|
Plagegeister aller Art und deren Bekämpfung: Windows 10 extrem langsam gewordenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
03.12.2016, 23:33 | #1 |
| Windows 10 extrem langsam geworden Hallo, Ich habe seit einigen Wochen das Problem, dass mein Pc bis zu 5 Minuten brauch um hochzufahren und auch während des Betriebs sehr langsam ist. Habe einen anderen Beitrag im Forum gelesen und schonmal das Farbar Programm durchlaufen lassen. AVG habe ich währenddessen komplett abgeschaltet. Hoffe ist alles okay so. Und vielen vielen Dank schon im Vorraus für die Hilfe! FRST.txt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 02-12-2016 durchgeführt von Marc (Administrator) auf MARC-PC (03-12-2016 23:29:21) Gestartet von C:\farber Geladene Profile: Marc & UpdatusUser & (Verfügbare Profile: Marc & UpdatusUser & Gast) Platform: Windows 7 Professional Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Program Files (x86)\CPUCooL\CooLSRV.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Windows\SysWOW64\HsMgr.exe () C:\Windows\system\HsMgr64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (CMedia) C:\Program Files\ASUS Xonar DGX Audio\Customapp\AsusAudioCenter.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (BitTorrent Inc.) C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe () C:\Program Files (x86)\AVG Web TuneUp\vprot.exe (BitTorrent Inc.) C:\Users\Marc\AppData\Roaming\BitTorrent\updates\7.9.9_42974\bittorrentie.exe (BitTorrent Inc.) C:\Users\Marc\AppData\Roaming\BitTorrent\updates\7.9.9_42974\bittorrentie.exe (BitTorrent Inc.) C:\Users\Marc\AppData\Roaming\BitTorrent\updates\7.9.9_42974\bittorrentie.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe (Skype Technologies) C:\Program Files (x86)\Skype\Browser\SkypeBrowserHost.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcfgex.exe (Microsoft Corporation) C:\Windows\System32\prevhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2008-07-11] () HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2008-07-11] () HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-09-09] (Apple Inc.) HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [3561016 2016-09-07] (Simply Super Software) HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-01] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-01] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2180680 2016-11-29] () HKLM\...\Winlogon: [Userinit] C:\Windows\SysWOW64\userinit.exe, Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [5915776 2016-03-21] (Safer-Networking Ltd.) HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27230168 2016-11-15] (Skype Technologies S.A.) HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Run: [BitTorrent] => C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe [2149064 2016-11-27] (BitTorrent Inc.) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] () ShellIconOverlayIdentifiers: [SmartFTP Drop] -> {EA5A76F7-8138-4B53-B0F5-ADCC730CAFBD} => C:\Program Files\SmartFTP Client\ShellTools.dll [2016-06-25] (SmartSoft Ltd.) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CPUCooL.lnk [2016-06-17] ShortcutTarget: CPUCooL.lnk -> C:\Program Files (x86)\CPUCooL\CPUCooL.exe () GroupPolicyScripts-x32: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{55587CD6-6EDA-445D-873E-F9B50525C205}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{9C1649B3-B8E5-4C32-9114-05785EC7839B}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{9C1649B3-B8E5-4C32-9114-05785EC7839B}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{B9C40B12-05A5-41FA-BB50-E48D393EAE96}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{DCFF219A-012E-440C-8DA2-BBA380A3AE11}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid=%7B16661E11-BD6B-4822-8FE3-CF705E5F293D%7D&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a3b476d415f1ba9&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516pi&pr=fr&d=2014-11-12%2020:19:28&v=4.3.2.18&pid=wtu&sg=&sap=hp SearchScopes: HKLM -> {63828163-EDB7-420E-BF77-2381B819A02F} URL = hxxp://www.suchmaschine24.com/?q={searchTerms} SearchScopes: HKU\.DEFAULT -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={16661E11-BD6B-4822-8FE3-CF705E5F293D}&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a3b476d415f1ba9&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516pi&pr=fr&d=2014-11-12 20:19:28&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> {6166975F-AA0B-4503-8A3A-EB6EAC500446} URL = hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> {63828163-EDB7-420E-BF77-2381B819A02F} URL = hxxp://www.suchmaschine24.com/?q={searchTerms} SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={16661E11-BD6B-4822-8FE3-CF705E5F293D}&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a3b476d415f1ba9&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516pi&pr=fr&d=2014-11-12 20:19:28&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-04-16] (RealDownloader) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-14] (Oracle Corporation) BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.3.6.255\AVG Web TuneUp.dll [2016-11-29] (AVG) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-14] (Oracle Corporation) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default [2016-11-30] FF DefaultSearchEngine: Mozilla\Firefox\Profiles\lcd83zj0.default -> AVG Secure Search FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> MM3ProxySwitch.type", 0 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ftp", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ftp_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> gopher", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> gopher_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> http", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> http_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> socks", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> socks_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ssl", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ssl_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> type", 0 FF Extension: (AVG Web TuneUp) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\avg@toolbar.xpi [2016-11-29] FF Extension: (Firefox Hotfix) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-03] FF Extension: (ProxTube) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\ich@maltegoetz.de.xpi [2016-10-13] FF Extension: (eBesucher Surfbar) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\jid1-GxlI1BHOBUCNhw@jetpack.xpi [2015-08-18] FF Extension: (Erase Facebook ads and suggestions) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\jid1-UfSghNz6VhKecw@jetpack.xpi [2016-04-30] FF Extension: (Make Facebook Cleaner) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\MakeFacebookBetter@matthewmammola.com.xpi [2015-12-18] FF Extension: (Muter) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\muter@yxl.name [2016-04-30] FF Extension: (NoScript) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-11-27] FF Extension: (iMacros for Firefox) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}.xpi [2016-09-11] FF Extension: (Adblock Plus) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-25] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\avg-secure-search.xml [2016-12-03] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\firefox-add-ons.xml [2014-02-18] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\google-images.xml [2014-10-01] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\google-maps.xml [2014-10-01] FF HKLM-x32\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-06-04] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM-x32\...\Firefox\Extensions: [{73B03417-517F-4ABC-A430-33518B96A552}] - C:\Program Files (x86)\Aimersoft\YouTube Downloader\SVRFirefoxExt => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-02-05] [ist nicht signiert] FF HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Firefox\Extensions: [{73B03417-517F-4ABC-A430-33518B96A552}] - C:\Program Files (x86)\Aimersoft\YouTube Downloader\SVRFirefoxExt => nicht gefunden FF HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\extensions\cliqz@cliqz.com => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-17] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-05-08] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-17] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-05-07] (Adobe Systems, Inc.) FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [Keine Datei] FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2012-04-14] (Google) FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-08-14] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-08-14] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameeu.dll [2013-01-30] (Nexon) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-07-10] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-07-10] (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [Keine Datei] FF Plugin-x32: @real.com/nppl3260;version=16.0.2.32 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2013-06-04] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [2013-04-16] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2013-04-16] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [2013-04-16] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=16.0.2.32 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2013-06-04] (RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2013-04-16] (RealDownloader) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2012-09-23] (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-08-03] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-05-08] (Adobe Systems) FF Plugin HKU\S-1-5-21-2131955426-2682777134-591621578-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Marc\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [Keine Datei] Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.suchmaschine24.com/?id=11912" CHR DefaultSearchURL: Default -> hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=orcl_default CHR DefaultSearchKeyword: Default -> Yahoo CHR DefaultSuggestURL: Default -> hxxps://de.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\PepperFlash\pepflashplayer.dll => Keine Datei CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\ppGoogleNaClPluginChrome.dll => Keine Datei CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\pdf.dll => Keine Datei CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (AdobeAAMDetect) - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll => Keine Datei CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll => Keine Datei CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll => Keine Datei CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll => Keine Datei CHR Plugin: (Java Deployment Toolkit 7.0.50.255) - C:\Windows\SysWOW64\npDeployJava1.dll => Keine Datei CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll => Keine Datei CHR Profile: C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default [2016-12-03] CHR Extension: (ProxFlow) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2016-10-11] CHR Extension: (Adblock Plus) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-10-27] CHR Extension: (Fair AdBlocker App (by STANDS)) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcnofaichneijfbkdkghmhjjbepjmble [2016-10-11] CHR Extension: (QCLean:Remove Facebook Ad,Suggested Page&Post) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdhhejjkjfjkchkimomgfegnpapndjne [2016-09-23] CHR Extension: (FB-Purity.net - Clean Up FB (Latest Beta)) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\higjjoffecpgcnfgegcbccfgbkjnfapb [2016-08-26] CHR Extension: (Proxy for Chrome) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\iilpibhiihokecnbdkaminemnmecjfed [2016-11-11] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-12] CHR Extension: (Disqus Downvote Exposer) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\onccocebmmmcfgipaappfpolojndnkce [2015-04-18] CHR Extension: (Chrome Media Router) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-27] CHR HKU\S-1-5-21-2131955426-2682777134-591621578-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2012-09-23] CHR HKLM-x32\...\Chrome\Extension: [fknfdieimobmimhdkfkheeejenmdjhoe] - C:\Program Files (x86)\pandasecuritytb\chrome-newtab-search.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25] CHR HKLM-x32\...\Chrome\Extension: [mffeojddidkjekjfdhipjldikhhohipn] - C:\Program Files (x86)\Aimersoft\YouTube Downloader\SVRChromePlugin.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S4 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1145928 2016-02-24] (Autodesk Inc.) S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [603312 2015-04-20] (Adobe Systems Incorporated) S4 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [137096 2013-02-06] () R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-08-05] (Apple Inc.) S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [647864 2016-11-02] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5337696 2016-11-02] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-01] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [727512 2016-11-02] (AVG Technologies CZ, s.r.o.) S4 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [Datei ist nicht signiert] S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1362464 2016-03-16] () S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437784 2016-04-08] (BlueStack Systems, Inc.) S3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417304 2016-04-08] (BlueStack Systems, Inc.) S4 BstHdPlusAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe [433688 2016-04-08] (BlueStack Systems, Inc.) S3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [921112 2016-04-08] (BlueStack Systems, Inc.) S4 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation) S4 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation) S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2010-02-03] (Microsoft Corporation) R2 CPUCooLServer; C:\Program Files (x86)\CPUCooL\CooLSrv.exe [743936 2011-12-01] () [Datei ist nicht signiert] S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2013-08-22] (Microsoft Corporation) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712 2016-06-14] (NVIDIA Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.376\McCHSvc.exe [327944 2016-07-19] (McAfee, Inc.) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation) S4 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe [140768 2013-10-03] (Panda Security, S.L.) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4979992 2013-11-25] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) S3 PaceLicenseDServices; C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe [2928128 2013-06-07] (PACE Anti-Piracy, Inc.) [Datei ist nicht signiert] S4 PSUAService; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe [37344 2013-10-19] (Panda Security, S.L.) S4 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] () S4 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) S4 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [Datei ist nicht signiert] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH) S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-04] (Microsoft Corporation) R2 vToolbarUpdater40.3.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe [1349704 2016-11-29] (AVG Secure Search) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [980552 2016-11-29] () ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AODDriver4.2.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [57952 2013-02-06] (Advanced Micro Devices) S3 ATITool; C:\Windows\System32\DRIVERS\ATITool64.sys [30720 2006-11-10] () [Datei ist nicht signiert] R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [312576 2016-10-17] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [267520 2016-10-19] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [254208 2016-09-26] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [299264 2016-07-27] (AVG Technologies CZ, s.r.o.) R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.) S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [154680 2016-04-08] (BlueStack Systems) R2 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [270904 2016-04-06] (Bluestack System Inc. ) R1 cbfs5; C:\Windows\system32\drivers\cbfs5.sys [421568 2015-08-15] (EldoS Corporation) R3 cmudaxp; C:\Windows\System32\drivers\cmudaxp.sys [2727936 2011-12-20] (C-Media Inc) S3 fwlanusb4; C:\Windows\System32\DRIVERS\fwlanusb4.sys [1293824 2010-10-22] (AVM GmbH) S3 GameKB; C:\Windows\System32\drivers\GameKB.sys [27648 2012-05-11] () [Datei ist nicht signiert] R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation) R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [91368 2013-05-29] (Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [122088 2013-05-29] (Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [109288 2013-05-29] (Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [114920 2013-05-29] (Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [95464 2013-05-29] (Panda Security, S.L.) S4 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [69864 2013-05-29] (Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [119016 2013-05-29] (Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [305896 2013-05-29] (Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [118504 2013-05-29] (Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [114920 2013-05-29] (Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [246504 2013-05-29] (Panda Security, S.L.) R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [106216 2013-05-29] (Panda Security, S.L.) