:27:51.0221 0x19d0 lltdio - ok 23:27:51.0224 0x19d0 lltdsvc - ok 23:27:51.0245 0x19d0 lmhosts - ok 23:27:51.0291 0x19d0 [ 1CE3A27B6B0658F4242AB2DECE69704E, FB705D43554478FA438CE600DAD65C5885858ABF9FCB5D9CC6E5F7C87FD6A853 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 23:27:51.0298 0x19d0 LMS - ok 23:27:51.0315 0x19d0 [ 37A36BC1FEC4D9123A0F3FEFF10EF380, 2065AE775E0AD4B53C3BC8E55BEBD19198AD8A3947DC2B1E38B411B66DC8F36A ] LogiRegistryService C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe 23:27:51.0324 0x19d0 LogiRegistryService - ok 23:27:51.0329 0x19d0 LSI_SAS - ok 23:27:51.0332 0x19d0 LSI_SAS2i - ok 23:27:51.0334 0x19d0 LSI_SAS3i - ok 23:27:51.0337 0x19d0 LSI_SSS - ok 23:27:51.0340 0x19d0 LSM - ok 23:27:51.0342 0x19d0 luafv - ok 23:27:51.0345 0x19d0 MapsBroker - ok 23:27:51.0462 0x19d0 [ 78BFF5425E044086E74E78650A359FBB, 294738C10F3ED933D4EC40EA0659372FCF19A3C6D45D356917438CA495F2CB45 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 23:27:51.0489 0x19d0 MBAMProtector - ok 23:27:52.0181 0x19d0 [ 9611577752E293259C7DCE19E9026362, 8CB5DFD63FA15603BB6FA6B501E09ED7F4DE0E8F68CB28B78CECAC3711BEFD24 ] MBAMScheduler C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe 23:27:52.0224 0x19d0 MBAMScheduler - ok 23:27:52.0619 0x19d0 [ F1A89A34388B5626F1548D393B23ECB1, EA00AC76C4C8C9340753B58A3313C9177A9B98F9F1BDE08F184CD0F53D0C186F ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 23:27:52.0858 0x19d0 MBAMService - ok 23:27:52.0978 0x19d0 [ 78488AF2AB2111D67B3C4044707A519B, 7AA71B9C4C7949A1A21F60EF7CCEDE0079794990696B60557B5DC86F4D47223A ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 23:27:52.0981 0x19d0 MBAMSwissArmy - ok 23:27:53.0016 0x19d0 [ 898415AC0B5F1D2A9A48ABCB68A6DC4B, E1FD9AE5E22E3E5A18288E66A6184E92A4B63A1274DCE147A7728BB09C6A225E ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys 23:27:53.0018 0x19d0 MBAMWebAccessControl - ok 23:27:53.0039 0x19d0 megasas - ok 23:27:53.0104 0x19d0 megasas2i - ok 23:27:53.0126 0x19d0 megasr - ok 23:27:53.0206 0x19d0 [ 48F64A35BA9F2E4AC0587DDA555FF951, 77FE2BE86ADCE103F4220A641139C42B1407CF8EFFEB66F841ABF9CFC3621558 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys 23:27:53.0426 0x19d0 MEIx64 - ok 23:27:53.0453 0x19d0 MessagingService - ok 23:27:53.0587 0x19d0 mlx4_bus - ok 23:27:53.0607 0x19d0 MMCSS - ok 23:27:53.0609 0x19d0 Modem - ok 23:27:53.0639 0x19d0 monitor - ok 23:27:53.0664 0x19d0 mouclass - ok 23:27:53.0666 0x19d0 mouhid - ok 23:27:53.0669 0x19d0 mountmgr - ok 23:27:53.0815 0x19d0 [ C1A273141F13434647AC7CE37D2C18EC, F36D1A12DB8289949528F4BC81E077B33709F9B14A01537EEA63F27FFA17092D ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 23:27:53.0824 0x19d0 MozillaMaintenance - ok 23:27:53.0827 0x19d0 mpsdrv - ok 23:27:53.0845 0x19d0 MpsSvc - ok 23:27:53.0855 0x19d0 MRxDAV - ok 23:27:53.0857 0x19d0 mrxsmb - ok 23:27:53.0866 0x19d0 mrxsmb10 - ok 23:27:53.0872 0x19d0 mrxsmb20 - ok 23:27:53.0878 0x19d0 MsBridge - ok 23:27:53.0889 0x19d0 MSDTC - ok 23:27:53.0893 0x19d0 Msfs - ok 23:27:53.0900 0x19d0 msgpiowin32 - ok 23:27:53.0903 0x19d0 mshidkmdf - ok 23:27:53.0905 0x19d0 mshidumdf - ok 23:27:53.0907 0x19d0 msisadrv - ok 23:27:53.0913 0x19d0 MSiSCSI - ok 23:27:53.0916 0x19d0 msiserver - ok 23:27:53.0918 0x19d0 MSKSSRV - ok 23:27:53.0920 0x19d0 MsLldp - ok 23:27:53.0922 0x19d0 MSPCLOCK - ok 23:27:53.0925 0x19d0 MSPQM - ok 23:27:53.0927 0x19d0 MsRPC - ok 23:27:53.0931 0x19d0 mssmbios - ok 23:27:53.0934 0x19d0 MSTEE - ok 23:27:53.0936 0x19d0 MTConfig - ok 23:27:53.0938 0x19d0 Mup - ok 23:27:53.0940 0x19d0 mvumis - ok 23:27:53.0969 0x19d0 NativeWifiP - ok 23:27:53.0976 0x19d0 NcaSvc - ok 23:27:53.0983 0x19d0 NcbService - ok 23:27:53.0985 0x19d0 NcdAutoSetup - ok 23:27:53.0988 0x19d0 ndfltr - ok 23:27:53.0993 0x19d0 NDIS - ok 23:27:53.0997 0x19d0 NdisCap - ok 23:27:54.0000 0x19d0 NdisImPlatform - ok 23:27:54.0002 0x19d0 NdisTapi - ok 23:27:54.0005 0x19d0 Ndisuio - ok 23:27:54.0007 0x19d0 NdisVirtualBus - ok 23:27:54.0010 0x19d0 NdisWan - ok 23:27:54.0013 0x19d0 ndiswanlegacy - ok 23:27:54.0016 0x19d0 ndproxy - ok 23:27:54.0019 0x19d0 Ndu - ok 23:27:54.0021 0x19d0 NetAdapterCx - ok 23:27:54.0024 0x19d0 NetBIOS - ok 23:27:54.0028 0x19d0 NetBT - ok 23:27:54.0031 0x19d0 Netlogon - ok 23:27:54.0034 0x19d0 Netman - ok 23:27:54.0036 0x19d0 netprofm - ok 23:27:54.0072 0x19d0 NetSetupSvc - ok 23:27:54.0103 0x19d0 NetTcpPortSharing - ok 23:27:54.0106 0x19d0 NgcCtnrSvc - ok 23:27:54.0121 0x19d0 NgcSvc - ok 23:27:54.0124 0x19d0 NlaSvc - ok 23:27:54.0126 0x19d0 Npfs - ok 23:27:54.0129 0x19d0 npsvctrig - ok 23:27:54.0131 0x19d0 nsi - ok 23:27:54.0134 0x19d0 nsiproxy - ok 23:27:54.0147 0x19d0 NTFS - ok 23:27:54.0149 0x19d0 Null - ok 23:27:54.0178 0x19d0 [ 417F5789073BE7B3DE45C308F3C527DF, 5137D7451D8D58BF5D7FFDF83F8C72CAAB05AFE237318FC4E1AE06F4FFE5CBFD ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys 23:27:54.0182 0x19d0 NVHDA - ok 23:27:54.0505 0x19d0 [ DB3FFDB8FB4D08E834B54B858D50DDBE, 3D6437E72FF96BACE0EC1C19C227800E3A6A89239630D71E1D46E0B3AA6CE40C ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d3851cb7c8216f9e\nvlddmkm.sys 23:27:54.0763 0x19d0 nvlddmkm - ok 23:27:54.0776 0x19d0 Scan was interrupted by user! 23:27:54.0776 0x19d0 Waiting for KSN requests completion. In queue: 15 23:27:55.0997 0x19d0 Win FW state via NFP2: enabled ( trusted ) 23:27:56.0111 0x19d0 ============================================================ 23:27:56.0111 0x19d0 Scan finished 23:27:56.0111 0x19d0 ============================================================ 23:27:56.0122 0x0c20 Detected object count: 0 23:27:56.0122 0x0c20 Actual detected object count: 0 23:28:38.0518 0x28d4 ============================================================ 23:28:38.0518 0x28d4 Scan started 23:28:38.0518 0x28d4 Mode: Manual; SigCheck; 23:28:38.0518 0x28d4 ============================================================ 23:28:38.0518 0x28d4 KSN ping started 23:28:38.0698 0x28d4 KSN ping finished: true 23:28:39.0155 0x28d4 ================ Scan system memory ======================== 23:28:39.0155 0x28d4 System memory - ok 23:28:39.0156 0x28d4 ================ Scan services ============================= 23:28:39.0256 0x28d4 1394ohci - ok 23:28:39.0258 0x28d4 3ware - ok 23:28:39.0268 0x28d4 ACPI - ok 23:28:39.0271 0x28d4 AcpiDev - ok 23:28:39.0280 0x28d4 acpiex - ok 23:28:39.0282 0x28d4 acpipagr - ok 23:28:39.0293 0x28d4 AcpiPmi - ok 23:28:39.0296 0x28d4 acpitime - ok 23:28:39.0350 