|
Plagegeister aller Art und deren Bekämpfung: verschiedene Probleme mit Windows , ist es Malware ?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
03.12.2016, 17:05 | #1 |
| verschiedene Probleme mit Windows , ist es Malware ? Hallo liebe Leute vom Trojaner-Board, könnt ihr mir bitte weiterhelfen ? Betriebssystem Windows 8.1 Ich habe oft volle Festplattenauslastung und wenn ich dann im Task-Manager kontrolliere steht da meist irgendwas mit Telemetry Agent als verursachender Prozess. Das passiert egal ob ich online oder offline bin mehrmals am Tag. Desweiteren ist mir aufgefallen, dass viele Programmstarts länger dauern als früher. Im Task-Manager steht dann oft "antwortet nicht" beim betreffenden Programm und nach ein wenig Zeit läuf es dann meist doch. Bei Windows-Neustarts passiert es öfters, dass Windows nicht richtig startet. Es geht dann in so eine Art Endlosschleife. Ich muss dann ausschalten und ein wenig warten. Dann geht es meistens wieder. Öfterskommt dann auch:"Hallo ! Ir Computer wird vorbereitet, Ihre Apps werden auf den neusten Stand gebracht" Und dann auch wieder die Endlosschleife. Jedesmal wenn ich neustarte ist die Tastaturbelegung Englisch statt Deutsch und der WLAN-Treiber ist abgeschaltet. In der Datenträgerbereinigung habe System error memory dump files und Debug Dump files mit einer Größe von je 406 MB. Entschuldigung für den langen Text, aber ich wollte alles was mir aufgefallen ist reinschreiben. Ich weiß nicht meghr weiter, kann das Malware sein oder ist Windows irgendwie beschädigt ? Vielen Dank, Lions |
03.12.2016, 19:19 | #2 |
/// TB-Ausbilder | verschiedene Probleme mit Windows , ist es Malware ?Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags: So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Danke für deine Mitarbeit! Es klingt so, als ob dein Windows schon nen "Knacks" hat, sprich wichtige Dinge "verstellt" sind. Wir schauen kurz nach, ob Malware auch auf dem PC ist. Zur ersten Analyse bitte FRST und TDSS-Killer ausführen: Schritt 1 Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Schritt 2 Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Bitte poste mit deiner nächsten Antwort
|
03.12.2016, 23:40 | #3 |
| verschiedene Probleme mit Windows , ist es Malware ? Hallo Matthias,
__________________also bei Windows ist bestimmt irgendwas angeknackst. Mir fällt auch gerade wieder ein, dass ich früher einen anderen User hatte, mit dem ich mich immer angemeldet habe. Der ist dann defekt gewesen und ich konnte mich nicht mehr anmelden. Wenn ich unter Benutzer gehe sind die Dateien aber alle noch da. Bei den verschiedenen Benutzerkonten wird nur noch eins angezeigt obwohl mehr eingerichtet sind. Ich habe in den 3 Logdateien statt den User-Namen xxxxx geschrieben weil da der komplette Name geschrieben war. Der aktuelle Benutzer, den ich im Moment verwende heisst: Internet. Kannst du schon was sagen ob Malware da ist ? Meinst du die Windows-Probleme können behoben werden ? Ich danke dir sehr ! Lions Hier FRST.TXT: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 02-12-2016 durchgeführt von Internet (Administrator) auf xxxxxxxx (03-12-2016 22:33:18) Gestartet von C:\Users\Internet\Desktop Geladene Profile: Internet (Verfügbare Profile: UpdatusUser & xxxxxxx & Internet & xxxxxxx) Platform: Windows 8.1 (Update) (X64) Sprache: German (Germany) Internet Explorer Version 11 (Standard-Browser: IE) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE (Intel Corporation) C:\Windows\System32\igfxTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe (Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1381744 2014-02-11] (Realtek Semiconductor) HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [10590208 2013-03-14] (Broadcom Corporation) HKLM\...\Run: [Bluetooth] => C:\Program Files\WIDCOMM\Bluetooth Software\bttray.exe [526704 2012-12-14] (Broadcom Corporation.) HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3928264 2015-05-27] (Synaptics Incorporated) HKLM-x32\...\Run: [mcui_exe] => "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [740376 2013-02-06] (Sony Corporation) HKLM-x32\...\Run: [Intel AppUp(R) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-02-19] (Intel Corporation) HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe [644656 2013-08-17] (McAfee, Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [1209344 2016-07-10] (Cisco Systems, Inc.) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-11-15] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [916072 2016-10-30] (Avira Operations GmbH & Co. KG) HKU\S-1-5-21-1112274420-4084008991-2802509019-1003\...\Run: [SandboxieControl] => C:\Program Files\Sandboxie\SbieCtrl.exe [798352 2016-09-22] (Sandboxie Holdings, LLC) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Parental Controls.lnk [2014-03-28] ShortcutTarget: McAfee Parental Controls.lnk -> C:\Program Files\McAfeeEx\MOCP\core\OcpTray.exe (McAfee, Inc.) Startup: C:\Users\Caterina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2016-07-23] ShortcutTarget: Send to OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{2836A1C9-F7FA-4CF3-A432-B30921933211}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{8DBC43F1-DA9D-474F-8C17-F549B3655E31}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-1112274420-4084008991-2802509019-1003\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://sony13.msn.com/ HKU\S-1-5-21-1112274420-4084008991-2802509019-1003\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com HKU\S-1-5-21-1112274420-4084008991-2802509019-1003\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://vaioportal.sony.eu SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1112274420-4084008991-2802509019-1003 -> {5330CCCC-C87E-4372-BB8A-BA0E7B821244} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-&_nkw={searchTerms} SearchScopes: HKU\S-1-5-21-1112274420-4084008991-2802509019-1003 -> {6DF86BCA-261F-4365-837E-52CEC9139C85} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-&_nkw={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-11-30] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-11-30] (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-11-30] (Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-11-30] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll => Keine Datei Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-30] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-30] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-30] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-11-30] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-09-23] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\Internet\AppData\Roaming\Mozilla\Firefox\Profiles\86kni7jp.default [2016-12-03] FF NetworkProxy: Mozilla\Firefox\Profiles\86kni7jp.default -> type", 2 FF Extension: (Avira Browser Safety) - C:\Users\Internet\AppData\Roaming\Mozilla\Firefox\Profiles\86kni7jp.default\Extensions\abs@avira.com.xpi [2016-11-25] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-18] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-18] () FF Plugin-x32: @cambridgesoft.com/Chem3D,version=15.0 -> C:\Program Files (x86)\CambridgeSoft\ChemOffice2015\Chem3D\npChem3DPlugin.dll [2015-03-14] (PerkinElmer) FF Plugin-x32: @cambridgesoft.com/ChemDraw,version=15.0 -> C:\Program Files (x86)\CambridgeSoft\ChemOffice2015\ChemDraw\npcdp32.dll [2015-03-14] (PerkinElmer) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-01-23] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-01-23] (Intel Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin -> C:\Program Files (x86)\Sony\MSS\3.8.130\npMcAfeeMss.dll [Keine Datei] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-11-30] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-11-30] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> C:\Program Files (x86)\Winamp Detect\npwachk.dll [2013-07-23] (Nullsoft, Inc.) FF Plugin-x32: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\ProgramData\Visan\plugins\npRLSecurePluginLayer.dll [2011-02-21] (RocketLife, LLP) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll [2013-10-11] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) Chrome: ======= CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1089088 2016-10-30] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [475232 2016-10-30] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [475232 2016-10-30] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1488240 2016-10-30] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [349512 2016-11-15] (Avira Operations GmbH & Co. KG) S4 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2946304 2016-10-30] (Microsoft Corporation) S4 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2015-02-04] (Intel Corporation) S4 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [240736 2013-10-07] (WildTangent) S4 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation) S4 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129824 2013-01-23] (Intel Corporation) S4 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166688 2013-01-23] (Intel Corporation) S4 McComponentHostServiceSony; C:\Program Files (x86)\Sony\MSS\3.8.130\McCHSvc.exe [235216 2013-10-16] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S4 mcpltsvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S4 McSchedulerSvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-15] (McAfee, Inc.) S4 mfeicfcoreocp; C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe [2782392 2013-12-31] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-11-15] (McAfee, Inc.) S4 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [629336 2013-09-28] (Sony Corporation) S4 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [483864 2013-02-06] (Sony Corporation) R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [197264 2016-09-22] (Sandboxie Holdings, LLC) S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer GmbH) S4 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2015-02-04] (Intel Corporation) S4 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2013-01-06] (Sony Corporation) R3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1642544 2014-02-28] (Sony Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) S4 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [6070272 2013-03-14] (Broadcom Corporation) [Datei ist nicht signiert] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [151352 2016-10-30] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [153392 2016-09-27] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [35488 2016-09-27] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [78208 2016-09-27] (Avira Operations GmbH & Co. KG) R0 avusbflt; C:\WINDOWS\System32\Drivers\avusbflt.sys [23640 2016-09-27] (Avira Operations GmbH & Co. KG) R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.) R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [8469680 2014-03-12] (Broadcom Corporation) R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2016-02-29] (Highresolution Enterprises [www.highrez.co.uk]) S3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [179792 2013-11-15] (McAfee, Inc.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [311120 2013-11-15] (McAfee, Inc.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [519576 2013-11-15] (McAfee, Inc.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [782360 2013-11-15] (McAfee, Inc.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [343696 2013-11-15] (McAfee, Inc.) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [204944 2016-09-22] (Sandboxie Holdings, LLC) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-05-27] (Synaptics Incorporated) S3 vpnva; C:\WINDOWS\system32\DRIVERS\vpnva64-6.sys [52592 2015-09-23] (Cisco Systems, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-03 22:33 - 2016-12-03 22:34 - 00019032 _____ C:\Users\Internet\Desktop\FRST.txt 2016-12-03 22:31 - 2016-12-03 22:31 - 02411520 _____ (Farbar) C:\Users\Internet\Desktop\FRST64.exe 2016-12-03 15:27 - 2016-12-03 15:27 - 00002522 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2016-11-30 21:41 - 2016-10-28 22:04 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2016-11-30 21:41 - 2016-10-28 22:04 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-30 20:03 - 2016-11-02 21:48 - 00372568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2016-11-30 20:03 - 2016-11-02 21:48 - 00315224 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2016-11-30 20:03 - 2016-11-02 15:03 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2016-11-30 20:03 - 2016-11-02 15:00 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2016-11-30 20:03 - 2016-10-27 19:53 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2016-11-30 20:03 - 2016-10-27 19:51 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-11-30 20:03 - 2016-10-27 19:37 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2016-11-30 20:03 - 2016-10-27 19:28 - 25763328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-11-30 20:03 - 2016-10-27 19:19 - 06047744 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2016-11-30 20:03 - 2016-10-27 19:08 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2016-11-30 20:03 - 2016-10-27 19:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2016-11-30 20:03 - 2016-10-27 19:05 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2016-11-30 20:03 - 2016-10-27 18:57 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2016-11-30 20:03 - 2016-10-27 18:49 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2016-11-30 20:03 - 2016-10-27 18:47 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-11-30 20:03 - 2016-10-27 18:46 - 00806912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-11-30 20:03 - 2016-10-27 18:46 - 00725504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-11-30 20:03 - 2016-10-27 18:44 - 02131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-11-30 20:03 - 2016-10-27 18:17 - 15257088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-11-30 20:03 - 2016-10-27 18:16 - 02920448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2016-11-30 20:03 - 2016-10-27 18:03 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-11-30 20:03 - 2016-10-27 17:54 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2016-11-30 20:03 - 2016-10-27 16:05 - 20304896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-11-30 20:03 - 2016-10-25 15:11 - 04169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-11-30 20:03 - 2016-10-22 18:35 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2016-11-30 20:03 - 2016-10-22 18:34 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2016-11-30 20:03 - 2016-10-22 18:27 - 02287616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-11-30 20:03 - 2016-10-22 18:21 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2016-11-30 20:03 - 2016-10-22 17:58 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2016-11-30 20:03 - 2016-10-22 17:57 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2016-11-30 20:03 - 2016-10-22 17:56 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2016-11-30 20:03 - 2016-10-22 17:51 - 00880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2016-11-30 20:03 - 2016-10-22 17:46 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2016-11-30 20:03 - 2016-10-22 17:45 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-11-30 20:03 - 2016-10-22 17:45 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-11-30 20:03 - 2016-10-22 17:44 - 04608000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2016-11-30 20:03 - 2016-10-22 17:43 - 02055680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-11-30 20:03 - 2016-10-22 17:30 - 13654016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-11-30 20:03 - 2016-10-22 17:12 - 02444800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2016-11-30 20:03 - 2016-10-22 17:09 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-11-30 20:03 - 2016-10-22 17:09 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2016-11-30 20:03 - 2016-10-13 20:06 - 01385280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-11-30 20:03 - 2016-10-13 20:06 - 01124376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-11-30 20:03 - 2016-10-12 09:01 - 00377176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2016-11-30 20:03 - 2016-10-11 21:21 - 00497448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-11-30 20:03 - 2016-10-11 21:21 - 00399776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-11-30 20:03 - 2016-10-11 19:34 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2016-11-30 20:03 - 2016-10-11 18:47 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\input.dll 2016-11-30 20:03 - 2016-10-11 17:55 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\input.dll 2016-11-30 20:03 - 2016-10-10 22:17 - 00444248 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2016-11-30 20:03 - 2016-10-10 22:17 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2016-11-30 20:03 - 2016-10-09 23:59 - 00551256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2016-11-30 20:03 - 2016-10-09 00:12 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2016-11-30 20:03 - 2016-10-08 23:53 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll 2016-11-30 20:03 - 2016-10-08 23:21 - 01445376 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-11-30 20:03 - 2016-10-08 23:18 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2016-11-30 20:03 - 2016-10-08 23:07 - 00332288 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAnimation.dll 2016-11-30 20:03 - 2016-10-08 23:02 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2016-11-30 20:03 - 2016-10-08 22:49 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll 2016-11-30 20:03 - 2016-10-08 22:21 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAnimation.dll 2016-11-30 20:03 - 2016-10-08 02:34 - 01660040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2016-11-30 20:03 - 2016-10-08 02:34 - 01212248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2016-11-30 20:03 - 2016-10-04 21:39 - 00101376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys 2016-11-30 20:03 - 2016-10-04 21:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2016-11-30 20:03 - 2016-10-04 21:08 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2016-11-30 20:03 - 2016-10-04 21:08 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2016-11-30 20:03 - 2016-10-01 01:22 - 07444312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-11-30 20:03 - 2016-09-17 19:16 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll 2016-11-30 20:03 - 2016-09-17 18:21 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll 2016-11-30 20:03 - 2016-09-14 02:53 - 01663184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-11-30 20:03 - 2016-09-14 02:53 - 01523208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-11-30 20:03 - 2016-09-14 02:53 - 01490112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-11-30 20:03 - 2016-09-14 02:53 - 01358952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-11-30 20:03 - 2016-09-12 23:03 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2016-11-30 20:03 - 2016-09-12 22:01 