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) R1 ntiopnp; C:\Windows\System32\Drivers\ntiopnp.sys [19544 2010-11-11] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [169192 2013-10-17] (Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [122600 2013-10-11] (Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [206056 2013-10-11] (Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124648 2013-10-11] (Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [137960 2013-10-11] (Panda Security, S.L.) S3 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [105704 2013-10-11] (Panda Security, S.L.) S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [58808 2013-04-29] (Panda Security, S.L.) S4 sfdrv01; C:\Windows\System32\drivers\sfdrv01.sys [68608 2005-08-10] (Protection Technology) [Datei ist nicht signiert] S4 sfhlp02; C:\Windows\System32\drivers\sfhlp02.sys [7168 2005-05-16] (Protection Technology) [Datei ist nicht signiert] S4 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [89600 2005-11-03] (Protection Technology) [Datei ist nicht signiert] S3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [6144 2012-12-19] () S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) S3 cpuz139; \??\C:\Users\Marc\AppData\Local\Temp\cpuz139_x64.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-03 23:17 - 2016-12-03 23:29 - 00000000 ____D C:\FRST 2016-12-03 23:17 - 2016-12-03 23:29 - 00000000 ____D C:\farber 2016-11-29 20:00 - 2016-12-03 22:42 - 00000000 ____D C:\Users\Marc\AppData\LocalLow\BitTorrent 2016-11-27 18:21 - 2016-11-27 18:21 - 00000000 ____D C:\Users\Marc\AppData\Local\ElevatedDiagnostics 2016-11-24 19:43 - 2016-11-28 23:09 - 00000000 ____D C:\Users\Marc\AppData\LocalLow\Mozilla 2016-11-24 01:39 - 2016-11-24 01:59 - 00000000 ____D C:\Windows\Panther 2016-11-24 01:39 - 2016-11-24 01:39 - 00000000 ___HD C:\$Windows.~WS 2016-11-24 01:39 - 2016-11-24 01:39 - 00000000 ____D C:\$WINDOWS.~BT 2016-11-13 17:37 - 2016-11-13 18:06 - 00000000 ____D C:\Users\Marc\Desktop\die videos 2016-11-13 17:36 - 2016-11-13 19:25 - 00000000 ____D C:\Users\Marc\Desktop\Neuer Ordner 2016-11-13 16:02 - 2016-09-27 10:32 - 13030725 _____ C:\Users\Marc\Desktop\IMG_8888.mp4 2016-11-12 18:43 - 2016-11-13 16:48 - 00000000 ____D C:\Users\Marc\Desktop\fotos vom papa sortiert 2016-11-12 18:32 - 2016-11-24 01:50 - 00000000 ____D C:\Users\Marc\Desktop\papas 2016-11-11 16:33 - 2016-11-13 17:33 - 00000000 ____D C:\Users\Marc\Desktop\fotos vom papa 2016-11-11 15:40 - 2016-11-11 15:40 - 00001753 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-11-11 15:40 - 2016-11-11 15:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-11-11 15:40 - 2016-11-11 15:40 - 00000000 ____D C:\Program Files\iTunes 2016-11-11 15:40 - 2016-11-11 15:40 - 00000000 ____D C:\Program Files\iPod 2016-11-09 00:23 - 2016-11-02 16:36 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-11-09 00:23 - 2016-11-02 16:22 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-11-09 00:23 - 2016-11-02 16:16 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-11-09 00:23 - 2016-11-02 16:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-11-09 00:23 - 2016-11-02 16:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-11-09 00:23 - 2016-11-02 15:53 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-11-09 00:23 - 2016-10-28 04:59 - 00394440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-11-09 00:23 - 2016-10-28 04:14 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-11-09 00:23 - 2016-10-27 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-11-09 00:23 - 2016-10-27 20:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-11-09 00:23 - 2016-10-27 19:55 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-11-09 00:23 - 2016-10-27 19:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-11-09 00:23 - 2016-10-27 19:54 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-11-09 00:23 - 2016-10-27 19:53 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-11-09 00:23 - 2016-10-27 19:53 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-11-09 00:23 - 2016-10-27 19:51 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-11-09 00:23 - 2016-10-27 19:44 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-11-09 00:23 - 2016-10-27 19:43 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-11-09 00:23 - 2016-10-27 19:38 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-11-09 00:23 - 2016-10-27 19:37 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-11-09 00:23 - 2016-10-27 19:37 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-11-09 00:23 - 2016-10-27 19:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-11-09 00:23 - 2016-10-27 19:37 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-11-09 00:23 - 2016-10-27 19:28 - 25763328 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-11-09 00:23 - 2016-10-27 19:28 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-11-09 00:23 - 2016-10-27 19:24 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-11-09 00:23 - 2016-10-27 19:19 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-11-09 00:23 - 2016-10-27 19:15 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-11-09 00:23 - 2016-10-27 19:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-11-09 00:23 - 2016-10-27 19:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-11-09 00:23 - 2016-10-27 19:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-11-09 00:23 - 2016-10-27 19:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-11-09 00:23 - 2016-10-27 19:02 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-11-09 00:23 - 2016-10-27 18:49 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-11-09 00:23 - 2016-10-27 18:46 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-11-09 00:23 - 2016-10-27 18:46 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-11-09 00:23 - 2016-10-27 18:44 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-11-09 00:23 - 2016-10-27 18:44 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-11-09 00:23 - 2016-10-27 18:17 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-11-09 00:23 - 2016-10-27 18:16 - 02920448 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-11-09 00:23 - 2016-10-27 18:03 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-11-09 00:23 - 2016-10-27 17:54 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-11-09 00:23 - 2016-10-27 16:05 - 20304896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-11-09 00:23 - 2016-10-25 16:02 - 03219456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-11-09 00:23 - 2016-10-22 18:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-11-09 00:23 - 2016-10-22 18:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-11-09 00:23 - 2016-10-22 18:36 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-11-09 00:23 - 2016-10-22 18:35 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-11-09 00:23 - 2016-10-22 18:35 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-11-09 00:23 - 2016-10-22 18:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-11-09 00:23 - 2016-10-22 18:27 - 02287616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-11-09 00:23 - 2016-10-22 18:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-11-09 00:23 - 2016-10-22 18:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-11-09 00:23 - 2016-10-22 18:22 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-11-09 00:23 - 2016-10-22 18:21 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-11-09 00:23 - 2016-10-22 18:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-11-09 00:23 - 2016-10-22 18:20 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-11-09 00:23 - 2016-10-22 18:09 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-11-09 00:23 - 2016-10-22 18:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-11-09 00:23 - 2016-10-22 18:03 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-11-09 00:23 - 2016-10-22 17:59 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-11-09 00:23 - 2016-10-22 17:58 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-11-09 00:23 - 2016-10-22 17:56 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-11-09 00:23 - 2016-10-22 17:54 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-11-09 00:23 - 2016-10-22 17:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-11-09 00:23 - 2016-10-22 17:45 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-11-09 00:23 - 2016-10-22 17:44 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-11-09 00:23 - 2016-10-22 17:43 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-11-09 00:23 - 2016-10-22 17:43 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-11-09 00:23 - 2016-10-22 17:30 - 13654016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-11-09 00:23 - 2016-10-22 17:12 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-11-09 00:23 - 2016-10-22 17:09 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-11-09 00:23 - 2016-10-22 17:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-11-09 00:23 - 2016-10-15 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-11-09 00:23 - 2016-10-15 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2016-11-09 00:23 - 2016-10-15 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-11-09 00:23 - 2016-10-15 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2016-11-09 00:23 - 2016-10-11 16:37 - 00370920 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2016-11-09 00:23 - 2016-10-11 16:31 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2016-11-09 00:23 - 2016-10-11 16:31 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2016-11-09 00:23 - 2016-10-11 16:31 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2016-11-09 00:23 - 2016-10-11 16:31 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2016-11-09 00:23 - 2016-10-11 16:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME 2016-11-09 00:23 - 2016-10-11 16:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2016-11-09 00:23 - 2016-10-11 16:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2016-11-09 00:23 - 2016-10-11 16:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2016-11-09 00:23 - 2016-10-11 16:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime 2016-11-09 00:23 - 2016-10-11 14:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2016-11-09 00:23 - 2016-10-11 14:06 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2016-11-09 00:23 - 2016-10-10 16:38 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-11-09 00:23 - 2016-10-10 16:38 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-11-09 00:23 - 2016-10-10 16:34 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-11-09 00:23 - 2016-10-10 16:34 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-11-09 00:23 - 2016-10-10 16:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-11-09 00:23 - 2016-10-10 16:34 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 01462272 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-11-09 00:23 - 2016-10-10 16:02 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-11-09 00:23 - 2016-10-10 15:56 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-11-09 00:23 - 2016-10-10 15:55 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-11-09 00:23 - 2016-10-10 15:55 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-11-09 00:23 - 2016-10-10 15:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-11-09 00:23 - 2016-10-10 15:54 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-11-09 00:23 - 2016-10-10 15:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-11-09 00:23 - 2016-10-07 16:40 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-11-09 00:23 - 2016-10-07 16:37 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-11-09 00:23 - 2016-10-07 16:37 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-11-09 00:23 - 2016-10-07 16:35 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00877056 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:18 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-11-09 00:23 - 2016-10-07 16:18 - 03944680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-11-09 00:23 - 2016-10-07 16:15 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:04 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2016-11-09 00:23 - 2016-10-07 16:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2016-11-09 00:23 - 2016-10-07 16:04 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2016-11-09 00:23 - 2016-10-07 16:01 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-11-09 00:23 - 2016-10-07 16:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-11-09 00:23 - 2016-10-07 15:56 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-11-09 00:23 - 2016-10-07 15:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-11-09 00:23 - 2016-10-07 15:50 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-11-09 00:23 - 2016-10-07 15:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-11-09 00:23 - 2016-10-07 15:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-11-09 00:23 - 2016-10-07 15:49 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 15:49 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 15:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 15:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-11-09 00:23 - 2016-10-05 15:54 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2016-11-09 00:23 - 2016-09-15 15:56 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2016-11-09 00:23 - 2016-09-13 16:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2016-11-09 00:23 - 2016-09-13 16:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2016-11-09 00:23 - 2016-09-09 19:20 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2016-11-09 00:23 - 2016-09-09 19:00 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2016-11-09 00:23 - 2016-08-22 17:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-03 23:29 - 2012-06-29 14:09 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Skype 2016-12-03 23:28 - 2012-07-20 22:07 - 00000000 ____D C:\Users\Marc\AppData\Roaming\BitTorrent 2016-12-03 23:17 - 2016-10-15 17:27 - 00000000 ____D C:\Users\Marc\Downloads\Dokumente zum lernen 2016-12-03 23:08 - 2012-06-29 13:57 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-12-03 23:02 - 2016-08-14 11:34 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-12-03 22:52 - 2009-07-14 05:45 - 00027408 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-12-03 22:52 - 2009-07-14 05:45 - 00027408 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-12-03 22:46 - 2009-07-14 18:58 - 00699416 _____ C:\Windows\system32\perfh007.dat 2016-12-03 22:46 - 2009-07-14 18:58 - 00149556 _____ C:\Windows\system32\perfc007.dat 2016-12-03 22:46 - 2009-07-14 06:13 - 01620612 _____ C:\Windows\system32\PerfStringBackup.INI 2016-12-03 22:46 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-12-03 22:45 - 2016-07-14 00:32 - 00000000 ____D C:\ProgramData\MFAData 2016-12-03 22:41 - 2016-06-19 14:54 - 00003188 ____H C:\Windows\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C}.job 2016-12-03 22:39 - 2013-01-22 23:27 - 00000924 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000UA.job 2016-12-03 22:39 - 2013-01-22 23:27 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000Core.job 2016-12-03 22:39 - 2012-07-20 18:49 - 00000000 ____D C:\ProgramData\NVIDIA 2016-12-03 22:39 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-12-03 01:39 - 2016-08-14 11:41 - 00000946 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job 2016-12-02 22:31 - 2016-09-21 00:47 - 00003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task 2016-12-02 22:25 - 2014-08-17 15:04 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-12-02 22:25 - 2012-06-29 14:09 - 00000000 ____D C:\ProgramData\Skype 2016-11-30 03:02 - 2016-06-16 21:04 - 00002154 _____ C:\Windows\epplauncher.mif 2016-11-30 03:02 - 2016-06-16 21:04 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk 2016-11-30 03:01 - 2016-06-16 21:03 - 00000000 ____D C:\Program Files\Microsoft Security Client 2016-11-30 03:01 - 2016-06-16 21:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2016-11-29 22:24 - 2016-04-13 22:19 - 00000000 ____D C:\Users\Marc\AppData\Local\Color-Change-Detector 2016-11-29 22:19 - 2016-04-13 00:07 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2016-11-29 20:04 - 2016-08-14 23:45 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp 2016-11-29 20:03 - 2016-08-14 23:45 - 00000000 ____D C:\ProgramData\AVG Web TuneUp 2016-11-29 19:54 - 2009-07-14 06:37 - 00000000 ____D C:\Windows\DigitalLocker 2016-11-28 02:12 - 2012-06-29 13:56 - 00000000 ____D C:\Users\Marc\AppData\Local\Adobe 2016-11-28 02:10 - 2012-06-29 13:57 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-11-28 02:10 - 2012-06-29 13:57 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-28 02:10 - 2012-06-29 13:57 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-11-28 02:10 - 2012-06-29 13:57 - 00000000 ____D C:\Windows\system32\Macromed 2016-11-28 01:36 - 2016-06-16 16:45 