0x28d4 [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 23:28:39.0385 0x28d4 AdobeFlashPlayerUpdateSvc - ok 23:28:39.0389 0x28d4 ADP80XX - ok 23:28:39.0397 0x28d4 AFD - ok 23:28:39.0402 0x28d4 ahcache - ok 23:28:39.0418 0x28d4 AJRouter - ok 23:28:39.0426 0x28d4 ALG - ok 23:28:39.0502 0x28d4 [ 23CB92EE5654BA92619D796E3AC7DB86, DD4536B55F021990DDAD8864F9BAECCDE40B2B532F6FB0D6CF9EB1A6B112A983 ] ALSysIO C:\Users\MAX-HE~1\AppData\Local\Temp\ALSysIO64.sys 23:28:39.0558 0x28d4 ALSysIO - ok 23:28:39.0564 0x28d4 AmdK8 - ok 23:28:39.0569 0x28d4 AmdPPM - ok 23:28:39.0574 0x28d4 amdsata - ok 23:28:39.0579 0x28d4 amdsbs - ok 23:28:39.0584 0x28d4 amdxata - ok 23:28:39.0761 0x28d4 [ 04B856A07EDCFEE14C4CB0D389531020, 38094E6FECF22FBC72B46C4A78519F9E698092DF28A81C5742332FCA6609CB9B ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe 23:28:39.0792 0x28d4 AntiVirMailService - ok 23:28:39.0812 0x28d4 [ FE817303FA4308B6149D2FC1D07D0DF2, 471EA57785EE40FE244BB2AF10FB5F5B113F1D79F34CAE28CC46177AB3F15141 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe 23:28:39.0825 0x28d4 AntiVirSchedulerService - ok 23:28:39.0837 0x28d4 [ FE817303FA4308B6149D2FC1D07D0DF2, 471EA57785EE40FE244BB2AF10FB5F5B113F1D79F34CAE28CC46177AB3F15141 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe 23:28:39.0851 0x28d4 AntiVirService - ok 23:28:39.0888 0x28d4 [ 82A7739C01B7FBD6738B08C6FEB13CE5, 49BD8764CC7BB8F3AEFD8A8585A2F492C0B48A6AAACA86BDE7CB6D182EADD703 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe 23:28:39.0916 0x28d4 AntiVirWebService - ok 23:28:39.0920 0x28d4 AppID - ok 23:28:39.0922 0x28d4 AppIDSvc - ok 23:28:39.0933 0x28d4 Appinfo - ok 23:28:39.0941 0x28d4 applockerfltr - ok 23:28:39.0954 0x28d4 AppReadiness - ok 23:28:39.0978 0x28d4 AppXSvc - ok 23:28:39.0981 0x28d4 arcsas - ok 23:28:39.0983 0x28d4 AsyncMac - ok 23:28:39.0999 0x28d4 atapi - ok 23:28:40.0002 0x28d4 AudioEndpointBuilder - ok 23:28:40.0011 0x28d4 Audiosrv - ok 23:28:40.0026 0x28d4 [ 5BAD6576E9DB51C6FB1AA4F74A1491F0, 60BE48FD4C15D49425EAB2B53731D73CD19ED456F42EE2C2D32FE9FD0638A1D0 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 23:28:40.0035 0x28d4 avgntflt - ok 23:28:40.0058 0x28d4 [ E73A2960A54F83B96415BAE10E66CCB2, C44CE2A638D2CB219A0BCDFEE2855E14A9BEAB032788D7661992735726EFC983 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 23:28:40.0066 0x28d4 avipbb - ok 23:28:40.0103 0x28d4 [ A177265C1777ABE56B22D921F91DDC38, D4E9C5BFC65063EDA015723058805B03C51F5B7456B404A4548CEC8DF6A3F7B7 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe 23:28:40.0114 0x28d4 Avira.ServiceHost - ok 23:28:40.0143 0x28d4 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 23:28:40.0150 0x28d4 avkmgr - ok 23:28:40.0171 0x28d4 [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys 23:28:40.0177 0x28d4 avnetflt - ok 23:28:40.0180 0x28d4 AxInstSV - ok 23:28:40.0182 0x28d4 b06bdrv - ok 23:28:40.0185 0x28d4 BasicDisplay - ok 23:28:40.0188 0x28d4 BasicRender - ok 23:28:40.0191 0x28d4 bcmfn - ok 23:28:40.0193 0x28d4 bcmfn2 - ok 23:28:40.0203 0x28d4 BDESVC - ok 23:28:40.0206 0x28d4 Beep - ok 23:28:40.0214 0x28d4 BFE - ok 23:28:40.0228 0x28d4 BITS - ok 23:28:40.0243 0x28d4 bowser - ok 23:28:40.0245 0x28d4 BrokerInfrastructure - ok 23:28:40.0248 0x28d4 Browser - ok 23:28:40.0251 0x28d4 BthAvrcpTg - ok 23:28:40.0253 0x28d4 BthHFEnum - ok 23:28:40.0255 0x28d4 bthhfhid - ok 23:28:40.0262 0x28d4 BthHFSrv - ok 23:28:40.0265 0x28d4 BTHMODEM - ok 23:28:40.0268 0x28d4 bthserv - ok 23:28:40.0270 0x28d4 buttonconverter - ok 23:28:40.0285 0x28d4 CapImg - ok 23:28:40.0287 0x28d4 cdfs - ok 23:28:40.0289 0x28d4 CDPSvc - ok 23:28:40.0291 0x28d4 CDPUserSvc - ok 23:28:40.0297 0x28d4 cdrom - ok 23:28:40.0299 0x28d4 CertPropSvc - ok 23:28:40.0302 0x28d4 cht4iscsi - ok 23:28:40.0305 0x28d4 cht4vbd - ok 23:28:40.0307 0x28d4 circlass - ok 23:28:40.0309 0x28d4 CLFS - ok 23:28:40.0313 0x28d4 ClipSVC - ok 23:28:40.0327 0x28d4 clreg - ok 23:28:40.0334 0x28d4 CmBatt - ok 23:28:40.0422 0x28d4 [ 84FC81FF9F291A0FC8D10933C1748F66, 46B6C64659A24C1D4917963FECEC2D6AED516C047762F0B4E67651CF8241A7D8 ] CM_VENDER_CMD C:\Program Files\Common Files\Logitech\G430Install\CMVC64.sys 23:28:40.0429 0x28d4 CM_VENDER_CMD - ok 23:28:40.0454 0x28d4 CNG - ok 23:28:40.0456 0x28d4 cnghwassist - ok 23:28:40.0506 0x28d4 CompositeBus - ok 23:28:40.0508 0x28d4 COMSysApp - ok 23:28:40.0511 0x28d4 condrv - ok 23:28:40.0530 0x28d4 CoreMessagingRegistrar - ok 23:28:40.0599 0x28d4 [ 75C568E62A2BD89A869C34119A66D19B, 2954F25E511947728FE50AA76ACECE0B6952D1984301027F499E2F3DAAEB65D3 ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 23:28:40.0615 0x28d4 cphs - ok 23:28:40.0619 0x28d4 CryptSvc - ok 23:28:40.0621 0x28d4 dam - ok 23:28:40.0636 0x28d4 DcomLaunch - ok 23:28:40.0638 0x28d4 DcpSvc - ok 23:28:40.0642 0x28d4 defragsvc - ok 23:28:40.0653 0x28d4 DeviceAssociationService - ok 23:28:40.0656 0x28d4 DeviceInstall - ok 23:28:40.0658 0x28d4 DevQueryBroker - ok 23:28:40.0663 0x28d4 Dfsc - ok 23:28:40.0675 0x28d4 Dhcp - ok 23:28:40.0715 0x28d4 diagnosticshub.standardcollector.service - ok 23:28:40.0733 0x28d4 DiagTrack - ok 23:28:40.0736 0x28d4 disk - ok 23:28:40.0748 0x28d4 DmEnrollmentSvc - ok 23:28:40.0751 0x28d4 dmvsc - ok 23:28:40.0753 0x28d4 dmwappushservice - ok 23:28:40.0768 0x28d4 Dnscache - ok 23:28:40.0771 0x28d4 dot3svc - ok 23:28:40.0774 0x28d4 DPS - ok 23:28:40.0788 0x28d4 drmkaud - ok 23:28:40.0790 0x28d4 DsmSvc - ok 23:28:40.0792 0x28d4 DsSvc - ok 23:28:40.0798 0x28d4 DXGKrnl - ok 23:28:40.0801 0x28d4 EapHost - ok 23:28:40.0803 0x28d4 ebdrv - ok 23:28:40.0819 0x28d4 EFS - ok 23:28:40.0821 0x28d4 EhStorClass - ok 23:28:40.0832 0x28d4 EhStorTcgDrv - ok 23:28:40.0837 0x28d4 embeddedmode - ok 23:28:40.0839 0x28d4 EntAppSvc - ok 23:28:40.0841 0x28d4 ErrDev - ok 23:28:40.0847 0x28d4 EventSystem - ok 23:28:40.0850 0x28d4 exfat - ok 23:28:40.0851 0x28d4 fastfat - ok 23:28:40.0874 0x28d4 Fax - ok 23:28:40.0877 0x28d4 fdc - ok 23:28:40.0880 0x28d4 fdPHost - ok 23:28:40.0882 0x28d4 FDResPub - ok 23:28:40.0894 0x28d4 fhsvc - ok 23:28:40.0909 0x28d4 FileCrypt - ok 23:28:40.0912 0x28d4 FileInfo - ok 23:28:40.0914 0x28d4 Filetrace - ok 23:28:40.0916 0x28d4 flpydisk - ok 23:28:40.0919 0x28d4 FltMgr - ok 23:28:40.0929 0x28d4 FontCache - ok 23:28:40.0990 0x28d4 FontCache3.0.0.0 - ok 23:28:41.0005 0x28d4 FrameServer - ok 23:28:41.0007 0x28d4 FsDepends - ok 23:28:41.0010 0x28d4 Fs_Rec - ok 23:28:41.0023 0x28d4 fvevol - ok 23:28:41.0038 