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2016-11-30 20:03 - 2016-09-09 23:52 - 00921944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys 2016-11-30 20:03 - 2016-09-09 23:14 - 00275800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2016-11-30 20:03 - 2016-09-09 15:15 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll 2016-11-30 20:03 - 2016-09-09 15:09 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll 2016-11-30 20:03 - 2016-09-09 15:04 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2016-11-30 20:03 - 2016-09-09 15:03 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiwmi.dll 2016-11-30 20:03 - 2016-09-09 15:02 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsiwmi.dll 2016-11-30 20:03 - 2016-09-09 14:38 - 00446124 _____ C:\WINDOWS\system32\ApnDatabase.xml 2016-11-30 20:03 - 2016-09-08 21:41 - 00121176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2016-11-30 20:03 - 2016-09-08 15:00 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2016-11-30 20:03 - 2016-09-08 15:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2016-11-30 20:03 - 2016-09-07 23:07 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2016-11-30 20:03 - 2016-09-07 22:59 - 01754112 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-11-30 20:03 - 2016-09-07 22:59 - 01377792 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2016-11-30 20:03 - 2016-09-07 22:57 - 01560064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2016-11-30 20:03 - 2016-09-07 22:56 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-11-30 20:03 - 2016-09-03 19:20 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsidsc.dll 2016-11-30 20:03 - 2016-09-03 19:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsiexe.dll 2016-11-30 20:03 - 2016-09-03 18:21 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsidsc.dll 2016-11-30 20:03 - 2016-09-03 17:12 - 00512512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2016-11-30 20:03 - 2016-09-03 17:05 - 01094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2016-11-30 20:03 - 2016-09-03 16:58 - 00397824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2016-11-30 20:03 - 2016-09-02 15:05 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2016-11-30 20:03 - 2016-09-02 15:05 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2016-11-30 20:03 - 2016-09-01 15:33 - 00377856 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmrdvcore.dll 2016-11-30 20:03 - 2016-09-01 15:33 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2016-11-30 20:03 - 2016-09-01 15:31 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2016-11-30 20:03 - 2016-08-30 15:11 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dab.dll 2016-11-30 20:03 - 2016-08-30 03:45 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xolehlp.dll 2016-11-30 20:03 - 2016-08-30 03:18 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll 2016-11-30 20:03 - 2016-08-30 03:18 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll 2016-11-30 20:03 - 2016-08-30 03:03 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll 2016-11-30 20:03 - 2016-08-27 17:33 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2016-11-30 20:03 - 2016-08-27 17:11 - 01049600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2016-11-30 20:03 - 2016-08-25 21:50 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll 2016-11-30 20:03 - 2016-08-25 20:40 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll 2016-11-30 20:03 - 2016-08-22 14:34 - 01628672 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2016-11-30 20:03 - 2016-08-13 01:05 - 09323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL 2016-11-30 20:03 - 2016-08-13 01:03 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifibus.sys 2016-11-30 20:03 - 2016-08-13 01:02 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwififlt.sys 2016-11-30 20:03 - 2016-08-13 01:01 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys 2016-11-30 20:03 - 2016-08-12 23:35 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll 2016-11-30 20:03 - 2016-08-12 23:19 - 09323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL 2016-11-30 20:03 - 2016-08-12 22:47 - 15431168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-11-30 20:03 - 2016-08-12 22:17 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll 2016-11-30 20:03 - 2016-08-12 21:52 - 13317120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-11-30 20:03 - 2016-08-12 02:58 - 02315496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2016-11-30 20:03 - 2016-08-12 02:58 - 01946176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2016-11-30 20:03 - 2016-08-11 19:33 - 00096256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\parport.sys 2016-11-30 20:03 - 2016-08-11 19:33 - 00083456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys 2016-11-30 20:03 - 2016-08-11 19:33 - 00023040 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serenum.sys 2016-11-30 20:03 - 2016-08-11 18:17 - 01574912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe 2016-11-30 20:03 - 2016-08-11 06:46 - 00420184 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2016-11-30 20:03 - 2016-08-03 16:42 - 01317888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2016-11-30 20:03 - 2016-08-03 16:36 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2016-11-30 20:03 - 2016-08-03 16:36 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2016-11-30 20:03 - 2016-08-03 16:33 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2016-11-30 20:03 - 2016-07-30 18:12 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2016-11-30 20:03 - 2016-07-30 17:36 - 02537472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2016-11-30 20:03 - 2016-07-26 14:40 - 00162850 _____ C:\WINDOWS\SysWOW64\C_932.NLS 2016-11-30 20:03 - 2016-07-26 14:40 - 00162850 _____ C:\WINDOWS\system32\C_932.NLS 2016-11-30 20:03 - 2016-07-23 19:18 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2016-11-30 20:03 - 2016-07-23 19:12 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2016-11-30 20:02 - 2016-08-27 20:44 - 22360288 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-11-30 20:02 - 2016-08-27 20:44 - 02755504 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2016-11-30 20:02 - 2016-08-27 20:44 - 00133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe 2016-11-30 20:02 - 2016-08-27 19:26 - 19789232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-11-30 20:02 - 2016-08-27 19:26 - 02411048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2016-11-30 20:02 - 2016-08-27 19:26 - 00113656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RestoreOptIn.exe 2016-11-30 20:02 - 2016-08-27 17:09 - 14466560 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-11-30 20:02 - 2016-08-27 16:55 - 12879360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-11-30 20:02 - 2016-08-20 23:24 - 02778624 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2016-11-30 20:02 - 2016-08-20 23:12 - 02463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2016-11-30 18:50 - 2016-11-30 18:51 - 03910208 _____ C:\Users\Internet\Downloads\adwcleaner_6.030.exe 2016-11-29 12:33 - 2016-11-29 12:34 - 00403292 _____ C:\Users\Internet\Desktop\boarding-pass(1).pdf 2016-11-29 12:30 - 2016-11-29 12:30 - 00003558 _____ C:\WINDOWS\System32\Tasks\HP AR Program Upload - 04406544821148d5a476cf627fd720e374ef835606a7447fa2da660b0f32122d 2016-11-29 12:16 - 2016-11-29 12:16 - 00403292 _____ C:\Users\Internet\Downloads\boarding-pass.pdf 2016-11-29 10:42 - 2016-11-29 10:42 - 00000000 ____D C:\Users\Internet\AppData\Roaming\WildTangent 2016-11-27 18:49 - 2016-11-27 18:49 - 00533820 _____ C:\Users\Internet\Downloads\pdf 2016-11-24 00:44 - 2016-11-24 00:44 - 00001152 _____ C:\Users\Public\Desktop\Avira Connect.lnk 2016-11-22 08:52 - 2016-11-22 08:52 - 00000000 ____D C:\Users\Internet\AppData\LocalLow\Temp 2016-11-20 00:12 - 2016-11-20 00:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie 2016-11-16 15:19 - 2016-12-03 21:25 - 00000000 ____D C:\Users\Internet\AppData\LocalLow\Mozilla 2016-11-16 13:11 - 2016-11-16 13:11 - 00000000 ____D C:\Users\Internet\AppData\Local\Microsoft Help ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-03 22:33 - 2015-11-15 09:47 - 00000000 ____D C:\FRST 2016-12-03 15:46 - 2014-07-30 22:18 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1112274420-4084008991-2802509019-1003 2016-12-03 15:33 - 2013-08-22 16:36 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-12-03 15:27 - 2014-11-21 04:35 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-12-03 15:27 - 2014-11-21 03:45 - 00769864 _____ C:\WINDOWS\system32\perfh007.dat 2016-12-03 15:27 - 2014-11-21 03:45 - 00163456 _____ C:\WINDOWS\system32\perfc007.dat 2016-12-03 15:27 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf 2016-12-02 09:56 - 2014-04-12 18:09 - 00000000 ____D C:\Users\Internet\AppData\Local\Packages 2016-12-01 00:54 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-11-30 23:59 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache 2016-11-30 23:26 - 2016-09-01 10:22 - 00001680 _____ C:\WINDOWS\Sandboxie.ini 2016-11-30 23:00 - 2013-08-16 04:56 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-11-30 22:01 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\tracing 2016-11-30 21:38 - 2015-11-15 09:35 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-11-30 20:24 - 2013-08-22 15:44 - 00547232 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-11-30 20:23 - 2015-11-06 23:16 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-11-30 20:23 - 2015-11-06 23:16 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2016-11-30 20:17 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData 2016-11-30 20:17 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2016-11-30 20:17 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\en-GB 2016-11-30 20:14 - 2013-11-11 22:54 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-11-30 20:14 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-11-30 20:08 - 2013-11-11 22:54 - 141011376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-11-30 20:07 - 2015-11-06 23:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-11-30 19:04 - 2016-06-28 18:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-30 19:04 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2016-11-30 19:02 - 2016-01-07 20:51 - 00000000 ____D C:\AdwCleaner 2016-11-30 18:49 - 2013-10-11 17:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-28 09:37 - 2016-07-24 17:52 - 00000000 ____D C:\Users\Internet\AppData\Local\ElevatedDiagnostics 2016-11-25 23:09 - 2016-07-26 12:38 - 00000000 ____D C:\Users\Internet\AppData\Roaming\Skype 2016-11-24 00:44 - 2016-10-08 10:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-11-24 00:42 - 2013-08-16 04:16 - 00000000 ____D C:\ProgramData\Package Cache 2016-11-18 01:18 - 2014-07-31 10:17 - 00000000 ____D C:\Users\Internet\AppData\Local\Adobe 2016-11-18 01:18 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-11-18 01:17 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-11-17 00:33 - 2014-08-18 22:57 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-11-09 17:50 - 2015-01-09 00:56 - 00004476 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-11-04 18:03 - 2015-12-11 08:19 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-11-04 18:03 - 2013-10-11 18:10 - 00000000 ____D C:\ProgramData\Skype 2016-11-03 20:11 - 2016-06-30 06:28 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-07-26 10:31 - 2016-12-03 16:27 - 0033884 _____ () C:\Users\Internet\AppData\Local\CDXLExtendedShim.log 2014-01-13 22:25 - 2014-01-13 22:25 - 0000057 _____ () C:\ProgramData\Ament.ini 2015-07-31 20:32 - 2015-07-31 20:32 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\Internet\AppData\Local\Temp\avgnt.exe C:\Users\Internet\AppData\Local\Temp\libeay32.dll C:\Users\Internet\AppData\Local\Temp\msvcr120.dll C:\Users\Internet\AppData\Local\Temp\SandboxieInstall.exe C:\Users\Internet\AppData\Local\Temp\SkypeSetup.exe C:\Users\Internet\AppData\Local\Temp\sqlite3.dll C:\Users\TEMP\AppData\Local\Temp\avgnt.exe C:\Users\TEMP.xxxxxxx.000\AppData\Local\Temp\avgnt.exe C:\Users\TEMP.xxxxxxx.002\AppData\Local\Temp\avgnt.exe C:\Users\TEMP.xxxxxxx.003\AppData\Local\Temp\avgnt.exe C:\Users\TEMP.xxxxxxx.005\AppData\Local\Temp\avgnt.exe C:\Users\TEMP.xxxxxxx.006\AppData\Local\Temp\avgnt.exe C:\Users\TEMP.xxxxxxx.007\AppData\Local\Temp\avgnt.exe C:\Users\TEMP.xxxxxxx.013\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-30 23:35 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-12-2016 durchgeführt von Internet (03-12-2016 22:35:22) Gestartet von C:\Users\Internet\Desktop Windows 8.1 (Update) (X64) (2015-07-31 20:36:09) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-1112274420-4084008991-2802509019-500 - Administrator - Disabled) xxxxxx (S-1-5-21-1112274420-4084008991-2802509019-1002 - Administrator - Enabled) => C:\Users\Caterina Gast (S-1-5-21-1112274420-4084008991-2802509019-501 - Limited - Disabled) Internet (S-1-5-21-1112274420-4084008991-2802509019-1003 - Administrator - Enabled) => C:\Users\Internet xxxxxx (S-1-5-21-1112274420-4084008991-2802509019-1004 - Administrator - Enabled) => C:\Users\Rainer UpdatusUser (S-1-5-21-1112274420-4084008991-2802509019-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ACD/Labs Freeware in C:\ACD2015FREE\ (HKLM-x32\...\ACDLabs in C__ACD2015FREE_) (Version: v14.00, FREE - ACD/Labs) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.23.58 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{e7f56494-d786-472e-aba2-1b93089e06cd}) (Version: 1.2.76.20506 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.76.20506 - Avira Operations GmbH & Co. KG) Hidden Avira Launcher (HKLM-x32\...\{16c00419-caa9-4a09-9774-376f70d9eeff}) (Version: 1.2.71.21096 - Avira Operations GmbH & Co. KG) Avogadro (HKLM-x32\...\Avogadro) (Version: 1.1.1 - Humanity) Azteca (x32 Version: 2.2.0.97 - WildTangent) Hidden Behind The Reflection 2: Witch's Revenge (x32 Version: 3.0.2.32 - WildTangent) Hidden Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 6.30.223.181 - Broadcom Corporation) Broadcom Wireless Utility (HKLM\...\{4CDA59B9-7AD3-4283-9F5C-BC469FF975B6}) (Version: 6.30.59.125 - Broadcom Corporation) Build-a-lot: On Vacation (x32 Version: 2.2.0.110 - WildTangent) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 4.3.01095 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 4.3.01095 - Cisco Systems, Inc.) Hidden Cut the Rope (x32 Version: 3.0.2.38 - WildTangent) Hidden CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.0.2529 - CyberLink Corp.) CyberLink PowerDVD (HKLM-x32\...\InstallShield_{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}) (Version: 9.0.6201.52 - CyberLink Corp.) dm-Fotowelt (HKLM-x32\...\dm-Fotowelt) (Version: 5.1.6 - CEWE Stiftung u Co. KGaA) Einstellungen für VAIO Media Server (HKLM\...\{62A172B2-550E-499D-9A82-5190D18390AA}) (Version: 1.1.0.02220 - Sony Corporation) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 17.4.19695 - Landesfinanzdirektion Thüringen) Enchanted Cavern 2 (x32 Version: 2.2.0.110 - WildTangent) Hidden ESDL (x32 Version: 1.0.0 - Sony Corporation) Hidden ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden FDUx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden FinePrint (HKLM\...\FinePrint) (Version: 8.16 - FinePrint Software, LLC) Fishdom 3: Collector's Edition (x32 Version: 3.0.2.38 - WildTangent) Hidden FOTOParadies (HKLM-x32\...\{FD838798-E2CB-45FA-AF79-6011519031E2}}_is1) (Version: 3.5.7.5 - Foto Online Service GmbH) Heroes of Hellas 3: Athens (x32 Version: 3.0.2.32 - WildTangent) Hidden HP ENVY 4500 series Basic Device Software (HKLM\...\{2369F346-79DE-4D08-8999-AACFF6F41A6F}) (Version: 32.0.1180.44630 - Hewlett-Packard Co.) HP ENVY 4500 series Help (HKLM-x32\...\{95BECC50-22B4-4FCA-8A2E-BF77713E6D3A}) (Version: 30.0.0 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.16432 - HP) HP Photo Creations (HKU\S-1-5-21-1112274420-4084008991-2802509019-1003\...\HP Photo Creations) (Version: 1.0.0.18702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Intel AppUp(R) center (HKLM-x32\...\Intel AppUp(R) center 41800) (Version: 3.8.0.41800.66 - Intel) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation) Intel(R) PROSet/Wireless NFC-Software (HKLM\...\Intel(R) PROSet/Wireless NFC-Software) (Version: 1.0.1.003 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) KODAK Create@Home Software (für dm) (HKLM-x32\...\{43B8BDF6-13EC-44BE-9EDA-F284C4CA19A6}) (Version: 7.8.1392 - Eastman Kodak Company) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) LibreOffice 4.1.2.3 (HKLM-x32\...\{DD3CB916-F91A-41B9-B276-CAC090E91021}) (Version: 4.1.2.3 - The Document Foundation) Luxor HD (x32 Version: 2.2.0.110 - WildTangent) Hidden Mahjongg Artifacts (x32 Version: 2.2.0.110 - WildTangent) Hidden Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) McAfee Parental Controls (HKLM-x32\...\MOCP) (Version: 3.2.226.1 - McAfee, Inc.) MestReNova 11.0 (HKLM-x32\...\{2B126BAE-8423-30A5-A597-6D2BA4FF235D}) (Version: 11.0.17609 - Mestrelab Research SL) Microsoft Office 365 ProPlus - de-de (HKLM\...\O365ProPlusRetail - de-de) (Version: 16.0.6965.2105 - Microsoft Corporation) Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.6965.2105 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Mozilla Firefox 50.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 50.0.1 (x86 en-US)) (Version: 50.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.1.6171 - Mozilla) My Kingdom for the Princess 3 (x32 Version: 2.2.0.110 - WildTangent) Hidden Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden Networkx64 (Version: 1.0.0 - Sony Corporation) Hidden NirSoft BlueScreenView (HKLM-x32\...\NirSoft BlueScreenView) (Version: - ) No23 Recorder (HKLM-x32\...\{22B0E143-2B0B-435B-9F56-136A3D16065F}) (Version: 2.1.0.3 - No23) NVIDIA Grafiktreiber 311.46 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 311.46 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.6965.2105 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.6965.2105 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.6965.2105 - Microsoft Corporation) Hidden PerkinElmer ChemDraw Professional 15.0 (HKLM-x32\...\{F24A1FB2-22FC-4A4E-AD90-9B1196AFFF7E}) (Version: 15.0 - PerkinElmer Informatics, Inc.) PerkinElmer ChemScript 15.0 (HKLM-x32\...\{2623D946-2CA9-4E69-A6C1-DDFA46C87EFF}) (Version: 15.0 - PerkinElmer Informatics, Inc.) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden PlayMemories Home (HKLM-x32\...\{1E5C7043-09C5-4974-A69F-A5271FD82BBC}) (Version: 7.0.02.14060 - Sony Corporation) Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Product Improvement Study for HP ENVY 4500 series (HKLM\...\{7D5D56E5-5869-4D0F-8D6C-6291004F9DF2}) (Version: 32.0.1180.44630 - Hewlett-Packard Co.) Python 2.7.2 (HKLM-x32\...\{2E295B5B-1AD4-4d36-97C2-A316084722CF}) (Version: 2.7.2150 - Python Software Foundation) Python 3.2 pywin32-217 (HKLM-x32\...\pywin32-py3.2) (Version: - ) Python 3.2.2 (HKLM-x32\...\{4CDE3168-D060-4b7c-BC74-4D8F9BB01AFD}) (Version: 3.2.2150 - Python Software Foundation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.10.1226.