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-11-27 20:59 - 2015-08-29 17:36 - 00000000 ____D C:\Users\Marc\AppData\Local\CrashDumps 2016-11-27 18:58 - 2013-03-20 21:13 - 00000000 ____D C:\Users\Marc\AppData\Roaming\TeamViewer 2016-11-27 18:57 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2016-11-27 18:25 - 2014-06-27 03:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-24 19:42 - 2016-06-28 17:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-24 01:59 - 2016-07-24 14:48 - 00000000 ____D C:\Users\Marc\Downloads\4k 2016-11-21 22:26 - 2016-07-24 12:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2016-11-15 00:03 - 2012-10-26 20:09 - 00002187 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-11-13 15:40 - 2013-02-12 18:27 - 00000000 ____D C:\Users\Marc\Desktop\System neu 2016-11-13 14:12 - 2016-10-12 01:46 - 00000145 _____ C:\Users\Marc\Desktop\things im learning.txt 2016-11-12 18:24 - 2012-11-16 20:58 - 00001456 _____ C:\Users\Marc\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2016-11-12 18:19 - 2016-09-25 13:45 - 00002008 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2016-11-11 17:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-11-11 16:27 - 2015-04-19 17:58 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Apple Computer 2016-11-11 15:40 - 2016-04-03 22:25 - 00000000 ____D C:\Program Files\Common Files\Apple 2016-11-11 15:40 - 2015-04-19 17:51 - 00000000 ____D C:\ProgramData\Apple Computer 2016-11-11 15:38 - 2016-04-03 22:28 - 00000000 ____D C:\Program Files\Bonjour 2016-11-11 15:09 - 2016-08-14 21:16 - 05097584 _____ C:\Windows\system32\FNTCACHE.DAT 2016-11-09 01:25 - 2013-07-19 02:01 - 00000000 ____D C:\Windows\system32\MRT 2016-11-09 01:14 - 2012-06-30 10:54 - 141011376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-11-06 16:19 - 2012-08-05 23:28 - 00000000 ____D C:\Users\Marc\AppData\Roaming\TS3Client ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2013-07-16 04:27 - 2013-07-16 04:27 - 0083968 _____ () C:\Program Files\1031.MST 2013-07-16 04:27 - 2013-07-16 04:27 - 33568256 _____ () C:\Program Files\AMD OverDrive.msi 2013-02-11 00:28 - 2012-12-30 14:47 - 0008204 ____R () C:\Program Files\EULA.txt 2013-02-11 00:28 - 2012-12-29 11:26 - 0021892 _____ () C:\Program Files\license.txt 2013-02-11 00:28 - 2012-12-29 11:26 - 0007967 _____ () C:\Program Files\Setup.cfg 2013-02-11 00:29 - 2012-12-29 11:26 - 0404920 _____ (NVIDIA Corporation) C:\Program Files\setup.exe 2014-05-10 21:35 - 2014-05-10 21:35 - 206975419 _____ () C:\Users\Marc\AppData\Roaming\.minecraft.rar 2012-08-09 01:29 - 2012-08-09 01:29 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe BMP Format CS5 Prefs 2013-09-26 14:31 - 2015-02-20 23:11 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe CS6-GIF-Format - Voreinstellungen 2012-07-13 13:13 - 2016-09-27 15:27 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen 2012-06-30 11:28 - 2013-03-10 00:33 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe PNG Format CS5 Prefs 2014-06-14 20:38 - 2014-06-14 20:38 - 0000099 _____ () C:\Users\Marc\AppData\Roaming\LauncherSettings_live.cfg 2014-06-14 20:44 - 2014-06-14 20:44 - 0000040 _____ () C:\Users\Marc\AppData\Roaming\TheHunterSettings_steam_live.cfg 2013-03-09 12:27 - 2013-03-09 12:41 - 0001456 _____ () C:\Users\Marc\AppData\Local\Adobe Für Web speichern 12.0 Prefs 2012-11-16 20:58 - 2016-11-12 18:24 - 0001456 _____ () C:\Users\Marc\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2013-05-18 22:25 - 2016-08-13 22:51 - 0007605 _____ () C:\Users\Marc\AppData\Local\Resmon.ResmonCfg 2014-04-14 13:50 - 2014-09-09 14:28 - 0022733 _____ () C:\ProgramData\NanoLog001.log 2012-09-11 11:21 - 2014-04-10 02:41 - 0006400 _____ () C:\ProgramData\NanoRepository.bin 2012-09-11 11:21 - 2013-12-16 03:40 - 0006400 _____ () C:\ProgramData\NanoRepository.bin.bak Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Marc\NvGPUPro_Setup.exe C:\Windows\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C}.job ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-24 04:24 ==================== Ende von FRST.txt ============================ |
03.12.2016, 23:34 | #2 |
| Windows 10 extrem langsam geworden Additional.txt
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 02-12-2016 durchgeführt von Marc (03-12-2016 23:29:56) Gestartet von C:\farber Windows 7 Professional Service Pack 1 (X64) (2012-06-29 12:03:07) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2131955426-2682777134-591621578-500 - Administrator - Disabled) Gast (S-1-5-21-2131955426-2682777134-591621578-501 - Limited - Disabled) => C:\Users\Gast Marc (S-1-5-21-2131955426-2682777134-591621578-1000 - Administrator - Enabled) => C:\Users\Marc UpdatusUser (S-1-5-21-2131955426-2682777134-591621578-1012 - Limited - Enabled) => C:\Users\TEMP.Marc-PC ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Microsoft Security Essentials (Enabled - Up to date) {71A27EC9-3DA6-45FC-60A7-004F623C6189} AV: AVG AntiVirus Free Edition (Disabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Microsoft Security Essentials (Enabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: AVG AntiVirus Free Edition (Disabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} FW: AVG update module (Disabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Active Directory Authentication Library für SQL Server (Version: 13.0.1601.5 - Microsoft Corporation) Hidden Active Directory Authentication Library für SQL Server (x86) (x32 Version: 13.0.1601.5 - Microsoft Corporation) Hidden Adobe Acrobat XI Pro (HKLM-x32\...\{23D3F585-AE29-4670-8E3E-64A0EFB29240}) (Version: 11.0 - Adobe Systems Incorporated) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.00 - Adobe Systems) Adobe After Effects CC 2014 (HKLM-x32\...\{2B22C750-5C3B-4738-B621-BA786AC7A494}) (Version: 13.0.0 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.3.0.3650 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.0.1.88 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2 - Adobe Systems Incorporated) Adobe Dreamweaver CC 2014 (HKLM-x32\...\{7F823F8E-4348-11E4-8BF8-81763C49AA32}) (Version: 15.0.0 - Adobe Systems Incorporated) Adobe Flash Player 22 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 22.0.0.210 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated) Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Professional CC (HKLM-x32\...\{B56B95BF-7161-4166-8288-DB1BA9F6C9B8}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Illustrator CS6 (HKLM-x32\...\{4869414E-7AEA-4C8E-BE1C-8D40977FD517}) (Version: 16.0 - Adobe Systems Incorporated) Adobe InDesign CC 2014 (HKLM-x32\...\{CCDCB9C4-72BA-1014-A3F8-D123F2F18BC2}) (Version: 10.0 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Reader X (10.1.11) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.11 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.8.158 - Adobe Systems, Inc.) Age Of Empires II HD v2.5 [LAN Edition] (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Age Of Empires II HD v2.5 [LAN Edition]) (Version: - ) Akamai NetSession Interface (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Amazon Kindle (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Amazon Kindle) (Version: - Amazon) AMD Catalyst Install Manager (HKLM\...\{DFEFBFBF-02CF-3316-B694-B3C44C9C02B9}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) AMD OverDrive (HKLM-x32\...\{973620A0-7EA9-4D9D-95B7-349B78664AC7}) (Version: 4.2.6.0638 - Advanced Micro Devices, Inc.) Angry Birds (HKLM-x32\...\{370CA4B0-A1D8-4863-A3C5-6879AEE1663A}) (Version: 3.0.0 - Rovio) ANNO 1404 - Gold Edition (HKLM-x32\...\{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}) (Version: 3.10.0000 - Ubisoft) Ansel (Version: 368.81 - NVIDIA Corporation) Hidden Antares Auto-Tune 7 VST (HKLM\...\{8E7715AA-E19B-44E8-AE4C-FB5B37B7E2D9}) (Version: 7.05.0005 - Antares Audio Technologies) Any Video Converter 5.8.3 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Apple Application Support (32-Bit) (HKLM-x32\...\{29DB9165-5FC1-48F0-9188-26123F526848}) (Version: 5.0.1 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{5905C8CF-1C88-4478-A48E-4E458AD1BC7E}) (Version: 5.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{D4D86CB2-2370-4691-8272-3869EDED6C64}) (Version: 10.0.0.18 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 Beta2 - Michael Tippach) Assistive Context-Aware Toolkit (ACAT) (HKLM-x32\...\{410FA4CC-036E-4F4F-8353-88FCDBA8D9D4}) (Version: 1.01.0000 - Intel Corporation) ASUS Xonar DG Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - ) ATITool Overclocking Utility (HKLM-x32\...\ATITool) (Version: 0.26 - ) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 5.0.142.14 - Autodesk) Autodesk DirectConnect 2016 64-bit (HKLM\...\Autodesk DirectConnect 2016 64-bit) (Version: 10.0.98.0 - Autodesk) Autodesk DirectConnect 2016 64-bit (Version: 10.0.98.0 - Autodesk) Hidden Autodesk Maya 2016 (HKLM\...\Autodesk Maya 2016) (Version: 16.0.1312.0 - Autodesk) Autodesk Maya 2016 (Version: 16.0.1312.0 - Autodesk) Hidden AutoHotkey 1.0.48.05 (HKLM-x32\...\AutoHotkey) (Version: 1.0.48.05 - Chris Mallett) AVG (Version: 16.131.7924 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4728 - AVG Technologies) Hidden AVG Protection (HKLM\...\AVG) (Version: 2016.131.7924 - AVG Technologies) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.3.6.255 - AVG Technologies) AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: - AVM Berlin) AzureTools.Notifications (x32 Version: 2.1.10731.1602 - Microsoft Corporation) Hidden Bandicam (HKLM-x32\...\Bandicam) (Version: 1.8.6.321 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com) Behaviors SDK (XAML) for Visual Studio (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden BitTorrent (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\BitTorrent) (Version: 7.9.9.42974 - BitTorrent Inc.) Blend for Visual Studio 2013 (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 ENU resources (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden BlueStacks App Player (HKLM-x32\...\{38E69C88-1B39-4A51-96D2-303337D9C210}) (Version: 2.2.18.6014 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Brackets (HKLM-x32\...\{4BCC5124-095C-4871-8562-55FA29DD8773}) (Version: 1.1 - brackets.io) Build Tools - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools Language Resources - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools Language Resources - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Call of Duty: Modern Warfare 2 - Multiplayer (HKLM\...\Steam App 10190) (Version: - Infinity Ward) Call of Duty: Modern Warfare 2 (HKLM\...\Steam App 10180) (Version: - Infinity Ward) CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) CPUCooL (remove only) (HKLM-x32\...\CPUCooL) (Version: - ) CPUID CPU-Z 1.76 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CPUID HWMonitor 1.29 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) Creative MediaSource 5 (HKLM-x32\...\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}) (Version: 5.00 - ) Crystal Reports for Visual Studio (x32 Version: 12.51.0.240 - SAP) Hidden Curse (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Curse) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Defraggler (HKLM\...\Defraggler) (Version: 2.21 - Piriform) DH Driver Cleaner Professional Edition (HKLM-x32\...\Driver Cleaner Pro) (Version: Version 1.5 - Ruud Ketelaars) Discord (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.) DoSHTTP 2.5.1 (HKLM-x32\...\DoSHTTP 2.5.1) (Version: - ) Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden Dotfuscator Software Services - Community Edition - DEU (HKLM-x32\...\{CE9BAD6E-60FC-46CC-82A2-5B0F2B1A0E36}) (Version: 5.0.2300.0 - PreEmptive Solutions) Dotfuscator Software Services - Community Edition (HKLM-x32\...\{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}) (Version: 5.0.2300.0 - PreEmptive Solutions) eBesucher Restarter 1.2 (HKLM-x32\...\{3F099090-131B-4D94-97CF-6FD738F51C01}_is1) (Version: 1.2.04.0 - eBesucher) Entity Framework Tools for Visual Studio 2013 (HKLM-x32\...\{08AEF86A-1956-4846-B906-B01350E96E30}) (Version: 12.0.20912.0 - Microsoft Corporation) Epic Games Launcher (HKLM-x32\...\{23073CBA-4A21-464F-9874-0FF6B7727C7C}) (Version: 1.1.77.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden EPUB Converter 9.5.4 (HKLM-x32\...\{2AE773B8-7FA5-4D59-B4EC-D22B1CC2D2BC}) (Version: 9.5.4 - AniceSoft) EPUB File Reader (HKLM-x32\...\{818C5857-5C74-4CAC-9F43-E5597086852D}_is1) (Version: - epubfilereader.com) Erforderliche Komponenten für SSDT (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation) Erforderliche Komponenten für SSDT (HKLM-x32\...\{FD639F4D-1460-42E6-B32D-FEC1745D0BDC}) (Version: 13.0.1601.5 - Microsoft Corporation) EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) FileZilla Client 3.18.0 (HKLM-x32\...\FileZilla Client) (Version: 3.18.0 - Tim Kosse) FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line) FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - ) FMW 1 (Version: 1.143.1 - AVG Technologies) Hidden GeForce Experience NvStream Client Components (Version: 0.1.87 - NVIDIA Corporation) Hidden Ghost Control 3.0.6 (HKLM-x32\...\Ghost Control_is1) (Version: - N.R.S.) GhostMouse (HKLM-x32\...\GhostMouse_is1) (Version: Free V3.2.1 - ghost-mouse.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.) Google Earth (HKLM-x32\...\{28E82311-8616-11E1-BEB0-B8AC6F97B88E}) (Version: 6.2.2.6613 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Hotfix für Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) (HKLM-x32\...\{8E87B944-4815-3C5E-947F-5035C9F64362}.KB947789) (Version: 1 - Microsoft Corporation) IIS 10.0 Express (HKLM\...\{13FD7E30-D2F1-498D-ABC2-A4242DB6610E}) (Version: 10.0.1736 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line) IsoBuster 3.6 (HKLM-x32\...\IsoBuster_is1) (Version: 3.6 - Smart Projects) iTunes (HKLM\...\{9946A4F7-E0FD-4A33-82D1-06CBFFBBB9F9}) (Version: 12.5.1.21 - Apple Inc.) Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) JavaScript Tooling (Version: 12.0.21005 - Microsoft Corporation) Hidden Kindle Previewer (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\KindlePreviewer) (Version: 2.94 - Amazon) Kindle Textbook Creator (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Kindle Textbook Creator) (Version: 1.6.5.0 - Amazon) Launcher Prerequisites (x64) (x32 Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games) LEGO® Star Wars™: Die Komplette Saga (HKLM-x32\...\InstallShield_{D596980D-17BE-4425-B8F0-5640719AADE9}) (Version: 1.00.0000 - LucasArts) LEGO® Star Wars™: The Complete Saga (x32 Version: 1.00.0000 - LucasArts) Hidden LocalESPC Dev12 (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden LocalESPCui for en-us Dev12 (x32 Version: 8.100.25984 - Microsoft) Hidden Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MASS Facebook Account Creator (HKLM-x32\...\MASS Facebook Account Creator2.1.55) (Version: 2.1.55 - Easytech Software Solutions) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.376.2 - McAfee, Inc.) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft ASP.NET MVC 2 - DEU (HKLM-x32\...\{E4E9CBC9-1CF5-48E3-AF6F-1AB44A856346}) (Version: 2.0.50331.0 - Microsoft Corporation) Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools - DEU (HKLM-x32\...\{31C3C6EA-E991-405F-A3AA-2C070CCCC47C}) (Version: 2.0.50331.0 - Microsoft Corporation) Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools (HKLM-x32\...\{40416836-56CC-4C0E-A6AF-5C34BADCE483}) (Version: 2.0.50217.0 - Microsoft Corporation) Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation) Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.25420 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0000-0000-0000000FF1CE}_WORD_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Business 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Word 2007 (HKLM-x32\...\WORD) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Outlook Hotmail Connector 64-bit (HKLM\...\{95140000-0081-0409-1000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.10.209.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Silverlight 3 SDK - Deutsch (HKLM-x32\...\{91F54E1D-804A-46D8-A56C-53EA9C4B3177}) (Version: 3.0.40818.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2008 Native Client (HKLM\...\{1C3F92D0-3EC5-4CD4-9D5E-1E7834B65BB8}) (Version: 10.0.1600.22 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{58FED865-4F13-408D-A5BF-996019C4B936}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{1B876496-B3A2-4D22-9B12-B608A3FD4B8B}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{6C026A91-640F-4A23-8B68-05D589CC6F18}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{2F7DBBE6-8EBC-495C-9041-46A772F4E311}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{43A5C316-9521-49C3-B9B6-FCE5E1005DF0}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{54C5041B-0E91-4E92-8417-AAA12493C790}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{04DD7AF4-A6D3-4E30-9BB9-3B3670719234}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2016 LocalDB (HKLM\...\{C555970C-4C94-4A20-9869-AE7E2F84748F}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft SQL Server 2016 Management Objects (x64) (HKLM\...\{264B070C-82D7-4C9C-B1CE-A0B124BCC787}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft SQL Server 2016 T-SQL Language Service (HKLM-x32\...