0x28d4 gencounter - ok 23:28:41.0040 0x28d4 genericusbfn - ok 23:28:41.0043 0x28d4 GPIOClx0101 - ok 23:28:41.0059 0x28d4 gpsvc - ok 23:28:41.0062 0x28d4 GpuEnergyDrv - ok 23:28:41.0065 0x28d4 HDAudBus - ok 23:28:41.0067 0x28d4 HidBatt - ok 23:28:41.0069 0x28d4 HidBth - ok 23:28:41.0071 0x28d4 hidi2c - ok 23:28:41.0073 0x28d4 hidinterrupt - ok 23:28:41.0075 0x28d4 HidIr - ok 23:28:41.0079 0x28d4 hidserv - ok 23:28:41.0111 0x28d4 HidUsb - ok 23:28:41.0149 0x28d4 [ 2FA521C68E0CD492E6C216EA617EE4AB, D6FE38E23CD8D2CB879FC9AC91213A6E24DF5CC831E8FAE83807C6629025CAEE ] HiPatchService C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe 23:28:41.0233 0x28d4 HiPatchService - detected UnsignedFile.Multi.Generic ( 1 ) 23:28:41.0293 0x28d4 HiPatchService ( UnsignedFile.Multi.Generic ) - warning 23:28:41.0293 0x28d4 Force sending object to P2P due to detect: HiPatchService 23:28:41.0434 0x28d4 Object send P2P result: true 23:28:41.0696 0x28d4 HomeGroupListener - ok 23:28:41.0706 0x28d4 HomeGroupProvider - ok 23:28:41.0711 0x28d4 HpSAMD - ok 23:28:41.0734 0x28d4 [ 7C7C986776D00E575BFBDE5DCBDC615D, 4CF12851A5A45917C3A9139B19D79434F2038611B617F83A714506CC7A1A6C61 ] HtcVCom32 C:\WINDOWS\System32\drivers\HtcVComV64.sys 23:28:41.0834 0x28d4 HtcVCom32 - ok 23:28:41.0838 0x28d4 HTTP - ok 23:28:41.0855 0x28d4 HvHost - ok 23:28:41.0858 0x28d4 hvservice - ok 23:28:41.0861 0x28d4 hwpolicy - ok 23:28:41.0864 0x28d4 hyperkbd - ok 23:28:41.0877 0x28d4 i8042prt - ok 23:28:41.0881 0x28d4 iagpio - ok 23:28:41.0884 0x28d4 iai2c - ok 23:28:41.0888 0x28d4 iaLPSS2i_GPIO2 - ok 23:28:41.0891 0x28d4 iaLPSS2i_I2C - ok 23:28:41.0894 0x28d4 iaLPSSi_GPIO - ok 23:28:41.0897 0x28d4 iaLPSSi_I2C - ok 23:28:41.0948 0x28d4 [ 12859E1215AA083A42E7ADCDE5C061D1, 262F9C65C3FA7EB69C4FA7C6547E1C79DB49697A083309909BC78726A116557F ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 23:28:42.0008 0x28d4 iaStorA - ok 23:28:42.0013 0x28d4 iaStorAV - ok 23:28:42.0081 0x28d4 [ 14E3DB5ADA7E2187A404129F4E5CE336, 5925C8E9DC00A6C682D6A3B37C6EBF2C325D37C8E4BF584F0B5AAC5A7B666E47 ] IAStorDataMgrSvc C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe 23:28:42.0087 0x28d4 IAStorDataMgrSvc - ok 23:28:42.0089 0x28d4 iaStorV - ok 23:28:42.0092 0x28d4 ibbus - ok 23:28:42.0109 0x28d4 icssvc - ok 23:28:42.0299 0x28d4 [ 658287D76E8D77C08AE98989F99B8948, DBA67B5772E1FE43ABDB3908A1CF86D76F2774BABC20359D2511F06A2A8CAC57 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 23:28:42.0429 0x28d4 igfx - ok 23:28:42.0456 0x28d4 [ A105AD05696D55E6E4F078ED850F6305, 8121A4226D2941EDD4809D516E7684E5C7164ADCF5AA4C8BC6620110625D3E8D ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 23:28:42.0472 0x28d4 igfxCUIService2.0.0.0 - ok 23:28:42.0475 0x28d4 IKEEXT - ok 23:28:42.0487 0x28d4 IndirectKmd - ok 23:28:42.0603 0x28d4 [ D172E06EFE08DF148155A59DB716C1B6, F059B0B37C5E944D70626E9F029BC6311029E0A9D778C9C75DDDDC59A5AF1605 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 23:28:42.0677 0x28d4 IntcAzAudAddService - ok 23:28:42.0713 0x28d4 [ E300D1E37B737ED14F7A08CD5604E5D9, 5C1135081E29D7F4A97D5CAA2C8FBE1DD04EC7A3D8E648E69F2AA9EBDD88EBBB ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 23:28:42.0729 0x28d4 IntcDAud - ok 23:28:42.0771 0x28d4 [ B63CF22D1AD2ABDC39D85851B2BEAA6D, 37E9043BABB5895BFD2B59AFB60C438B992C6EAA1B5FDE5B3445314343F4C406 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe 23:28:42.0790 0x28d4 Intel(R) Capability Licensing Service TCP IP Interface - ok 23:28:42.0837 0x28d4 [ 8213094EA736A9C575AB0E22AD09B0BA, 12670A466B5AA37283BD4CB481D000DE3AE2A8D1BD159F67A41703A6FE5675EC ] Intel(R) Security Assist C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe 23:28:42.0899 0x28d4 Intel(R) Security Assist - detected UnsignedFile.Multi.Generic ( 1 ) 23:28:42.0899 0x28d4 Detect skipped due to KSN trusted 23:28:42.0899 0x28d4 Intel(R) Security Assist - ok 23:28:42.0902 0x28d4 intelide - ok 23:28:42.0920 0x28d4 intelpep - ok 23:28:42.0923 0x28d4 intelppm - ok 23:28:42.0928 0x28d4 iorate - ok 23:28:42.0930 0x28d4 IpFilterDriver - ok 23:28:42.0951 0x28d4 iphlpsvc - ok 23:28:42.0954 0x28d4 IPMIDRV - ok 23:28:42.0957 0x28d4 IPNAT - ok 23:28:42.0959 0x28d4 irda - ok 23:28:42.0962 0x28d4 IRENUM - ok 23:28:42.0977 0x28d4 irmon - ok 23:28:42.0986 0x28d4 [ 1DFC3CCA51785254C5604238BB1A5467, 31451A90A91AEE14C6B24F84CB9816E5C77179D411B8B3E8547F538235BEEFB0 ] isaHelperSvc C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 23:28:43.0009 0x28d4 isaHelperSvc - detected UnsignedFile.Multi.Generic ( 1 ) 23:28:43.0009 0x28d4 Detect skipped due to KSN trusted 23:28:43.0009 0x28d4 isaHelperSvc - ok 23:28:43.0013 0x28d4 isapnp - ok 23:28:43.0016 0x28d4 iScsiPrt - ok 23:28:43.0055 0x28d4 [ DE70C5C10803C700DC1CFDE2D5CF207A, 4D11DE8B986C6966B66E1D6E931A72A1E9FA8D0B5B9EF57EF3EEDD09D0BE0B4E ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 23:28:43.0066 0x28d4 jhi_service - ok 23:28:43.0086 0x28d4 kbdclass - ok 23:28:43.0097 0x28d4 kbdhid - ok 23:28:43.0109 0x28d4 kdnic - ok 23:28:43.0112 0x28d4 KeyIso - ok 23:28:43.0118 0x28d4 KSecDD - ok 23:28:43.0132 0x28d4 KSecPkg - ok 23:28:43.0135 0x28d4 ksthunk - ok 23:28:43.0148 0x28d4 KtmRm - ok 23:28:43.0174 0x28d4 [ 305BB2AC00D46542E0A653AB63F4ABB1, E3BE57A0EBB1194656D20C11688863A7864B06223419F688D82881F9F49604B6 ] LADF_CaptureOnly C:\WINDOWS\system32\DRIVERS\ladfGSCamd64.sys 23:28:43.0187 0x28d4 LADF_CaptureOnly - ok 23:28:43.0197 0x28d4 [ 28CDDC7D478A6313F55077416DCBD0DE, EE4174FC9444856DF0693D1A5F16EB88352A3B012AA82D49C462980703981A7A ] LADF_RenderOnly C:\WINDOWS\system32\DRIVERS\ladfGSRamd64.sys 23:28:43.0204 0x28d4 LADF_RenderOnly - ok 23:28:43.0214 0x28d4 LanmanServer - ok 23:28:43.0216 0x28d4 LanmanWorkstation - ok 23:28:43.0219 0x28d4 lfsvc - ok 23:28:43.0236 0x28d4 [ 17325C9B9ADB2BB99049936D0C9812C8, 70ADDC85FD5757BC9C4B97F382B25A19851FF8275021FFC04A81E208A604F83E ] LGBusEnum C:\WINDOWS\system32\drivers\LGBusEnum.sys 23:28:43.0248 0x28d4 LGBusEnum - ok 23:28:43.0279 0x28d4 [ 2D7F1C02B94D6F0F3E10107E5EA8E141, 93B266F38C3C3EAAB475D81597ABBD7CC07943035068BB6FD670DBBE15DE0131 ] LGCoreTemp C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys 23:28:43.0285 0x28d4 LGCoreTemp - ok 23:28:43.0291 0x28d4 [ C7AF05942E041D4B1F345ACF79993BB3, E8FAAE356C99A11F6CF17640FD9C67F87AFBFEFB70C458CB85178F2AD94DF848 ] LGJoyXlCore C:\WINDOWS\system32\drivers\LGJoyXlCore.sys 23:28:43.0302 0x28d4 LGJoyXlCore - ok 23:28:43.0313 0x28d4 [ 