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7177 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{0D61A55C-3ADC-409F-BF5B-A1766D1F5944}) (Version: 6.2.9200.28135 - Realtek Semiconductor Corp.) Restore (x32 Version: 1.0.0 - Sony Corporation) Hidden Rossmann Fotowelt Software 4.13 (HKLM-x32\...\Rossmann Fotowelt Software) (Version: 4.13 - ORWO Net) Sandboxie 5.14 (64-bit) (HKLM\...\Sandboxie) (Version: 5.14 - Sandboxie Holdings, LLC) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.) SSLx64 (Version: 1.0.0 - Sony Corporation ) Hidden SSLx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.5.0 - Synaptics Incorporated) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.59518 - TeamViewer) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Vacation Quest™ - Australia (x32 Version: 3.0.2.32 - WildTangent) Hidden VAIO - Xperia Link (HKLM-x32\...\{D91558BF-D1F3-411F-AEFE-8774CB406512}) (Version: 1.3.2.07020 - Sony Corporation) VAIO BIOS Data Transfer Utility (x32 Version: 1.0.0.02050 - Sony Corporation) Hidden VAIO Care (HKLM\...\{A2DAB821-75CD-4052-815B-02E1443C11D5}) (Version: 8.4.3.07166 - Sony Corporation) VAIO Care Recovery (HKLM\...\{15B9204E-BA09-485E-8F2C-094AC0077664}) (Version: 1.1.2.13230 - Sony Corporation) VAIO Care-Hardwarediagnose-Plugin (HKLM-x32\...\{EC153498-00E1-4C9C-89BE-81527C6750BE}) (Version: 4.8.0.13250 - Sony Corporation) VAIO Control Center (HKLM-x32\...\{8E797841-A110-41FD-B17A-3ABC0641187A}) (Version: 6.2.0.03070 - Sony Corporation) VAIO Data Restore Tool (HKLM-x32\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.11.0.13250 - Sony Corporation) VAIO Easy Connect (x32 Version: 8.2.0.14170 - Sony Corporation) Hidden VAIO Gesture Control (HKLM-x32\...\{692955F2-DE9F-4078-8FAA-858D6F3A1776}) (Version: 2.2.0.01230 - Sony Corporation) VAIO Gesture Control (x32 Version: 2.2.0.01230 - Sony Corporation) Hidden VAIO Image Optimizer (HKLM-x32\...\InstallShield_{5597C927-029A-46A7-A0C0-8DABD9891A50}) (Version: 3.2.00.07040 - Sony Corporation) VAIO Image Optimizer (x32 Version: 3.1.00.14260 - Sony Corporation) Hidden VAIO Improvement (HKLM-x32\...\{3A26D9BD-0F73-432D-B522-2BA18138F7EF}) (Version: 2.2.0.01240 - Sony Corporation) VAIO Movie Creator (HKLM-x32\...\InstallShield_{C2CC5822-32E6-4D21-88EA-DE8CED09EE2F}) (Version: 4.2.00.07040 - Sony Corporation) VAIO Movie Creator (x32 Version: 4.1.01.15140 - Sony Corporation) Hidden VAIO Sample Music (HKLM-x32\...\{FBEE3D44-0933-4B84-BB6A-49957F89187F}) (Version: 1.0.0.03051 - Sony Corporation) VAIO Update (HKLM-x32\...\{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2}) (Version: 7.0.1.02280 - Sony Corporation) VAIO*CPU-Lüfterdiagnose (HKLM-x32\...\{BCE6E3D7-B565-4E1B-AC77-F780666A35FB}) (Version: 1.2.0.03050 - Sony Corporation) VAIO-Support für Übertragungen (HKLM-x32\...\{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}) (Version: 1.9.0.11060 - Sony Corporation) VCCx64 (Version: 1.0.0 - Sony Corporation) Hidden VCCx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VHD (x32 Version: 1.0.0 - Sony Corporation) Hidden Virtual Villagers 5 - New Believers (x32 Version: 3.0.2.32 - WildTangent) Hidden VIx64 (Version: 1.0.0 - Sony Corporation) Hidden VIx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) VPMx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSSTx64 (Version: 1.0.0 - Sony Corporation ) Hidden VSSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden VWSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden WIDCOMM Bluetooth Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.4900 - Broadcom Corporation) WildTangent Games App (x32 Version: 4.0.10.5 - WildTangent) Hidden WildTangent-Spiele (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc) Winamp Detector Plug-in (HKU\S-1-5-21-1112274420-4084008991-2802509019-1003\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc) XperiaLinkx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden Youda Jewel Shop (x32 Version: 3.0.2.32 - WildTangent) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {01D9D2B7-58A5-450E-B731-912BC6F78ED4} - System32\Tasks\Sony Corporation\VAIO Care\ActiveStatusCollect => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {124FF84F-69C8-46C7-BFC6-934EBDE38506} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation) Task: {177499DC-E1BC-40F8-B163-F37B3D52433E} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2013-01-24] (Sony Corporation) Task: {1D40FD7D-4F82-42F8-B7AC-68202664BDA6} - System32\Tasks\Sony Corporation\VAIO Care\UpdateContacts => C:\ProgramData\Sony Corporation\VAIO Care\UpdateContacts.exe Task: {2E9C6C11-FED3-4FCC-871E-7747BC6189F0} - System32\Tasks\HP AR Program Upload - 04406544821148d5a476cf627fd720e374ef835606a7447fa2da660b0f32122d => C:\Program Files\HP\HP ENVY 4500 series\bin\HPRewards.exe [2013-08-13] (TODO: <Company name>) Task: {30E625A3-AE40-4DC7-8F71-22A856B39221} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2013-02-02] (Sony Corporation) Task: {3A1A99E3-66D5-4834-806B-0F9A52FEE91B} - System32\Tasks\Sony Corporation\VAIO Care\VCRLog => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {3BDE064B-101C-460A-8C75-99A06F5C9E47} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-11-30] (Microsoft Corporation) Task: {4318BFF9-B6FE-4033-90E2-1EA584B57890} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterUser => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [2013-03-08] (Sony Corporation) Task: {5BDFCD68-5DCD-4ED9-801A-9F48F3F7388E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2016-11-30] (Microsoft Corporation) Task: {5C5D6ACF-CCA3-4FA9-8932-8DA2B21DE5C9} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-10-30] (Microsoft Corporation) Task: {683762F0-85E8-4CA9-89B8-E85E8AF9D540} - System32\Tasks\HPCustParticipation HP ENVY 4500 series => C:\Program Files\HP\HP ENVY 4500 series\Bin\HPCustPartic.exe [2013-08-13] (Hewlett-Packard Co.) Task: {6C6B57B3-64DC-42F9-858C-612627B290E3} - System32\Tasks\USER_ESRV_SVC => Wscript.exe //B //NoLogo "C:\Program Files\Sony\VAIO Care\ESRV\task.vbs" Task: {6E8278E5-DEE2-4274-A375-EF36D5A35667} - System32\Tasks\Sony Corporation\VAIO Care\DeployCRMflag => C:\Program Files\Sony\VAIO Care\DeployCRMflag.exe [2015-02-04] (Sony Corporation) Task: {6EF9FABE-219F-4B10-B695-A6B96C9EA7C3} - System32\Tasks\HP AR Program Upload - 4af055497ec841ceb36baee3d8fcbd2525ae91588d634534b6226d1a483c79f1 => C:\Program Files\HP\HP ENVY 4500 series\bin\HPRewards.exe [2013-08-13] (TODO: <Company name>) Task: {706FFB48-9562-4C90-A521-33C35F587444} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {728C67ED-97C0-4A04-A188-450BBAB8D1AF} - System32\Tasks\Sony Corporation\VAIO Care\UploadPOT => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {75A5450A-E3A6-44CD-9321-AB0E49820866} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2014-03-01] (Sony Corporation) Task: {78865BB7-12B5-4988-AB37-4A57B8B10B80} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {7DE3D3C8-1BE8-4376-A4BC-7993D320D7C5} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1112274420-4084008991-2802509019-1002 => C:\Users\Internet\AppData\Local\Microsoft\OneDrive\OneDrive.exe Task: {8970B2E2-4BD5-42A0-A6BD-91251A0949BF} - System32\Tasks\Sony Corporation\VAIO Care\UpdateSolution => C:\Program Files\Sony\VAIO Care\Solution.Updater.exe [2015-07-13] (Sony Corporation) Task: {908AA828-04DE-4726-B44A-5E6F06656BF5} - System32\Tasks\Sony Corporation\Xperia Link\Xperia Link Logon Start => C:\Program Files (x86)\Sony\Xperia Link\Xperia Link.exe [2014-07-03] (Sony Corporation) Task: {9470D78C-FACD-4879-AFDB-1D0125859788} - System32\Tasks\{B71BEABB-137F-42F5-AE15-8980C8B0281A} => Firefox.exe hxxp://ui.skype.com/ui/0/7.24.85.104/en/abandoninstall?page=tsBing Task: {9754E879-81F3-4DA6-89A5-24990619957C} - System32\Tasks\Sony Corporation\VAIO Hardware Diagnostics\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2013-01-25] (Sony Corporation) Task: {9A82B9B2-87A6-4AB4-A2A8-E8B2AE9B8EA3} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2014-02-28] (Sony Corporation) Task: {9CA1062B-993F-4F12-A251-EC052DEDA7C3} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\Communicator.exe [2014-11-24] () Task: {A12947B0-C517-4E96-A4B6-B931D07E5647} - System32\Tasks\{EB91CE94-8941-4AAD-82BD-AADABCA3B5E2} => Firefox.exe hxxp://ui.skype.com/ui/0/6.14.0.104/en/abandoninstall?page=tsProgressBar Task: {A20BF499-CEB4-4CF8-8FB6-01F63D91305F} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {A64C22B9-F087-414F-9443-C5662A5E0BE4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {A7FCA21B-F914-4338-9420-88D36056BEC5} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2012-07-24] (CyberLink Corp.) Task: {A8C168C3-EDD6-4426-B80F-FE0218E95018} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2016-11-30] (Microsoft Corporation) Task: {B4ACBEAB-67F1-4BD9-868B-A5884A4EF8D3} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2013-02-02] (Sony Corporation) Task: {BC7D5601-58B2-45C2-BF42-4F3C3F880962} - System32\Tasks\Sony Corporation\VAIO Care\GetPOTInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {C2EF357A-4D61-4AB1-9DA0-BC038535F2E5} - System32\Tasks\HP AR Program Upload - 78f6139f686f4b948ce54a86592097609d8562e8fd744698ad4b0996ba72ae8b => C:\Program Files\HP\HP ENVY 4500 series\bin\HPRewards.exe [2013-08-13] (TODO: <Company name>) Task: {C497C1AA-7611-427A-897F-6F5DE965BA82} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {C65B0356-31D6-404F-B2D1-1482DE77675F} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterSystem => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [2013-03-08] (Sony Corporation) Task: {C7109A5B-25FF-4A1C-BA11-82691E13F776} - System32\Tasks\Sony Corporation\VAIO Gesture Control\VCGULogonTask => C:\Program Files (x86)\Sony\VAIO Camera Gesture Utility\VCGU.exe [2013-01-23] (Sony Corporation) Task: {D18C1BA8-9069-4E9B-B9F5-778593CDAB2A} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient Task: {DD4FBCA8-101F-4083-BE58-6F129312E0DC} - System32\Tasks\HP AR Program Upload - 99d17595a0fd4be69e1aaaf3aacdb36b916ef2c8c3914bb5abdb29856180c851 => C:\Program Files\HP\HP ENVY 4500 series\bin\HPRewards.exe [2013-08-13] (TODO: <Company name>) Task: {E4154FE1-5197-44F6-A0E8-BA1AE5FEE806} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) Task: {FAA71949-880E-473E-8FDE-B24C465FA577} - System32\Tasks\Sony Corporation\VAIO Care\CheckSystemInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2015-07-13] (Sony Corporation) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\Communicator.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2013-09-05 01:36 - 2013-09-05 01:36 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll 2016-06-12 13:20 - 2016-11-30 22:39 - 08919744 _____ () C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\1033\GrooveIntlResource.dll 2016-07-10 12:37 - 2016-07-10 12:37 - 00073728 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-1112274420-4084008991-2802509019-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Sony\VAIO 13 img1 Wallpaper 1366x768.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: Avira.ServiceHost => 2 MSCONFIG\Services: BcmBtRSupport => 2 MSCONFIG\Services: btwdins => 2 MSCONFIG\Services: cphs => 3 MSCONFIG\Services: ESRV_SVC => 2 MSCONFIG\Services: GamesAppIntegrationService => 2 MSCONFIG\Services: GamesAppService => 3 MSCONFIG\Services: ICCS => 3 MSCONFIG\Services: IconMan_R => 2 MSCONFIG\Services: igfxCUIService1.0.0.0 => 2 MSCONFIG\Services: Intel(R) Capability Licensing Service Interface => 2 MSCONFIG\Services: Intel(R) ME Service => 2 MSCONFIG\Services: jhi_service => 2 MSCONFIG\Services: LMS => 2 MSCONFIG\Services: McComponentHostServiceSony => 3 MSCONFIG\Services: mcpltsvc => 2 MSCONFIG\Services: McSchedulerSvc => 2 MSCONFIG\Services: mfeicfcoreocp => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: NetworkSupport => 3 MSCONFIG\Services: nvsvc => 2 MSCONFIG\Services: nvUpdatusService => 2 MSCONFIG\Services: PMBDeviceInfoProvider => 2 MSCONFIG\Services: SbieSvc => 2 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: SOHCImp => 3 MSCONFIG\Services: SOHDms => 3 MSCONFIG\Services: SOHDs => 3 MSCONFIG\Services: SpfService => 3 MSCONFIG\Services: TeamViewer => 2 MSCONFIG\Services: UNS => 2 MSCONFIG\Services: USER_ESRV_SVC => 3 MSCONFIG\Services: VAIO Event Service => 2 MSCONFIG\Services: VAIO Power Management => 3 MSCONFIG\Services: VCFw => 3 MSCONFIG\Services: VCService => 3 MSCONFIG\Services: vpnagent => 2 MSCONFIG\Services: VUAgent => 3 MSCONFIG\Services: wltrysvc => 2 HKLM\...\StartupApproved\StartupFolder: => "McAfee Parental Controls.lnk" HKLM\...\StartupApproved\Run: => "Bluetooth" HKLM\...\StartupApproved\Run32: => "mcpltui_exe" HKLM\...\StartupApproved\Run32: => "mcui_exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => LPort=139 FirewallRules: [{17F1A580-43B0-4DB1-A227-53B175ED6E79}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{93946D29-D8B0-46DB-B8D8-A4341F61F3EF}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{70290813-07E0-438F-8FFF-847F1207D68F}] => C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{DB17960E-7B23-4A47-9C7E-0A0E8E2E96C6}] => C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{707AC9B9-655E-4306-A549-91B7DF3A5A57}] => C:\Program Files\HP\HP ENVY 4500 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{7279BA07-84A6-46BB-AF49-44EAF9185803}] => LPort=5357 FirewallRules: [{CD308BB5-0851-4332-BEF6-5C6AEF1B9A07}] => C:\Program Files\HP\HP ENVY 4500 series\Bin\DeviceSetup.exe FirewallRules: [{6ECD09A9-ED44-4091-AB1F-C9C9662931FB}] => C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{64BAB53B-1B74-4F93-9B02-E818F6E06F06}] => C:\Program Files (x86)\Winamp\winamp.exe FirewallRules: [{2564F8B7-3CD7-4961-99BA-13A0C0E2E845}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{6D2B64C5-23B0-45E7-BE8A-D3909EFEB4D6}] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe FirewallRules: [{B70B626F-1F1B-4534-B78A-3067FFE6038F}] => C:\Program Files (x86)\CyberLink\PowerDVD9\PowerDVD9.EXE FirewallRules: [{F1B09C68-B9A2-49D5-8D72-0E4637BCF2A2}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{D58DBCB6-B9BC-4B38-9BB2-DD636045ADAE}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{F0D1A0B5-85AA-43E5-A789-3DBEB233C047}] => C:\Program Files\Sony\VAIO Care\VCAgent.exe FirewallRules: [{42B9208B-DE9F-4B78-B7EB-D1A2FD1D13F7}] => C:\Program Files\Sony\VAIO Care\VCAdmin.exe FirewallRules: [{767AE0B4-DF49-4DD7-AA04-6265BF55B65C}] => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe FirewallRules: [{8701F29A-5DBE-4872-B414-2EFDAFC84439}] => C:\Program Files\Sony\VAIO Care\VAIOShell.exe FirewallRules: [{E26096CD-3B48-4E54-BDA3-4EE281DECC1C}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{AB35E542-8CDF-4B87-953B-1EE1CEC0C07B}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{AAA38A4B-4178-4987-8015-21FCA55797D6}] => C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{25923EB9-C053-4F7F-B933-54591A1CA637}] => C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{461C159C-4A2B-4A6F-8D74-F435270BEF01}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{5DDB82FE-AAB7-4A09-AFDC-8BB61388E66C}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{4C76FC12-4D52-417E-89D5-93D0929E7DDC}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{DCB2273A-867F-44DD-8242-E88EDD4005BA}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{38C9E153-BBBE-4F18-A80A-42BF6518B1B3}] => C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{4487EE82-C92C-4E00-9D35-CF8F01FC12B6}] => C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [TCP Query User{B1B678CA-4825-4774-81FC-295C4DED3450}C:\program files (x86)\cambridgesoft\chemoffice2015\chemdraw\chemdraw.exe] => C:\program files (x86)\cambridgesoft\chemoffice2015\chemdraw\chemdraw.exe FirewallRules: [UDP Query User{13A52C97-7BF6-47AE-90C6-B33950C46711}C:\program files (x86)\cambridgesoft\chemoffice2015\chemdraw\chemdraw.exe] => C:\program files (x86)\cambridgesoft\chemoffice2015\chemdraw\chemdraw.exe FirewallRules: [{8ECC8844-C293-4968-BDF9-2CEF1A36C688}] => C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe ==================== Wiederherstellungspunkte ========================= 28-11-2016 20:20:11 Geplanter Prüfpunkt ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: Bluetooth-Gerät (PAN) Description: Bluetooth Device (Personal Area Network) Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: BthPan Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/03/2016 03:29:21 PM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Performance monitoring cannot be initialised for the gatherer object, because the counters are not loaded or the shared memory object cannot be opened. This only affects availability of the perfmon counters. Restart the computer. Kontext: Anwendung, SystemIndex Katalog Error: (12/02/2016 09:50:16 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: avguard.exe, version: 15.0.23.58, time stamp: 0x58049add Faulting module name: MSVCR120.dll, version: 12.0.21005.1, time stamp: 0x524f7ce6 Exception code: 0xc0000409 Fault offset: 0x000a7666 Faulting process ID: 0x72c Faulting application start time: 0x01d24b49ca254001 Faulting application path: C:\Program Files (x86)\Avira\Antivirus\avguard.exe Faulting module path: C:\Program Files (x86)\Avira\Antivirus\MSVCR120.dll Report ID: 57e01759-b86c-11e6-8110-78843c3528c1 Faulting package full name: Faulting package-relative application ID: Error: (11/30/2016 11:19:20 PM) (Source: Intel(R) PROSet/Wireless NFC Software) (EventID: 260) (User: ) Description: HECI-MEI communication failure. Error: (11/30/2016 11:17:51 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={9649792C-C89C-48F5-BF36-81A4C9E4E223}: The user Internet dialed a connection named Broadband Connection which has failed. The error code returned on failure is 651. Error: (11/30/2016 11:10:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DllHost.exe, version: 6.3.9600.17415, time stamp: 0x54504134 Faulting module name: ntdll.dll, version: 6.3.9600.18438, time stamp: 0x57ae642e Exception code: 0xc0000005 Fault offset: 0x000000000003dd8e Faulting process ID: 0x1498 Faulting application start time: 0x01d24b5690e58609 Faulting application path: C:\WINDOWS\system32\DllHost.