\{4EFF12AE-599C-42A2-ACFA-0D95C3B11A19}) (Version: 13.0.14500.10 - Microsoft Corporation) Microsoft SQL Server 2016 T-SQL ScriptDom (HKLM\...\{E8F3D249-7DE6-4422-AC86-1CE7D5CCFA0F}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 (Deutsch) (HKLM-x32\...\{FA440BE8-EC2F-4478-A01A-077DA0606501}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (14.0.60519.0) (HKLM-x32\...\{9F367648-EC0C-4F97-B351-D12A51E38F96}) (Version: 14.0.60519.0 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (12.0.30919.1) (HKLM-x32\...\{0D7FCBFB-F478-4D32-901C-83F0BF5A3501}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (14.0.60519.0) (HKLM-x32\...\{4E27B0EF-7BAB-432A-AF3D-3FC8F3F7353F}) (Version: 14.0.60519.0 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) (HKLM-x32\...\{6781FF9B-E87D-4A03-9373-A55A288B83FA}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{A47FD1BF-A815-4A76-BE65-53A15BD5D25D}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{4701DEDE-1888-49E0-BAE5-857875924CA2}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Transact-SQL ScriptDom (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 T-SQL Language Service (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2016 Management Objects (HKLM-x32\...\{35A7B00B-4F9C-4B4D-919C-86FFFEE46AD6}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft Sync Framework Runtime v1.0 SP1 (x64) de (HKLM\...\{7AC5FFA7-6815-4AED-B16D-8E0D7CC4B221}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Framework SDK v1.0 SP1 de (HKLM-x32\...\{08DA8E46-ED67-451A-9246-50E0FF6959C9}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Framework Services v1.0 SP1 (x64) de (HKLM\...\{EF9A1373-9238-4E11-8FF8-7B83996F5BE5}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Services for ADO.NET v2.0 SP1 (x64) de (HKLM\...\{11EB3D68-A5BE-43EA-8D31-43B08ADB0DA4}) (Version: 2.0.3010.0 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{070C38AC-05CE-43DF-9A20-141332F6AB2B}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{05FF8209-C4F1-4C77-BC28-791653156D20}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft Team Foundation Server 2010-Objektmodell - DEU (HKLM\...\Microsoft Team Foundation Server 2010 Object Model - DEU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319 (HKLM\...\{95A2AD24-BD44-3E39-A31F-CE928276577E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM-x32\...\{616C6F39-4CE1-3434-A665-2F6A04C09A7F}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Professional - DEU (HKLM-x32\...\Microsoft Visual Studio 2010 Professional - DEU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Macro Tools - DEU Language Pack (HKLM-x32\...\Microsoft Visual Studio Macro Tools - DEU Language Pack) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Macro Tools (HKLM-x32\...\Microsoft Visual Studio Macro Tools) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Professional 2013 (HKLM-x32\...\{6dff50d0-3bc3-4a92-b724-bf6d6a99de4f}) (Version: 12.0.21005.13 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Language Pack - DEU (HKLM-x32\...\{8E87B944-4815-3C5E-947F-5035C9F64362}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server*2016 (HKLM\...\{FEC926D4-785B-4ED7-B35D-3FA37DD29F8B}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server*2016 (HKLM-x32\...\{A37BE9D7-EAAE-4C6B-9D7E-DBD8B8D88681}) (Version: 13.0.1601.5 - Microsoft Corporation) Mobipocket Reader 6.2 (HKLM-x32\...\{342126E1-173C-4585-BFBE-3EBDD20E3E9E}) (Version: 6.2.608 - Mobipocket.com) Mozilla Firefox 50.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 50.0 (x86 en-US)) (Version: 50.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.0.6152 - Mozilla) MSI Afterburner 4.2.0 (HKLM-x32\...\Afterburner) (Version: 4.2.0 - MSI Co., LTD) Multiple Image Resizer .NET 4 (HKLM-x32\...\Multiple Image Resizer .NET 4) (Version: 4.0.0.6 - Acumen Business Systems Ltd) Multiple Image Resizer .NET 4 (x32 Version: 4.0.0.6 - Acumen Business Systems Ltd) Hidden Nexon Game Manager (HKLM-x32\...\{289AC7E0-0AEE-4a7b-913C-709D9803D23E}) (Version: - ) Nightly 35.0a1 (x64 en-US) (HKLM\...\Nightly 35.0a1 (x64 en-US)) (Version: 35.0a1 - Mozilla) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team) Nv GPU Pro (HKLM-x32\...\{B5958559-A6F9-4963-8434-FCD4312FE3FD}_is1) (Version: 1.0.0.30 - Nv GPU Pro) NVIDIA 3D Vision Controller-Treiber 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.81 - NVIDIA Corporation) NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Grafiktreiber 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.81 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 0.15.4 - OBS Project) Octodad (HKLM-x32\...\Octodad) (Version: - ) OnTopReplica (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\OnTopReplica) (Version: 3.4 - Lorenz Cuno Klopfenstein) Open XML SDK 2.5 for Microsoft Office (x32 Version: 2.5.5631 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice.org 3.4.1 (HKLM-x32\...\{2303AEEA-0FA8-4AFD-80A9-8F86BA4B44D2}) (Version: 3.41.9593 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.12.2807 - Electronic Arts, Inc.) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PDF24 Creator 6.9.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.3197.1 - PreEmptive Solutions) Hidden Prerequisites for SSDT (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation) Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64) Python Tools Redirection Template (x32 Version: 1.1 - Microsoft Corporation) Hidden QuickTime Alternative 3.2.2 (HKLM-x32\...\QuicktimeAlt_is1) (Version: 3.2.2 - ) RealDownloader (x32 Version: 1.3.2 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.2 - RealNetworks) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.46.531.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden RivaTuner Statistics Server 6.4.1 (HKLM-x32\...\RTSS) (Version: 6.4.1 - Unwinder) RollerCoaster Tycoon 2 (HKLM-x32\...\{72DF62BD-FF36-424E-AA5F-D89BAFF2C249}) (Version: - ) Roslyn Language Services - x86 (x32 Version: 14.0.25421 - Microsoft Corporation) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-003D-0000-1000-0000000FF1CE}_Office14.SingleImage_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SharePoint Client Components (Version: 15.0.4481.1505 - Microsoft Corporation) Hidden SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Sigil 0.8.6 (HKLM\...\Sigil_is1) (Version: - John Schember) SketchUp 2013 (HKLM-x32\...\{2C0777B8-E91F-45AA-976B-7EB6B40E5400}) (Version: 13.0.4812 - Trimble Navigation Limited) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation) Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.) Smart View (HKLM-x32\...\{C7B50A89-F1D6-41C1-9375-0AF0C4CFE66F}) (Version: 1.0.0.0 - Samsung ) SmartFTP Client (HKLM\...\{3CC12A3E-C882-44AD-89CE-4395336596EE}) (Version: 8.0.2228.0 - SmartSoft Ltd.) SmartFTP Client German (Germany) MUI (HKLM\...\{A77BF35E-243D-48BD-B6E4-DE701A6F0644}) (Version: 8.0.2228.0 - SmartSoft Ltd.) Snap.Do Engine (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\{3175d7dd-6577-44fb-8650-599592092fa2}) (Version: 1.67.1.11754 - ReSoft Ltd.) <==== ACHTUNG Sothink Logo Maker (HKLM-x32\...\Sothink Logo Maker_is1) (Version: 3.4 - ) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) SQL-Splitter 1.2.0.1 (HKLM-x32\...\SQL-Splitter_is1) (Version: - CoolFactory) Star Wars Battlefront II (HKLM-x32\...\{3D374523-CFDE-461A-827E-2A102E2AB365}) (Version: 1.0 - LucasArts) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden TeamPlayer 2.2.0 (HKLM-x32\...\TeamPlayer_is1) (Version: 2.2.0 - WunderWorks) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.66695 - TeamViewer) TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) Trojan Remover 6.9.4.2946 (HKLM-x32\...\Trojan Remover_is1) (Version: 6.9.4.2946 - Simply Super Software) TSR Watermark Image software version 3.4.1.7 - Free version (HKLM-x32\...\TSR Watermark Image - Free version_is1) (Version: 3.4.1.7 - TSR Software) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-001B-0000-0000-0000000FF1CE}_WORD_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Vegas Pro 12.0 (64-bit) (HKLM\...\{A7C8BBDE-FE98-11E1-87C9-F04DA23A5C58}) (Version: 12.0.367 - Sony) Vindictus EU (HKLM-x32\...\Vindictus EU) (Version: - ) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) WCF Data Services 5.6.0 Runtime (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) Workflow Manager Client 1.0 (Version: 2.0.30813.2 - Microsoft Corporation) Hidden Workflow Manager Tools 1.0 for Visual Studio (Version: 2.0.30725.1 - Microsoft Corporation) Hidden XAMPP (HKLM-x32\...\xampp) (Version: 5.5.38-1 - Bitnami) XSplit Gamecaster (HKLM-x32\...\{8FE2426D-4C71-4BD6-9483-B6EE48E96817}) (Version: 2.8.1607.2027 - SplitmediaLabs) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2131955426-2682777134-591621578-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0D02DE93-38B8-4476-A704-EC70A91AF2FC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.) Task: {0E18FC46-2082-41ED-B3D0-1596CC52CBF8} - \{9EB140A7-2DBA-4446-8EAC-691C60512F69} -> Keine Datei <==== ACHTUNG Task: {18658A07-6977-4456-B21B-7DCED7E15385} - \DLL-files.com Fixer_MONTHLY -> Keine Datei <==== ACHTUNG Task: {1F3D3772-4B73-4BAD-A4B9-5AD970F6646F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {208D49B5-1E2B-4AFF-B00E-F2A8F7E6FEE0} - \{DF32ABD0-FDCD-4003-BF8A-1441C284E72A} -> Keine Datei <==== ACHTUNG Task: {3AA1FB19-73A0-4CF6-9689-D739FAE02321} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.) Task: {3DABA7EF-0AA0-446C-A773-0FE6B9195823} - System32\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C} => C:\Users\Marc\Downloads\MultiBrowserSetup.exe [2016-06-19] (TWD Solutions (Pte) Ltd) Task: {43796780-D6F3-40FE-99C7-4279E2969CAC} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe Task: {4BC32568-20AE-41E7-B7DD-708F574DEDED} - \launchspotflux -> Keine Datei <==== ACHTUNG Task: {57821CB5-FCB7-453C-A02F-503844EBF1FF} - System32\Tasks\0214dUpdateInfo => C:\ProgramData\Avg_Update_0214d\0214d_AVG-Secure-Search-Update.exe [2014-03-24] () Task: {5F4D5A49-DA43-4A1D-8F14-D7D2B3B8D9D4} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.) Task: {653DB7F8-8989-4A19-9F13-CF0E85638D14} - \FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000UA -> Keine Datei <==== ACHTUNG Task: {6B878A79-048F-4079-9BF8-33DA7E3C84A8} - System32\Tasks\{FCB38D9E-C75D-44C6-804E-A93A1153D47E} => Chrome.exe hxxp://ui.skype.com/ui/0/7.24.0.104.272/de/abandoninstall?page=tsMain Task: {70DCED33-8133-470A-A25D-548D2E747C15} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-25] (Adobe Systems Incorporated) Task: {74D1EA1C-BD93-4DAF-9E99-F40B6EDCE8DF} - \SidebarExecute -> Keine Datei <==== ACHTUNG Task: {752595CD-36E9-4B41-A666-0ECB3D67FBD0} - \{4120EA72-FB35-41CB-92F9-7F628F735324} -> Keine Datei <==== ACHTUNG Task: {7F8917A3-E1F3-411B-B5E3-38BD0AEAE4B6} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe Task: {83FB7A74-500F-4D88-9DB0-39F50B2BB3DE} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2131955426-2682777134-591621578-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {89DF53A7-9EB5-4C69-9591-A93E9F257128} - \AdobeAAMUpdater-1.0-Marc-PC-Marc -> Keine Datei <==== ACHTUNG Task: {8B1F09AB-E4DC-4602-A5CA-2655C44EFC6A} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe Task: {8ED9FFF0-6801-451F-9CE0-48D3E2DAE34B} - \DLL-files.com Fixer_UPDATES -> Keine Datei <==== ACHTUNG Task: {9137F300-7BFE-406A-8E4A-19D22C0B9C97} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {9BC5920B-CFF9-4283-8BC5-3CC036B0AA9F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd) Task: {9E1C3F8E-23D6-4748-9979-103CEFEFEDCF} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2131955426-2682777134-591621578-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {A517B279-DB75-4BA9-9BB5-96BE6060C7C5} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.) Task: {B1638D31-9BBF-4DD8-9360-570D50890E8F} - \{6ADA8FBE-4602-45AB-AC94-524C675758E6} -> Keine Datei <==== ACHTUNG Task: {BAFD57F9-027A-4231-A0B1-47774CB4D6D4} - System32\Tasks\{D0979BE7-D64D-4155-BBD8-8DD038557F4B} => pcalua.exe -a C:\Users\Marc\Downloads\FlyffUsaSetup.060119.404.exe -d C:\Users\Marc\Downloads Task: {C1FD6FE2-A999-4171-84E2-743688D3FB1B} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\\MpCmdRun.exe [2016-11-14] (Microsoft Corporation) Task: {C3AE0908-C0A0-4C81-B447-616B4AFD4484} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-06-22] (Oracle Corporation) Task: {D7106D72-DCCB-4955-A4B8-F0FDE3873136} - \{41F996BE-8A19-4674-BAAE-569E49F7008A} -> Keine Datei <==== ACHTUNG Task: {E6C7EB3F-8D4D-43E9-A2F4-E1465F46FAD2} - \{D9EC9D6F-8264-449E-B9A5-3FF79759DAF0} -> Keine Datei <==== ACHTUNG Task: {F04C9AFF-254B-4B8D-86DD-51E5732328DB} - \FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000Core -> Keine Datei <==== ACHTUNG (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\0214dUpdateInfo.job => C:\ProgramData\Avg_Update_0214d\0214d_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000Core.job => C:\Users\Marc\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000UA.job => C:\Users\Marc\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C}.job => C:\Users\Marc\Downloads\MultiBrowserSetup.exe׀/i C:\Users\Marc\AppData\Local\Temp\AIEA9F2.tmp AI_RESUME=1 ADDLOCAL=MultiBrowser,AI64BitFiles,CA62D813A4E74FA2AAE86A7D7B7B1493,EF36CDD6CE40CFA978040EA5CBA799,MicrosoftVisualC,Updater PRIMARYFOLDER=APPDIR ROOTDRIVE=D:\ TRANSFORMS=C:\Users\Marc\AppData\Roaming\TWD Solutions (Pte) Ltd\MultiBrowser 1.3.3.0\install\MultiBrowserSetup.mst;C:\Users\Marc\AppData\Roaming\TWD Solutions (Pte) Ltd\MultiBrowser 1.3.3.0\install\1031 AI_PREREQFILES=C:\Users\Marc\AppData\Roaming\MultiBrowser\prerequisites\vcredist_x86 2010.exe AI_PREREQDIRS=C:\Users\Marc\AppData\Roaming AI_TEMP_FILE_ROLLBACK_INFO=C:\USERS\MARC\APPDATA\LOCAL\TEMP\INSTALL.HTML|C:\USERS\MARC\APPDATA\LOCAL\TEMP\ AITEMPFILESEXTRACTED=YES AI_MISSING_PREREQS=Microsoft Visual C++ 2010 x86 Redistributable AI_FOUND_PREREQS=.NET Framework 4.5|Visual C++ Redistributable for Visual Studio 2012 x64|Visual C++ Redistributable for Visual Studio 2012 x86|Visual C++ Redistributable for Visual Studio 2013 x64|Visual C++ Redistributable for Visual Studio 2013 x86 AI_SETUPEXEPATH=C:\Users\Marc\Downloads\MultiBrowserSetup.exe SETUPEXEDIR=C:\Users\Marc\Downloads\ AI_SETUPEXEPATH_ORIGINAL=C:\Users\Marc\Downloads\MultiBrowserSetup.exe AI_DOTNET45_SEARCH=4.6.01055 TARGETDIR=D:\ AI_INSTALL.HTML=C:\Users\Marc\AppData\Local\Temp\Install.htm <==== ACHTUNG ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Fair AdBlocker App (by STANDS).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=dcnofaichneijfbkdkghmhjjbepjmble ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-08-14 23:45 - 2016-11-29 20:01 - 00980552 ____N () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe 2013-10-07 01:55 - 2016-07-11 00:17 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-09-01 18:12 - 2016-09-01 18:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-09-01 18:12 - 2016-09-01 18:12 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2011-12-01 17:11 - 2011-12-01 17:11 - 00743936 _____ () C:\Program Files (x86)\CPUCooL\CooLSrv.exe 2016-08-14 23:19 - 2016-06-14 21:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2015-04-16 16:42 - 2015-04-16 16:42 - 00997536 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2016-05-17 23:42 - 2016-05-17 23:42 - 00230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2013-02-16 14:45 - 2008-07-11 08:04 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2013-02-16 14:45 - 2008-07-11 08:03 - 00282112 ____N () C:\Windows\system\HsMgr64.exe 2016-08-14 23:45 - 2016-11-29 20:01 - 02180680 _____ () C:\Program Files (x86)\AVG Web TuneUp\vprot.exe 2016-11-15 00:03 - 2016-11-08 22:03 - 02367080 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libglesv2.dll 2016-11-15 00:03 - 2016-11-08 22:03 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libegl.dll 2016-08-14 12:44 - 2014-05-13 11:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2016-08-14 12:44 - 2014-05-13 11:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2016-08-14 12:44 - 2014-05-13 11:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2016-08-14 12:44 - 2012-08-23 09:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2016-08-14 12:44 - 2012-04-03 16:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2013-02-06 17:18 - 2011-06-02 11:12 - 00143360 ____N () C:\Program Files\ASUS Xonar DGX Audio\Customapp\VmixP8.dll 2016-12-02 22:31 - 2016-12-02 22:30 - 48920064 _____ () C:\Program Files (x86)\AVG\UiDll\2623\libcef.