94AF1384A67B9FCF5651E70BC9D4C526, 9C025F7BBB5BBE9DAF3DEF2F6385CE77C8F413912C4D16930814F6D19B62B367 ] LGSHidFilt C:\WINDOWS\System32\drivers\LGSHidFilt.Sys 23:28:43.0319 0x28d4 LGSHidFilt - ok 23:28:43.0341 0x28d4 [ 1DDB8DE3D6EEF31EDCF4977B2D2FAACC, 24291B522A596E2D9A1CDAC192DB1C7422D5DD0E87E5C8A5F5E2CAA90296BF23 ] LGVirHid C:\WINDOWS\system32\drivers\LGVirHid.sys 23:28:43.0350 0x28d4 LGVirHid - ok 23:28:43.0353 0x28d4 LicenseManager - ok 23:28:43.0355 0x28d4 lltdio - ok 23:28:43.0357 0x28d4 lltdsvc - ok 23:28:43.0364 0x28d4 lmhosts - ok 23:28:43.0398 0x28d4 [ 1CE3A27B6B0658F4242AB2DECE69704E, FB705D43554478FA438CE600DAD65C5885858ABF9FCB5D9CC6E5F7C87FD6A853 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 23:28:43.0413 0x28d4 LMS - ok 23:28:43.0423 0x28d4 [ 37A36BC1FEC4D9123A0F3FEFF10EF380, 2065AE775E0AD4B53C3BC8E55BEBD19198AD8A3947DC2B1E38B411B66DC8F36A ] LogiRegistryService C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe 23:28:43.0433 0x28d4 LogiRegistryService - ok 23:28:43.0437 0x28d4 LSI_SAS - ok 23:28:43.0440 0x28d4 LSI_SAS2i - ok 23:28:43.0442 0x28d4 LSI_SAS3i - ok 23:28:43.0446 0x28d4 LSI_SSS - ok 23:28:43.0448 0x28d4 LSM - ok 23:28:43.0451 0x28d4 luafv - ok 23:28:43.0454 0x28d4 MapsBroker - ok 23:28:43.0470 0x28d4 [ 78BFF5425E044086E74E78650A359FBB, 294738C10F3ED933D4EC40EA0659372FCF19A3C6D45D356917438CA495F2CB45 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 23:28:43.0476 0x28d4 MBAMProtector - ok 23:28:43.0559 0x28d4 [ 9611577752E293259C7DCE19E9026362, 8CB5DFD63FA15603BB6FA6B501E09ED7F4DE0E8F68CB28B78CECAC3711BEFD24 ] MBAMScheduler C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe 23:28:43.0588 0x28d4 MBAMScheduler - ok 23:28:43.0619 0x28d4 [ F1A89A34388B5626F1548D393B23ECB1, EA00AC76C4C8C9340753B58A3313C9177A9B98F9F1BDE08F184CD0F53D0C186F ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 23:28:43.0641 0x28d4 MBAMService - ok 23:28:43.0664 0x28d4 [ 78488AF2AB2111D67B3C4044707A519B, 7AA71B9C4C7949A1A21F60EF7CCEDE0079794990696B60557B5DC86F4D47223A ] MBAMSwissArmy C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys 23:28:43.0673 0x28d4 MBAMSwissArmy - ok 23:28:43.0691 0x28d4 [ 898415AC0B5F1D2A9A48ABCB68A6DC4B, E1FD9AE5E22E3E5A18288E66A6184E92A4B63A1274DCE147A7728BB09C6A225E ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys 23:28:43.0699 0x28d4 MBAMWebAccessControl - ok 23:28:43.0701 0x28d4 megasas - ok 23:28:43.0713 0x28d4 megasas2i - ok 23:28:43.0715 0x28d4 megasr - ok 23:28:43.0735 0x28d4 [ 48F64A35BA9F2E4AC0587DDA555FF951, 77FE2BE86ADCE103F4220A641139C42B1407CF8EFFEB66F841ABF9CFC3621558 ] MEIx64 C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys 23:28:43.0746 0x28d4 MEIx64 - ok 23:28:43.0761 0x28d4 MessagingService - ok 23:28:43.0766 0x28d4 mlx4_bus - ok 23:28:43.0768 0x28d4 MMCSS - ok 23:28:43.0770 0x28d4 Modem - ok 23:28:43.0782 0x28d4 monitor - ok 23:28:43.0784 0x28d4 mouclass - ok 23:28:43.0787 0x28d4 mouhid - ok 23:28:43.0789 0x28d4 mountmgr - ok 23:28:43.0812 0x28d4 [ C1A273141F13434647AC7CE37D2C18EC, F36D1A12DB8289949528F4BC81E077B33709F9B14A01537EEA63F27FFA17092D ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 23:28:43.0822 0x28d4 MozillaMaintenance - ok 23:28:43.0824 0x28d4 mpsdrv - ok 23:28:43.0827 0x28d4 MpsSvc - ok 23:28:43.0830 0x28d4 MRxDAV - ok 23:28:43.0832 0x28d4 mrxsmb - ok 23:28:43.0842 0x28d4 mrxsmb10 - ok 23:28:43.0847 0x28d4 mrxsmb20 - ok 23:28:43.0850 0x28d4 MsBridge - ok 23:28:43.0864 0x28d4 MSDTC - ok 23:28:43.0869 0x28d4 Msfs - ok 23:28:43.0875 0x28d4 msgpiowin32 - ok 23:28:43.0878 0x28d4 mshidkmdf - ok 23:28:43.0881 0x28d4 mshidumdf - ok 23:28:43.0883 0x28d4 msisadrv - ok 23:28:43.0889 0x28d4 MSiSCSI - ok 23:28:43.0891 0x28d4 msiserver - ok 23:28:43.0893 0x28d4 MSKSSRV - ok 23:28:43.0897 0x28d4 MsLldp - ok 23:28:43.0899 0x28d4 MSPCLOCK - ok 23:28:43.0901 0x28d4 MSPQM - ok 23:28:43.0903 0x28d4 MsRPC - ok 23:28:43.0907 0x28d4 mssmbios - ok 23:28:43.0909 0x28d4 MSTEE - ok 23:28:43.0912 0x28d4 MTConfig - ok 23:28:43.0915 0x28d4 Mup - ok 23:28:43.0917 0x28d4 mvumis - ok 23:28:43.0933 0x28d4 NativeWifiP - ok 23:28:43.0935 0x28d4 NcaSvc - ok 23:28:43.0947 0x28d4 NcbService - ok 23:28:43.0949 0x28d4 NcdAutoSetup - ok 23:28:43.0953 0x28d4 ndfltr - ok 23:28:43.0958 0x28d4 NDIS - ok 23:28:43.0960 0x28d4 NdisCap - ok 23:28:43.0963 0x28d4 NdisImPlatform - ok 23:28:43.0965 0x28d4 NdisTapi - ok 23:28:43.0967 0x28d4 Ndisuio - ok 23:28:43.0969 0x28d4 NdisVirtualBus - ok 23:28:43.0972 0x28d4 NdisWan - ok 23:28:43.0974 0x28d4 ndiswanlegacy - ok 23:28:43.0976 0x28d4 ndproxy - ok 23:28:43.0981 0x28d4 Ndu - ok 23:28:43.0984 0x28d4 NetAdapterCx - ok 23:28:43.0986 0x28d4 NetBIOS - ok 23:28:43.0989 0x28d4 NetBT - ok 23:28:43.0991 0x28d4 Netlogon - ok 23:28:43.0993 0x28d4 Netman - ok 23:28:43.0996 0x28d4 netprofm - ok 23:28:44.0014 0x28d4 NetSetupSvc - ok 23:28:44.0045 0x28d4 NetTcpPortSharing - ok 23:28:44.0048 0x28d4 NgcCtnrSvc - ok 23:28:44.0052 0x28d4 NgcSvc - ok 23:28:44.0054 0x28d4 NlaSvc - ok 23:28:44.0056 0x28d4 Npfs - ok 23:28:44.0058 0x28d4 npsvctrig - ok 23:28:44.0063 0x28d4 nsi - ok 23:28:44.0064 0x28d4 nsiproxy - ok 23:28:44.0077 0x28d4 NTFS - ok 23:28:44.0080 0x28d4 Null - ok 23:28:44.0086 0x28d4 [ 417F5789073BE7B3DE45C308F3C527DF, 5137D7451D8D58BF5D7FFDF83F8C72CAAB05AFE237318FC4E1AE06F4FFE5CBFD ] NVHDA C:\WINDOWS\system32\drivers\nvhda64v.sys 23:28:44.0097 0x28d4 NVHDA - ok 23:28:44.0411 0x28d4 [ DB3FFDB8FB4D08E834B54B858D50DDBE, 3D6437E72FF96BACE0EC1C19C227800E3A6A89239630D71E1D46E0B3AA6CE40C ] nvlddmkm C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d3851cb7c8216f9e\nvlddmkm.sys 23:28:44.0712 0x28d4 nvlddmkm - ok 23:28:44.0775 0x28d4 [ 020F45E362D3B57CCC5735582BB1A6EC, E2D953CEF208528382153D06FED8394BEB52657C547E4D2D2954E537C9A382DC ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 23:28:44.0845 0x28d4 NvNetworkService - ok 23:28:44.0849 0x28d4 nvraid - ok 23:28:44.0851 0x28d4 nvstor - ok 23:28:44.0944 0x28d4 [ F82BCEB9F57B2959F6AAE2A3DDA892A8, 5B02C74BAF0E12B84F239B1449DAA955B28BD5BA7D35D315DB57F45E042E0DB3 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys 23:28:44.0978 0x28d4 NvStreamKms - ok 23:28:45.0065 0x28d4 [ 9209D57C1AA24841EF8D5DE6A5B2AAEB, C1A53621F5361DCE9C962A9B9B586D1904901C9EC20EFCA76C40ADCD98BEDF3C ] NvStreamNetworkSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe 23:28:45.0162 0x28d4 NvStreamNetworkSvc - ok 23:28:45.0233 0x28d4 [ 0EDF9504CA5174075BA5902AFC1F57C8, 