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report ID: d06eee9c-b749-11e6-8110-78843c3528c1 Faulting package full name: Faulting package-relative application ID: Error: (11/30/2016 11:09:54 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: The program wwahost.exe version 6.3.9600.17415 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel. Process ID: fc Start Time: 01d24b55f6fc2839 Termination Time: 4294967295 Application Path: C:\WINDOWS\system32\wwahost.exe Report Id: 3eabb85a-b749-11e6-8110-78843c3528c1 Faulting package full name: microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe Faulting package-relative application ID: Microsoft.WindowsLive.Mail Error: (11/30/2016 11:09:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: DllHost.exe, version: 6.3.9600.17415, time stamp: 0x54504134 Faulting module name: ntdll.dll, version: 6.3.9600.18438, time stamp: 0x57ae642e Exception code: 0xc0000005 Fault offset: 0x000000000003dd8e Faulting process ID: 0x1290 Faulting application start time: 0x01d24b5650721a13 Faulting application path: C:\WINDOWS\system32\DllHost.exe Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll Report ID: a3692e06-b749-11e6-8110-78843c3528c1 Faulting package full name: Faulting package-relative application ID: Error: (11/30/2016 11:06:32 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: xxxxxxxxxxx) Description: Activation of application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!Microsoft.WindowsLive.Mail failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (11/30/2016 11:06:29 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2486) (User: xxxxxxxxxx) Description: App microsoft.windowscommunicationsapps_17.5.9600.20605_x64__8wekyb3d8bbwe+Microsoft.WindowsLive.Mail did not launch within its allotted time. Error: (11/30/2016 10:15:21 PM) (Source: RasClient) (EventID: 20227) (User: ) Description: CoId={11B3AA32-9893-4534-A7EF-1D1782F5F3EB}: The user Internet dialed a connection named Broadband Connection which has failed. The error code returned on failure is 651. Systemfehler: ============= Error: (12/03/2016 10:28:49 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxxx) Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout. Error: (12/03/2016 10:28:19 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxxx) Description: The server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} did not register with DCOM within the required timeout. Error: (12/03/2016 04:41:44 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxxx) Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout. Error: (12/03/2016 04:41:14 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxx) Description: The server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} did not register with DCOM within the required timeout. Error: (12/03/2016 03:47:44 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxx) Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout. Error: (12/03/2016 03:47:14 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxx) Description: The server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} did not register with DCOM within the required timeout. Error: (12/03/2016 03:10:19 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxx) Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout. Error: (12/03/2016 03:09:49 PM) (Source: DCOM) (EventID: 10010) (User: xxxxxxx) Description: The server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} did not register with DCOM within the required timeout. Error: (12/03/2016 01:28:11 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT) Description: A fatal alert was received from the remote endpoint. The TLS protocol defined fatal alert code is 20. Error: (12/03/2016 10:38:17 AM) (Source: DCOM) (EventID: 10010) (User: xxxxxxx) Description: The server {1B1F472E-3221-4826-97DB-2C2324D389AE} did not register with DCOM within the required timeout. CodeIntegrity: =================================== Date: 2016-07-24 14:49:01.053 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:49:00.155 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:59.652 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:59.140 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:56.641 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:56.116 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:55.435 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:54.784 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:54.186 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-07-24 14:48:53.525 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume5\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Pentium(R) CPU 2117U @ 1.80GHz Prozentuale Nutzung des RAM: 44% Installierter physikalischer RAM: 3974.8 MB Verfügbarer physikalischer RAM: 2197.03 MB Summe virtueller Speicher: 5638.8 MB Verfügbarer virtueller Speicher: 2866.6 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:437.6 GB) (Free:340.2 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 640B1719) Partition: GPT. ==================== Ende von Addition.txt ============================ |
03.12.2016, 23:44 | #4 |
| verschiedene Probleme mit Windows , ist es Malware ? Und noch die TDSSKiller 1.Teil: Code:
ATTFilter 23:02:41.0136 0x1074 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01 23:02:41.0136 0x1074 UEFI system 23:03:10.0711 0x1074 ============================================================ 23:03:10.0711 0x1074 Current date / time: 2016/12/03 23:03:10.0711 23:03:10.0711 0x1074 SystemInfo: 23:03:10.0711 0x1074 23:03:10.0711 0x1074 OS Version: 6.3.9600 ServicePack: 0.0 23:03:10.0711 0x1074 Product type: Workstation 23:03:10.0711 0x1074 ComputerName: xxxxxx 23:03:10.0711 0x1074 UserName: Internet 23:03:10.0711 0x1074 Windows directory: C:\WINDOWS 23:03:10.0711 0x1074 System windows directory: C:\WINDOWS 23:03:10.0711 0x1074 Running under WOW64 23:03:10.0711 0x1074 Processor architecture: Intel x64 23:03:10.0711 0x1074 Number of processors: 2 23:03:10.0711 0x1074 Page size: 0x1000 23:03:10.0711 0x1074 Boot type: Normal boot 23:03:10.0711 0x1074 CodeIntegrityOptions = 0x00000001 23:03:10.0711 0x1074 ============================================================ 23:03:11.0289 0x1074 KLMD registered as C:\WINDOWS\system32\drivers\43687894.sys 23:03:11.0289 0x1074 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 9600.18505, osProperties = 0x19 23:03:11.0977 0x1074 System UUID: {C1C9CAF6-A242-0459-DF8B-09C27BF7AEC9} 23:03:13.0367 0x1074 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 23:03:13.0367 0x1074 ============================================================ 23:03:13.0367 0x1074 \Device\Harddisk0\DR0: 23:03:13.0367 0x1074 GPT partitions: 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {F4019732-066E-4E12-8273-346C5641494F}, UniqueGUID: {C156430D-FAE4-4339-9EA9-12607928F595}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x82000 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {21FD2C92-3F5A-42C6-BB90-8E5084E27028}, Name: Basic data partition, StartLBA 0x82800, BlocksNum 0x2E1000 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {49689ACA-CFCF-4C6B-9863-331871C598F2}, Name: EFI system partition, StartLBA 0x363800, BlocksNum 0x82000 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {CF71DF4E-C01A-4987-A912-78EC4765F0E1}, Name: Microsoft reserved partition, StartLBA 0x3E5800, BlocksNum 0x40000 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {826EE9B0-3928-4131-BC9D-580046D92D84}, Name: Basic data partition, StartLBA 0x425800, BlocksNum 0x36B35000 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {9F850A81-1EE8-4464-92F0-B85345A5707F}, Name: , StartLBA 0x36F5A800, BlocksNum 0xE2000 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {BC2B0E16-959C-4193-8D6D-FCD910EDFE1E}, Name: , StartLBA 0x3703C800, BlocksNum 0xAF000 23:03:13.0367 0x1074 \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {4CC65BDE-90B4-4050-BED8-A1492EE9347A}, Name: Basic data partition, StartLBA 0x370EB800, BlocksNum 0x329A800 23:03:13.0367 0x1074 MBR partitions: 23:03:13.0367 0x1074 ============================================================ 23:03:13.0383 0x1074 C: <-> \Device\Harddisk0\DR0\Partition5 23:03:13.0383 0x1074 ============================================================ 23:03:13.0383 0x1074 Initialize success 23:03:13.0383 0x1074 ============================================================ 23:05:49.0342 0x09f8 ============================================================ 23:05:49.0342 0x09f8 Scan started 23:05:49.0357 0x09f8 Mode: Manual; SigCheck; TDLFS; 23:05:49.0357 0x09f8 ============================================================ 23:05:49.0357 0x09f8 KSN ping started 23:05:49.0560 0x09f8 KSN ping finished: true 23:05:53.0076 0x09f8 ================ Scan system memory ======================== 23:05:53.0076 0x09f8 System memory - ok 23:05:53.0076 0x09f8 ================ Scan services ============================= 23:05:53.0326 0x09f8 [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 23:05:53.0435 0x09f8 1394ohci - ok 23:05:53.0498 0x09f8 [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 23:05:53.0529 0x09f8 3ware - ok 23:05:53.0560 0x09f8 [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 23:05:53.0592 0x09f8 ACPI - ok 23:05:53.0607 0x09f8 [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 23:05:53.0623 0x09f8 acpiex - ok 23:05:53.0639 0x09f8 [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys 23:05:53.0654 0x09f8 acpipagr - ok 23:05:53.0701 0x09f8 [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 23:05:53.0717 0x09f8 AcpiPmi - ok 23:05:53.0732 0x09f8 [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys 23:05:53.0748 0x09f8 acpitime - ok 23:05:53.0795 0x09f8 [ 4D2A45FDEBC823742B9F37DBBF99893A, E7236141B493879E2F39038A74A3E8AAEDDC56B0BF758BA4725D99B27983155F ] acsock C:\WINDOWS\system32\DRIVERS\acsock64.sys 23:05:53.0826 0x09f8 acsock - ok 23:05:53.0920 0x09f8 [ C92B0A0957ACAD3CEEF502A2CA10ACB8, 78BF46318B69D9479ECDC83446DD8D454AA2A9A9D94B33C5FC68933DB18AFA3B ] AdobeARMservice c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 23:05:53.0951 0x09f8 AdobeARMservice - ok 23:05:54.0014 0x09f8 [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS 23:05:54.0076 0x09f8 ADP80XX - ok 23:05:54.0123 0x09f8 [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll 23:05:54.0154 0x09f8 AeLookupSvc - ok 23:05:54.0201 0x09f8 [ A460C3AF3755A2A79A3C8EFE72E147B5, 62CEA85DA53D86D3E7B5D79F94095C6126FFF3DEE1427BBF3DEF5EA366B4513B ] AFD C:\WINDOWS\system32\drivers\afd.sys 23:05:54.0232 0x09f8 AFD - ok 23:05:54.0264 0x09f8 [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys 23:05:54.0279 0x09f8 agp440 - ok 23:05:54.0326 0x09f8 [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 23:05:54.0342 0x09f8 ahcache - ok 23:05:54.0373 0x09f8 [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG C:\WINDOWS\System32\alg.exe 23:05:54.0404 0x09f8 ALG - ok 23:05:54.0436 0x09f8 [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys 23:05:54.0451 0x09f8 AmdK8 - ok 23:05:54.0467 0x09f8 [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys 23:05:54.0482 0x09f8 AmdPPM - ok 23:05:54.0529 0x09f8 [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys 23:05:54.0561 0x09f8 amdsata - ok 23:05:54.0576 0x09f8 [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys 23:05:54.0592 0x09f8 amdsbs - ok 23:05:54.0607 0x09f8 [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys 23:05:54.0623 0x09f8 amdxata - ok 23:05:54.0732 0x09f8 [ 04B856A07EDCFEE14C4CB0D389531020, 38094E6FECF22FBC72B46C4A78519F9E698092DF28A81C5742332FCA6609CB9B ] AntiVirMailService C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe 23:05:54.0779 0x09f8 AntiVirMailService - ok 23:05:54.0826 0x09f8 [ FE817303FA4308B6149D2FC1D07D0DF2, 471EA57785EE40FE244BB2AF10FB5F5B113F1D79F34CAE28CC46177AB3F15141 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\Antivirus\sched.exe 23:05:54.0889 0x09f8 AntiVirSchedulerService - ok 23:05:54.0967 0x09f8 [ FE817303FA4308B6149D2FC1D07D0DF2, 471EA57785EE40FE244BB2AF10FB5F5B113F1D79F34CAE28CC46177AB3F15141 ] AntiVirService C:\Program Files (x86)\Avira\Antivirus\avguard.exe 23:05:54.0982 0x09f8 AntiVirService - ok 23:05:55.0076 0x09f8 [ 82A7739C01B7FBD6738B08C6FEB13CE5, 49BD8764CC7BB8F3AEFD8A8585A2F492C0B48A6AAACA86BDE7CB6D182EADD703 ] AntiVirWebService C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe 23:05:55.0123 0x09f8 AntiVirWebService - ok 23:05:55.0170 0x09f8 [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID C:\WINDOWS\system32\drivers\appid.sys 23:05:55.0186 0x09f8 AppID - ok 23:05:55.0201 0x09f8 [ 88358135810B9DFD830A9D3A8C3D149A, DF914DA3828EE2310895D156342E3B3DF5E8C6F6F9B851C359E82A1F48180D4B ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 23:05:55.0217 0x09f8 AppIDSvc - ok 23:05:55.0264 0x09f8 [ 734622FBA766DBD65B1803549B24A04A, 3B6872B87A60D4DA265D3B8AB0561A929CFE2C097419183E93D3843422363C89 ] Appinfo C:\WINDOWS\System32\appinfo.dll 23:05:55.0279 0x09f8 Appinfo - ok 23:05:55.0342 0x09f8 [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll 23:05:55.0373 0x09f8 AppReadiness - ok 23:05:55.0451 0x09f8 [ E0F846ADE7DED88981D0908DE56FF160, D8F536438091878724A5004849306ADFB96A2778A9D958ED3DCC0CD9E35160BB ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll 23:05:55.0514 0x09f8 AppXSvc - ok 23:05:55.0639 0x09f8 [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys 23:05:55.0670 0x09f8 arcsas - ok 23:05:55.0686 0x09f8 [ 3DB7721F06BC2FEDB25029EA23AB27DA, 221861148C66FE53E4D6EE49C6E656479AB5804A2D348A280A1CD8093E8AB788 ] AsyncMac C:\WINDOWS\system32\DRIVERS\asyncmac.sys 23:05:55.0732 0x09f8 AsyncMac - ok 23:05:55.0764 0x09f8 [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys 23:05:55.0779 0x09f8 atapi - ok 23:05:55.0811 0x09f8 [ 431FE56F5A2F5937994CB2DA330B47DB, E5AED551529A21494114959251FDF566802DD6D9B9D86A937A0EECE53338CAC7 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll 23:05:55.0857 0x09f8 AudioEndpointBuilder - ok 23:05:55.0889 0x09f8 [ 0F03CC00645D7F841879A048787D6AC7, 3ECD2486157469F2EDB63D4868338D1445F2909153DF0AFFE432083730EEE3F5 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll 23:05:55.0936 0x09f8 Audiosrv - ok 23:05:55.0967 0x09f8 [ 5BAD6576E9DB51C6FB1AA4F74A1491F0, 60BE48FD4C15D49425EAB2B53731D73CD19ED456F42EE2C2D32FE9FD0638A1D0 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys 23:05:55.0982 0x09f8 avgntflt - ok 23:05:56.0014 0x09f8 [ E73A2960A54F83B96415BAE10E66CCB2, C44CE2A638D2CB219A0BCDFEE2855E14A9BEAB032788D7661992735726EFC983 ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys 23:05:56.0029 0x09f8 avipbb - ok 23:05:56.0076 0x09f8 [ B9789F30438091DC528797ABFD310B01, 9C8678DFCF4A377954B8FE5C7C49C51B290A216671860200EAE6A4FD5A07E1E0 ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe 23:05:56.0107 0x09f8 Avira.ServiceHost - ok 23:05:56.0123 0x09f8 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys 23:05:56.0139 0x09f8 avkmgr - ok 23:05:56.0170 0x09f8 [ 899D89FDF015BBAF628076987D74C295, 7534A10F652FBE559431B9B1C6BC13874E8BC7438D7AFD7553F96811FD3E59BD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys 23:05:56.0186 0x09f8 avnetflt - ok 23:05:56.0201 0x09f8 [ D0A1E2DAC2378B5C630131C2EC2923AD, 21BF3F33E206E3658F1F461EF95BC71BACD83351445C1EEE941D2C4B7EAD7B6C ] avusbflt C:\WINDOWS\system32\Drivers\avusbflt.sys 23:05:56.0217 0x09f8 avusbflt - ok 23:05:56.0248 0x09f8 [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 23:05:56.0264 0x09f8 AxInstSV - ok 23:05:56.0326 0x09f8 [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys 23:05:56.0342 0x09f8 b06bdrv - ok 23:05:56.0373 0x09f8 [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys 23:05:56.0404 0x09f8 BasicDisplay - ok 23:05:56.0436 0x09f8 [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys 23:05:56.0451 0x09f8 BasicRender - ok 23:05:56.0483 0x09f8 [ 70433F7A216BD0B5EC7DA1202EE53E65, 12F3210EC5546714B34225770242F5CF4AC36032BB49A8E8989620BA274AC505 ] bcbtums C:\WINDOWS\system32\drivers\bcbtums.sys 23:05:56.0498 0x09f8 bcbtums - ok 23:05:56.0529 0x09f8 [ 80EF4382B5CB1DB7BF56629131D36AA5, BEC4F3AE3E805688A2DB394046451276FFB1663838778F3B33950C5CE766CDE9 ] BCM42RLY C:\WINDOWS\system32\drivers\BCM42RLY.sys 23:05:56.0545 0x09f8 BCM42RLY - ok 23:05:56.0951 0x09f8 [ D7DBC8C2C159BE83A14D7A84DF6A9622, 2C089F6BDD74C1980CB166C1A32E06B95342465EB3100F2735D6956F13B15681 ] BCM43XX C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys 23:05:57.0186 0x09f8 BCM43XX - ok 23:05:57.0342 0x09f8 [ 18B186BCC56EC611DE519CBA7D4F65B0, 6F2520AAFDAA4208717DCD121527911D580727C5A6B8C4C7F07C4155C4D8662D ] BcmBtRSupport C:\WINDOWS\system32\BtwRSupportService.exe 23:05:57.0420 0x09f8 BcmBtRSupport - ok 23:05:57.0451 0x09f8 [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 23:05:57.0467 0x09f8 bcmfn2 - ok 23:05:57.0514 0x09f8 [ 174394F4EF93C117BF7BE3878046A1B1, D58E868342D1DAFC4B04384A3713F729DF07F408AA6AE4762E6A4244F976526A ] BDESVC C:\WINDOWS\System32\bdesvc.dll 23:05:57.0529 0x09f8 BDESVC - ok 23:05:57.0576 0x09f8 [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys 23:05:57.0592 0x09f8 Beep - ok 23:05:57.0639 0x09f8 [ 5059D93764340D4EAEDF49C47133118F, 26C5779469E04BEAFD290B619CA355648F3911C66D41B22D2C3DCA909FCA0F6E ] BFE C:\WINDOWS\System32\bfe.dll 23:05:57.0686 0x09f8 BFE - ok 23:05:57.0733 0x09f8 [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS C:\WINDOWS\System32\qmgr.dll 23:05:57.0779 0x09f8 BITS - ok 23:05:57.0811 0x09f8 [ 4938A9236300A356F97E378491EE4844, 60D892960D48EEF48F8EC4DE4F174EBD0BC0E7B28B6D8723D554CD1979EB55B4 ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys 23:05:57.0826 0x09f8 bowser - ok 23:05:57.0873 0x09f8 [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll 23:05:57.0889 0x09f8 BrokerInfrastructure - ok 23:05:57.0920 0x09f8 [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser C:\WINDOWS\System32\browser.dll 23:05:57.0936 0x09f8 Browser - ok 23:05:57.0983 0x09f8 [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 23:05:57.0998 0x09f8 BthAvrcpTg - ok 23:05:58.0029 0x09f8 [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum C:\WINDOWS\system32\DRIVERS\BthEnum.sys 23:05:58.0061 0x09f8 BthEnum - ok 23:05:58.0108 0x09f8 [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 23:05:58.0123 0x09f8 BthHFEnum - ok 23:05:58.0139 0x09f8 [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys 23:05:58.0154 0x09f8 bthhfhid - ok 23:05:58.0201 0x09f8 [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll 23:05:58.0217 0x09f8 BthHFSrv - ok 23:05:58.0248 0x09f8 [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys 23:05:58.0279 0x09f8 BthLEEnum - ok 23:05:58.0295 0x09f8 [ EF4B9E7C9AD88C00C18A12B0D22D1894, 672537E75201E690D86CD65252B8AEF887C76EBD37AB0C419462D69164B350CC ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 23:05:58.0311 0x09f8 BTHMODEM - ok 23:05:58.0342 0x09f8 [ FEA8FC81431AD93F44D5FBFBBF096AA7, C0581DF6B2AD24836604B083F4866F93A3F4D9091D382029948A5E6221EDF788 ] BthPan C:\WINDOWS\System32\drivers\bthpan.sys 23:05:58.0358 0x09f8 BthPan - ok 23:05:58.0451 0x09f8 [ 0CC00ADC1B84C93FB46E1A0974E956E1, 64C759244651B916901F4D0C82C3D6034532A20714A72FD26FC9D050B99E230B ] BTHPORT C:\WINDOWS\System32\Drivers\BTHport.sys 23:05:58.0498 0x09f8 BTHPORT - ok 23:05:58.0529 0x09f8 [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv C:\WINDOWS\system32\bthserv.dll 23:05:58.0545 0x09f8 bthserv - ok 23:05:58.0576 0x09f8 [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB C:\WINDOWS\System32\Drivers\BTHUSB.sys 23:05:58.0608 0x09f8 BTHUSB - ok 23:05:58.0623 0x09f8 [ 20C8EB70C0B179DF06A01CA503F4A824, 1C2DADCBC5D85C1D4F6A28B7F374C829E6DCE0EB720EBDA43CF6AC0AC934AA5E ] btwampfl C:\WINDOWS\system32\DRIVERS\btwampfl.sys 23:05:58.0639 0x09f8 btwampfl - ok 23:05:58.0670 0x09f8 [ E453A259D395359EC30D0659C505D810, 7263DD22178ADBC124BA7BF284161AD42105B648D4B2114CC070C96A01DBDA9B ] btwaudio C:\WINDOWS\system32\drivers\btwaudio.sys 23:05:58.0686 0x09f8 btwaudio - ok 23:05:58.0733 0x09f8 [ 6B126F6A186C09116026DE56CD75EAD2, DA018681AA4A8C76FD73FC5826AE4E48E14B53AE9027F65B1ADF67DB69909E14 ] btwavdt C:\WINDOWS\System32\drivers\btwavdt.sys 23:05:58.0748 0x09f8 btwavdt - ok 23:05:58.0842 0x09f8 [ 