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2016-09-26 15:32 - 00000853 ____A C:\Windows\system32\Drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-2131955426-2682777134-591621578-1013\Control Panel\Desktop\\Wallpaper -> C:\Users\Marc_2\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AdobeUpdateService => 2 MSCONFIG\Services: AODService => 2 MSCONFIG\Services: avgsvc => 2 MSCONFIG\Services: avgwd => 2 MSCONFIG\Services: AVM WLAN Connection Service => 2 MSCONFIG\Services: AxInstSV => 3 MSCONFIG\Services: BEService => 3 MSCONFIG\Services: BstHdAndroidSvc => 3 MSCONFIG\Services: BstHdLogRotatorSvc => 3 MSCONFIG\Services: BstHdPlusAndroidSvc => 2 MSCONFIG\Services: BstHdUpdaterSvc => 3 MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: Fax => 3 MSCONFIG\Services: FlexNet Licensing Service 64 => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: NanoServiceMain => 2 MSCONFIG\Services: NvStreamSvc => 2 MSCONFIG\Services: PSUAService => 2 MSCONFIG\Services: RealNetworks Downloader Resolver Service => 2 MSCONFIG\Services: rpcapd => 3 MSCONFIG\Services: SensrSvc => 3 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: SwitchBoard => 3 MSCONFIG\Services: TeamViewer9 => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Marc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Curse.lnk => C:\Windows\pss\Curse.lnk.Startup MSCONFIG\startupfolder: C:^Users^Marc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup MSCONFIG\startupreg: 4StoryPrePatch => C:\Program Files (x86)\Gameforge4D\4Story_DE\PrePatch.exe MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: ADSKAppManager => "C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun MSCONFIG\startupreg: Aimersoft Helper Compact.exe => C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Marc\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: AVMWlanClient => C:\Program Files (x86)\avmwlanstick\wlangui.exe MSCONFIG\startupreg: BitTorrent => "C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: BrowserPlugInHelper => C:\Program Files (x86)\Aimersoft\YouTube Downloader\BrowserPlugInHelper.exe MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Discord => C:\Users\Marc\AppData\Local\Discord\app-0.0.296\Discord.exe MSCONFIG\startupreg: EADM => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart MSCONFIG\startupreg: Facebook Update => "C:\Users\Marc\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: Ghost Control => "C:\Program Files (x86)\Ghost Control\ghost.exe" -startup MSCONFIG\startupreg: icq => C:\Users\Marc\AppData\Roaming\ICQM\icq.exe -CU MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: LOLReplay Recorder => "C:\Program Files (x86)\LOLReplay\LOLRecorder.exe" -minimize MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: PSwitch => C:\Program Files (x86)\Proxy Switcher Standard\ProxySwitcher.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: SilverLight for Microsoft Windows => C:\Program Files (x86)\Microsoft Silverlight\Silver.exe MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe MSCONFIG\startupreg: TkBellExe => "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [{56CDAC4F-DA28-49FA-AE60-2FD8A79E13DC}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{79775C36-B4B7-40E3-97A8-B9F687F4D78C}] => C:\Users\Marc\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{49440624-9595-4329-BE3F-0237750138C5}] => C:\Users\Marc\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{F3DE710F-2D12-4BDF-8249-FA74467E20DD}] => C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{D9984933-2C10-43A9-9B7F-4338BB93C72C}] => C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{9573DE74-23A3-48EF-A6A3-0558170B81C3}] => %ProgramFiles%\Sony\Vegas Pro 12.0\vegas120.exe FirewallRules: [{33E4CC87-43BE-4C2E-BCFF-10E0A3610179}] => %ProgramFiles%\Sony\Vegas Pro 12.0\vegas120.exe FirewallRules: [{30C62238-64E5-4C95-8DDC-F95FDD92F873}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{A8F25FDF-D306-4EF4-B285-86289D821F05}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{92CC29BA-6397-4465-814D-FF2E009E3655}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{58FC13A4-A49C-4751-9C62-FA54445DDA51}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{DFF02556-3664-43D6-BCB4-4DC73DAB9934}] => LPort=15000 FirewallRules: [{1B8972F4-5211-4AA2-979B-B84456072B1B}] => LPort=2099 FirewallRules: [{B135B638-6FCB-4F0A-8B00-1EDDE0E5BFDC}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{E54DE8E7-69C5-46E0-A4D5-358912D5B789}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{A3749EA6-064D-414C-A079-31E6462BE99F}] => C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{D98D6644-4A7B-4E92-9A1C-31B59CF428A5}] => C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{3DE2E660-A8D9-4200-9D59-1BCE594A0D0A}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{76F549CD-B344-4AE7-802D-E2B6BCD365CA}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{A2743CDE-26D8-41D6-87E1-EB4BD5C76DB4}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{8D9F4A23-5600-4E28-97A9-49F3387A4EB9}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{6665B7B1-E87A-42CC-90F8-37B13D12F3EB}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A966C1E4-8024-49AB-B748-DCFFCE1AE1A7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1C359513-84B6-48BA-A472-84D0A62C2BC5}] => %ProgramFiles%\Adobe\Adobe Illustrator CS6 (64 Bit)\Support Files\Contents\Windows\Illustrator.exe FirewallRules: [{A966F108-50D1-49E1-BB27-B226A76D2B40}] => %ProgramFiles%\Adobe\Adobe Illustrator CS6 (64 Bit)\Support Files\Contents\Windows\Illustrator.exe FirewallRules: [{54441C0F-45D6-410D-878D-CBC5CA5DDB0F}] => D:\Steam\Steam.exe FirewallRules: [{6DE8F4D3-D518-4179-A29B-58092CC7C659}] => D:\Steam\Steam.exe FirewallRules: [TCP Query User{6390E301-00CB-4B72-A676-238C62A9D5EB}C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe] => C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe FirewallRules: [UDP Query User{7FC03B46-2250-4B01-8550-FD0E87020BA8}C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe] => C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe FirewallRules: [{A9785BA7-1A74-4E8F-85D0-05885E7513F7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A59CE637-4534-43C5-921E-26D75B2556C7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{160D039E-5B5A-4038-92E4-07809546C6C2}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2276280C-F0CD-4017-A4D0-51CE5CEE6BB9}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EBDE1DE5-519C-44B0-9503-550FFAC9013A}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{A516C4C9-E616-4281-951D-C2761C504DE9}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{AD3877D4-56BA-495C-A14E-1C3E241E7463}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{3931509B-A75D-4941-BA4A-439AA9D293E0}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{36254DC3-5145-4381-84D8-561CE2B4C724}] => D:\Steam\bin\steamwebhelper.exe FirewallRules: [{D97D21CE-23D7-4D75-85CF-4F536B6C047A}] => D:\Steam\bin\steamwebhelper.exe FirewallRules: [{4842FAB5-6F84-4BB7-BE46-91317932822A}] => D:\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{EABF6D1C-0450-488A-B923-ED7D0891FCC6}] => D:\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{36CAF18F-C507-44F9-B849-865E06D9CA86}] => LPort=49260 FirewallRules: [{40CF083D-E46B-4E9F-B0ED-28A68CAB39FD}] => LPort=5000 FirewallRules: [{944735E1-CE69-4FB1-A320-CB4F18598CB4}] => C:\Program Files\SmartFTP Client\SmartFTP.exe FirewallRules: [{C8B7F1D8-5ACB-453B-A280-973FCE306AA6}] => C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\devenv.exe FirewallRules: [{59E27BA8-94A3-4B53-B73D-0ED0F07299B7}] => LPort=12292 FirewallRules: [TCP Query User{1CC1E12F-7784-4651-B343-A3FDA0B8B31E}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe FirewallRules: [UDP Query User{F901CA40-2D17-4CD8-AF96-D5D6B6788902}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe FirewallRules: [{BED7584A-549C-4E51-A698-9B449DF92040}] => C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{7D02F27D-7C39-4B6D-80DC-FAD9AF561DD6}] => C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [TCP Query User{88CC0554-A87D-41B5-9F12-91B8EEC45261}C:\program files\smart view\smart view.exe] => C:\program files\smart view\smart view.exe FirewallRules: [UDP Query User{9F37B007-5B72-47C1-B31C-D33C3AFEFA62}C:\program files\smart view\smart view.exe] => C:\program files\smart view\smart view.exe FirewallRules: [TCP Query User{7FEE7EA2-7BD3-4E06-B37E-7F7C446D9A1C}C:\program files (x86)\smart view\smart view.exe] => C:\program files (x86)\smart view\smart view.exe FirewallRules: [UDP Query User{FAD9DA61-A84A-4EEA-8990-F272515FCA85}C:\program files (x86)\smart view\smart view.exe] => C:\program files (x86)\smart view\smart view.exe FirewallRules: [TCP Query User{95F45B69-8B31-41EB-8042-40B6D5CCFFA0}D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{8802285A-C413-4256-84D9-63B311BFBB45}D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{1E046809-5F88-45B5-B258-7D868BEE1BDD}D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{22CF3FC4-9F15-4488-A7D4-5E2D512FF6B6}D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{7CB4C2AD-06D8-4CE3-BBB6-D272B4B30A39}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{D84A37D7-16E5-40EE-B2ED-AC804F5E5FEF}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{CAEDD91A-7C37-47BD-824A-4F12DCA2272F}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C941F044-978D-464C-A3F0-F4706439B394}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{665154E9-4AC6-44D5-BBD3-40A8A43E6C9A}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{05ADE69D-B980-4B0E-8BB2-E7DF7829344F}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E221020F-D0AA-4455-88F0-D1C0D4F1710C}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{FC5A7ED8-41AC-4FDA-B0E6-92E23A0B0F7F}D:\alle meine spiele\tmunitedforever\tmforever.exe] => D:\alle meine spiele\tmunitedforever\tmforever.exe FirewallRules: [UDP Query User{B3A4CB14-958F-4668-B1FA-9AC75098A61E}D:\alle meine spiele\tmunitedforever\tmforever.exe] => D:\alle meine spiele\tmunitedforever\tmforever.exe FirewallRules: [TCP Query User{BFDC9DEF-0CAE-4D86-B07E-06BA4181C9D7}D:\alle meine spiele\tmnationsforever\tmforever.exe] => D:\alle meine spiele\tmnationsforever\tmforever.exe FirewallRules: [UDP Query User{311D2BE6-E613-4CEB-8DF3-A304D3F7666D}D:\alle meine spiele\tmnationsforever\tmforever.exe] => D:\alle meine spiele\tmnationsforever\tmforever.exe FirewallRules: [{38BE569D-4369-442B-96A0-365EC82CA0A1}] => D:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{D570D27E-3254-4386-9CC4-27B8CA146C44}] => D:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{FBB99F94-2FB5-43C7-83D2-09B7B6D3924E}] => C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe FirewallRules: [{45755EC1-53AD-458A-82B3-A5A3412809F7}] => C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe FirewallRules: [TCP Query User{C4F86B11-8C11-4BE4-877A-2648A9F650A5}C:\program files (x86)\real\realplayer\realplay.exe] => C:\program files (x86)\real\realplayer\realplay.exe FirewallRules: [UDP Query User{320C900B-6DAE-4515-A84F-91F4ACCE8F22}C:\program files (x86)\real\realplayer\realplay.exe] => C:\program files (x86)\real\realplayer\realplay.exe FirewallRules: [{2577C077-DADA-41E6-89EB-65301B65EF2C}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4sp.exe FirewallRules: [{3001C221-3273-4CDE-96CD-44C87AE4563C}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4sp.exe FirewallRules: [{658A562B-0603-425F-B9A9-8B9A8C6CFE8D}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{799BA9C5-5C24-48C1-B5BC-2413CBAE0181}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{769AD88F-8D4D-4E14-AE4C-A9582E9BD088}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{8942D7D8-BAFA-4FA3-9E54-11F08EA55E16}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{B1732EA5-7601-48E9-8349-EC964338612A}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{8B9FEB91-4FC3-45C4-8386-548E07172BCA}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{3AFD5681-77FC-4E35-B346-FEC6CFE7CFCD}D:\alle meine spiele\portal 2\portal2.exe] => D:\alle meine spiele\portal 2\portal2.exe FirewallRules: [UDP Query User{E4D84C6C-94A6-44B7-8A99-C367210AF6DE}D:\alle meine spiele\portal 2\portal2.exe] => D:\alle meine spiele\portal 2\portal2.exe FirewallRules: [TCP Query User{A9F07A98-D58C-449A-8E53-BF6F6C680C41}C:\xampp\apache\bin\httpd.exe] => C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{84F96BE3-DA45-4B82-AE38-E8A9CD75B567}C:\xampp\apache\bin\httpd.exe] => C:\xampp\apache\bin\httpd.exe FirewallRules: [{779CE7A6-53D3-4064-AA2E-60265305ED87}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{32A1CF37-5DE2-4F49-B064-C9F58D77FF4F}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{544527F7-E7E9-47D7-92A2-8ADF01409B21}] => C:\Program Files\iTunes\iTunes.exe FirewallRules: [{AF8F2448-4A9F-4BD5-987C-C8C8375B5A3E}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{1A6AF0FB-BCE2-4607-9A2C-BB491C6D4A60}] => C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{683AC9EA-5903-4EC1-8476-95D952B8070B}] => C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{0D233F5B-E058-46F1-A169-466AD06EA82E}] => C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{90430869-F534-4454-9AB8-2171556DDE2C}] => C:\Program Files (x86)\AVG\Av\avgemca.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Wiederherstellungspunkte ========================= 28-11-2016 22:04:50 Geplanter Prüfpunkt 29-11-2016 20:11:30 Windows Update 30-11-2016 03:00:11 Windows Update 03-12-2016 22:52:23 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/03/2016 10:52:23 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2131955426-2682777134-591621578-1012.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {3d955d34-8c1a-4469-b9f3-abb797f6f803} Error: (12/03/2016 10:39:58 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/02/2016 10:31:37 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Windows\Temp\AvgSetup\da9277e7-eeed-47cf-b09c-81ac0f20b3bb\install\fmw\avgrdsttestx.exe". Die abhängige Assemblierung "AVG.VC140.CRT,processorArchitecture="x86",publicKeyToken="f92d94485545da78",type="win32",version="14.0.23918.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (12/02/2016 10:31:33 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Windows\Temp\AvgSetup\da9277e7-eeed-47cf-b09c-81ac0f20b3bb\install\fmw\avgrdsttesta.exe". Die abhängige Assemblierung "AVG.VC140.CRT,processorArchitecture="amd64",publicKeyToken="f92d94485545da78",type="win32",version="14.0.23918.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (12/02/2016 10:17:52 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (11/30/2016 03:21:08 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (11/30/2016 03:00:11 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2131955426-2682777134-591621578-1012.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {9d89fdb5-8e06-44de-9a7e-29ed6d194e34} Error: (11/29/2016 08:11:31 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2131955426-2682777134-591621578-1012.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {0dc21ffb-8e7f-4ab6-95bd-68ef8df4e0c2} Error: (11/29/2016 07:57:10 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (11/28/2016 10:04:51 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2131955426-2682777134-591621578-1012.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {1647ce0f-599b-4aeb-a651-cd420b88bf3d} Systemfehler: ============= Error: (12/03/2016 10:45:43 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (12/03/2016 10:40:43 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (12/03/2016 10:40:07 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/03/2016 10:39:58 PM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/03/2016 10:39:56 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/03/2016 01:55:50 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/02/2016 10:20:22 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (12/02/2016 10:18:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung. Error: (12/02/2016 10:18:36 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (12/02/2016 10:17:52 PM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert CodeIntegrity: =================================== Date: 2016-12-03 22:39:20.639 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-03 22:39:20.592 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-02 22:16:48.802 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-02 22:16:48.709 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-30 03:19:31.164 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-30 03:19:31.055 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-29 19:55:20.502 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-29 19:55:20.408 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-27 18:25:09.816 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-27 18:25:09.723 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Speicherinformationen =========================== Prozessor: AMD FX(tm)-6100 Six-Core Processor Prozentuale Nutzung des RAM: 30% Installierter physikalischer RAM: 16365.24 MB Verfügbarer physikalischer RAM: 11332.96 MB Summe virtueller Speicher: 33028.67 MB Verfügbarer virtueller Speicher: 27652.66 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:134.36 GB) NTFS Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:391.93 GB) NTFS ==================== MBR & Partitionstabelle ================== ==================== Ende von Addition.txt ============================ |
05.12.2016, 13:18 | #3 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10 extrem langsam geworden Moin
__________________Zitat:
Ist das ein gewebrlich genutztes System?
__________________ |
05.12.2016, 15:35 | #4 |
| Windows 10 extrem langsam geworden Gewerblich nicht, aber ich bin hobbymäßig oft mit diesen Programmen beschäftigt. Zeichne, schneide und animiere sehr gerne in meiner Freizeit, SQL Server könnte ich aber deinstallieren, das habe ich schon lange nichtmehr genutzt. Liebe Grüße |
05.12.2016, 15:45 | #5 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10 extrem langsam geworden Und du legst hobbymäßig so viel Kohle auf den Tisch für die Lizenzen?