8E210E71BA91813D3BB6B59E5F6AD0889711336AD12B1B1C67CCC882A6ED3E53 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe 23:28:45.0277 0x28d4 NvStreamSvc - ok 23:28:45.0301 0x28d4 [ 6DCBBEFD675E45DD18270937D34B61DA, 1910359C168FC043C72E605B3E7147BD16DD595EB546C24CF49DC1058A73862D ] NvStUSB C:\WINDOWS\System32\drivers\nvstusb.sys 23:28:45.0329 0x28d4 NvStUSB - ok 23:28:45.0381 0x28d4 [ 403522070F1C1020B9EB862ED989CD87, 01A63D0DA8B47DDE9D2FCF5923529FCA5ABF4154CFFA6D0E10087E3CA5477436 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe 23:28:46.0021 0x28d4 nvsvc - ok 23:28:46.0039 0x28d4 [ F37FE6B15A987AEEC08EEF531F2FAED7, CC768E7DE80C7A8CB2392F9BC528212B8A3A35A30A222ED0B0B959051E6F8065 ] nvvad_WaveExtensible C:\WINDOWS\system32\drivers\nvvad64v.sys 23:28:46.0072 0x28d4 nvvad_WaveExtensible - ok 23:28:46.0106 0x28d4 [ 7B1A2D6A7CF459E77AA6A77D28466E78, ECBE85A2D9B5C1E2FFE5F184490004715EE0798C4BB69663C56F09C857CE749F ] NW1900 C:\WINDOWS\System32\drivers\NW1900.sys 23:28:46.0119 0x28d4 NW1900 - ok 23:28:46.0142 0x28d4 [ FBA67C6766370EC737B025607AEC41D1, 65108438AAA0ADD0F88C80B96FB1B9323A8DD61A85EB2A8BFC7A234CEAF3A4D4 ] NWLowRider C:\WINDOWS\System32\drivers\NWLowRider.sys 23:28:46.0174 0x28d4 NWLowRider - ok 23:28:46.0203 0x28d4 OneSyncSvc - ok 23:28:46.0212 0x28d4 p2pimsvc - ok 23:28:46.0222 0x28d4 p2psvc - ok 23:28:46.0224 0x28d4 Parport - ok 23:28:46.0236 0x28d4 partmgr - ok 23:28:46.0243 0x28d4 PcaSvc - ok 23:28:46.0255 0x28d4 pci - ok 23:28:46.0278 0x28d4 pciide - ok 23:28:46.0282 0x28d4 pcmcia - ok 23:28:46.0285 0x28d4 pcw - ok 23:28:46.0297 0x28d4 pdc - ok 23:28:46.0310 0x28d4 PEAUTH - ok 23:28:46.0314 0x28d4 percsas2i - ok 23:28:46.0317 0x28d4 percsas3i - ok 23:28:46.0348 0x28d4 PerfHost - ok 23:28:46.0359 0x28d4 PhoneSvc - ok 23:28:46.0367 0x28d4 PimIndexMaintenanceSvc - ok 23:28:46.0384 0x28d4 pla - ok 23:28:46.0440 0x28d4 [ 2FE509AD76E7C1566747AB95953B2466, B1D3E910D8AAE0F3F49547DD5253C5DA26F94F6348604FCD1DDA6B95C79BFF10 ] PlaysService C:\Program Files (x86)\Raptr Inc\PlaysTV\plays_service.exe 23:28:46.0472 0x28d4 PlaysService - ok 23:28:46.0475 0x28d4 PlugPlay - ok 23:28:46.0477 0x28d4 PNRPAutoReg - ok 23:28:46.0480 0x28d4 PNRPsvc - ok 23:28:46.0483 0x28d4 PolicyAgent - ok 23:28:46.0487 0x28d4 Power - ok 23:28:46.0489 0x28d4 PptpMiniport - ok 23:28:46.0591 0x28d4 [ 7196D3C2E2E3129814C8DAB91F9A7D1E, 6763E4BF8E846B597E78778E520F5BADC95608BAA4EA0AC84971384B5D976DD7 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 23:28:46.0994 0x28d4 PrintNotify - ok 23:28:47.0000 0x28d4 Processor - ok 23:28:47.0008 0x28d4 ProfSvc - ok 23:28:47.0011 0x28d4 Psched - ok 23:28:47.0014 0x28d4 QWAVE - ok 23:28:47.0016 0x28d4 QWAVEdrv - ok 23:28:47.0019 0x28d4 RasAcd - ok 23:28:47.0023 0x28d4 RasAgileVpn - ok 23:28:47.0026 0x28d4 RasAuto - ok 23:28:47.0028 0x28d4 Rasl2tp - ok 23:28:47.0040 0x28d4 RasMan - ok 23:28:47.0042 0x28d4 RasPppoe - ok 23:28:47.0045 0x28d4 RasSstp - ok 23:28:47.0103 0x28d4 [ 5753CD9159718444F6D9E1634B984BF5, A4D6FB6583724F3DDDBA768D7786EB7E3AB1C8074F66DA9462BBB159CDFA2868 ] Razer Game Scanner Service C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 23:28:47.0137 0x28d4 Razer Game Scanner Service - ok 23:28:47.0157 0x28d4 rdbss - ok 23:28:47.0166 0x28d4 rdpbus - ok 23:28:47.0168 0x28d4 RDPDR - ok 23:28:47.0185 0x28d4 RdpVideoMiniport - ok 23:28:47.0188 0x28d4 rdyboost - ok 23:28:47.0198 0x28d4 ReFSv1 - ok 23:28:47.0201 0x28d4 RemoteAccess - ok 23:28:47.0210 0x28d4 RemoteRegistry - ok 23:28:47.0233 0x28d4 RetailDemo - ok 23:28:47.0236 0x28d4 RmSvc - ok 23:28:47.0239 0x28d4 RpcEptMapper - ok 23:28:47.0253 0x28d4 RpcLocator - ok 23:28:47.0255 0x28d4 RpcSs - ok 23:28:47.0261 0x28d4 rspndr - ok 23:28:47.0284 0x28d4 [ FA00B16D06217288AFD700223DA131BA, 90688C3A8403FEF2A90550781CBA932A522125B47D71F3F0AF73E21E43BC5564 ] rt640x64 C:\WINDOWS\System32\drivers\rt640x64.sys 23:28:47.0351 0x28d4 rt640x64 - ok 23:28:47.0378 0x28d4 [ D1AAC2E5DF223676CD9B777F56FBB3F3, FFC2DAC22DDB48872E957DAE6134E6DB416643609FC75F54E114FF5EBD40DDFF ] rzdaendpt C:\WINDOWS\System32\drivers\rzdaendpt.sys 23:28:47.0410 0x28d4 rzdaendpt - ok 23:28:47.0435 0x28d4 [ 55FFB814690A7D8A9E592B3DE1E0F6B6, 860F42D44D8C811D657BAF404939AE3451D6E766BAFFD6FD4912E313683EA316 ] rzendpt C:\WINDOWS\System32\drivers\rzendpt.sys 23:28:47.0446 0x28d4 rzendpt - ok 23:28:47.0500 0x28d4 [ DBAEA4EA265FE712AD5325BAC98127FE, 5EB33C58504BBD1A84B6FCD1D3F97EEA53BB109A655F89A3367357FD2BF59E91 ] rzhnet C:\WINDOWS\System32\Drivers\rzhnet.sys 23:28:47.0509 0x28d4 rzhnet - ok 23:28:47.0534 0x28d4 [ F446FE11CBE09985533AD84FC620D2D1, 6E9B5957311A1423D7AE0B0DCB44313779923AE8A6E483F390826A3D11AB7392 ] rzjstk C:\WINDOWS\System32\drivers\rzjstk.sys 23:28:47.0587 0x28d4 rzjstk - ok 23:28:47.0619 0x28d4 [ B67E6C871CC1A5B6BBB3E3CFDF3A43B2, 208572B11EC11A82FE6D33CDB24C9255B0F64D7379AF806FF6786F805360D6DE ] rzkeypadendpt C:\WINDOWS\System32\drivers\rzkeypadendpt.sys 23:28:47.0646 0x28d4 rzkeypadendpt - ok 23:28:47.0685 0x28d4 [ 57EA21461E21F5CA2FAA6E28612E0642, 72D1E2B21C1F1C27579B5FCDDB180D2F6275E6983D0DD5A252DAA06589AE770D ] rzmpos C:\WINDOWS\System32\drivers\rzmpos.sys 23:28:47.0731 0x28d4 rzmpos - ok 23:28:47.0753 0x28d4 [ 4C50375EA97C6FB3988C228C2A0567C5, 28EF8A2D85CE76A0C65CA6C39FFD045939BE7CB273054C03D3A0BDD8A3EA22FE ] rzp1endpt C:\WINDOWS\System32\drivers\rzp1endpt.sys 23:28:47.0794 0x28d4 rzp1endpt - ok 23:28:47.0832 0x28d4 [ 30A186D6A2A2853EEFAD7011E212E41B, 367B8FCCF29470C9237FC1F0EAEB59AE51E33778BC9914A2730AC7DDBC84942B ] rzpmgrk C:\WINDOWS\system32\drivers\rzpmgrk.sys 23:28:47.0868 0x28d4 rzpmgrk - ok 23:28:47.0902 0x28d4 [ F8A13D4413A93DD005FAD116CBD6B6F7, 8ED0C00920CE76E832701D45117ED00B12E20588CB6FE8039FBCCDFEF9841047 ] rzpnk C:\WINDOWS\system32\drivers\rzpnk.sys 23:28:47.0932 0x28d4 rzpnk - ok 23:28:47.0962 0x28d4 [ 421497E425AFB40502013F362E4FA230, 20E2372BEE4BFB21138CA574C9806EC399DDA9D3439F3C391E34ABB2E518106D ] rzudd C:\WINDOWS\System32\drivers\rzudd.sys 23:28:47.0976 0x28d4 rzudd - ok 23:28:47.0991 0x28d4 [ B61649A2EDE44FA37D668EB4165FA40F, 2D3F965BE8C1794E8D06BBC0AAEADF22F4DE1C54283B93F021973D3FD9612C63 ] rzvkeyboard C:\WINDOWS\System32\drivers\rzvkeyboard.sys 23:28:48.0001 0x28d4 rzvkeyboard - ok 23:28:48.0018 0x28d4 [ 08AAB23C190DFFA9AF15925C5C1B6348, 83E6E1AC586D247C959459401665E408B5501698FE6D1CC22193F5899734EA37 ] rzvmouse C:\WINDOWS\System32\drivers\rzvmouse.sys 23:28:48.0027 0x28d4 rzvmouse - ok 23:28:48.0037 0x28d4 s3cap - ok 23:28:48.0052 0x28d4 SamSs - ok 23:28:48.0057 