35412CD4A227EE7A99179A930B1FDF4E, E6349B7646544B5B065112D9C7563F0A95462CA4511CB00B77D91E7C14DAD541 ] btwdins C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe 23:05:58.0889 0x09f8 btwdins - ok 23:05:58.0920 0x09f8 [ C3C8974D99F976C927165363855690CD, 2B73E11FE341DE581CFF655E58C5671B83F4331529C30DADCAA9B6BE615D5E1F ] btwl2cap C:\WINDOWS\system32\DRIVERS\btwl2cap.sys 23:05:58.0936 0x09f8 btwl2cap - ok 23:05:58.0951 0x09f8 [ AFF619C44E3624A9891830606604B480, C300EC64BB04D6EB019802D5433C1D1BD7A6EC0E5A4AFF5CBB41E3990429804C ] btwrchid C:\WINDOWS\System32\drivers\btwrchid.sys 23:05:58.0967 0x09f8 btwrchid - ok 23:05:58.0983 0x09f8 [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys 23:05:58.0998 0x09f8 cdfs - ok 23:05:59.0029 0x09f8 [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys 23:05:59.0045 0x09f8 cdrom - ok 23:05:59.0092 0x09f8 [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc C:\WINDOWS\System32\certprop.dll 23:05:59.0123 0x09f8 CertPropSvc - ok 23:05:59.0139 0x09f8 [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys 23:05:59.0155 0x09f8 circlass - ok 23:05:59.0217 0x09f8 [ 28D94419E856D61D7686ED942611D15E, AC9ED48AA09B09B854512B35E905C8C4C451B34F59951661367392AF64E8ADE7 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 23:05:59.0248 0x09f8 CLFS - ok 23:05:59.0545 0x09f8 [ 5AB5AEB8B92D06B07ED0C44365A16CEB, 40FAEB0AD4055519A6B9DE9805E0E64ABA9364FA2260F0D2EF59524C161C67C4 ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 23:05:59.0655 0x09f8 ClickToRunSvc - ok 23:05:59.0701 0x09f8 [ 075CCE75090786F124573A788C8656E6, AA188CFF2F8EE2D9F50701AB2315D24E15D7715FD84F5054D3FC175D4BD35734 ] CLVirtualDrive C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys 23:05:59.0701 0x09f8 CLVirtualDrive - ok 23:05:59.0733 0x09f8 [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 23:05:59.0748 0x09f8 CmBatt - ok 23:05:59.0795 0x09f8 [ 5CBF8B3E27D824D2AA2A34AFB406F1D0, 955AF1307C02D2B4DEEB150F37F77B8631C0F3C450037C233E9E27D6571B0265 ] CNG C:\WINDOWS\system32\Drivers\cng.sys 23:05:59.0826 0x09f8 CNG - ok 23:05:59.0858 0x09f8 [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys 23:05:59.0873 0x09f8 CompositeBus - ok 23:05:59.0889 0x09f8 COMSysApp - ok 23:05:59.0905 0x09f8 [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys 23:05:59.0920 0x09f8 condrv - ok 23:05:59.0998 0x09f8 [ D8724B606616B2B75AF54096119580F5, 53E1DEF9F966FDE5898759A33FB62B5062A941E97B235D6F6EF79A5AD1283BDE ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe 23:06:00.0092 0x09f8 cphs - ok 23:06:00.0139 0x09f8 [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 23:06:00.0170 0x09f8 CryptSvc - ok 23:06:00.0217 0x09f8 [ 389C998C64319CD97625B0550E52ECFA, DD0EDDD9C8412F78D2D2B648D67DA887C3040E05DF29F48F71299CB68FDDD0F8 ] dam C:\WINDOWS\system32\drivers\dam.sys 23:06:00.0248 0x09f8 dam - ok 23:06:00.0342 0x09f8 [ 7830CEA509693DE0817DF2F3F2D80E89, 7B1786CD225E2D6BCFA484D0BFB81DD162D5713EAEC80C53317CC6950E3D17F3 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 23:06:00.0389 0x09f8 DcomLaunch - ok 23:06:00.0451 0x09f8 [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc C:\WINDOWS\System32\defragsvc.dll 23:06:00.0483 0x09f8 defragsvc - ok 23:06:00.0545 0x09f8 [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\WINDOWS\system32\das.dll 23:06:00.0576 0x09f8 DeviceAssociationService - ok 23:06:00.0623 0x09f8 [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll 23:06:00.0655 0x09f8 DeviceInstall - ok 23:06:00.0686 0x09f8 [ FBFF94FC1FE0699A6BC5ACE270AB9EA1, 7D67E7BE539D9D515A1A6B9282C72114310E874DD1FE51E71F002DBB0E1439FB ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys 23:06:00.0701 0x09f8 Dfsc - ok 23:06:00.0733 0x09f8 [ 85137571AEC8AC757D497B9DD30D544D, 6E15C9FB4010B26A8E5AFD4E85F7362B2616EB8503ACCE28EC31AC1E7D18566F ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys 23:06:00.0748 0x09f8 dg_ssudbus - ok 23:06:00.0795 0x09f8 [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp C:\WINDOWS\system32\dhcpcore.dll 23:06:00.0826 0x09f8 Dhcp - ok 23:06:00.0951 0x09f8 [ 0AC9F83A5508935DE89C447473085EEA, 223782B17BACEFB0A663EB13514B68B919C95EF641CDDA7AC30CB239BC4307EC ] DiagTrack C:\WINDOWS\system32\diagtrack.dll 23:06:01.0014 0x09f8 DiagTrack - ok 23:06:01.0045 0x09f8 [ 8B1E62881D5AC68E673CD94B136B34AC, A0C50F17041E43AC07B67A74F2C408820316201439F47CDEA37A4F5891CC0E6F ] disk C:\WINDOWS\system32\drivers\disk.sys 23:06:01.0061 0x09f8 disk - ok 23:06:01.0108 0x09f8 [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys 23:06:01.0123 0x09f8 dmvsc - ok 23:06:01.0170 0x09f8 [ 561CBB163EB3C8221D9B1D7D1E5CA477, 4D235E73CC127769A257B31A92180552276EC8DDD991F1106815FADEF385E72D ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 23:06:01.0186 0x09f8 Dnscache - ok 23:06:01.0233 0x09f8 [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc C:\WINDOWS\System32\dot3svc.dll 23:06:01.0264 0x09f8 dot3svc - ok 23:06:01.0280 0x09f8 [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS C:\WINDOWS\system32\dps.dll 23:06:01.0326 0x09f8 DPS - ok 23:06:01.0389 0x09f8 [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 23:06:01.0467 0x09f8 drmkaud - ok 23:06:01.0577 0x09f8 [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 23:06:01.0608 0x09f8 DsmSvc - ok 23:06:01.0733 0x09f8 [ F74B839FA0F4E6060CA1DA6B8DA17941, EF493E1F55FCD6A8C32B3D5D5809B7EFCCC9829E9A347522D1E6FE080D41BF37 ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 23:06:01.0795 0x09f8 DXGKrnl - ok 23:06:01.0842 0x09f8 [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost C:\WINDOWS\System32\eapsvc.dll 23:06:01.0858 0x09f8 Eaphost - ok 23:06:01.0998 0x09f8 [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 23:06:02.0123 0x09f8 ebdrv - ok 23:06:02.0202 0x09f8 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS C:\WINDOWS\System32\lsass.exe 23:06:02.0233 0x09f8 EFS - ok 23:06:02.0264 0x09f8 [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 23:06:02.0280 0x09f8 EhStorClass - ok 23:06:02.0311 0x09f8 [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 23:06:02.0327 0x09f8 EhStorTcgDrv - ok 23:06:02.0342 0x09f8 [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 23:06:02.0358 0x09f8 ErrDev - ok 23:06:02.0420 0x09f8 [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem C:\WINDOWS\system32\es.dll 23:06:02.0452 0x09f8 EventSystem - ok 23:06:02.0483 0x09f8 [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 23:06:02.0514 0x09f8 exfat - ok 23:06:02.0545 0x09f8 [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 23:06:02.0577 0x09f8 fastfat - ok 23:06:02.0623 0x09f8 [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax C:\WINDOWS\system32\fxssvc.exe 23:06:02.0655 0x09f8 Fax - ok 23:06:02.0670 0x09f8 [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 23:06:02.0686 0x09f8 fdc - ok 23:06:02.0733 0x09f8 [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 23:06:02.0748 0x09f8 fdPHost - ok 23:06:02.0748 0x09f8 [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub C:\WINDOWS\system32\fdrespub.dll 23:06:02.0764 0x09f8 FDResPub - ok 23:06:02.0795 0x09f8 [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc C:\WINDOWS\system32\fhsvc.dll 23:06:02.0811 0x09f8 fhsvc - ok 23:06:02.0858 0x09f8 [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 23:06:02.0889 0x09f8 FileInfo - ok 23:06:02.0889 0x09f8 [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 23:06:02.0920 0x09f8 Filetrace - ok 23:06:02.0936 0x09f8 [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 23:06:02.0952 0x09f8 flpydisk - ok 23:06:02.0983 0x09f8 [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 23:06:03.0014 0x09f8 FltMgr - ok 23:06:03.0077 0x09f8 [ 1EFEF3B4EF2B241263F0F791EA128598, B6CADC254B0779E43E0D6AB6125A7E7ED8FF50C3158911681BA7B43160A08176 ] FontCache C:\WINDOWS\system32\FntCache.dll 23:06:03.0139 0x09f8 FontCache - ok 23:06:03.0248 0x09f8 [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 23:06:03.0280 0x09f8 FontCache3.0.0.0 - ok 23:06:03.0311 0x09f8 [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 23:06:03.0342 0x09f8 FsDepends - ok 23:06:03.0358 0x09f8 [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 23:06:03.0373 0x09f8 Fs_Rec - ok 23:06:03.0420 0x09f8 [ D4AB6EE3D715BC44C00277FD934FAACF, DE8A8B14D7BA73BA1B5A833DE193CA65EDFE512A57D84F4F2CE19D9646D97F4E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 23:06:03.0467 0x09f8 fvevol - ok 23:06:03.0483 0x09f8 [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys 23:06:03.0498 0x09f8 FxPPM - ok 23:06:03.0514 0x09f8 [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 23:06:03.0530 0x09f8 gagp30kx - ok 23:06:03.0623 0x09f8 [ 06C7EDFE18BC65E6D0AA7161C254F403, 679A75C8FA059F9719F80D3A6CD8B11C563DFDD924E8FD4B9C3813737301B227 ] GamesAppIntegrationService C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe 23:06:03.0655 0x09f8 GamesAppIntegrationService - ok 23:06:03.0670 0x09f8 [ C403C5DB49A0F9AAF4F2128EDC0106D8, 3C6948B63278022D8182F773C5FA15784514F76C1546118DDBADBA322B962D12 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe 23:06:03.0686 0x09f8 GamesAppService - ok 23:06:03.0733 0x09f8 [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 23:06:03.0764 0x09f8 gencounter - ok 23:06:03.0795 0x09f8 [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 23:06:03.0811 0x09f8 GPIOClx0101 - ok 23:06:03.0889 0x09f8 [ 9678FD4747A4F2E2318245EE6099482E, C76AE30E8BA77DC330F9CFE5ECEA58FAE0995396742923B564A2257DE24D7B32 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 23:06:03.0952 0x09f8 gpsvc - ok 23:06:03.0967 0x09f8 [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 23:06:03.0983 0x09f8 HDAudBus - ok 23:06:03.0999 0x09f8 [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 23:06:04.0014 0x09f8 HidBatt - ok 23:06:04.0061 0x09f8 [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 23:06:04.0077 0x09f8 HidBth - ok 23:06:04.0108 0x09f8 [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 23:06:04.0124 0x09f8 hidi2c - ok 23:06:04.0155 0x09f8 [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 23:06:04.0170 0x09f8 HidIr - ok 23:06:04.0202 0x09f8 [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv C:\WINDOWS\system32\hidserv.dll 23:06:04.0217 0x09f8 hidserv - ok 23:06:04.0264 0x09f8 [ 49676FEC898AB2A11B157F848269A56E, 011E6DDEF9570212520F92FEFD205E1F8104F198B57C40D11BE857FCBCC5F68D ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 23:06:04.0280 0x09f8 HidUsb - ok 23:06:04.0311 0x09f8 [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc C:\WINDOWS\system32\kmsvc.dll 23:06:04.0342 0x09f8 hkmsvc - ok 23:06:04.0389 0x09f8 [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 23:06:04.0420 0x09f8 HomeGroupListener - ok 23:06:04.0467 0x09f8 [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 23:06:04.0499 0x09f8 HomeGroupProvider - ok 23:06:04.0530 0x09f8 [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 23:06:04.0545 0x09f8 HpSAMD - ok 23:06:04.0639 0x09f8 [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 23:06:04.0686 0x09f8 HTTP - ok 23:06:04.0717 0x09f8 [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 23:06:04.0749 0x09f8 hwpolicy - ok 23:06:04.0780 0x09f8 [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 23:06:04.0795 0x09f8 hyperkbd - ok 23:06:04.0811 0x09f8 [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys 23:06:04.0827 0x09f8 HyperVideo - ok 23:06:04.0874 0x09f8 [ 49EE0AE9E5B64FFBBD06D55C4984B598, 8866627F9241B24A59C81D8BCC67A4DCA87576F589599BA291D0E323F679EB4D ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 23:06:04.0905 0x09f8 i8042prt - ok 23:06:04.0905 0x09f8 [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 23:06:04.0920 0x09f8 iaLPSSi_GPIO - ok 23:06:04.0936 0x09f8 [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 23:06:04.0952 0x09f8 iaLPSSi_I2C - ok 23:06:04.0999 0x09f8 [ 6C91E425ACE29594BD574DE38AC9B76D, 697784E4C7AF08B1F35662D8AD871E6890CECE22B6E64985B7C1A66C10DA390D ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys 23:06:05.0030 0x09f8 iaStorA - ok 23:06:05.0092 0x09f8 [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 23:06:05.0124 0x09f8 iaStorAV - ok 23:06:05.0155 0x09f8 [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 23:06:05.0186 0x09f8 iaStorV - ok 23:06:05.0264 0x09f8 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe 23:06:05.0295 0x09f8 ICCS - ok 23:06:05.0420 0x09f8 [ DEA2F976E7327716AA0038EBF550003A, 5EA4666874F1D03879EA95F28228AC9EA3D7DF0F2E199EEE9B5BC6C81CA290B3 ] IconMan_R C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe 23:06:05.0499 0x09f8 IconMan_R - ok 23:06:05.0499 0x09f8 IEEtwCollectorService - ok 23:06:05.0686 0x09f8 [ 076023219E918D34585B231029A44571, C2AB0DE0D80D0BC6595C9F9655A890531E7952599714DC03B4ECB46947D833A8 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys 23:06:05.0811 0x09f8 igfx - ok 23:06:05.0874 0x09f8 [ C814D4A0B7B91E936B2DC0828C69ACAB, A19B503CB3C598474C61DA6F1AC087CCF287F7523D2F932B21EF21E7CA1809B1 ] igfxCUIService1.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe 23:06:05.0889 0x09f8 igfxCUIService1.0.0.0 - ok 23:06:05.0952 0x09f8 [ 5697FD05EC6915A1E7193D658D8D6E05, 0179C3AF29880AA21F609CB471034EA5FA49324ACCE12736866675C037EBEC7A ] IKEEXT C:\WINDOWS\System32\ikeext.dll 23:06:05.0999 0x09f8 IKEEXT - ok 23:06:06.0030 0x09f8 [ 9321A61A25C7961D9F36852ECAA86F55, F8965FDCE668692C3785AFA3559159F9A18287BC0D53ABB21902895A8ECF221B ] inpoutx64 C:\WINDOWS\system32\Drivers\inpoutx64.sys 23:06:06.0045 0x09f8 inpoutx64 - ok 23:06:06.0077 0x09f8 [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys 23:06:06.0092 0x09f8 intaud_WaveExtensible - ok 23:06:06.0280 0x09f8 [ F9A6ACDDD86D3281F765374A0BF37DE0, 988911FC45B14A5E40AD91B49A18DFFF56F81874611ED994624D7200E7FDD834 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys 23:06:06.0405 0x09f8 IntcAzAudAddService - ok 23:06:06.0436 0x09f8 [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys 23:06:06.0467 0x09f8 IntcDAud - ok 23:06:06.0592 0x09f8 [ B353F1834FCD36D77BE3F74992C147D4, BFBC42B500FC7D6D2B523F988DD54156D2B6132CBE366EB591BF45556959A8E9 ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe 23:06:06.0624 0x09f8 Intel(R) Capability Licensing Service Interface - ok 23:06:06.0671 0x09f8 [ 420142EC02098130910F34191F38D1B1, 8D853F69DFF2D6D66BB1A25644E66DC1E8D841B86674925821B7795FBDC6A683 ] Intel(R) ME Service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 23:06:06.0686 0x09f8 Intel(R) ME Service - ok 23:06:06.0717 0x09f8 [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys 23:06:06.0733 0x09f8 intelide - ok 23:06:06.0780 0x09f8 [ 7AA01AB1C110916825E6E1389F1B9AF2, E2885955AFA0908E194B1BC364C9582249B2B2AFFF93F17F3414F55B1E5F2C42 ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 23:06:06.0796 0x09f8 intelpep - ok 23:06:06.0811 0x09f8 [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 23:06:06.0827 0x09f8 intelppm - ok 23:06:06.0858 0x09f8 [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 23:06:06.0889 0x09f8 IpFilterDriver - ok 23:06:06.0952 0x09f8 [ B452623C1DE60544054E784D94A7AA47, 57AECDEE0AB2B80DFFE11E43608988D46E9169288CB56D644DDE2CAFED6AFD40 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 23:06:06.0999 0x09f8 iphlpsvc - ok 23:06:07.0030 0x09f8 [ C800DCD904016B2BF6AB541083770A3A, 95A8FB9AB2818A4F44AFCBF2715B0B3024DCE38E1406EA639F2A5ECA105D2290 ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 23:06:07.0046 0x09f8 IPMIDRV - ok 23:06:07.0077 0x09f8 [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 23:06:07.0092 0x09f8 IPNAT - ok 23:06:07.0124 0x09f8 [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 23:06:07.0139 0x09f8 IRENUM - ok 23:06:07.0186 0x09f8 [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 23:06:07.0217 0x09f8 isapnp - ok 23:06:07.0296 0x09f8 [ AD3C1F4BD9167420F04052FDA197CF29, 82B687092DFC50E8885656AF06BFB7559930750F4905BC4DBDA3A5D334A443D1 ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 23:06:07.0311 0x09f8 iScsiPrt - ok 23:06:07.0342 0x09f8 [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys 23:06:07.0358 0x09f8 iwdbus - ok 23:06:07.0405 0x09f8 [ 9B24288D9F247BC5B3DAA71C571A028C, 0A1EF61858F9C1066F299C94C0FC4BB434D7585536294847CA8E21E731B9B931 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe 23:06:07.0421 0x09f8 jhi_service - ok 23:06:07.0436 0x09f8 [ 5917AFE4A3F695A54B99C1849C8207FE, DD57638966F2F0387DCF9DA4BBAEE3CDD8CC6F1A2D49581A0374D46A565BED4F ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 23:06:07.0452 0x09f8 kbdclass - ok 23:06:07.0483 0x09f8 [ 8CD840A062F6BDF41DDE3ACB96164B72, AEAE867F3557C1CE6B931E19D7144A3BD3CBABD81B1542667680D54FC24DEBE1 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 23:06:07.0499 0x09f8 kbdhid - ok 23:06:07.0530 0x09f8 [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys 23:06:07.0546 0x09f8 kdnic - ok 23:06:07.0561 0x09f8 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso C:\WINDOWS\system32\lsass.exe 23:06:07.0577 0x09f8 KeyIso - ok 23:06:07.0608 0x09f8 [ 304DA394D958BC3B62AF6DF514005B01, 8D17777C82F034E800181E82D30FCED800CBC46CD659AE2E0D972CA1381BD4C2 ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 23:06:07.0624 0x09f8 KSecDD - ok 23:06:07.0655 0x09f8 [ 3D4AE520CD6F6FFE549DD195C1F515BE, 2AD3E07F504CE50956C391FD4633D20B354A854C940B3563A67B79BB6E40218F ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 23:06:07.0671 0x09f8 KSecPkg - ok 23:06:07.0686 0x09f8 [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 23:06:07.0702 0x09f8 ksthunk - ok 23:06:07.0749 0x09f8 [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 23:06:07.0764 0x09f8 KtmRm - ok 23:06:07.0827 0x09f8 [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 23:06:07.0858 0x09f8 LanmanServer - ok 23:06:07.0889 0x09f8 [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 23:06:07.0921 0x09f8 LanmanWorkstation - ok 23:06:07.0983 0x09f8 [ 8B9F3796EC1762CF255BDB324E5529C8, F73D6BEF19BE20AEB18DA82CB63E9D8B50ACBBE4ED9B646EF0C9F598F6B81F94 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll 23:06:08.0014 0x09f8 lfsvc - ok 23:06:08.0046 0x09f8 [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys 23:06:08.0061 0x09f8 lltdio - ok 23:06:08.0108 0x09f8 [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 23:06:08.0139 0x09f8 lltdsvc - ok 23:06:08.0171 0x09f8 [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 23:06:08.0202 0x09f8 lmhosts - ok 23:06:08.0233 0x09f8 [ F194FE43BD9C0E949384E16EED7AA52E, 6260DD6DE9E6BBE8AB2CB8FA3A008C921ACDD340A6BF5C6A1C7C4FFE84C5BD79 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 23:06:08.0249 0x09f8 LMS - ok 23:06:08.0280 0x09f8 [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 23:06:08.0296 0x09f8 LSI_SAS - ok 23:06:08.0311 0x09f8 [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys 23:06:08.0327 0x09f8 LSI_SAS2 - ok 23:06:08.0343 0x09f8 [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys 23:06:08.0358 0x09f8 LSI_SAS3 - ok 23:06:08.0374 0x09f8 [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 23:06:08.0389 0x09f8 LSI_SSS - ok 23:06:08.0452 0x09f8 [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM C:\WINDOWS\System32\lsm.dll 23:06:08.0483 0x09f8 LSM - ok 23:06:08.0530 0x09f8 [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys 23:06:08.0546 0x09f8 luafv - ok 