__________________ Logfiles bitte immer in CODE-Tags posten |
05.12.2016, 15:52 | #6 |
| Windows 10 extrem langsam geworden Ja habe sie günstig bekommen. Ist ein Hobby von mir in das ich auch investiert habe. Ich besitze aber auch eine Crack version der ein oder anderen Software. Die aufgelisteten Programme sind allerdings lizensiert. Geändert von Froschmann (05.12.2016 um 16:11 Uhr) |
05.12.2016, 16:10 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10 extrem langsam geworden Gut. Dann deinstallier mal AVG und Spybot, damit wir effektiv analysieren können. Für beide Programme brauchst du erstmal keinen Ersatz.
__________________ Logfiles bitte immer in CODE-Tags posten |
05.12.2016, 18:50 | #8 |
| Windows 10 extrem langsam geworden AVG und Spybot sind runter, PC habe ich danach neugestartet. Anbei die neuen Farbars logs. FRST.txt Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-12-2016 durchgeführt von Marc (Administrator) auf MARC-PC (05-12-2016 18:27:13) Gestartet von C:\farber Geladene Profile: Marc (Verfügbare Profile: Marc & UpdatusUser & Gast) Platform: Windows 7 Professional Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe () C:\Program Files (x86)\CPUCooL\CooLSRV.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Windows\SysWOW64\HsMgr.exe () C:\Windows\system\HsMgr64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (CMedia) C:\Program Files\ASUS Xonar DGX Audio\Customapp\AsusAudioCenter.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe () C:\Program Files (x86)\AVG Web TuneUp\vprot.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Microsoft Corporation) C:\Windows\System32\prevhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2008-07-11] () HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2008-07-11] () HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\Windows\system32\rundll32.exe" C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [176440 2016-09-09] (Apple Inc.) HKLM-x32\...\Run: [TrojanScanner] => C:\Program Files (x86)\Trojan Remover\Trjscan.exe [3561016 2016-09-07] (Simply Super Software) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation) HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2180680 2016-11-29] () HKLM\...\Winlogon: [Userinit] C:\Windows\SysWOW64\userinit.exe, HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27230168 2016-11-15] (Skype Technologies S.A.) HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Run: [BitTorrent] => C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe [2149064 2016-11-27] (BitTorrent Inc.) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] () ShellIconOverlayIdentifiers: [SmartFTP Drop] -> {EA5A76F7-8138-4B53-B0F5-ADCC730CAFBD} => C:\Program Files\SmartFTP Client\ShellTools.dll [2016-06-25] (SmartSoft Ltd.) Startup: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CPUCooL.lnk [2016-06-17] ShortcutTarget: CPUCooL.lnk -> C:\Program Files (x86)\CPUCooL\CPUCooL.exe () GroupPolicyScripts-x32: Beschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{55587CD6-6EDA-445D-873E-F9B50525C205}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{9C1649B3-B8E5-4C32-9114-05785EC7839B}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{9C1649B3-B8E5-4C32-9114-05785EC7839B}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{B9C40B12-05A5-41FA-BB50-E48D393EAE96}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{DCFF219A-012E-440C-8DA2-BBA380A3AE11}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid=%7B16661E11-BD6B-4822-8FE3-CF705E5F293D%7D&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a3b476d415f1ba9&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516pi&pr=fr&d=2014-11-12%2020:19:28&v=4.3.2.18&pid=wtu&sg=&sap=hp SearchScopes: HKLM -> {63828163-EDB7-420E-BF77-2381B819A02F} URL = hxxp://www.suchmaschine24.com/?q={searchTerms} SearchScopes: HKU\.DEFAULT -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={16661E11-BD6B-4822-8FE3-CF705E5F293D}&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a3b476d415f1ba9&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516pi&pr=fr&d=2014-11-12 20:19:28&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> {6166975F-AA0B-4503-8A3A-EB6EAC500446} URL = hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_ie_syc_oracle&type=orcl_default SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> {63828163-EDB7-420E-BF77-2381B819A02F} URL = hxxp://www.suchmaschine24.com/?q={searchTerms} SearchScopes: HKU\S-1-5-21-2131955426-2682777134-591621578-1000 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={16661E11-BD6B-4822-8FE3-CF705E5F293D}&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a3b476d415f1ba9&lang=de&ds=AVG&coid=avgtbavg&cmpid=0516pi&pr=fr&d=2014-11-12 20:19:28&v=4.3.6.255&pid=wtu&sg=&sap=dsp&q={searchTerms} BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated) BHO-x32: RealNetworks Download and Record Plugin for Internet Explorer -> {3049C3E9-B461-4BC5-8870-4C09146192CA} -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll [2013-04-16] (RealDownloader) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-08-14] (Oracle Corporation) BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.3.6.255\AVG Web TuneUp.dll [2016-11-29] (AVG) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-14] (Oracle Corporation) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default [2016-12-05] FF DefaultSearchEngine: Mozilla\Firefox\Profiles\lcd83zj0.default -> AVG Secure Search FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> MM3ProxySwitch.type", 0 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ftp", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ftp_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> gopher", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> gopher_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> http", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> http_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> socks", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> socks_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ssl", "117.175.33.100" FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> ssl_port", 8123 FF NetworkProxy: Mozilla\Firefox\Profiles\lcd83zj0.default -> type", 0 FF Extension: (AVG Web TuneUp) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\avg@toolbar.xpi [2016-11-29] FF Extension: (Firefox Hotfix) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\firefox-hotfix@mozilla.org.xpi [2016-09-03] FF Extension: (ProxTube) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\ich@maltegoetz.de.xpi [2016-10-13] FF Extension: (eBesucher Surfbar) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\jid1-GxlI1BHOBUCNhw@jetpack.xpi [2015-08-18] FF Extension: (Erase Facebook ads and suggestions) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\jid1-UfSghNz6VhKecw@jetpack.xpi [2016-04-30] FF Extension: (Make Facebook Cleaner) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\MakeFacebookBetter@matthewmammola.com.xpi [2015-12-18] FF Extension: (Muter) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\muter@yxl.name [2016-04-30] FF Extension: (NoScript) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2016-11-27] FF Extension: (iMacros for Firefox) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}.xpi [2016-09-11] FF Extension: (Adblock Plus) - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-25] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\avg-secure-search.xml [2016-12-05] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\firefox-add-ons.xml [2014-02-18] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\google-images.xml [2014-10-01] FF SearchPlugin: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\google-maps.xml [2014-10-01] FF HKLM-x32\...\Firefox\Extensions: [{FCE04E1F-9378-4f39-96F6-5689A9159E45}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF Extension: (RealDownloader) - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013-06-04] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext FF HKLM-x32\...\Firefox\Extensions: [{73B03417-517F-4ABC-A430-33518B96A552}] - C:\Program Files (x86)\Aimersoft\YouTube Downloader\SVRFirefoxExt => nicht gefunden FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-02-05] [ist nicht signiert] FF HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Firefox\Extensions: [{73B03417-517F-4ABC-A430-33518B96A552}] - C:\Program Files (x86)\Aimersoft\YouTube Downloader\SVRFirefoxExt => nicht gefunden FF HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\extensions\cliqz@cliqz.com => nicht gefunden FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_192.dll [2016-06-17] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-05-08] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_192.dll [2016-06-17] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-05-07] (Adobe Systems, Inc.) FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.3.6\\npsitesafety.dll [Keine Datei] FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2012-04-14] (Google) FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-08-14] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-08-14] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameeu.dll [2013-01-30] (Nexon) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-07-10] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-07-10] (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [Keine Datei] FF Plugin-x32: @real.com/nppl3260;version=16.0.2.32 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nppl3260.dll [2013-06-04] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlchromebrowserrecordext;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll [2013-04-16] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlhtml5videoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll [2013-04-16] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprndlpepperflashvideoshim;version=1.3.2 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll [2013-04-16] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpplugin;version=16.0.2.32 -> C:\Program Files (x86)\Real\RealPlayer\Netscape6\nprpplugin.dll [2013-06-04] (RealPlayer) FF Plugin-x32: @realnetworks.com/npdlplugin;version=1 -> C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll [2013-04-16] (RealDownloader) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-08-14] (Google Inc.) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2012-09-23] (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2014-08-03] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-05-08] (Adobe Systems) FF Plugin HKU\S-1-5-21-2131955426-2682777134-591621578-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Marc\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [Keine Datei] Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.suchmaschine24.com/?id=11912" CHR DefaultSearchURL: Default -> hxxps://de.search.yahoo.com/search?p={searchTerms}&fr=yset_chr_syc_oracle&type=orcl_default CHR DefaultSearchKeyword: Default -> Yahoo CHR DefaultSuggestURL: Default -> hxxps://de.search.yahoo.com/sugg/ie?output=fxjson&command={searchTerms}&nResults=10 CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\PepperFlash\pepflashplayer.dll => Keine Datei CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\ppGoogleNaClPluginChrome.dll => Keine Datei CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\pdf.dll => Keine Datei CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (AdobeAAMDetect) - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll => Keine Datei CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll => Keine Datei CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll => Keine Datei CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_202.dll => Keine Datei CHR Plugin: (Java Deployment Toolkit 7.0.50.255) - C:\Windows\SysWOW64\npDeployJava1.dll => Keine Datei CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll => Keine Datei CHR Profile: C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default [2016-12-04] CHR Extension: (ProxFlow) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2016-10-11] CHR Extension: (Adblock Plus) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-10-27] CHR Extension: (Fair AdBlocker App (by STANDS)) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcnofaichneijfbkdkghmhjjbepjmble [2016-10-11] CHR Extension: (QCLean:Remove Facebook Ad,Suggested Page&Post) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdhhejjkjfjkchkimomgfegnpapndjne [2016-09-23] CHR Extension: (FB-Purity.net - Clean Up FB (Latest Beta)) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\higjjoffecpgcnfgegcbccfgbkjnfapb [2016-08-26] CHR Extension: (Proxy for Chrome) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\iilpibhiihokecnbdkaminemnmecjfed [2016-11-11] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-12] CHR Extension: (Disqus Downvote Exposer) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\onccocebmmmcfgipaappfpolojndnkce [2015-04-18] CHR Extension: (Chrome Media Router) - C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-27] CHR HKU\S-1-5-21-2131955426-2682777134-591621578-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2012-09-23] CHR HKLM-x32\...\Chrome\Extension: [fknfdieimobmimhdkfkheeejenmdjhoe] - C:\Program Files (x86)\pandasecuritytb\chrome-newtab-search.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [idhngdhcfkoamngbedgpaokgjbnpdiji] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Chrome\Ext\realdownloader.crx [2013-04-16] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25] CHR HKLM-x32\...\Chrome\Extension: [mffeojddidkjekjfdhipjldikhhohipn] - C:\Program Files (x86)\Aimersoft\YouTube Downloader\SVRChromePlugin.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [npdicihegicnhaangkdmcgbjceoemeoo] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S4 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1145928 2016-02-24] (Autodesk Inc.) S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [603312 2015-04-20] (Adobe Systems Incorporated) S4 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [137096 2013-02-06] () R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-08-05] (Apple Inc.) S4 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin) [Datei ist nicht signiert] S4 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1362464 2016-03-16] () S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [437784 2016-04-08] (BlueStack Systems, Inc.) S3 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [417304 2016-04-08] (BlueStack Systems, Inc.) S4 BstHdPlusAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe [433688 2016-04-08] (BlueStack Systems, Inc.) S3 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [921112 2016-04-08] (BlueStack Systems, Inc.) S4 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation) S4 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation) S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2010-02-03] (Microsoft Corporation) R2 CPUCooLServer; C:\Program Files (x86)\CPUCooL\CooLSrv.exe [743936 2011-12-01] () [Datei ist nicht signiert] S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2013-08-22] (Microsoft Corporation) [Datei ist nicht signiert] R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712 2016-06-14] (NVIDIA Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.376\McCHSvc.exe [327944 2016-07-19] (McAfee, Inc.) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation) S4 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe [140768 2013-10-03] (Panda Security, S.L.) S3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4979992 2013-11-25] (INCA Internet Co., Ltd.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) S3 PaceLicenseDServices; C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe [2928128 2013-06-07] (PACE Anti-Piracy, Inc.) [Datei ist nicht signiert] S4 PSUAService; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe [37344 2013-10-19] (Panda Security, S.L.) S4 RealNetworks Downloader Resolver Service; C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe [39056 2013-04-16] () S4 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc.) S4 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [Datei ist nicht signiert] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7500048 2016-09-20] (TeamViewer GmbH) S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [87728 2013-10-04] (Microsoft Corporation) R2 vToolbarUpdater40.3.6; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe [1349704 2016-11-29] (AVG Secure Search) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [980552 2016-11-29] () ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AODDriver4.2.