0x28d4 sbp2port - ok 23:28:48.0060 0x28d4 SCardSvr - ok 23:28:48.0072 0x28d4 ScDeviceEnum - ok 23:28:48.0074 0x28d4 scfilter - ok 23:28:48.0077 0x28d4 Schedule - ok 23:28:48.0081 0x28d4 scmbus - ok 23:28:48.0083 0x28d4 scmdisk0101 - ok 23:28:48.0097 0x28d4 SCPolicySvc - ok 23:28:48.0112 0x28d4 sdbus - ok 23:28:48.0115 0x28d4 SDRSVC - ok 23:28:48.0118 0x28d4 sdstor - ok 23:28:48.0120 0x28d4 seclogon - ok 23:28:48.0134 0x28d4 SENS - ok 23:28:48.0136 0x28d4 SensorDataService - ok 23:28:48.0144 0x28d4 SensorService - ok 23:28:48.0148 0x28d4 SensrSvc - ok 23:28:48.0150 0x28d4 SerCx - ok 23:28:48.0152 0x28d4 SerCx2 - ok 23:28:48.0155 0x28d4 Serenum - ok 23:28:48.0158 0x28d4 Serial - ok 23:28:48.0161 0x28d4 sermouse - ok 23:28:48.0166 0x28d4 SessionEnv - ok 23:28:48.0168 0x28d4 sfloppy - ok 23:28:48.0194 0x28d4 SharedAccess - ok 23:28:48.0197 0x28d4 ShellHWDetection - ok 23:28:48.0205 0x28d4 shpamsvc - ok 23:28:48.0207 0x28d4 SiSRaid2 - ok 23:28:48.0210 0x28d4 SiSRaid4 - ok 23:28:48.0235 0x28d4 [ F3AAB7DF6408431C762D8721B68F46E4, 56ED764AA660955B8B06322703D086B3A52106625A83CCAF195B08BCBDEDA88F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 23:28:48.0282 0x28d4 SkypeUpdate - ok 23:28:48.0322 0x28d4 smphost - ok 23:28:48.0325 0x28d4 SmsRouter - ok 23:28:48.0334 0x28d4 SNMPTRAP - ok 23:28:48.0344 0x28d4 spaceport - ok 23:28:48.0348 0x28d4 SpbCx - ok 23:28:48.0356 0x28d4 Spooler - ok 23:28:48.0364 0x28d4 sppsvc - ok 23:28:48.0367 0x28d4 srv - ok 23:28:48.0373 0x28d4 srv2 - ok 23:28:48.0383 0x28d4 srvnet - ok 23:28:48.0385 0x28d4 SSDPSRV - ok 23:28:48.0391 0x28d4 SstpSvc - ok 23:28:48.0393 0x28d4 StateRepository - ok 23:28:48.0470 0x28d4 [ 90E22D7CDE08E07446D238A569BCAB7C, 3D4F413D0B0C9CF28D06E0476F24AC6441C8678DF786D9971B39C91C9F9B8020 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 23:28:48.0580 0x28d4 Steam Client Service - ok 23:28:48.0647 0x28d4 [ 8AD39F3C6C0ACD29D875905C5F20E6DA, 414053EFA8F4730F5ABB25C5ECA10695A04087471754A22F6B25EED9955A3B09 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe 23:28:48.0668 0x28d4 Stereo Service - ok 23:28:48.0671 0x28d4 stexstor - ok 23:28:48.0674 0x28d4 stisvc - ok 23:28:48.0689 0x28d4 storahci - ok 23:28:48.0691 0x28d4 storflt - ok 23:28:48.0694 0x28d4 stornvme - ok 23:28:48.0697 0x28d4 storqosflt - ok 23:28:48.0703 0x28d4 StorSvc - ok 23:28:48.0705 0x28d4 storufs - ok 23:28:48.0708 0x28d4 storvsc - ok 23:28:48.0710 0x28d4 svsvc - ok 23:28:48.0714 0x28d4 swenum - ok 23:28:48.0717 0x28d4 swprv - ok 23:28:48.0737 0x28d4 Synth3dVsc - ok 23:28:48.0772 0x28d4 [ 2D741AB2945FAEB72EFAE720314C58C1, 0F15CBF1F030A6A5C92E580D31ADD1A98F17B09C92906EB5222DB9C528D06C4F ] SynTP C:\WINDOWS\System32\drivers\SynTP.sys 23:28:48.0836 0x28d4 SynTP - ok 23:28:48.0839 0x28d4 SysMain - ok 23:28:48.0856 0x28d4 SystemEventsBroker - ok 23:28:48.0868 0x28d4 TabletInputService - ok 23:28:48.0870 0x28d4 TapiSrv - ok 23:28:48.0873 0x28d4 Tcpip - ok 23:28:48.0875 0x28d4 Tcpip6 - ok 23:28:48.0883 0x28d4 tcpipreg - ok 23:28:48.0886 0x28d4 tdx - ok 23:28:49.0032 0x28d4 [ C38948C3EF6D42AFC3B54E27DAA28113, 0560C89F38C40BD02D44BB1EB58043CE502CCE49B9871DC77643020D06DA4E1D ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 23:28:49.0148 0x28d4 TeamViewer - ok 23:28:49.0155 0x28d4 terminpt - ok 23:28:49.0158 0x28d4 TermService - ok 23:28:49.0176 0x28d4 Themes - ok 23:28:49.0201 0x28d4 TieringEngineService - ok 23:28:49.0204 0x28d4 tiledatamodelsvc - ok 23:28:49.0206 0x28d4 TimeBrokerSvc - ok 23:28:49.0208 0x28d4 TPM - ok 23:28:49.0211 0x28d4 TrkWks - ok 23:28:49.0233 0x28d4 TrustedInstaller - ok 23:28:49.0237 0x28d4 tsusbflt - ok 23:28:49.0240 0x28d4 TsUsbGD - ok 23:28:49.0242 0x28d4 tunnel - ok 23:28:49.0254 0x28d4 tzautoupdate - ok 23:28:49.0256 0x28d4 UASPStor - ok 23:28:49.0259 0x28d4 UcmCx0101 - ok 23:28:49.0262 0x28d4 UcmTcpciCx0101 - ok 23:28:49.0265 0x28d4 UcmUcsi - ok 23:28:49.0267 0x28d4 Ucx01000 - ok 23:28:49.0270 0x28d4 UdeCx - ok 23:28:49.0272 0x28d4 udfs - ok 23:28:49.0275 0x28d4 UEFI - ok 23:28:49.0277 0x28d4 Ufx01000 - ok 23:28:49.0281 0x28d4 UfxChipidea - ok 23:28:49.0284 0x28d4 ufxsynopsys - ok 23:28:49.0301 0x28d4 UI0Detect - ok 23:28:49.0303 0x28d4 umbus - ok 23:28:49.0306 0x28d4 UmPass - ok 23:28:49.0309 0x28d4 UmRdpService - ok 23:28:49.0312 0x28d4 UnistoreSvc - ok 23:28:49.0316 0x28d4 upnphost - ok 23:28:49.0319 0x28d4 UrsChipidea - ok 23:28:49.0322 0x28d4 UrsCx01000 - ok 23:28:49.0324 0x28d4 UrsSynopsys - ok 23:28:49.0331 0x28d4 usbaudio - ok 23:28:49.0334 0x28d4 usbccgp - ok 23:28:49.0336 0x28d4 usbcir - ok 23:28:49.0339 0x28d4 usbehci - ok 23:28:49.0341 0x28d4 usbhub - ok 23:28:49.0344 0x28d4 USBHUB3 - ok 23:28:49.0347 0x28d4 usbohci - ok 23:28:49.0350 0x28d4 usbprint - ok 23:28:49.0352 0x28d4 usbser - ok 23:28:49.0354 0x28d4 USBSTOR - ok 23:28:49.0357 0x28d4 usbuhci - ok 23:28:49.0360 0x28d4 USBXHCI - ok 23:28:49.0365 0x28d4 UserDataSvc - ok 23:28:49.0373 0x28d4 UserManager - ok 23:28:49.0381 0x28d4 UsoSvc - ok 23:28:49.0383 0x28d4 VaultSvc - ok 23:28:49.0416 0x28d4 [ 3447B8DC38D7E53E8C4BBA8270B5B9E8, 175DE2B17CA7A1542A743DEDECD5D420C1B030B5726B9368D61E62DE86DF49E8 ] VBoxUSB C:\WINDOWS\System32\Drivers\VBoxUSB.sys 23:28:49.0452 0x28d4 VBoxUSB - ok 23:28:49.0455 0x28d4 vdrvroot - ok 23:28:49.0458 0x28d4 vds - ok 23:28:49.0460 0x28d4 VerifierExt - ok 23:28:49.0484 0x28d4 vhdmp - ok 23:28:49.0487 0x28d4 vhf - ok 23:28:49.0489 0x28d4 vmbus - ok 23:28:49.0491 0x28d4 VMBusHID - ok 23:28:49.0499 0x28d4 vmgid - ok 23:28:49.0512 0x28d4 vmicguestinterface - ok 23:28:49.0515 0x28d4 vmicheartbeat - ok 23:28:49.0518 0x28d4 vmickvpexchange - ok 23:28:49.0536 0x28d4 vmicrdv - ok 23:28:49.0538 0x28d4 vmicshutdown - ok 23:28:49.0541 0x28d4 vmictimesync - ok 23:28:49.0544 0x28d4 vmicvmsession - ok 23:28:49.0547 0x28d4 vmicvss - ok 23:28:49.0550 0x28d4 volmgr - ok 23:28:49.0552 0x28d4 volmgrx - ok 23:28:49.0555 0x28d4 volsnap - ok 23:28:49.0557 0x28d4 volume - ok 23:28:49.0568 0x28d4 vpci - ok 23:28:49.0570 0x28d4 vsmraid - ok 23:28:49.0573 0x28d4 VSS - ok 23:28:49.0575 0x28d4 VSTXRAID - ok 23:28:49.0579 0x28d4 vwifibus - ok 23:28:49.0582 0x28d4 vwififlt - ok 23:28:49.0584 0x28d4 W32Time - ok 23:28:49.0587 0x28d4 WacomPen - ok 23:28:49.0590 0x28d4 WalletService - ok 23:28:49.0593 0x28d4 wanarp - ok 23:28:49.0595 0x28d4 wanarpv6 - ok 23:28:49.0598 0x28d4 wbengine - ok 23:28:49.0606 0x28d4 WbioSrvc - ok 23:28:49.0609 0x28d4 wcifs - ok 23:28:49.0614 0x28d4 Wcmsvc - ok 23:28:49.0617 