23:06:08.0671 0x09f8 [ 77AB66599EAFF797744D17C502FECDB9, E3A356AC3D6958B08C126D2C4231F2F7A655348606AE53FB95C6DA17908B32D1 ] McComponentHostServiceSony C:\Program Files (x86)\Sony\MSS\3.8.130\McCHSvc.exe 23:06:08.0718 0x09f8 McComponentHostServiceSony - ok 23:06:08.0889 0x09f8 [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McOobeSv2 C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe 23:06:08.0921 0x09f8 McOobeSv2 - ok 23:06:08.0936 0x09f8 [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] mcpltsvc C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe 23:06:08.0952 0x09f8 mcpltsvc - ok 23:06:08.0968 0x09f8 [ FB11715EEB23D0999C2295177EBBA5C0, 533754A3591B5852253C793CE08ADA6CAD0545E3A11F42430EFA9D959B6BF4F7 ] McSchedulerSvc C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe 23:06:08.0983 0x09f8 McSchedulerSvc - ok 23:06:09.0030 0x09f8 [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys 23:06:09.0046 0x09f8 megasas - ok 23:06:09.0061 0x09f8 [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys 23:06:09.0093 0x09f8 megasr - ok 23:06:09.0139 0x09f8 [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64 C:\WINDOWS\System32\drivers\HECIx64.sys 23:06:09.0139 0x09f8 MEIx64 - ok 23:06:09.0202 0x09f8 [ 895040402C88062B6E1F722AF01A1667, 51686E1F4FCBCD8377DE5C9A233837C76B32A64739044D715D313E598E6B68F5 ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys 23:06:09.0218 0x09f8 mfeapfk - ok 23:06:09.0296 0x09f8 [ B796F6230CF956FC95C6766BF845B3F3, 4EBE28AA2B767450C49871A136197110C7203B9882CD574B27E8B3F98B2D6334 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys 23:06:09.0311 0x09f8 mfeavfk - ok 23:06:09.0452 0x09f8 [ 41C6D39FCBF849D69E73626B369763AC, 806F689C7F860438011D065A181D5331996FA94B797D56EFE708D6B3E754BB62 ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe 23:06:09.0468 0x09f8 mfefire - ok 23:06:09.0561 0x09f8 [ 017664D9DC24B62C368E568011BD2D0A, 2A03C9B4C283D54488C503C402CA058A05B102986AD9304483D027B3AC9ECD27 ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys 23:06:09.0593 0x09f8 mfefirek - ok 23:06:09.0624 0x09f8 [ 238CBB4E02CD1B20A12A683F7AB5AF05, 8B6B67E35966E02CD8EF947E8FFB16D182F97D599A4A2A01CF49FEA34180DD23 ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys 23:06:09.0655 0x09f8 mfehidk - ok 23:06:09.0843 0x09f8 [ 72825BFA5F403E055B37F9D6E512EB93, 148D12AB19CD0E8D3800967582D0A1AB868EB9024A43F8E56C8E979C659BF88B ] mfeicfcoreocp C:\Program Files\McAfeeEx\MOCP\core\mfeicfcore.exe 23:06:09.0936 0x09f8 mfeicfcoreocp - ok 23:06:09.0983 0x09f8 [ 1992C9EFA684A23E8047D9ADCA150E9E, 3F839BB3DFAB0B5AF2EBB576D1C4F235F155A23845AA0B3CAF9DD84F2D75B37F ] mfevtp C:\Windows\system32\mfevtps.exe 23:06:09.0999 0x09f8 mfevtp - ok 23:06:10.0030 0x09f8 [ 1477459C6A9BDE33474B45A32B92D59B, B6198F9F8E1A7A1EC3DD7865C4D0C3F61579A8DE5BFF19A30751932E2A053B55 ] mfewfpk C:\WINDOWS\system32\drivers\mfewfpk.sys 23:06:10.0046 0x09f8 mfewfpk - ok 23:06:10.0077 0x09f8 [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS C:\WINDOWS\system32\mmcss.dll 23:06:10.0108 0x09f8 MMCSS - ok 23:06:10.0124 0x09f8 [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys 23:06:10.0155 0x09f8 Modem - ok 23:06:10.0186 0x09f8 [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys 23:06:10.0202 0x09f8 monitor - ok 23:06:10.0249 0x09f8 [ 08374E4E5B8914DE6067CBA99F61E930, CBB1390D6523FC968BEDF78FD13699488621ACB2CD1DF55D1606316090548661 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 23:06:10.0280 0x09f8 mouclass - ok 23:06:10.0296 0x09f8 [ 5FCBAB60598AE119E02B4C27DE6B99EA, 36F30094F700DE41C293047ACB49ED1961DD927BEDAD8DFDAB7023D4D24CB0DE ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 23:06:10.0311 0x09f8 mouhid - ok 23:06:10.0358 0x09f8 [ 24DABC0A77FAFDC0E379AB3B30F61BB6, E66624ABBF1D742879035F9161F9D3713DE7B759B3D3CF8B96C9E397A02FCF82 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 23:06:10.0389 0x09f8 mountmgr - ok 23:06:10.0436 0x09f8 [ 36703F9DA4AE47C2F065668CEB2ACE95, 0A486349A92B8D28EB3C0B975D2741426CE8A3421BF139B0A02F1C89187699E4 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 23:06:10.0452 0x09f8 MozillaMaintenance - ok 23:06:10.0499 0x09f8 [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 23:06:10.0514 0x09f8 mpsdrv - ok 23:06:10.0577 0x09f8 [ D1418745A5472F3930A288E05B9E2C05, 95785F0FA7EE239459C0288DB37E9E54648029FD6FE45A61E6343526D67FFA32 ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 23:06:10.0608 0x09f8 MpsSvc - ok 23:06:10.0655 0x09f8 [ 3F818C1518DA702C8F10259095C9BDE0, B98C1A6F9A3C01A10503B2B2C45CC89AFF17B346B15990F4DB4820F68BDC62C8 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 23:06:10.0671 0x09f8 MRxDAV - ok 23:06:10.0702 0x09f8 [ 3AF30CEB99E581E2FADA0B5FC4B551D8, 59BDE83C10D6F31E13B81FC317F1DE0E00793FBA288EAF844E29CFA0EB184502 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 23:06:10.0733 0x09f8 mrxsmb - ok 23:06:10.0764 0x09f8 [ 15D7AF1A26CCEBA32DF21A8E2098F463, 84390806AD3A9651DAB803E9257EEE851B898ED2AB56D8936E8C9F6B41967243 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 23:06:10.0780 0x09f8 mrxsmb10 - ok 23:06:10.0858 0x09f8 [ 0790EEB1EC199F8BE8259E47B373ED23, F9330F43B40675CCB60804182EF04BFBA3837ED14C798788A4B27D65A646D1C7 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 23:06:10.0905 0x09f8 mrxsmb20 - ok 23:06:10.0936 0x09f8 [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys 23:06:10.0968 0x09f8 MsBridge - ok 23:06:10.0999 0x09f8 [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC C:\WINDOWS\System32\msdtc.exe 23:06:11.0030 0x09f8 MSDTC - ok 23:06:11.0077 0x09f8 [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 23:06:11.0124 0x09f8 Msfs - ok 23:06:11.0171 0x09f8 [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 23:06:11.0186 0x09f8 msgpiowin32 - ok 23:06:11.0202 0x09f8 [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 23:06:11.0218 0x09f8 mshidkmdf - ok 23:06:11.0233 0x09f8 [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 23:06:11.0249 0x09f8 mshidumdf - ok 23:06:11.0265 0x09f8 [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 23:06:11.0280 0x09f8 msisadrv - ok 23:06:11.0327 0x09f8 [ A06142B3850B06972F1C89748FAA2C02, B1CCC5C8D100FEB384FCC85FED2A77F47DA4C9BA5F6889A130F4D73E30ACAA78 ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 23:06:11.0374 0x09f8 MSiSCSI - ok 23:06:11.0390 0x09f8 msiserver - ok 23:06:11.0405 0x09f8 [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 23:06:11.0421 0x09f8 MSKSSRV - ok 23:06:11.0436 0x09f8 [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys 23:06:11.0452 0x09f8 MsLldp - ok 23:06:11.0483 0x09f8 [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 23:06:11.0499 0x09f8 MSPCLOCK - ok 23:06:11.0499 0x09f8 [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 23:06:11.0515 0x09f8 MSPQM - ok 23:06:11.0546 0x09f8 [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys 23:06:11.0577 0x09f8 MsRPC - ok 23:06:11.0593 0x09f8 [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys 23:06:11.0608 0x09f8 mssmbios - ok 23:06:11.0624 0x09f8 [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 23:06:11.0640 0x09f8 MSTEE - ok 23:06:11.0655 0x09f8 [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys 23:06:11.0671 0x09f8 MTConfig - ok 23:06:11.0702 0x09f8 [ 438EA7A2D8D4F9B8AFB64748ACA70BA8, AEEB7B657B645C4006C6D5E8D07ECE581DEE7AD22EA1A587C552574990CF091B ] Mup C:\WINDOWS\system32\Drivers\mup.sys 23:06:11.0718 0x09f8 Mup - ok 23:06:11.0765 0x09f8 [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys 23:06:11.0780 0x09f8 mvumis - ok 23:06:11.0843 0x09f8 [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent C:\WINDOWS\system32\qagentRT.dll 23:06:11.0874 0x09f8 napagent - ok 23:06:11.0921 0x09f8 [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys 23:06:11.0952 0x09f8 NativeWifiP - ok 23:06:11.0983 0x09f8 [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 23:06:12.0015 0x09f8 NcaSvc - ok 23:06:12.0030 0x09f8 [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService C:\WINDOWS\System32\ncbservice.dll 23:06:12.0046 0x09f8 NcbService - ok |
03.12.2016, 23:46 | #5 |
| verschiedene Probleme mit Windows , ist es Malware ? Und TDSSKiller 2.Teil: Code:
ATTFilter 23:06:12.0093 0x09f8 [ 0813B71EAF097208DC76CE0605B48AF0, A93A2E6A8FB77B58AC4D580E6F8BF307A25BADC9493994F9BE235EBFB0E1DB22 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 23:06:12.0108 0x09f8 NcdAutoSetup - ok 23:06:12.0171 0x09f8 [ 97DC5967F65503213FD1F1B3E4A6F983, 3EC515856C7CE9B30032F963DC04190F66EE62402A819781DC45B7D088C84229 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 23:06:12.0218 0x09f8 NDIS - ok 23:06:12.0249 0x09f8 [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys 23:06:12.0265 0x09f8 NdisCap - ok 23:06:12.0280 0x09f8 [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys 23:06:12.0296 0x09f8 NdisImPlatform - ok 23:06:12.0343 0x09f8 [ DC1D9F692C2AD84C214584C28501C1F7, 96FC0D1EC48FED963E02648541A2AAC8E72ED00D797EA8E3D0ED02F5EB4816C5 ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 23:06:12.0358 0x09f8 NdisTapi - ok 23:06:12.0374 0x09f8 [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 23:06:12.0390 0x09f8 Ndisuio - ok 23:06:12.0421 0x09f8 [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 23:06:12.0436 0x09f8 NdisVirtualBus - ok 23:06:12.0483 0x09f8 [ C3755FCF9A0B5C6FE8ED9E873B85D3CE, 4D3DAFAFA5FB2930522D6DA536E3A731BABE0C24613C190D2330DB415D1A6515 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 23:06:12.0499 0x09f8 NdisWan - ok 23:06:12.0515 0x09f8 [ C3755FCF9A0B5C6FE8ED9E873B85D3CE, 4D3DAFAFA5FB2930522D6DA536E3A731BABE0C24613C190D2330DB415D1A6515 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 23:06:12.0530 0x09f8 NdisWanLegacy - ok 23:06:12.0577 0x09f8 [ 0BBE2FA30BAD58C9ADC01E4F84A3D2A1, 913AEC8A5F735C2EFDCB417E4077AB5A15457C601E6E88A1F4FA52C91E6E0BBF ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 23:06:12.0608 0x09f8 NDProxy - ok 23:06:12.0624 0x09f8 [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 23:06:12.0640 0x09f8 Ndu - ok 23:06:12.0686 0x09f8 [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 23:06:12.0702 0x09f8 NetBIOS - ok 23:06:12.0749 0x09f8 [ 9DC17B7D9D84C37C102D379FCC7D4942, D522022ED4395686837E96F57EE29F8065FB749D1195B60D2A406FB33F696C09 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 23:06:12.0765 0x09f8 NetBT - ok 23:06:12.0780 0x09f8 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon C:\WINDOWS\system32\lsass.exe 23:06:12.0796 0x09f8 Netlogon - ok 23:06:12.0843 0x09f8 [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman C:\WINDOWS\System32\netman.dll 23:06:12.0874 0x09f8 Netman - ok 23:06:12.0921 0x09f8 [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 23:06:12.0952 0x09f8 netprofm - ok 23:06:12.0999 0x09f8 [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 23:06:13.0030 0x09f8 NetTcpPortSharing - ok 23:06:13.0061 0x09f8 [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc C:\WINDOWS\System32\drivers\netvsc63.sys 23:06:13.0077 0x09f8 netvsc - ok 23:06:13.0186 0x09f8 [ 7B4EB17E7352F4B68502F3142C89CCAD, 7F1F985BF1491134C72D5238B520952B9E7CEB081C2ED46D2036B980AFD26807 ] NetworkSupport C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe 23:06:13.0233 0x09f8 NetworkSupport - ok 23:06:13.0280 0x09f8 [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 23:06:13.0311 0x09f8 NlaSvc - ok 23:06:13.0327 0x09f8 [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 23:06:13.0343 0x09f8 Npfs - ok 23:06:13.0358 0x09f8 [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 23:06:13.0374 0x09f8 npsvctrig - ok 23:06:13.0405 0x09f8 [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi C:\WINDOWS\system32\nsisvc.dll 23:06:13.0421 0x09f8 nsi - ok 23:06:13.0452 0x09f8 [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 23:06:13.0468 0x09f8 nsiproxy - ok 23:06:13.0562 0x09f8 [ 9980B262DBE439AE6BDC91AA985F19EE, E998E4CAE9CD103ADA9CA3C737C4DAD017D056828BFA42A41C7B4E4E108FB13C ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 23:06:13.0655 0x09f8 Ntfs - ok 23:06:13.0687 0x09f8 [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys 23:06:13.0702 0x09f8 Null - ok 23:06:14.0218 0x09f8 [ 9B93CC9C70EDE60A9C486E7719DB9E8D, 8E31BE72797D3308D8AF136E9F4C6199BCF4592F88E9FEB361752FF768225EC9 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys 23:06:14.0546 0x09f8 nvlddmkm - ok 23:06:14.0577 0x09f8 [ F76296368BB813E0C6996501A3271C7C, FA1C127F881C09C5066CB83A686AFD7A40D731922185EA4001A52ABA230FD812 ] nvpciflt C:\WINDOWS\system32\DRIVERS\nvpciflt.sys 23:06:14.0593 0x09f8 nvpciflt - ok 23:06:14.0640 0x09f8 [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 23:06:14.0655 0x09f8 nvraid - ok 23:06:14.0687 0x09f8 [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 23:06:14.0702 0x09f8 nvstor - ok 23:06:14.0749 0x09f8 [ E5E14C6720911DEC3B8B734E536A1DF9, C31BC816F00F5B9982278053654E8D4769B24CA70817D5C18A614C153A01DDA7 ] nvsvc C:\Windows\system32\nvvsvc.exe 23:06:14.0796 0x09f8 nvsvc - ok 23:06:14.0905 0x09f8 [ 1E23734EE374F4F408DBF11D16090C6B, 51486FA013505EF3F39B526909E7E813CAFFA22BAC032D1FFC48C2A66B6504B5 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 23:06:14.0952 0x09f8 nvUpdatusService - ok 23:06:14.0999 0x09f8 [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 23:06:15.0015 0x09f8 nv_agp - ok 23:06:15.0093 0x09f8 [ B301012418301697F71E5E85C782CC0F, FA639B87AE5008C7EA54AE042786CA7CEFFDFEA17659FC4B3C0410E14905D9C5 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 23:06:15.0140 0x09f8 ose - ok 23:06:15.0202 0x09f8 [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 23:06:15.0249 0x09f8 p2pimsvc - ok 23:06:15.0312 0x09f8 [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc C:\WINDOWS\system32\p2psvc.dll 23:06:15.0358 0x09f8 p2psvc - ok 23:06:15.0405 0x09f8 [ 57DCE4FB0467986AE78E1C6FC5240D32, F7F3ADD1B48E4D6BB0A664A2FE556F71ED7453054B4FB667A29BE050C845045B ] Parport C:\WINDOWS\System32\drivers\parport.sys 23:06:15.0437 0x09f8 Parport - ok 23:06:15.0483 0x09f8 [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 23:06:15.0499 0x09f8 partmgr - ok 23:06:15.0546 0x09f8 [ 0A2DF1055FEEA30DFF73DAC0DA45FDE4, 497B2AE591ABBCFA8FC571D9C1D750006212F2D2DDF12F5A9E7FFA811CD707A3 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 23:06:15.0577 0x09f8 PcaSvc - ok 23:06:15.0608 0x09f8 [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci C:\WINDOWS\system32\drivers\pci.sys 23:06:15.0624 0x09f8 pci - ok 23:06:15.0655 0x09f8 [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 23:06:15.0671 0x09f8 pciide - ok 23:06:15.0687 0x09f8 [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 23:06:15.0702 0x09f8 pcmcia - ok 23:06:15.0733 0x09f8 [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 23:06:15.0749 0x09f8 pcw - ok 23:06:15.0780 0x09f8 [ ED54A75050211DC77F9B98C41E026858, F92FB59ADE88469EAA50E91D43165C68CC32FDE11595A0069FD43103A674FE44 ] pdc C:\WINDOWS\system32\drivers\pdc.sys 23:06:15.0796 0x09f8 pdc - ok 23:06:15.0858 0x09f8 [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 23:06:15.0890 0x09f8 PEAUTH - ok 23:06:15.0984 0x09f8 [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 23:06:16.0015 0x09f8 PerfHost - ok 23:06:16.0093 0x09f8 [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla C:\WINDOWS\system32\pla.dll 23:06:16.0155 0x09f8 pla - ok 23:06:16.0249 0x09f8 [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 23:06:16.0280 0x09f8 PlugPlay - ok 23:06:16.0405 0x09f8 [ 38B0FEA1C0FAFD80C6BB3E8B720E7910, 724893357105A259FFB3513D8737D553F9B5B8FF1EFF18FB4D1803E324390B43 ] PMBDeviceInfoProvider C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe 23:06:16.0484 0x09f8 PMBDeviceInfoProvider - ok 23:06:16.0530 0x09f8 [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 23:06:16.0546 0x09f8 PNRPAutoReg - ok 23:06:16.0562 0x09f8 [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 23:06:16.0593 0x09f8 PNRPsvc - ok 23:06:16.0640 0x09f8 [ 0FF8507A8B901B904E98EB36B9E347EE, FE4A9A6159A8490F3155D166656748722EFDEDCDC447C09155A5AD6D9F5D294D ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 23:06:16.0687 0x09f8 PolicyAgent - ok 23:06:16.0718 0x09f8 [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power C:\WINDOWS\system32\umpo.dll 23:06:16.0734 0x09f8 Power - ok 23:06:16.0780 0x09f8 [ E075CC071022BD4E9BE7C024717C0E0A, BE65A8C1082AE8DF8C37CA06B2BCC521478AC153EA7388B03F7FAE3913920E75 ] PptpMiniport C:\WINDOWS\system32\DRIVERS\raspptp.sys 23:06:16.0827 0x09f8 PptpMiniport - ok 23:06:17.0046 0x09f8 [ F6EA63145C20A23732AD2CA1EBA65FA1, 0DD1164D37C1500258E9CCCE458778A3DA196D9A65919B2672E3C88383068F52 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 23:06:17.0155 0x09f8 PrintNotify - ok 23:06:17.0187 0x09f8 [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys 23:06:17.0218 0x09f8 Processor - ok 23:06:17.0249 0x09f8 [ 6E409D818C6B342544EAE741B1422B85, B4ADFB7809FC42C432C984C3AC13FAFD1B7AD53BCC7FB16E86371DE4C829DD1A ] ProfSvc C:\WINDOWS\system32\profsvc.dll 23:06:17.0280 0x09f8 ProfSvc - ok 23:06:17.0327 0x09f8 [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys 23:06:17.0359 0x09f8 Psched - ok 23:06:17.0390 0x09f8 [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE C:\WINDOWS\system32\qwave.dll 23:06:17.0437 0x09f8 QWAVE - ok 23:06:17.0468 0x09f8 [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 23:06:17.0484 0x09f8 QWAVEdrv - ok 23:06:17.0530 0x09f8 [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 23:06:17.0546 0x09f8 RasAcd - ok 23:06:17.0593 0x09f8 [ D5ECE7E7F349EB3C4B152AFF3577280D, 3A5D3E440D1ED72D654BBFE30A73667F055C0AD04375C22C202F21BF75B612B2 ] RasAgileVpn C:\WINDOWS\system32\DRIVERS\AgileVpn.sys 23:06:17.0640 0x09f8 RasAgileVpn - ok 23:06:17.0671 0x09f8 [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto C:\WINDOWS\System32\rasauto.dll 23:06:17.0687 0x09f8 RasAuto - ok 23:06:17.0734 0x09f8 [ 235624C147E3CB4C288D5D3D8E8D64A2, B3F182019DBAD9C761FE9F62EAED34AD5902B41A13A766D814FC3E2EA29D8D92 ] Rasl2tp C:\WINDOWS\system32\DRIVERS\rasl2tp.sys 23:06:17.0765 0x09f8 Rasl2tp - ok 23:06:17.0812 0x09f8 [ 15C0034561FE5B03FA376F1A6232478B, 0F9B5C2BD7D8803FF3C5ED957D3F0859F2A59B74510E4659FBF05EDCBF230208 ] RasMan C:\WINDOWS\System32\rasmans.dll 23:06:17.0843 0x09f8 RasMan - ok 23:06:17.0874 0x09f8 [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 23:06:17.0890 0x09f8 RasPppoe - ok 23:06:17.0921 0x09f8 [ 41F631007A158FEBB67F0E2AD1601BBA, EB5EA7277F4178BC27E55BF850AEBCD84B6BED80B2383CFB29548824AAFED135 ] RasSstp C:\WINDOWS\system32\DRIVERS\rassstp.sys 23:06:17.0937 0x09f8 RasSstp - ok 23:06:18.0062 0x09f8 [ D67ED4AB59D1EF66B05AD1A81AC28B26, 72E750A9A6B484D8BEDE52FA6DABEF4D95765DE491152E1F6C856D0590B50C28 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 23:06:18.0109 0x09f8 rdbss - ok 23:06:18.0124 0x09f8 [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 23:06:18.0140 0x09f8 rdpbus - ok 23:06:18.0171 0x09f8 [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 23:06:18.0187 0x09f8 RDPDR - ok 23:06:18.0249 0x09f8 [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 23:06:18.0281 0x09f8 RdpVideoMiniport - ok 23:06:18.0296 0x09f8 [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 23:06:18.0327 0x09f8 rdyboost - ok 23:06:18.0406 0x09f8 [ 759FB47B96FA0A9D767B3269F76E5E25, B19EF75D2ECC9041F2578D6D4574302A06A12E551CE6211C049CD642E92D4D3E ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys 23:06:18.0452 0x09f8 ReFS - ok 23:06:18.0468 0x09f8 [ DF78648AC3C8DC9D70E6714AF785382F, 56E104939ED0AB5B26AE07BAB1BBB7D15828DBD3A2AD35361423D7ADDA4BA551 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 23:06:18.0499 0x09f8 RemoteAccess - ok 23:06:18.0546 0x09f8 [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 23:06:18.0577 0x09f8 RemoteRegistry - ok 23:06:18.0624 0x09f8 [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM C:\WINDOWS\system32\DRIVERS\rfcomm.sys 23:06:18.0640 0x09f8 RFCOMM - ok 23:06:18.0687 0x09f8 [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 23:06:18.0702 0x09f8 RpcEptMapper - ok 23:06:18.0734 0x09f8 [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator C:\WINDOWS\system32\locator.exe 23:06:18.0749 0x09f8 RpcLocator - ok 23:06:18.0827 0x09f8 [ 7830CEA509693DE0817DF2F3F2D80E89, 7B1786CD225E2D6BCFA484D0BFB81DD162D5713EAEC80C53317CC6950E3D17F3 ] RpcSs C:\WINDOWS\system32\rpcss.dll 23:06:18.0859 0x09f8 RpcSs - ok 23:06:18.0906 0x09f8 [ D5E76FA33A4109490228F4015564133E, 2C8206F3E8149D8A6DDFAF5EF0341752586C210ABAB8809E1AB42777CB1B6447 ] RSPCIESTOR C:\WINDOWS\system32\DRIVERS\RtsPStor.sys 23:06:18.0921 0x09f8 RSPCIESTOR - ok 23:06:18.0968 0x09f8 [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys 23:06:18.0984 0x09f8 rspndr - ok 23:06:19.0046 0x09f8 [ D2768897FCEA8EEFAD3D69BAC9DC4180, 81E23AA9E13C06BD417C34566766A9F98FD3A8F916123F282CB6E52AB1A10A1D ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys 23:06:19.0077 0x09f8 RTL8168 - ok 23:06:19.0109 0x09f8 [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 23:06:19.0124 0x09f8 s3cap - ok 23:06:19.0156 0x09f8 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs C:\WINDOWS\system32\lsass.exe 23:06:19.0171 0x09f8 SamSs - ok 23:06:19.0296 0x09f8 [ 347D5333ADA148459FD30BBCC4DD04D6, 36C25E50FC18398C2637CA57B362D20A52ECF7DFB93D943BE139DB718F2692C8 ] SbieDrv C:\Program Files\Sandboxie\SbieDrv.sys 23:06:19.0312 0x09f8 SbieDrv - ok 23:06:19.0374 0x09f8 [ FD4BCA0C24A675E49526B3983C07F6C2, D3192D1E95A80C823E5647C3EBC50389DCBA5CB2913529F80F9F4E9959CB9A0A ] SbieSvc C:\Program Files\Sandboxie\SbieSvc.exe 23:06:19.0437 0x09f8 SbieSvc - ok 23:06:19.0484 0x09f8 [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 23:06:19.0515 0x09f8 sbp2port - ok 23:06:19.0546 0x09f8 [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 23:06:19.0577 0x09f8 SCardSvr - ok 23:06:19.0593 0x09f8 [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 23:06:19.0624 0x09f8 ScDeviceEnum - ok 23:06:19.0656 0x09f8 [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 23:06:19.0671 0x09f8 scfilter - ok 23:06:19.0734 0x09f8 [ 3151A020E03DDE31AAC49F35C5EFB4DB, 5ABB1103009979F86C862357E28F37C2744979F2C99F7CF6ABB4EB1B8416B3F6 ] Schedule C:\WINDOWS\system32\schedsvc.dll 23:06:19.0827 0x09f8 Schedule - ok 23:06:19.0859 0x09f8 [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 23:06:19.0890 0x09f8 SCPolicySvc - ok 23:06:19.0937 0x09f8 [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 23:06:19.0952 0x09f8 sdbus - ok 23:06:19.0999 0x09f8 [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 23:06:20.0015 0x09f8 sdstor - ok 23:06:20.0031 0x09f8 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys 23:06:20.0062 0x09f8 secdrv - ok 23:06:20.0093 0x09f8 [ 6627154693B6C2B8A59727F5B38728E8, F08251EE3436400295F120D48F3763E6F11BBF4132D674AD3E8112B6B3538455 ] seclogon C:\WINDOWS\system32\seclogon.dll 23:06:20.0124 0x09f8 seclogon - ok 23:06:20.0171 0x09f8 [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS C:\WINDOWS\System32\sens.dll 23:06:20.0202 0x09f8 SENS - ok 23:06:20.0218 0x09f8 [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 23:06:20.0265 0x09f8 SensrSvc - ok 23:06:20.0281 0x09f8 [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 23:06:20.0296 0x09f8 SerCx - ok 23:06:20.0327 0x09f8 [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 23:06:20.0343 0x09f8 SerCx2 - ok 23:06:20.0374 0x09f8 [ 1F0135949A6AD6025F363F80FE268251, DB2D503863143F2251E589F7B0B3E9FBF997D7333D54C55856590B5080B5513D ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 23:06:20.0390 0x09f8 Serenum - ok 23:06:20.0452 0x09f8 [ 81633C87B42B63BA484A6177179AC750, A22BA40E9EC74E88D8098CBDC954E1D63B832FCB789E3C7B731DE5DA39BEE2CA ] Serial C:\WINDOWS\System32\drivers\serial.sys 23:06:20.0468 0x09f8 Serial - ok 23:06:20.0546 0x09f8 [ 148195AE95D9BC7375A08846439FDAC1, 3A2F78FD18AA7A6D659921E19335E943894530874AC5AB5E7219CEF28FA54F7A ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 23:06:20.0578 0x09f8 sermouse - ok 23:06:20.0640 0x09f8 [ 389458EA0B5FAEBA325FAC47B9ED589E, F7F37A1F1E912069F65E4629FF733F080AE675DF6FE255AF48F5E23EB47D0622 ] SessionEnv C:\WINDOWS\system32\sessenv.dll 23:06:20.0687 0x09f8 SessionEnv - ok 23:06:20.0749 0x09f8 [ 415B1326C40A2E1F251A3845B9C7DF31, D7BD668962B71DC3877366EB0C0BD5CDB1FF564A5866EE58DB90838D78227AD6 ] SFEP C:\WINDOWS\System32\drivers\SFEP.sys 23:06:20.0796 0x09f8 SFEP - ok 23:06:20.0828 0x09f8 [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 23:06:20.0859 0x09f8 sfloppy - ok 23:06:20.0921 0x09f8 [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 23:06:20.0953 0x09f8 SharedAccess - ok 23:06:21.0062 0x09f8 [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 23:06:21.0109 0x09f8 ShellHWDetection - ok 23:06:21.0156 0x09f8 [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 23:06:21.0171 0x09f8 SiSRaid2 - ok 23:06:21.0234 0x09f8 [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 23:06:21.0265 0x09f8 SiSRaid4 - ok 23:06:21.0343 0x09f8 [ F3AAB7DF6408431C762D8721B68F46E4, 56ED764AA660955B8B06322703D086B3A52106625A83CCAF195B08BCBDEDA88F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 23:06:21.0359 0x09f8 SkypeUpdate - ok 23:06:21.0390 0x09f8 [ 651BE03BCD0EEA41765D453DEB6050BC, D8A8132AF78E2E8BA3BCF6EE4D1C8BB4C6F2224765E04F0254B592BCB4C3CDF1 ] SmbDrvI C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys 23:06:21.0406 0x09f8 SmbDrvI - ok 23:06:21.0468 0x09f8 [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost C:\WINDOWS\System32\smphost.dll 23:06:21.0499 0x09f8 smphost - ok 23:06:21.0531 0x09f8 [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 23:06:21.0562 0x09f8 SNMPTRAP - ok 23:06:21.0640 0x09f8 [ 56210E78E7ED9CD178DF3B710D0D514C, 641C8CA7264975DA82A532B816723454235CFD247E0311803B472070DBE83320 ] SOHCImp C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe 23:06:21.0671 0x09f8 SOHCImp - ok 23:06:21.0687 0x09f8 [ F939D397853E433C1D59B96B96497F88, 98FC1EC27B758774A708910AE217AA02B14DA34245A1D6BA072436928FDA972D ] SOHDms C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe 23:06:21.0718 0x09f8 SOHDms - ok 23:06:21.0734 0x09f8 [ FA4AC5624B245FA03D4CCBA9C48D385E, 3125359763D34EE51EB1125217050DB29045154E76673F7CFED25B6301C7EEBE ] SOHDs C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe 23:06:21.0749 0x09f8 SOHDs - ok 23:06:21.0906 0x09f8 [ B312191DCBECE3C07DF9A99DE433B126, D9D9028331C703CE9B9EC75772D29BB04FE43B3A7895F8CBB3AC701CA0548F8D ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 23:06:21.0937 0x09f8 spaceport - ok 23:06:21.0984 0x09f8 [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 23:06:22.0031 0x09f8 SpbCx - ok 23:06:22.0109 0x09f8 [ C03E480E63A80D73FABE28D24D3B6B47, F8C68DC63A5492587F9343158348ADD99A99AF34DC7ED29E5562EE90C0AB8F25 ] SpfService C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe 23:06:22.0140 0x09f8 SpfService - ok 23:06:22.0203 0x09f8 [ 2E3976C857D7230EC8D2B2276E688255, C0A6A84369CB3E709A6FFEBED2B38AB62D731B79D052D6D6FA8EF855BC428778 ] Spooler C:\WINDOWS\System32\spoolsv.exe 23:06:22.0265 0x09f8 Spooler - ok 23:06:22.0515 0x09f8 [ F264662C057A54AA2DE41B3C7551712F, 2C123C6ACD967CDF1AD2855187CF3D8357B16A4FD9C2F18AE54CFA384165FA11 ] sppsvc C:\WINDOWS\system32\sppsvc.exe 23:06:22.0828 0x09f8 sppsvc - ok 23:06:22.0890 0x09f8 [ 36B082C7A764A34FB1DC72D975870B61, 572CB632D9FDC1183F7BF8BFCBC51765C647945E0C13D1C91ADE3D0E76DF83BC ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 23:06:22.0921 0x09f8 srv - ok 23:06:22.0968 0x09f8 [ F5849909D4B29B4E3D4445F943E5C7E3, 3FCA1423753716FE1AFDD27EE1E13C4D779A3C976185B5C998EF1A9A39BFC186 ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 23:06:23.0015 0x09f8 srv2 - ok 23:06:23.0062 0x09f8 [ FABC49666708EA562549E78E6FBF3191, BE1FEBFC259308B39C727915C41A67CD50720A6E2A68D148F4F2F926AED43B02 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 23:06:23.0093 0x09f8 srvnet - ok 23:06:23.0156 0x09f8 [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 23:06:23.0203 0x09f8 SSDPSRV - ok 23:06:23.0234 0x09f8 [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 23:06:23.0265 0x09f8 SstpSvc - ok 23:06:23.0312 0x09f8 [ 9B74226E10CD57E965F87014841016F9, 95C76049DBBF3B31A9B01CFD0EDAAC47DE9A1F096B61D05C47FB85E1AFC07288 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys 23:06:23.0328 0x09f8 ssudmdm - ok 23:06:23.0359 0x09f8 [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 23:06:23.0375 0x09f8 stexstor - ok 23:06:23.0484 0x09f8 [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc C:\WINDOWS\System32\wiaservc.dll 23:06:23.0531 0x09f8 stisvc - ok 23:06:23.0546 0x09f8 [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 23:06:23.0562 0x09f8 storahci - ok 23:06:23.0593 0x09f8 [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 23:06:23.0609 0x09f8 storflt - ok 23:06:23.0656 0x09f8 [ 0EDD1F4D470C775740625B06A60C9DD5, 94964D0A793B1C984E87095249EE383A5E669D05BA6BF9F655587887E6CE3C19 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 23:06:23.0687 0x09f8 stornvme - ok 23:06:23.0765 0x09f8 [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc C:\WINDOWS\system32\storsvc.dll 23:06:23.0812 0x09f8 StorSvc - ok 23:06:23.0843 0x09f8 [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 23:06:23.0859 0x09f8 storvsc - ok 23:06:23.0921 0x09f8 [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc C:\WINDOWS\system32\svsvc.dll 23:06:23.0937 0x09f8 svsvc - ok 23:06:23.0953 0x09f8 [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum C:\WINDOWS\System32\drivers\swenum.sys 23:06:23.0968 0x09f8 swenum - ok 23:06:24.0000 0x09f8 [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv C:\WINDOWS\System32\swprv.dll 23:06:24.0046 0x09f8 swprv - ok 23:06:24.0093 0x09f8 [ C54F86A754D7EA388ABD817D7A9B712C, EC2E365EE165393543A0661783410C91D32FF4413866DC0875D67FFA7DF4F763 ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys 23:06:24.0125 0x09f8 SynTP - ok 23:06:24.0234 0x09f8 [ 7E85DB0463AD2403AE84AD162B162279, 996C42ECAFC6E24C623068AFAFCC0A2612526333AF9315F7536C6D40C2570632 ] SysMain C:\WINDOWS\system32\sysmain.dll 23:06:24.0296 0x09f8 SysMain - ok 23:06:24.0343 0x09f8 [ D73DBBB96CEE90C2856164AAD8543425, D11ADB5D4C5DD355314CA656D375D0062CAE7462E866F94F1B26D5803F65DCB2 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 23:06:24.0390 0x09f8 SystemEventsBroker - ok 23:06:24.0437 0x09f8 [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 23:06:24.0484 0x09f8 TabletInputService - ok 23:06:24.0500 0x09f8 [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 23:06:24.0546 0x09f8 TapiSrv - ok 23:06:24.0656 0x09f8 [ 1C8560E3A37A9D4F25B7769C3E3D4163, 3246F3CD6C9EA2BD874822D594A0FAC68A9DE0612C0893B50B8A3D5F1E9B0B33 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 23:06:24.0750 0x09f8 Tcpip - ok 23:06:24.0828 0x09f8 [ 1C8560E3A37A9D4F25B7769C3E3D4163, 3246F3CD6C9EA2BD874822D594A0FAC68A9DE0612C0893B50B8A3D5F1E9B0B33 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys 23:06:24.0921 0x09f8 TCPIP6 - ok 23:06:24.0984 0x09f8 [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 23:06:25.0031 0x09f8 tcpipreg - ok 23:06:25.0140 0x09f8 [ E0BD2D83875464FEEEB242CBA8B7E073, A3067165128F36035FA9F3CBA55CFED736E180C495497FA7332B3D97908C3D90 ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 23:06:25.0187 0x09f8 tdx - ok 23:06:25.0515 0x09f8 [ D6DDCFFF145CB7D334EECC2F9A8E304F, DC2E19A799F336DF299460C8DB4EE0B2597ADC6C4728F2BB3BBCFA1192BE809C ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 23:06:25.0812 0x09f8 TeamViewer - ok 23:06:25.0843 0x09f8 [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 23:06:25.0859 0x09f8 terminpt - ok 23:06:25.0953 0x09f8 [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService C:\WINDOWS\System32\termsrv.dll 23:06:26.0000 0x09f8 TermService - ok 23:06:26.0015 0x09f8 [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes C:\WINDOWS\system32\themeservice.dll 23:06:26.0047 0x09f8 Themes - ok 23:06:26.0078 0x09f8 [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER C:\WINDOWS\system32\mmcss.dll 23:06:26.0093 0x09f8 THREADORDER - ok 23:06:26.0140 0x09f8 [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 23:06:26.0172 0x09f8 TimeBroker - ok 23:06:26.0187 0x09f8 [ 80A2FC1A089A71F2DBE5D8394FFB009F, DEA30E751F6EA42E43E16869713FC7E37832B15DAFA0062B1798DFA476981385 ] TPM C:\WINDOWS\system32\drivers\tpm.sys 23:06:26.0218 0x09f8 TPM - ok 23:06:26.0250 0x09f8 [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks C:\WINDOWS\System32\trkwks.dll 23:06:26.0281 0x09f8 TrkWks - ok 23:06:26.0343 0x09f8 [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 23:06:26.0390 0x09f8 TrustedInstaller - ok 23:06:26.0406 0x09f8 [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 23:06:26.0437 0x09f8 TsUsbFlt - ok 23:06:26.0453 0x09f8 [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 23:06:26.0484 0x09f8 TsUsbGD - ok 23:06:26.0515 0x09f8 [ E85916632CD3B9E9B546968DB950BF42, DECE3852C763CC6293C7D1B772296C43A0AE1E47BBCC4979C96B3B2AD70413F3 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys 23:06:26.0547 0x09f8 tunnel - ok 23:06:26.0578 0x09f8 [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 23:06:26.0593 0x09f8 uagp35 - ok 23:06:26.0609 0x09f8 [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 23:06:26.0656 0x09f8 UASPStor - ok 23:06:26.0703 0x09f8 [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys 23:06:26.0718 0x09f8 UCX01000 - ok 23:06:26.0765 0x09f8 [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 23:06:26.0812 0x09f8 udfs - ok 23:06:26.0843 0x09f8 [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 23:06:26.0890 0x09f8 UEFI - ok 23:06:26.0937 0x09f8 [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 23:06:26.0968 0x09f8 UI0Detect - ok 23:06:26.0968 0x09f8 [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 23:06:26.0984 0x09f8 uliagpkx - ok 23:06:27.0015 0x09f8 [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 23:06:27.0031 0x09f8 umbus - ok 23:06:27.0078 0x09f8 [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 23:06:27.0093 0x09f8 UmPass - ok 23:06:27.0156 0x09f8 [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 23:06:27.0187 0x09f8 UmRdpService - ok 23:06:27.0297 0x09f8 [ 83C37EF0E54580BAB3497259516A9431, A5EAC7241774EF738AB3927B11091F0C1E7E987DAF936B76D129EA3E516C6733 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 23:06:27.0343 0x09f8 UNS - ok 23:06:27.0390 0x09f8 [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost C:\WINDOWS\System32\upnphost.dll 23:06:27.0422 0x09f8 upnphost - ok 23:06:27.0437 0x09f8 [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 23:06:27.0468 0x09f8 usbccgp - ok 23:06:27.0500 0x09f8 [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 23:06:27.0515 0x09f8 usbcir - ok 23:06:27.0562 0x09f8 [ C996CBEF922B5653A01E3F50DDCE2F86, 231EB5A36E7EE242197E796D3B4AB12F945D2C8570587BC8D57D45530A0C59B4 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 23:06:27.0578 0x09f8 usbehci - ok 23:06:27.0640 0x09f8 [ CD81683F4553677B9BF5163A922153EB, 6B304B0D68B9BFF0245EC755CDAAF9DF59DF3A081727E32CB66672929F0DBC50 ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 23:06:27.0672 0x09f8 usbhub - ok 23:06:27.0703 0x09f8 [ 5C90D5379B53590FBB24BBAD4FA682EE, DC036340510C1C0999AB1CB845F8E6EB8B7696BAC9BBE6E936454C0000D1E9D4 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 23:06:27.0734 0x09f8 USBHUB3 - ok 23:06:27.0750 0x09f8 [ A0F0484C97D6441ED6A75D7426ECCC9E, FF928ADE1C5464E581BF929F7383D5762D110EA6C7E31A6F0887EA7357ADBEFE ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 23:06:27.0765 0x09f8 usbohci - ok 23:06:27.0781 0x09f8 [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 23:06:27.0797 0x09f8 usbprint - ok 23:06:27.0843 0x09f8 [ 0F030491BA4A27BD46F8B8ACEEE83F1A, 7063855611BEF94D4D229BA1BE507ECBDD89F5861641A407EB3E2919A352F9D4 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 23:06:27.0859 0x09f8 usbscan - ok 23:06:27.0890 0x09f8 [ 9D168BFA334D47BE404367EB58D4E130, 23279CBE6ACBD074E7B268BA2EDA14E2255C41F8117173B2BBE653D8259ECFA2 ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 23:06:27.0906 0x09f8 USBSTOR - ok 23:06:27.0937 0x09f8 [ FC974B03C8B87455F44F734C8F31A3C8, D69F6EE8030F7DF96FF151D9EAA6AE65417ACAC5A267C7DB96E9611D5BC42D2C ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 23:06:27.0953 0x09f8 usbuhci - ok 23:06:27.0984 0x09f8 [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo C:\WINDOWS\System32\Drivers\usbvideo.sys 23:06:28.0015 0x09f8 usbvideo - ok 23:06:28.0062 0x09f8 [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 23:06:28.0078 0x09f8 USBXHCI - ok 23:06:28.0187 0x09f8 [ 34349E7B488FA61B639117F6BF1EBF99, A7A7E60511F7D6370473D41867F5323695308CC27D3EEB0286687D3A9E0084E9 ] USER_ESRV_SVC C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe 23:06:28.0219 0x09f8 USER_ESRV_SVC - ok 23:06:28.0297 0x09f8 [ 1CA1DC88D9484BCFD6C26560F397539A, 95C2AB45D4682BB4F75F1D03D57CCA944BA570EFEA06E0AB71062C6E6E7C7F4A ] VAIO Event Service C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe 23:06:28.0328 0x09f8 VAIO Event Service - ok 23:06:28.0375 0x09f8 [ 0E15735307E1068F2E2169BEB1CA4CC2, BF44F28E473EBBA1910436C17FD14CF9A4DD4AD0716FFD3129D2B6F2300ADCF1 ] VAIO Power Management C:\Program Files\Sony\VAIO Power Management\SPMService.exe 23:06:28.0406 0x09f8 VAIO Power Management - ok 23:06:28.0437 0x09f8 [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc C:\WINDOWS\system32\lsass.exe 23:06:28.0469 0x09f8 VaultSvc - ok 23:06:28.0578 0x09f8 [ DEBA4273293DAE85EE4BE3F433C903D7, 62254F305DDE2D14CE3ABD1FA7B2B1F1FAC3925926D73A217EF863F6D4B25FBF ] VCFw C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe 23:06:28.0625 0x09f8 VCFw - ok 23:06:28.0672 0x09f8 [ 2B76946699F79704F243ACBF08BD3856, A90147C280427AFA61C9C9D93D1761B8BA83BF8A15D71B48047B95756BF3E74D ] VCService C:\Program Files\Sony\VAIO Care\VCService.exe 23:06:28.0672 0x09f8 VCService - ok 23:06:28.0703 0x09f8 [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 23:06:28.0719 0x09f8 vdrvroot - ok 23:06:28.0812 0x09f8 [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds C:\WINDOWS\System32\vds.exe 23:06:28.0875 0x09f8 vds - ok 23:06:28.0890 0x09f8 [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys 23:06:28.0906 0x09f8 VerifierExt - ok 23:06:29.0047 0x09f8 [ 8ABB4BABF59F092DF0B43778D8FD1884, 94C2100CE86448543A8DD586AD4A128AB9EB37959238D70F33EF59202270AC6C ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys 23:06:29.0078 0x09f8 vhdmp - ok 23:06:29.0109 0x09f8 [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys 23:06:29.0125 0x09f8 viaide - ok 23:06:29.0140 