0x28d4 wcncsvc - ok 23:28:49.0619 0x28d4 wcnfs - ok 23:28:49.0621 0x28d4 WdBoot - ok 23:28:49.0624 0x28d4 Wdf01000 - ok 23:28:49.0627 0x28d4 WdFilter - ok 23:28:49.0630 0x28d4 WdiServiceHost - ok 23:28:49.0632 0x28d4 WdiSystemHost - ok 23:28:49.0645 0x28d4 wdiwifi - ok 23:28:49.0648 0x28d4 WdNisDrv - ok 23:28:49.0656 0x28d4 WdNisSvc - ok 23:28:49.0658 0x28d4 WebClient - ok 23:28:49.0662 0x28d4 Wecsvc - ok 23:28:49.0665 0x28d4 WEPHOSTSVC - ok 23:28:49.0669 0x28d4 wercplsupport - ok 23:28:49.0671 0x28d4 WerSvc - ok 23:28:49.0674 0x28d4 WFPLWFS - ok 23:28:49.0678 0x28d4 WiaRpc - ok 23:28:49.0680 0x28d4 WIMMount - ok 23:28:49.0682 0x28d4 WinDefend - ok 23:28:49.0688 0x28d4 WindowsTrustedRT - ok 23:28:49.0691 0x28d4 WindowsTrustedRTProxy - ok 23:28:49.0696 0x28d4 WinHttpAutoProxySvc - ok 23:28:49.0699 0x28d4 WinMad - ok 23:28:49.0713 0x28d4 Winmgmt - ok 23:28:49.0729 0x28d4 WinRM - ok 23:28:49.0734 0x28d4 WINUSB - ok 23:28:49.0737 0x28d4 WinVerbs - ok 23:28:49.0756 0x28d4 wisvc - ok 23:28:49.0763 0x28d4 WlanSvc - ok 23:28:49.0783 0x28d4 wlidsvc - ok 23:28:49.0786 0x28d4 WmiAcpi - ok 23:28:49.0791 0x28d4 wmiApSrv - ok 23:28:49.0803 0x28d4 WMPNetworkSvc - ok 23:28:49.0817 0x28d4 Wof - ok 23:28:49.0830 0x28d4 workfolderssvc - ok 23:28:49.0833 0x28d4 WPDBusEnum - ok 23:28:49.0836 0x28d4 WpdUpFltr - ok 23:28:49.0839 0x28d4 WpnService - ok 23:28:49.0841 0x28d4 WpnUserService - ok 23:28:49.0854 0x28d4 ws2ifsl - ok 23:28:49.0864 0x28d4 wscsvc - ok 23:28:49.0866 0x28d4 WSearch - ok 23:28:49.0871 0x28d4 wuauserv - ok 23:28:49.0873 0x28d4 WudfPf - ok 23:28:49.0876 0x28d4 WUDFRd - ok 23:28:49.0880 0x28d4 wudfsvc - ok 23:28:49.0883 0x28d4 WwanSvc - ok 23:28:49.0893 0x28d4 XblAuthManager - ok 23:28:49.0909 0x28d4 XblGameSave - ok 23:28:49.0922 0x28d4 xboxgip - ok 23:28:49.0925 0x28d4 XboxNetApiSvc - ok 23:28:49.0931 0x28d4 xinputhid - ok 23:28:49.0933 0x28d4 ================ Scan global =============================== 23:28:49.0954 0x28d4 [ Global ] - ok 23:28:49.0955 0x28d4 ================ Scan MBR ================================== 23:28:49.0990 0x28d4 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 23:28:50.0215 0x28d4 \Device\Harddisk0\DR0 - ok 23:28:50.0216 0x28d4 ================ Scan VBR ================================== 23:28:50.0219 0x28d4 [ 92769AF0D1F650F24D279715AAC4EC61 ] \Device\Harddisk0\DR0\Partition1 23:28:50.0220 0x28d4 \Device\Harddisk0\DR0\Partition1 - ok 23:28:50.0225 0x28d4 [ 4B5BDADB2D607275D066C5C966CA1FE9 ] \Device\Harddisk0\DR0\Partition2 23:28:50.0226 0x28d4 \Device\Harddisk0\DR0\Partition2 - ok 23:28:50.0227 0x28d4 ================ Scan generic autorun ====================== 23:28:50.0538 0x28d4 [ BF225BCD0EC2D85719C382019B5B4250, 7FE5A85209BD930FC1622600AB74E59854488986AA052A0D03D5FC7B361F247D ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 23:28:51.0227 0x28d4 RTHDVCPL - ok 23:28:51.0300 0x28d4 [ 94A8196066774252DF015EEDF02CCA44, AD2DFDA427E3CCB5C8404F0AFAFE71C64B862D2E26A67E1BFC2B40738FD0B873 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 23:28:51.0341 0x28d4 NvBackend - ok 23:28:51.0372 0x28d4 [ BAEDADCD6509201F82CE5B404AB14814, 8C39C18CE00DB254F370D9C4AA80E88BF67C457240F3D30A58E39DBF9B96F44B ] C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe 23:28:51.0418 0x28d4 IAStorIcon - detected UnsignedFile.Multi.Generic ( 1 ) 23:28:51.0496 0x28d4 Detect skipped due to KSN trusted 23:28:51.0496 0x28d4 IAStorIcon - ok 23:28:51.0794 0x28d4 [ 81E9D0F3899A70D9C5845EFA57A09942, B0DC58D67C2A9C05063326CEF93A8CF9B5F7E43D6A582DF61506E2E044CB7776 ] C:\Program Files\Logitech Gaming Software\LCore.exe 23:28:52.0022 0x28d4 Launch LCore - ok 23:28:52.0032 0x28d4 WindowsDefender - ok 23:28:52.0070 0x28d4 [ D713106D059C67888CD5F5A862059D7B, 5F9344DA3AE43EEAFAC9E662DF380D77730DEE0AFE8DA31ED7C654E86BE196E5 ] C:\Program Files (x86)\Avira\Antivirus\avgnt.exe 23:28:52.0088 0x28d4 avgnt - ok 23:28:52.0137 0x28d4 [ E127B5D81CE968CD3858AF6BDCADEC7C, AF426B8259E2801679A8E3FAE42B617D0DA1D4E834DF0F7B1FD93AB5E64CBE34 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe 23:28:52.0143 0x28d4 Avira SystrayStartTrigger - ok 23:28:52.0201 0x28d4 [ 39C5CBC11625D4CE50F6C8D03884AB67, 2FA2E4FC10F8844282ED6627DA146149D7BE821CF2D4266D87DCE7AFD67540D1 ] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe 23:28:52.0228 0x28d4 IMSS - ok 23:28:52.0287 0x28d4 OneDriveSetup - ok 23:28:52.0289 0x28d4 OneDriveSetup - ok 23:28:52.0385 0x28d4 [ 1D7DD340E13DF9585EABB849CFC3E11B, 31CCD9753402DC030C641214B4ECB48A757BCD9F427A143A88745C62EFF87766 ] C:\Users\Max-Henrik\AppData\Local\Microsoft\OneDrive\OneDrive.exe 23:28:52.0445 0x28d4 OneDrive - ok 23:28:52.0549 0x28d4 [ D2CE6EA0E9F641D7153462D40C6B4193, 3AAE5239F951E29497D759326BDC23E19644B763DC5661CA4E4980418195C37D ] C:\Program Files (x86)\Steam\steam.exe 23:28:52.0619 0x28d4 Steam - ok 23:28:52.0785 0x28d4 [ 11B4662A4DD118132E2648837920AF86, 7643E9CF00C0393ED4A1D294DABA84DCEB6BE696E5B520D413284BAB16CE1CD5 ] C:\Users\Max-Henrik\AppData\Roaming\Spotify\SpotifyWebHelper.exe 23:28:52.0811 0x28d4 Spotify Web Helper - ok 23:28:52.0996 0x28d4 [ 40335C8877B6B84842AF03A40E1BB206, 33433ED8961B1AEEBD30F8DD53A541C711C403D019F1074406FF9C9D1E9F4113 ] C:\Program Files\CCleaner\CCleaner64.exe 23:28:53.0190 0x28d4 CCleaner Monitoring - ok 23:28:53.0235 0x28d4 Discord - ok 23:28:53.0268 0x28d4 Skype - ok 23:28:53.0270 0x28d4 Waiting for KSN requests completion. In queue: 41 23:28:54.0293 0x28d4 Win FW state via NFP2: enabled ( trusted ) 23:28:54.0371 0x28d4 ============================================================ 23:28:54.0371 0x28d4 Scan finished 23:28:54.0371 0x28d4 ============================================================ 23:28:54.0379 0x14bc Detected object count: 1 23:28:54.0379 0x14bc Actual detected object count: 1 23:29:43.0866 0x14bc HiPatchService ( UnsignedFile.Multi.Generic ) - skipped by user 23:29:43.0866 0x14bc HiPatchService ( UnsignedFile.Multi.Generic ) - User select action: Skip |
21.11.2016, 17:34 | #7 |
/// TB-Ausbilder /// Anleitungs-Guru | anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Bitte Re-Scan mit folgenden Tools, genau nach Anweisung: Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2
Dann bitte Suchscan durchführen: Schritt 3 ESET Online Scanner
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