0x09f8 [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys 23:06:29.0156 0x09f8 vmbus - ok 23:06:29.0187 0x09f8 [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys 23:06:29.0203 0x09f8 VMBusHID - ok 23:06:29.0250 0x09f8 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll 23:06:29.0281 0x09f8 vmicguestinterface - ok 23:06:29.0297 0x09f8 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll 23:06:29.0328 0x09f8 vmicheartbeat - ok 23:06:29.0375 0x09f8 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll 23:06:29.0406 0x09f8 vmickvpexchange - ok 23:06:29.0437 0x09f8 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll 23:06:29.0469 0x09f8 vmicrdv - ok 23:06:29.0484 0x09f8 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll 23:06:29.0515 0x09f8 vmicshutdown - ok 23:06:29.0531 0x09f8 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll 23:06:29.0562 0x09f8 vmictimesync - ok 23:06:29.0578 0x09f8 [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss C:\WINDOWS\System32\ICSvc.dll 23:06:29.0609 0x09f8 vmicvss - ok 23:06:29.0656 0x09f8 [ 436E1A724E7E683F6B612D3D58F04241, 939B5EF0090DF3759295F88402FD0EA33F499DDA9F89E5D0E90D1F9AED65D491 ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys 23:06:29.0672 0x09f8 volmgr - ok 23:06:29.0703 0x09f8 [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys 23:06:29.0734 0x09f8 volmgrx - ok 23:06:29.0781 0x09f8 [ 17F7B0F2298D97F4B6C7A69511033D3D, 5BDFC225F31553786726808FB7952940FC05CA72B3977D684056F42AFAA59565 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys 23:06:29.0797 0x09f8 volsnap - ok 23:06:29.0844 0x09f8 [ DAC438FB5FF85A9E72806E2341D5D732, B1D1EFCA8C588A6BF53CEC941CC59702C366F15C7D5943431736EC857E57C0A2 ] vpci C:\WINDOWS\System32\drivers\vpci.sys 23:06:29.0859 0x09f8 vpci - ok 23:06:29.0922 0x09f8 [ 786148B4BB46040FE5DAC0E149E77AF1, D315BB4F0D12B03DE6297FFC02E106BAAD7D4045F067AE4B9B9A978F5575DFD0 ] vpnagent C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe 23:06:29.0953 0x09f8 vpnagent - ok 23:06:30.0078 0x09f8 [ 0F42C39016F82F345C0F2DB2D5B90EB4, 2E957E72BB8D0293F61FA7385BA9400DF7759E1E3D35FE24F3877A6460988F4D ] vpnva C:\WINDOWS\system32\DRIVERS\vpnva64-6.sys 23:06:30.0094 0x09f8 vpnva - ok 23:06:30.0172 0x09f8 [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys 23:06:30.0203 0x09f8 vsmraid - ok 23:06:30.0297 0x09f8 [ D0CBA7B3531CCF2ADB985856D5F92434, 7FCBBCAF1AA85DCE8D75FB38DC4848AE12E8DD913CEBBC37BCD3D0123F0A3CAB ] VSS C:\WINDOWS\system32\vssvc.exe 23:06:30.0359 0x09f8 VSS - ok 23:06:30.0375 0x09f8 [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys 23:06:30.0406 0x09f8 VSTXRAID - ok 23:06:30.0531 0x09f8 [ C1FAE2E81955DCCD79034A23EC4F3F37, 61B6477C6068B5542D3EE9C6336FBD7589F1CFFD3E850473A539619033533286 ] VUAgent C:\Program Files\Sony\VAIO Update\VUAgent.exe 23:06:30.0578 0x09f8 VUAgent - ok 23:06:30.0609 0x09f8 [ 71066FF95C487327E44C8AF1B72EBE8B, EA2729126B452CAE0C80D07501779D804B08E47F1217B61D53277B40869FEC25 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys 23:06:30.0625 0x09f8 vwifibus - ok 23:06:30.0641 0x09f8 [ 29AB43937FFDA0B0FB56984226E698C6, 6A1A559964FE5D594E54988C46149969E6FFD5A8D5A6862E14648B608794CC29 ] vwififlt C:\WINDOWS\system32\DRIVERS\vwififlt.sys 23:06:30.0656 0x09f8 vwififlt - ok 23:06:30.0672 0x09f8 [ 8B8624A93E3F88CB923AEB05B6313227, 2856B63CD376BF2B1A9129581E7B9207588D4EAFD29A2C8D98F176FEAFDE26A9 ] vwifimp C:\WINDOWS\system32\DRIVERS\vwifimp.sys 23:06:30.0687 0x09f8 vwifimp - ok 23:06:30.0734 0x09f8 [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time C:\WINDOWS\system32\w32time.dll 23:06:30.0766 0x09f8 W32Time - ok 23:06:30.0797 0x09f8 [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys 23:06:30.0812 0x09f8 WacomPen - ok 23:06:30.0844 0x09f8 [ B41F3E5780D97CFD44A717153AD9CF2C, 6133104D9E5BCFDCDF55E3C52AA701766102A8F86D3F2667BBBF7168E3B3E2AB ] Wanarp C:\WINDOWS\system32\DRIVERS\wanarp.sys 23:06:30.0859 0x09f8 Wanarp - ok 23:06:30.0875 0x09f8 [ B41F3E5780D97CFD44A717153AD9CF2C, 6133104D9E5BCFDCDF55E3C52AA701766102A8F86D3F2667BBBF7168E3B3E2AB ] Wanarpv6 C:\WINDOWS\system32\DRIVERS\wanarp.sys 23:06:30.0906 0x09f8 Wanarpv6 - ok 23:06:30.0984 0x09f8 [ 841345442390953CBC8801B95D3D0540, FD4F9FD2C4C60A1A580177FFF2E9035009AC6A38E78D4236B0ED4773E3B263EE ] wbengine C:\WINDOWS\system32\wbengine.exe 23:06:31.0047 0x09f8 wbengine - ok 23:06:31.0094 0x09f8 [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll 23:06:31.0125 0x09f8 WbioSrvc - ok 23:06:31.0156 0x09f8 [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 23:06:31.0172 0x09f8 Wcmsvc - ok 23:06:31.0234 0x09f8 [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll 23:06:31.0266 0x09f8 wcncsvc - ok 23:06:31.0281 0x09f8 [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll 23:06:31.0297 0x09f8 WcsPlugInService - ok 23:06:31.0328 0x09f8 [ 81285DDC994F03379DB46419300B2DCB, 98D3622E11F375718AEA1DE3B5F0104DDAB4F96B6D4C19788C14F7B338A6F235 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 23:06:31.0359 0x09f8 WdBoot - ok 23:06:31.0422 0x09f8 [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys 23:06:31.0453 0x09f8 Wdf01000 - ok 23:06:31.0500 0x09f8 [ 26B8FED3F3B85F5F0C4BD03FD00B9941, 7F94FE7954498223B33C025258DB588A3AC9FF25C58EEAD204514FD20652FE40 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 23:06:31.0516 0x09f8 WdFilter - ok 23:06:31.0562 0x09f8 [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 23:06:31.0578 0x09f8 WdiServiceHost - ok 23:06:31.0594 0x09f8 [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 23:06:31.0609 0x09f8 WdiSystemHost - ok 23:06:31.0641 0x09f8 [ CE67080F00E0AF32755096CEA6430ABA, 0E5D626F9F76C0BC63B2D246AD66D9CBF7D92F34B56398417BCFD0C331DBD282 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 23:06:31.0656 0x09f8 WdNisDrv - ok 23:06:31.0687 0x09f8 WdNisSvc - ok 23:06:31.0750 0x09f8 [ A70CAF5EA36CBA5FCA24244306D4D5C6, 76C3E20B62B89D9699A1E817377FAD70B144B877BCC5C850A5B64CC68184D8DA ] WebClient C:\WINDOWS\System32\webclnt.dll 23:06:31.0781 0x09f8 WebClient - ok 23:06:31.0828 0x09f8 [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 23:06:31.0844 0x09f8 Wecsvc - ok 23:06:31.0859 0x09f8 [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 23:06:31.0875 0x09f8 WEPHOSTSVC - ok 23:06:31.0891 0x09f8 [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 23:06:31.0922 0x09f8 wercplsupport - ok 23:06:31.0969 0x09f8 [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc C:\WINDOWS\System32\WerSvc.dll 23:06:32.0000 0x09f8 WerSvc - ok 23:06:32.0062 0x09f8 [ 715ABA3DD164D06457A2A3C92F6EA9D5, E6F8269D2FFC4A548B65724C0A3F53756ED15E47229861FBD40B656EE40FE166 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys 23:06:32.0078 0x09f8 WFPLWFS - ok 23:06:32.0094 0x09f8 [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 23:06:32.0109 0x09f8 WiaRpc - ok 23:06:32.0156 0x09f8 [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys 23:06:32.0172 0x09f8 WIMMount - ok 23:06:32.0172 0x09f8 WinDefend - ok 23:06:32.0234 0x09f8 [ 0E70990EC2E5D2331AA5E88DB0CFB826, 79DFF565C3FCBC691E8FEB669CEC00E340FD2A2AFA4488D23A7CC63A2A98A5C1 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll 23:06:32.0281 0x09f8 WinHttpAutoProxySvc - ok 23:06:32.0359 0x09f8 [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 23:06:32.0391 0x09f8 Winmgmt - ok 23:06:32.0500 0x09f8 [ 427873F889F2F508BE8BE982219CE578, CA8DCFB774BF0F747295A7A0CB46A6177DE12AD6BD58266182206C41A3C9001E ] WinRM C:\WINDOWS\system32\WsmSvc.dll 23:06:32.0594 0x09f8 WinRM - ok 23:06:32.0641 0x09f8 [ 3AF1FA17F1C4ACBDB660D8F98B1A9C13, 99B0851410B462685F6705EBF832D10943FB9634030B02D15BF5D0C66F26F2C2 ] WinUsb C:\WINDOWS\system32\DRIVERS\WinUsb.sys 23:06:32.0656 0x09f8 WinUsb - ok 23:06:32.0719 0x09f8 [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll 23:06:32.0781 0x09f8 WlanSvc - ok 23:06:32.0859 0x09f8 [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll 23:06:32.0922 0x09f8 wlidsvc - ok 23:06:32.0969 0x09f8 [ 73B8665D4C3111E4AFF871955BDEB2DB, D919425768589D6BC5806CD559599D7775BF03BABC19D406E2E8F5C35BFA6F44 ] wltrysvc C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE 23:06:33.0078 0x09f8 wltrysvc - detected UnsignedFile.Multi.Generic ( 1 ) 23:06:33.0297 0x09f8 Detect skipped due to KSN trusted 23:06:33.0297 0x09f8 wltrysvc - ok 23:06:33.0328 0x09f8 [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys 23:06:33.0359 0x09f8 WmiAcpi - ok 23:06:33.0406 0x09f8 [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe 23:06:33.0438 0x09f8 wmiApSrv - ok 23:06:33.0469 0x09f8 WMPNetworkSvc - ok 23:06:33.0484 0x09f8 [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys 23:06:33.0500 0x09f8 Wof - ok 23:06:33.0609 0x09f8 [ EDFA5CEDBE174FAAA4A09A6B297AEA42, 5998FE15462E4AD9C7B1444E5E2C17BD470DA3A5D474A0A118E02E47DADC678A ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 23:06:33.0672 0x09f8 workfolderssvc - ok 23:06:33.0703 0x09f8 [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys 23:06:33.0719 0x09f8 wpcfltr - ok 23:06:33.0766 0x09f8 [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll 23:06:33.0781 0x09f8 WPCSvc - ok 23:06:33.0797 0x09f8 [ DBDCE2378F65F0A07D4644AC103037E7, 99714F0CD31297C9831BAF04768F467F6E0BF710C859CEDCA83069226BF1A68A ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 23:06:33.0828 0x09f8 WPDBusEnum - ok 23:06:33.0844 0x09f8 [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 23:06:33.0859 0x09f8 WpdUpFltr - ok 23:06:33.0891 0x09f8 [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys 23:06:33.0906 0x09f8 ws2ifsl - ok 23:06:33.0938 0x09f8 [ 501D5EFAB9711039479AE48401386D2B, C8C1184DE93E9D2C4E8A60E4E9980745C4E5470E5DA9B59165D18705330ADEFE ] wscsvc C:\WINDOWS\System32\wscsvc.dll 23:06:33.0969 0x09f8 wscsvc - ok 23:06:33.0969 0x09f8 WSearch - ok 23:06:34.0141 0x09f8 [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService C:\WINDOWS\System32\WSService.dll 23:06:34.0281 0x09f8 WSService - ok 23:06:34.0453 0x09f8 [ F3F60C88A6BBC8D0C68FE5B1C91181AF, AF9A4D282CD4BB1127BC3F48AB89DC294408D96F7906553C636F37D1503CFA48 ] wuauserv C:\WINDOWS\system32\wuaueng.dll 23:06:34.0563 0x09f8 wuauserv - ok 23:06:34.0609 0x09f8 [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 23:06:34.0625 0x09f8 WudfPf - ok 23:06:34.0641 0x09f8 [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 23:06:34.0656 0x09f8 WUDFRd - ok 23:06:34.0703 0x09f8 [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll 23:06:34.0719 0x09f8 wudfsvc - ok 23:06:34.0734 0x09f8 [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 23:06:34.0750 0x09f8 WUDFWpdFs - ok 23:06:34.0766 0x09f8 [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp C:\WINDOWS\system32\DRIVERS\WUDFRd.sys 23:06:34.0781 0x09f8 WUDFWpdMtp - ok 23:06:34.0813 0x09f8 [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 23:06:34.0844 0x09f8 WwanSvc - ok 23:06:34.0875 0x09f8 ================ Scan global =============================== 23:06:34.0906 0x09f8 [ 3500AF0BA2EF095BF313EEB75D2366C6, C755E57B02BFA82151A182DF964349859575570EA5C3FBA81F747B8D2134A4D0 ] C:\WINDOWS\system32\basesrv.dll 23:06:34.0953 0x09f8 [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\WINDOWS\system32\winsrv.dll 23:06:34.0969 0x09f8 [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\WINDOWS\system32\sxssrv.dll 23:06:35.0016 0x09f8 [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\WINDOWS\system32\services.exe 23:06:35.0031 0x09f8 [ Global ] - ok 23:06:35.0031 0x09f8 ================ Scan MBR ================================== 23:06:35.0047 0x09f8 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 23:06:35.0109 0x09f8 \Device\Harddisk0\DR0 - ok 23:06:35.0109 0x09f8 ================ Scan VBR ================================== 23:06:35.0109 0x09f8 [ 21E376582A2D78269C44217D1FAAC327 ] \Device\Harddisk0\DR0\Partition1 23:06:35.0109 0x09f8 \Device\Harddisk0\DR0\Partition1 - ok 23:06:35.0156 0x09f8 [ AF83F43B6C53220B47F833513CBC84FC ] \Device\Harddisk0\DR0\Partition2 23:06:35.0156 0x09f8 \Device\Harddisk0\DR0\Partition2 - ok 23:06:35.0156 0x09f8 [ 558F053EF64FBD3C34FC6D2354FFF86E ] \Device\Harddisk0\DR0\Partition3 23:06:35.0172 0x09f8 \Device\Harddisk0\DR0\Partition3 - ok 23:06:35.0172 0x09f8 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition4 23:06:35.0172 0x09f8 \Device\Harddisk0\DR0\Partition4 - ok 23:06:35.0188 0x09f8 [ F8BBEE6C8287085DE130583D3F8B486F ] \Device\Harddisk0\DR0\Partition5 23:06:35.0203 0x09f8 \Device\Harddisk0\DR0\Partition5 - ok 23:06:35.0235 0x09f8 [ 661CD2C2B4728E40279D0D67E14CA8A6 ] \Device\Harddisk0\DR0\Partition6 23:06:35.0235 0x09f8 \Device\Harddisk0\DR0\Partition6 - ok 23:06:35.0250 0x09f8 [ 0093CEAE6A8CEFE0412409C4B206C469 ] \Device\Harddisk0\DR0\Partition7 23:06:35.0250 0x09f8 \Device\Harddisk0\DR0\Partition7 - ok 23:06:35.0266 0x09f8 [ A077804E914563770ED486EA2DC63DAC ] \Device\Harddisk0\DR0\Partition8 23:06:35.0266 0x09f8 \Device\Harddisk0\DR0\Partition8 - ok 23:06:35.0266 0x09f8 ================ Scan generic autorun ====================== 23:06:35.0391 0x09f8 [ AAA55BD633DBDB39746CC2394A04187F, 2F22135FCE51B31047A231DB9B22F9FB1F29CED67E32660B56F7FA68BBCD5235 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe 23:06:35.0438 0x09f8 RtHDVBg - ok 23:06:35.0828 0x09f8 [ 693B9E5DF7A394D70D2AA96958854C67, F1FB4CE517DC7FB8788D991F354B7429EF756B15953C38B859FDACAFD356DC21 ] C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe 23:06:36.0313 0x09f8 Broadcom Wireless Manager UI - detected UnsignedFile.Multi.Generic ( 1 ) 23:06:36.0516 0x09f8 Detect skipped due to KSN trusted 23:06:36.0516 0x09f8 Broadcom Wireless Manager UI - ok 23:06:36.0563 0x09f8 [ 5018884304BC23A3870F6BF92B840FD0, 66C105881A3F1A83654E53A71E047AF82C587458C437EB6851EB57A352B3FBE2 ] C:\Program Files\WIDCOMM\Bluetooth Software\bttray.exe 23:06:36.0641 0x09f8 Bluetooth - ok 23:06:36.0688 0x09f8 [ 8EC9EF60E24E88DC5DC74D305925E2CF, 37719AAD02B4EA851F899AB4A3464EA381B96BA2E386A52BF9FDAA8C9257FDBE ] C:\Windows\system32\igfxtray.exe 23:06:36.0719 0x09f8 IgfxTray - ok 23:06:36.0719 0x09f8 HotKeysCmds - ok 23:06:36.0719 0x09f8 Persistence - ok 23:06:36.0719 0x09f8 SynTPEnh - ok 23:06:36.0719 0x09f8 mcui_exe - ok 23:06:36.0828 0x09f8 [ 6A8E8AFD57BE1CC887B5812C5FE560DE, A3D9FC62C9CC3D5DD794B7D1184D665F858E176463B8663FA92AB151B6E86360 ] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe 23:06:36.0906 0x09f8 PMBVolumeWatcher - ok 23:06:36.0969 0x09f8 [ 49CD8D25D932C5BF867EBFF00D432B75, D107F7736AC8D43CE93ABDE1A8038D8FE87779F25F41B3FD1E942DF439581236 ] C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe 23:06:36.0985 0x09f8 Intel AppUp(R) center - ok 23:06:37.0156 0x09f8 [ 55ED435133E38C699D367FB10CD03147, B810A1C4195779BC37E2F3DEBD0C493220BB025E3EE32A8AF977044CA056E332 ] C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe 23:06:37.0188 0x09f8 mcpltui_exe - ok 23:06:37.0235 0x09f8 [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe 23:06:37.0250 0x09f8 HP Software Update - ok 23:06:37.0391 0x09f8 [ 8D636AAD14D28CA493863DEFC739BC6E, DE871DCF0A463487DAC2964BE2CD2E9A73A2EFF28D8C5C7BC01440B2881CE68B ] C:\Program Files\Sandboxie\SbieCtrl.exe 23:06:37.0422 0x09f8 SandboxieControl - ok 23:06:37.0500 0x09f8 [ 369993D4B8C009393A2F9BCBB7BD2587, DD9FBF8C32BB3A29F7062BABA23B84FB9F7395A4AB3FB7001071154CDE92F7D5 ] C:\Program Files (x86)\Windows Mail\wab.exe 23:06:37.0563 0x09f8 WAB Migrate - ok 23:06:37.0672 0x09f8 [ 8D636AAD14D28CA493863DEFC739BC6E, DE871DCF0A463487DAC2964BE2CD2E9A73A2EFF28D8C5C7BC01440B2881CE68B ] C:\Program Files\Sandboxie\SbieCtrl.exe 23:06:37.0703 0x09f8 SandboxieControl - ok 23:06:37.0719 0x09f8 Waiting for KSN requests completion. In queue: 183 23:06:38.0766 0x09f8 AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\Antivirus\wsctool.exe ( 15.0.23.58 ), 0x41000 ( enabled : updated ) 23:06:38.0766 0x09f8 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.207.0 ), 0x60100 ( disabled : updated ) 23:06:38.0782 0x09f8 Win FW state via NFP2: enabled ( trusted ) 23:06:38.0938 0x09f8 ============================================================ 23:06:38.0938 0x09f8 Scan finished 23:06:38.0938 0x09f8 ============================================================ 23:06:38.0953 0x1b30 Detected object count: 0 23:06:38.0953 0x1b30 Actual detected object count: 0 |
04.12.2016, 14:31 | #6 |
/// TB-Ausbilder | verschiedene Probleme mit Windows , ist es Malware ? Servus, Malware kann ich keine auf deinem PC erkennen, also bist du hier im falschen Unterforum. Wenn du so enorme Probleme hast, dann speichere halt alle privaten Daten und führe eine Neuinstallation durch. |
04.12.2016, 23:06 | #7 |
| verschiedene Probleme mit Windows , ist es Malware ? Servus Matthias, danke fürs Kontrollieren ! Das ist sehr gut, dass es nicht von Malware kommt. Mit der Möglichkeit Einstellungen zu verändern kann man nichts mehr erreichen? Meinst du eine Neuinstallation ist unbedingt nötig ? Ich kenne mich leider damit wenig aus. Ich habe eine vorinstallierte Windows 8 Version auf dem Laptop und keine CD/DVD von Windows dazubekommen. Gibts da eine Option mit Neustart und Startmenü ? Ich hab auch mal was gehört von Windows-Reperatur ? Ist sowas möglich bzw zu empfehlen ? Danke für deine Hilfe ! Lions |
05.12.2016, 17:01 | #8 |
/// TB-Ausbilder | verschiedene Probleme mit Windows , ist es Malware ? Servus, folgende Reparatur fällt mir noch ein:
|
07.12.2016, 13:59 | #9 |
| verschiedene Probleme mit Windows , ist es Malware ? Servus Matthias, ich hab mir das Windowas Repair all ion one installiert. Das programm hat dann gesagt, dass esnötig wäre, chkdsk auszuführen. Habe ich also beim nächsten booten eingestellt. Dann ist chkdsk erst einmal komplett abgestürzt und hat von vorne angefangen. Beim zweiten Mal hat es dann funktioniert. Als der Windows-Desktop da war hatte ich allerdings dann wieder Probleme. Es erschien im sekündlcihen Wechsel die Meldung, dass eine Anwendung "programm has stopped working" und dann ein leerer farbiger Bildschirm. immer so weiter ohne dass ich was ändern oder anklicken konnte. Hab dann wieder ausgeschaltet und gewartet. Und dann gings wieder und ich konnte ganz normal windows starten. Nur war dann der WLAN-Adapter disabled und ich musste ihn wider einschalten und dazu noch die Sprache der Tastatur verändert. Das ist alles nicht toll. Was meinst du ? Kennst du sowas ? Ich werde weiter berichten was passiert. Viele Grüße, Lions |
07.12.2016, 16:41 | #10 |
/// TB-Ausbilder | verschiedene Probleme mit Windows , ist es Malware ? |
10.12.2016, 16:23 | #11 |
/// TB-Ausbilder | verschiedene Probleme mit Windows , ist es Malware ? Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke mir bitte eine PM. Jeder andere bitte hier klicken und einen eigenen Thread erstellen. |
21.12.2016, 18:31 | #12 |
| verschiedene Probleme mit Windows , ist es Malware ? Servus Matthias, ich wollte mich nocheinmal für deine Hilfe bedanken. Am Ende werde ich um eine Neuinstallation nicht herum kommen.... Danke dir vielmals für Durchschauen ! Schöne Feiertage ! Lions |
Themen zu verschiedene Probleme mit Windows , ist es Malware ? |
agent, auslastung, beschädigt, computer, daten, deutsch, englisch, error, festplatte, files, größe, leute, länger, malware, neuste, offline, online, platte, probleme, richtig, system error, task-manager, verschiedene, windows, worte |