21.11.2016, 20:54 | #8 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? ADWCleaner logfile Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 21/11/2016 um 18:42:37 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-11-20.1 [Server] # Betriebssystem : Windows 10 Home (X64) # Benutzername : Max-Henrik - FIDEYS_PC # Gestartet von : C:\Users\Max-Henrik\Desktop\AdwCleaner_6.030(1).exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [1192 Bytes] - [20/11/2016 06:34:28] C:\AdwCleaner\AdwCleaner[C2].txt - [1013 Bytes] - [21/11/2016 18:42:37] C:\AdwCleaner\AdwCleaner[S0].txt - [1338 Bytes] - [20/11/2016 06:26:08] C:\AdwCleaner\AdwCleaner[S1].txt - [1499 Bytes] - [21/11/2016 18:41:11] ########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [1232 Bytes] ########## Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 21.11.2016 Suchlaufzeit: 18:50 Protokolldatei: mbam.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.11.21.13 Rootkit-Datenbank: v2016.11.20.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: Max-Henrik Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 325647 Abgelaufene Zeit: 13 Min., 49 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=8cc60f38d47aa942bb4ead0a79857089 # end=init # utc_time=2016-11-21 06:11:59 # local_time=2016-11-21 07:11:59 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 31483 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=8cc60f38d47aa942bb4ead0a79857089 # end=updated # utc_time=2016-11-21 06:20:34 # local_time=2016-11-21 07:20:34 (+0100, Mitteleuropäische Zeit) # country="Germany" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=8cc60f38d47aa942bb4ead0a79857089 # engine=31483 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2016-11-21 07:47:02 # local_time=2016-11-21 08:47:02 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='Avira Antivirus' # compatibility_mode=1815 16777213 100 97 7411 30608557 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 6670 11088238 0 0 # scanned=298717 # found=9 # cleaned=0 # scan_time=5188 sh=6739E64086C857779B8248B8AE85644F8530011B ft=1 fh=d6bc78823a4b3972 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\Discord - CHIP-Installer.exe" sh=2A48B090B4913521A985EFD541FD62E8500304C3 ft=1 fh=932834beed875246 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\Free Sound Recorder - CHIP-Installer.exe" sh=4D8572B5325F666C2808A366C2E0DC0F7509D0D0 ft=1 fh=c77d3dc8f2c30ce4 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\Hedgewars - CHIP-Installer.exe" sh=AF3FBCDF7489845B786A155800341791E6DA5E09 ft=1 fh=156221d27a432c0b vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\OpenOffice - CHIP-Installer.exe" sh=F240CAD5C255D2F4264FFE4668259F9066B3AAF6 ft=1 fh=d90505fe24809739 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\Router Reconnect - CHIP-Installer.exe" sh=BDF2F4F239CBF0CAD694B312A667680B184A3F33 ft=1 fh=e46c4b30c4122cf5 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\Skype - CHIP-Installer.exe" sh=74712ED6E08446A8C370B97B7BDACFBC77259024 ft=1 fh=7a7b67fab9035070 vn="Variante von Win32/AdkDLLWrapper.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\utorrent3.3.2n30260.exe" sh=49FFBA27AC51B45FDA312F870BD30C7182B07445 ft=1 fh=a0c6910d6332469c vn="Variante von Win32/AdkDLLWrapper.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\utorrent_3.3.2b30488.exe" sh=59E9F3DDF52CB20E8D2E1DDA55490ED232847289 ft=1 fh=f7eeec9beb8eaa06 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Max-Henrik\Downloads\VLC media player 64 Bit - CHIP-Installer.exe" MFG, Max |
22.11.2016, 19:39 | #9 |
/// TB-Ausbilder /// Anleitungs-Guru | anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Gibt es jetzt noch Probleme mit dem PC? Wenn ja, welche?
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
23.11.2016, 02:53 | #10 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Hallo Jürgen, ja es besteht immernoch das selbe Problem. Wenn ich ein Programm zu öffnen versuche erscheint die Fehlermeldung: C:\WINDOWS\system32\wbem\fastprox.dll ist entweder nicht für die Ausführung unter Windows vorgesehen oder enthält einen Fehler. Installieren Sie das Programm mit den Originalinstallationsmedien erneut, oder wenden sie sich an den Systemadministrator oder Softwarelieferanten, um Unterstützung zu erhalten. Fehlrstatus 0xc0000006 Diese Fehlermeldung poppt 2 mal auf und ich muss sie immer wieder schließen bei jeder Anwednung die ich zu öffnen versuche. MFG, Max. |
23.11.2016, 18:14 | #11 |
/// TB-Ausbilder /// Anleitungs-Guru | anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Hi, jetzt bitte diese Anleitung abarbeiten. Windows reparieren - so geht's - Anleitungen Reparaturen im Safe Mode durchführen. Die neueste Tool-Version bitte hier runterladen: Tweaking.com - Windows Repair Free/Pro
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
25.11.2016, 01:26 | #12 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Hallo Jürgen. Ich habe das Programm nach Anleitung im Safemode laufen lassen und den prozess beobachtet. Nach dem neustart habe ich die selben Fehlermeldungen bekommen wie vor dem Repair. Ich würde dir gerne wenn möglich ein beispiel screenshot senden falls das helfen würde . Mit freundlichen Grüßen, Max. Geändert von fideY (25.11.2016 um 01:32 Uhr) |
25.11.2016, 18:34 | #13 |
/// TB-Ausbilder /// Anleitungs-Guru | anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Kannst gerne mal einen Screenshot posten. Nur denke ich, dass Dein Problem nicht von aktiver Malware verursacht wird.
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
25.11.2016, 19:13 | #14 |
| anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? hxxp://imgur.com/a/FH2N1 so sehen die fehlermeldungen aus. |
25.11.2016, 19:41 | #15 |
/// TB-Ausbilder /// Anleitungs-Guru | anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? Den Anwendungsfehler gibt es ja oft. Aber keine veritable und valide Lösung neben der erneuten Programminstallation. Oftmals hilft das nicht weiter und Windows muss neu installiert werden. Schritt 1
__________________ Gruß deeprybka Lob, Kritik, Wünsche? Spende fürs trojaner-board? _______________________________________________ „Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer |
Themen zu anwendungsfehler 0xc0000006: Habe ich einen Virus in meinem System? |
0xc0000006, antivirus, avira, datei, download, downloaden, erkannt, fake, fehlermeldung, fehlermeldungen, files, free, gen, jahre, link, log, programm, quarantäne, reagiert, super, system, trojaner, version, verursacht, virus, websites, windows, öffnen |