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [57952 2013-02-06] (Advanced Micro Devices) S3 ATITool; C:\Windows\System32\DRIVERS\ATITool64.sys [30720 2006-11-10] () [Datei ist nicht signiert] S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-22] (AVM Berlin) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [154680 2016-04-08] (BlueStack Systems) R2 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [270904 2016-04-06] (Bluestack System Inc. ) R1 cbfs5; C:\Windows\system32\drivers\cbfs5.sys [421568 2015-08-15] (EldoS Corporation) R3 cmudaxp; C:\Windows\System32\drivers\cmudaxp.sys [2727936 2011-12-20] (C-Media Inc) S3 fwlanusb4; C:\Windows\System32\DRIVERS\fwlanusb4.sys [1293824 2010-10-22] (AVM GmbH) S3 GameKB; C:\Windows\System32\drivers\GameKB.sys [27648 2012-05-11] () [Datei ist nicht signiert] R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation) S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation) R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [91368 2013-05-29] (Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [122088 2013-05-29] (Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [109288 2013-05-29] (Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [114920 2013-05-29] (Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [95464 2013-05-29] (Panda Security, S.L.) S4 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [69864 2013-05-29] (Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [119016 2013-05-29] (Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [305896 2013-05-29] (Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [118504 2013-05-29] (Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [114920 2013-05-29] (Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [246504 2013-05-29] (Panda Security, S.L.) R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [106216 2013-05-29] (Panda Security, S.L.) R2 NPF; C:\Windows\System32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc.) R1 ntiopnp; C:\Windows\System32\Drivers\ntiopnp.sys [19544 2010-11-11] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [169192 2013-10-17] (Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [122600 2013-10-11] (Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [206056 2013-10-11] (Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124648 2013-10-11] (Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [137960 2013-10-11] (Panda Security, S.L.) S3 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [105704 2013-10-11] (Panda Security, S.L.) S3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [58808 2013-04-29] (Panda Security, S.L.) S4 sfdrv01; C:\Windows\System32\drivers\sfdrv01.sys [68608 2005-08-10] (Protection Technology) [Datei ist nicht signiert] S4 sfhlp02; C:\Windows\System32\drivers\sfhlp02.sys [7168 2005-05-16] (Protection Technology) [Datei ist nicht signiert] S4 sfvfs02; C:\Windows\System32\drivers\sfvfs02.sys [89600 2005-11-03] (Protection Technology) [Datei ist nicht signiert] S3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [6144 2012-12-19] () S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) S3 cpuz139; \??\C:\Users\Marc\AppData\Local\Temp\cpuz139_x64.sys [X] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [X] S3 X6va012; \??\C:\Windows\SysWOW64\Drivers\X6va012 [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-05 18:00 - 2016-12-05 18:01 - 00000085 _____ C:\Windows\wininit.ini 2016-12-03 23:17 - 2016-12-05 18:27 - 00000000 ____D C:\FRST 2016-12-03 23:17 - 2016-12-05 18:27 - 00000000 ____D C:\farber 2016-11-27 18:21 - 2016-11-27 18:21 - 00000000 ____D C:\Users\Marc\AppData\Local\ElevatedDiagnostics 2016-11-24 19:43 - 2016-11-28 23:09 - 00000000 ____D C:\Users\Marc\AppData\LocalLow\Mozilla 2016-11-24 01:39 - 2016-11-24 01:59 - 00000000 ____D C:\Windows\Panther 2016-11-24 01:39 - 2016-11-24 01:39 - 00000000 ___HD C:\$Windows.~WS 2016-11-24 01:39 - 2016-11-24 01:39 - 00000000 ____D C:\$WINDOWS.~BT 2016-11-13 17:37 - 2016-11-13 18:06 - 00000000 ____D C:\Users\Marc\Desktop\die videos 2016-11-13 17:36 - 2016-11-13 19:25 - 00000000 ____D C:\Users\Marc\Desktop\Neuer Ordner 2016-11-13 16:02 - 2016-09-27 10:32 - 13030725 _____ C:\Users\Marc\Desktop\IMG_8888.mp4 2016-11-12 18:43 - 2016-11-13 16:48 - 00000000 ____D C:\Users\Marc\Desktop\fotos vom papa sortiert 2016-11-12 18:32 - 2016-11-24 01:50 - 00000000 ____D C:\Users\Marc\Desktop\papas 2016-11-11 16:33 - 2016-11-13 17:33 - 00000000 ____D C:\Users\Marc\Desktop\fotos vom papa 2016-11-11 15:40 - 2016-11-11 15:40 - 00001753 _____ C:\Users\Public\Desktop\iTunes.lnk 2016-11-11 15:40 - 2016-11-11 15:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2016-11-11 15:40 - 2016-11-11 15:40 - 00000000 ____D C:\Program Files\iTunes 2016-11-11 15:40 - 2016-11-11 15:40 - 00000000 ____D C:\Program Files\iPod 2016-11-09 00:23 - 2016-11-02 16:36 - 00382696 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2016-11-09 00:23 - 2016-11-02 16:32 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2016-11-09 00:23 - 2016-11-02 16:22 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2016-11-09 00:23 - 2016-11-02 16:16 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2016-11-09 00:23 - 2016-11-02 16:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2016-11-09 00:23 - 2016-11-02 16:16 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2016-11-09 00:23 - 2016-11-02 15:53 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2016-11-09 00:23 - 2016-10-28 04:59 - 00394440 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2016-11-09 00:23 - 2016-10-28 04:14 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2016-11-09 00:23 - 2016-10-27 20:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2016-11-09 00:23 - 2016-10-27 20:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2016-11-09 00:23 - 2016-10-27 19:55 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2016-11-09 00:23 - 2016-10-27 19:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2016-11-09 00:23 - 2016-10-27 19:54 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2016-11-09 00:23 - 2016-10-27 19:53 - 00576000 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2016-11-09 00:23 - 2016-10-27 19:53 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2016-11-09 00:23 - 2016-10-27 19:51 - 02896384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2016-11-09 00:23 - 2016-10-27 19:44 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2016-11-09 00:23 - 2016-10-27 19:43 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2016-11-09 00:23 - 2016-10-27 19:38 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2016-11-09 00:23 - 2016-10-27 19:37 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2016-11-09 00:23 - 2016-10-27 19:37 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2016-11-09 00:23 - 2016-10-27 19:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2016-11-09 00:23 - 2016-10-27 19:37 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2016-11-09 00:23 - 2016-10-27 19:28 - 25763328 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2016-11-09 00:23 - 2016-10-27 19:28 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2016-11-09 00:23 - 2016-10-27 19:24 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2016-11-09 00:23 - 2016-10-27 19:19 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2016-11-09 00:23 - 2016-10-27 19:15 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2016-11-09 00:23 - 2016-10-27 19:13 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2016-11-09 00:23 - 2016-10-27 19:09 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2016-11-09 00:23 - 2016-10-27 19:08 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2016-11-09 00:23 - 2016-10-27 19:05 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2016-11-09 00:23 - 2016-10-27 19:02 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2016-11-09 00:23 - 2016-10-27 18:49 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2016-11-09 00:23 - 2016-10-27 18:46 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2016-11-09 00:23 - 2016-10-27 18:46 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2016-11-09 00:23 - 2016-10-27 18:44 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2016-11-09 00:23 - 2016-10-27 18:44 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2016-11-09 00:23 - 2016-10-27 18:17 - 15257088 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2016-11-09 00:23 - 2016-10-27 18:16 - 02920448 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2016-11-09 00:23 - 2016-10-27 18:03 - 01543680 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2016-11-09 00:23 - 2016-10-27 17:54 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2016-11-09 00:23 - 2016-10-27 16:05 - 20304896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2016-11-09 00:23 - 2016-10-25 16:02 - 03219456 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2016-11-09 00:23 - 2016-10-22 18:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2016-11-09 00:23 - 2016-10-22 18:36 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2016-11-09 00:23 - 2016-10-22 18:36 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2016-11-09 00:23 - 2016-10-22 18:35 - 00498688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2016-11-09 00:23 - 2016-10-22 18:35 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2016-11-09 00:23 - 2016-10-22 18:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2016-11-09 00:23 - 2016-10-22 18:27 - 02287616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2016-11-09 00:23 - 2016-10-22 18:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2016-11-09 00:23 - 2016-10-22 18:26 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2016-11-09 00:23 - 2016-10-22 18:22 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2016-11-09 00:23 - 2016-10-22 18:21 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2016-11-09 00:23 - 2016-10-22 18:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2016-11-09 00:23 - 2016-10-22 18:20 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2016-11-09 00:23 - 2016-10-22 18:09 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2016-11-09 00:23 - 2016-10-22 18:04 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2016-11-09 00:23 - 2016-10-22 18:03 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2016-11-09 00:23 - 2016-10-22 17:59 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2016-11-09 00:23 - 2016-10-22 17:58 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2016-11-09 00:23 - 2016-10-22 17:56 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2016-11-09 00:23 - 2016-10-22 17:54 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2016-11-09 00:23 - 2016-10-22 17:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2016-11-09 00:23 - 2016-10-22 17:45 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2016-11-09 00:23 - 2016-10-22 17:44 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2016-11-09 00:23 - 2016-10-22 17:43 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2016-11-09 00:23 - 2016-10-22 17:43 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2016-11-09 00:23 - 2016-10-22 17:30 - 13654016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2016-11-09 00:23 - 2016-10-22 17:12 - 02444800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2016-11-09 00:23 - 2016-10-22 17:09 - 01312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2016-11-09 00:23 - 2016-10-22 17:09 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2016-11-09 00:23 - 2016-10-15 16:31 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2016-11-09 00:23 - 2016-10-15 16:31 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll 2016-11-09 00:23 - 2016-10-15 16:13 - 00741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2016-11-09 00:23 - 2016-10-15 16:13 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll 2016-11-09 00:23 - 2016-10-11 16:37 - 00370920 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys 2016-11-09 00:23 - 2016-10-11 16:31 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2016-11-09 00:23 - 2016-10-11 16:31 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll 2016-11-09 00:23 - 2016-10-11 16:31 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2016-11-09 00:23 - 2016-10-11 16:31 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\input.dll 2016-11-09 00:23 - 2016-10-11 16:31 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\tintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\quick.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\qintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\phon.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\cintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\chajei.ime 2016-11-09 00:23 - 2016-10-11 16:31 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\pintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME 2016-11-09 00:23 - 2016-10-11 16:18 - 00829952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll 2016-11-09 00:23 - 2016-10-11 16:18 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2016-11-09 00:23 - 2016-10-11 16:18 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2016-11-09 00:23 - 2016-10-11 16:18 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quick.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\phon.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cintlgnt.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00125952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chajei.ime 2016-11-09 00:23 - 2016-10-11 16:18 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pintlgnt.ime 2016-11-09 00:23 - 2016-10-11 14:33 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2016-11-09 00:23 - 2016-10-11 14:06 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2016-11-09 00:23 - 2016-10-10 16:38 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2016-11-09 00:23 - 2016-10-10 16:38 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2016-11-09 00:23 - 2016-10-10 16:34 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2016-11-09 00:23 - 2016-10-10 16:34 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2016-11-09 00:23 - 2016-10-10 16:34 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2016-11-09 00:23 - 2016-10-10 16:34 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 01462272 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2016-11-09 00:23 - 2016-10-10 16:33 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2016-11-09 00:23 - 2016-10-10 16:16 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2016-11-09 00:23 - 2016-10-10 16:02 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2016-11-09 00:23 - 2016-10-10 15:56 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2016-11-09 00:23 - 2016-10-10 15:55 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2016-11-09 00:23 - 2016-10-10 15:55 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2016-11-09 00:23 - 2016-10-10 15:55 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2016-11-09 00:23 - 2016-10-10 15:54 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2016-11-09 00:23 - 2016-10-10 15:50 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2016-11-09 00:23 - 2016-10-07 16:40 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2016-11-09 00:23 - 2016-10-07 16:37 - 05547752 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2016-11-09 00:23 - 2016-10-07 16:37 - 00706792 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2016-11-09 00:23 - 2016-10-07 16:35 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 03649536 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00877056 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:32 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:18 - 04000488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2016-11-09 00:23 - 2016-10-07 16:18 - 03944680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2016-11-09 00:23 - 2016-10-07 16:15 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00581632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 16:04 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2016-11-09 00:23 - 2016-10-07 16:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2016-11-09 00:23 - 2016-10-07 16:04 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2016-11-09 00:23 - 2016-10-07 16:01 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2016-11-09 00:23 - 2016-10-07 16:00 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2016-11-09 00:23 - 2016-10-07 15:56 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2016-11-09 00:23 - 2016-10-07 15:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2016-11-09 00:23 - 2016-10-07 15:50 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2016-11-09 00:23 - 2016-10-07 15:50 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2016-11-09 00:23 - 2016-10-07 15:50 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2016-11-09 00:23 - 2016-10-07 15:49 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 15:49 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 15:49 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2016-11-09 00:23 - 2016-10-07 15:49 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2016-11-09 00:23 - 2016-10-05 15:54 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2016-11-09 00:23 - 2016-09-15 15:56 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll 2016-11-09 00:23 - 2016-09-13 16:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2016-11-09 00:23 - 2016-09-13 16:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2016-11-09 00:23 - 2016-09-09 19:20 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2016-11-09 00:23 - 2016-09-09 19:00 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2016-11-09 00:23 - 2016-08-22 17:19 - 01386496 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-12-05 18:26 - 2012-06-29 14:09 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Skype 2016-12-05 18:24 - 2012-07-20 22:07 - 00000000 ____D C:\Users\Marc\AppData\Roaming\BitTorrent 2016-12-05 18:18 - 2016-06-19 14:54 - 00003188 ____H C:\Windows\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C}.job 2016-12-05 18:14 - 2009-07-14 05:45 - 00027408 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2016-12-05 18:14 - 2009-07-14 05:45 - 00027408 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2016-12-05 18:10 - 2009-07-14 18:58 - 00699416 _____ C:\Windows\system32\perfh007.dat 2016-12-05 18:10 - 2009-07-14 18:58 - 00149556 _____ C:\Windows\system32\perfc007.dat 2016-12-05 18:10 - 2009-07-14 06:13 - 01620612 _____ C:\Windows\system32\PerfStringBackup.INI 2016-12-05 18:10 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2016-12-05 18:08 - 2012-06-29 13:57 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2016-12-05 18:04 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2016-12-05 18:03 - 2012-07-20 18:49 - 00000000 ____D C:\ProgramData\NVIDIA 2016-12-05 18:02 - 2016-08-14 12:44 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2016-12-05 18:02 - 2016-07-24 12:41 - 00000000 ____D C:\Program Files\Common Files\AV 2016-12-05 18:02 - 2016-07-14 00:32 - 00000000 ____D C:\ProgramData\MFAData 2016-12-05 18:02 - 2014-12-16 16:39 - 00000000 ____D C:\Users\Marc\AppData\Local\Avg 2016-12-05 17:59 - 2016-07-24 12:35 - 00000000 ____D C:\Program Files (x86)\AVG 2016-12-05 17:58 - 2016-07-14 00:30 - 00000000 ____D C:\Users\Marc\AppData\Local\AvgSetupLog 2016-12-05 17:55 - 2016-07-24 12:39 - 00000000 ___HD C:\$AVG 2016-12-05 17:38 - 2013-01-22 23:27 - 00000924 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000UA.job 2016-12-05 17:38 - 2013-01-22 23:27 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000Core.job 2016-12-04 01:02 - 2016-08-14 11:34 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2016-12-04 00:39 - 2016-08-14 11:41 - 00000946 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job 2016-12-03 23:37 - 2016-10-15 17:27 - 00000000 ____D C:\Users\Marc\Downloads\Dokumente zum lernen 2016-12-02 22:25 - 2014-08-17 15:04 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-12-02 22:25 - 2012-06-29 14:09 - 00000000 ____D C:\ProgramData\Skype 2016-11-30 03:02 - 2016-06-16 21:04 - 00002154 _____ C:\Windows\epplauncher.mif 2016-11-30 03:02 - 2016-06-16 21:04 - 00002117 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk 2016-11-30 03:01 - 2016-06-16 21:03 - 00000000 ____D C:\Program Files\Microsoft Security Client 2016-11-30 03:01 - 2016-06-16 21:03 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client 2016-11-29 22:24 - 2016-04-13 22:19 - 00000000 ____D C:\Users\Marc\AppData\Local\Color-Change-Detector 2016-11-29 22:19 - 2016-04-13 00:07 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2016-11-29 20:04 - 2016-08-14 23:45 - 00000000 ____D C:\Program Files (x86)\AVG Web TuneUp 2016-11-29 20:03 - 2016-08-14 23:45 - 00000000 ____D C:\ProgramData\AVG Web TuneUp 2016-11-29 19:54 - 2009-07-14 06:37 - 00000000 ____D C:\Windows\DigitalLocker 2016-11-28 02:12 - 2012-06-29 13:56 - 00000000 ____D C:\Users\Marc\AppData\Local\Adobe 2016-11-28 02:10 - 2012-06-29 13:57 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2016-11-28 02:10 - 2012-06-29 13:57 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2016-11-28 02:10 - 2012-06-29 13:57 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2016-11-28 02:10 - 2012-06-29 13:57 - 00000000 ____D C:\Windows\system32\Macromed 2016-11-28 01:36 - 2016-06-16 16:45 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2016-11-27 20:59 - 2015-08-29 17:36 - 00000000 ____D C:\Users\Marc\AppData\Local\CrashDumps 2016-11-27 18:58 - 2013-03-20 21:13 - 00000000 ____D C:\Users\Marc\AppData\Roaming\TeamViewer 2016-11-27 18:57 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2016-11-27 18:25 - 2014-06-27 03:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-24 19:42 - 2016-06-28 17:54 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-24 01:59 - 2016-07-24 14:48 - 00000000 ____D C:\Users\Marc\Downloads\4k 2016-11-15 00:03 - 2012-10-26 20:09 - 00002187 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-11-13 15:40 - 2013-02-12 18:27 - 00000000 ____D C:\Users\Marc\Desktop\System neu 2016-11-13 14:12 - 2016-10-12 01:46 - 00000145 _____ C:\Users\Marc\Desktop\things im learning.txt 2016-11-12 18:24 - 2012-11-16 20:58 - 00001456 _____ C:\Users\Marc\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2016-11-12 18:19 - 2016-09-25 13:45 - 00002008 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2016-11-11 17:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2016-11-11 16:27 - 2015-04-19 17:58 - 00000000 ____D C:\Users\Marc\AppData\Roaming\Apple Computer 2016-11-11 15:40 - 2016-04-03 22:25 - 00000000 ____D C:\Program Files\Common Files\Apple 2016-11-11 15:40 - 2015-04-19 17:51 - 00000000 ____D C:\ProgramData\Apple Computer 2016-11-11 15:38 - 2016-04-03 22:28 - 00000000 ____D C:\Program Files\Bonjour 2016-11-11 15:09 - 2016-08-14 21:16 - 05097584 _____ C:\Windows\system32\FNTCACHE.DAT 2016-11-09 01:25 - 2013-07-19 02:01 - 00000000 ____D C:\Windows\system32\MRT 2016-11-09 01:14 - 2012-06-30 10:54 - 141011376 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2016-11-06 16:19 - 2012-08-05 23:28 - 00000000 ____D C:\Users\Marc\AppData\Roaming\TS3Client ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2013-07-16 04:27 - 2013-07-16 04:27 - 0083968 _____ () C:\Program Files\1031.MST 2013-07-16 04:27 - 2013-07-16 04:27 - 33568256 _____ () C:\Program Files\AMD OverDrive.msi 2013-02-11 00:28 - 2012-12-30 14:47 - 0008204 ____R () C:\Program Files\EULA.txt 2013-02-11 00:28 - 2012-12-29 11:26 - 0021892 _____ () C:\Program Files\license.txt 2013-02-11 00:28 - 2012-12-29 11:26 - 0007967 _____ () C:\Program Files\Setup.cfg 2013-02-11 00:29 - 2012-12-29 11:26 - 0404920 _____ (NVIDIA Corporation) C:\Program Files\setup.exe 2014-05-10 21:35 - 2014-05-10 21:35 - 206975419 _____ () C:\Users\Marc\AppData\Roaming\.minecraft.rar 2012-08-09 01:29 - 2012-08-09 01:29 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe BMP Format CS5 Prefs 2013-09-26 14:31 - 2015-02-20 23:11 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe CS6-GIF-Format - Voreinstellungen 2012-07-13 13:13 - 2016-09-27 15:27 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen 2012-06-30 11:28 - 2013-03-10 00:33 - 0000132 _____ () C:\Users\Marc\AppData\Roaming\Adobe PNG Format CS5 Prefs 2014-06-14 20:38 - 2014-06-14 20:38 - 0000099 _____ () C:\Users\Marc\AppData\Roaming\LauncherSettings_live.cfg 2014-06-14 20:44 - 2014-06-14 20:44 - 0000040 _____ () C:\Users\Marc\AppData\Roaming\TheHunterSettings_steam_live.cfg 2013-03-09 12:27 - 2013-03-09 12:41 - 0001456 _____ () C:\Users\Marc\AppData\Local\Adobe Für Web speichern 12.0 Prefs 2012-11-16 20:58 - 2016-11-12 18:24 - 0001456 _____ () C:\Users\Marc\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2013-05-18 22:25 - 2016-08-13 22:51 - 0007605 _____ () C:\Users\Marc\AppData\Local\Resmon.ResmonCfg 2014-04-14 13:50 - 2014-09-09 14:28 - 0022733 _____ () C:\ProgramData\NanoLog001.log 2012-09-11 11:21 - 2014-04-10 02:41 - 0006400 _____ () C:\ProgramData\NanoRepository.bin 2012-09-11 11:21 - 2013-12-16 03:40 - 0006400 _____ () C:\ProgramData\NanoRepository.bin.bak Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Marc\NvGPUPro_Setup.exe C:\Windows\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C}.job ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-24 04:24 ==================== Ende von FRST.txt ============================ |
05.12.2016, 18:51 | #9 |
| Windows 10 extrem langsam geworden (Ich weiss auf dem System ist viel Müll drauf, nachdem wir fertig sind räume ich auf versprochen) Danke für deine Hilfe. Additional.txt Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-12-2016 durchgeführt von Marc (05-12-2016 18:27:58) Gestartet von C:\farber Windows 7 Professional Service Pack 1 (X64) (2012-06-29 12:03:07) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2131955426-2682777134-591621578-500 - Administrator - Disabled) Gast (S-1-5-21-2131955426-2682777134-591621578-501 - Limited - Disabled) => C:\Users\Gast Marc (S-1-5-21-2131955426-2682777134-591621578-1000 - Administrator - Enabled) => C:\Users\Marc UpdatusUser (S-1-5-21-2131955426-2682777134-591621578-1012 - Limited - Enabled) => C:\Users\TEMP.Marc-PC ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Microsoft Security Essentials (Disabled - Up to date) {71A27EC9-3DA6-45FC-60A7-004F623C6189} AS: Microsoft Security Essentials (Disabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Active Directory Authentication Library für SQL Server (Version: 13.0.1601.5 - Microsoft Corporation) Hidden Active Directory Authentication Library für SQL Server (x86) (x32 Version: 13.0.1601.5 - Microsoft Corporation) Hidden Adobe Acrobat XI Pro (HKLM-x32\...\{23D3F585-AE29-4670-8E3E-64A0EFB29240}) (Version: 11.0 - Adobe Systems Incorporated) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.00 - Adobe Systems) Adobe After Effects CC 2014 (HKLM-x32\...\{2B22C750-5C3B-4738-B621-BA786AC7A494}) (Version: 13.0.0 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.3.0.3650 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.0.1.88 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2 - Adobe Systems Incorporated) Adobe Dreamweaver CC 2014 (HKLM-x32\...\{7F823F8E-4348-11E4-8BF8-81763C49AA32}) (Version: 15.0.0 - Adobe Systems Incorporated) Adobe Flash Player 22 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 22.0.0.210 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.192 - Adobe Systems Incorporated) Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Professional CC (HKLM-x32\...\{B56B95BF-7161-4166-8288-DB1BA9F6C9B8}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Illustrator CS6 (HKLM-x32\...\{4869414E-7AEA-4C8E-BE1C-8D40977FD517}) (Version: 16.0 - Adobe Systems Incorporated) Adobe InDesign CC 2014 (HKLM-x32\...\{CCDCB9C4-72BA-1014-A3F8-D123F2F18BC2}) (Version: 10.0 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Reader X (10.1.11) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.11 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.8.158 - Adobe Systems, Inc.) Age Of Empires II HD v2.5 [LAN Edition] (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Age Of Empires II HD v2.5 [LAN Edition]) (Version: - ) Akamai NetSession Interface (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Amazon Kindle (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Amazon Kindle) (Version: - Amazon) AMD Catalyst Install Manager (HKLM\...\{DFEFBFBF-02CF-3316-B694-B3C44C9C02B9}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) AMD OverDrive (HKLM-x32\...\{973620A0-7EA9-4D9D-95B7-349B78664AC7}) (Version: 4.2.6.0638 - Advanced Micro Devices, Inc.) Angry Birds (HKLM-x32\...\{370CA4B0-A1D8-4863-A3C5-6879AEE1663A}) (Version: 3.0.0 - Rovio) ANNO 1404 - Gold Edition (HKLM-x32\...\{3D9CF3CA-3AB0-4A82-9853-D7C43FD1D775}) (Version: 3.10.0000 - Ubisoft) Ansel (Version: 368.81 - NVIDIA Corporation) Hidden Antares Auto-Tune 7 VST (HKLM\...\{8E7715AA-E19B-44E8-AE4C-FB5B37B7E2D9}) (Version: 7.05.0005 - Antares Audio Technologies) Any Video Converter 5.8.3 (HKLM-x32\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Apple Application Support (32-Bit) (HKLM-x32\...\{29DB9165-5FC1-48F0-9188-26123F526848}) (Version: 5.0.1 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{5905C8CF-1C88-4478-A48E-4E458AD1BC7E}) (Version: 5.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{D4D86CB2-2370-4691-8272-3869EDED6C64}) (Version: 10.0.0.18 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 Beta2 - Michael Tippach) Assistive Context-Aware Toolkit (ACAT) (HKLM-x32\...\{410FA4CC-036E-4F4F-8353-88FCDBA8D9D4}) (Version: 1.01.0000 - Intel Corporation) ASUS Xonar DG Audio Driver (HKLM\...\C-Media Oxygen HD Audio Driver) (Version: - ) ATITool Overclocking Utility (HKLM-x32\...\ATITool) (Version: 0.26 - ) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 5.0.142.14 - Autodesk) Autodesk DirectConnect 2016 64-bit (HKLM\...\Autodesk DirectConnect 2016 64-bit) (Version: 10.0.98.0 - Autodesk) Autodesk DirectConnect 2016 64-bit (Version: 10.0.98.0 - Autodesk) Hidden Autodesk Maya 2016 (HKLM\...\Autodesk Maya 2016) (Version: 16.0.1312.0 - Autodesk) Autodesk Maya 2016 (Version: 16.0.1312.0 - Autodesk) Hidden AutoHotkey 1.0.48.05 (HKLM-x32\...\AutoHotkey) (Version: 1.0.48.05 - Chris Mallett) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.3.6.255 - AVG Technologies) AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: - AVM Berlin) AzureTools.Notifications (x32 Version: 2.1.10731.1602 - Microsoft Corporation) Hidden Bandicam (HKLM-x32\...\Bandicam) (Version: 1.8.6.321 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandisoft.com) Behaviors SDK (XAML) for Visual Studio (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden BitTorrent (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\BitTorrent) (Version: 7.9.9.42974 - BitTorrent Inc.) Blend for Visual Studio 2013 (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio 2013 ENU resources (x32 Version: 12.0.41002.1 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for Silverlight 5 (x32 Version: 3.0.40218.0 - Microsoft Corporation) Hidden BlueStacks App Player (HKLM-x32\...\{38E69C88-1B39-4A51-96D2-303337D9C210}) (Version: 2.2.18.6014 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Brackets (HKLM-x32\...\{4BCC5124-095C-4871-8562-55FA29DD8773}) (Version: 1.1 - brackets.io) Build Tools - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools Language Resources - amd64 (Version: 12.0.21005 - Microsoft Corporation) Hidden Build Tools Language Resources - x86 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden Call of Duty: Modern Warfare 2 - Multiplayer (HKLM\...\Steam App 10190) (Version: - Infinity Ward) Call of Duty: Modern Warfare 2 (HKLM\...\Steam App 10180) (Version: - Infinity Ward) CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) CPUCooL (remove only) (HKLM-x32\...\CPUCooL) (Version: - ) CPUID CPU-Z 1.76 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) CPUID HWMonitor 1.29 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) Creative MediaSource 5 (HKLM-x32\...\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}) (Version: 5.00 - ) Crystal Reports for Visual Studio (x32 Version: 12.51.0.240 - SAP) Hidden Curse (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Curse) DayZ Commander (HKLM-x32\...\{B3653588-3AC0-4A1D-950F-D96531E84374}) (Version: 0.92.91 - Dotjosh Studios) Defraggler (HKLM\...\Defraggler) (Version: 2.21 - Piriform) DH Driver Cleaner Professional Edition (HKLM-x32\...\Driver Cleaner Pro) (Version: Version 1.5 - Ruud Ketelaars) Discord (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Discord) (Version: 0.0.296 - Hammer & Chisel, Inc.) DoSHTTP 2.5.1 (HKLM-x32\...\DoSHTTP 2.5.1) (Version: - ) Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4954.46574 - PreEmptive Solutions) Hidden Dotfuscator Software Services - Community Edition - DEU (HKLM-x32\...\{CE9BAD6E-60FC-46CC-82A2-5B0F2B1A0E36}) (Version: 5.0.2300.0 - PreEmptive Solutions) Dotfuscator Software Services - Community Edition (HKLM-x32\...\{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}) (Version: 5.0.2300.0 - PreEmptive Solutions) eBesucher Restarter 1.2 (HKLM-x32\...\{3F099090-131B-4D94-97CF-6FD738F51C01}_is1) (Version: 1.2.04.0 - eBesucher) Entity Framework Tools for Visual Studio 2013 (HKLM-x32\...\{08AEF86A-1956-4846-B906-B01350E96E30}) (Version: 12.0.20912.0 - Microsoft Corporation) Epic Games Launcher (HKLM-x32\...\{23073CBA-4A21-464F-9874-0FF6B7727C7C}) (Version: 1.1.77.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden EPUB Converter 9.5.4 (HKLM-x32\...\{2AE773B8-7FA5-4D59-B4EC-D22B1CC2D2BC}) (Version: 9.5.4 - AniceSoft) EPUB File Reader (HKLM-x32\...\{818C5857-5C74-4CAC-9F43-E5597086852D}_is1) (Version: - epubfilereader.com) Erforderliche Komponenten für SSDT (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation) Erforderliche Komponenten für SSDT (HKLM-x32\...\{FD639F4D-1460-42E6-B32D-FEC1745D0BDC}) (Version: 13.0.1601.5 - Microsoft Corporation) EVEREST Home Edition v2.20 (HKLM-x32\...\EVEREST Home Edition_is1) (Version: 2.20 - Lavalys Inc) EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) FileZilla Client 3.18.0 (HKLM-x32\...\FileZilla Client) (Version: 3.18.0 - Tim Kosse) FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line) FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - ) GeForce Experience NvStream Client Components (Version: 0.1.87 - NVIDIA Corporation) Hidden Ghost Control 3.0.6 (HKLM-x32\...\Ghost Control_is1) (Version: - N.R.S.) GhostMouse (HKLM-x32\...\GhostMouse_is1) (Version: Free V3.2.1 - ghost-mouse.com) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.) Google Earth (HKLM-x32\...\{28E82311-8616-11E1-BEB0-B8AC6F97B88E}) (Version: 6.2.2.6613 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Hotfix für Microsoft Visual Studio 2007 Tools for Applications - ENU (KB947789) (HKLM-x32\...\{8E87B944-4815-3C5E-947F-5035C9F64362}.KB947789) (Version: 1 - Microsoft Corporation) IIS 10.0 Express (HKLM\...\{13FD7E30-D2F1-498D-ABC2-A4242DB6610E}) (Version: 10.0.1736 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line) IsoBuster 3.6 (HKLM-x32\...\IsoBuster_is1) (Version: 3.6 - Smart Projects) iTunes (HKLM\...\{9946A4F7-E0FD-4A33-82D1-06CBFFBBB9F9}) (Version: 12.5.1.21 - Apple Inc.) Java 8 Update 101 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) JavaScript Tooling (Version: 12.0.21005 - Microsoft Corporation) Hidden Kindle Previewer (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\KindlePreviewer) (Version: 2.94 - Amazon) Kindle Textbook Creator (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\Kindle Textbook Creator) (Version: 1.6.5.0 - Amazon) Launcher Prerequisites (x64) (x32 Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games) LEGO® Star Wars™: Die Komplette Saga (HKLM-x32\...\InstallShield_{D596980D-17BE-4425-B8F0-5640719AADE9}) (Version: 1.00.0000 - LucasArts) LEGO® Star Wars™: The Complete Saga (x32 Version: 1.00.0000 - LucasArts) Hidden LocalESPC Dev12 (x32 Version: 8.100.25984 - Microsoft Corporation) Hidden LocalESPCui for en-us Dev12 (x32 Version: 8.100.25984 - Microsoft) Hidden Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MASS Facebook Account Creator (HKLM-x32\...\MASS Facebook Account Creator2.1.55) (Version: 2.1.55 - Easytech Software Solutions) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.376.2 - McAfee, Inc.) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft ASP.NET MVC 2 - DEU (HKLM-x32\...\{E4E9CBC9-1CF5-48E3-AF6F-1AB44A856346}) (Version: 2.0.50331.0 - Microsoft Corporation) Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools - DEU (HKLM-x32\...\{31C3C6EA-E991-405F-A3AA-2C070CCCC47C}) (Version: 2.0.50331.0 - Microsoft Corporation) Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools (HKLM-x32\...\{40416836-56CC-4C0E-A6AF-5C34BADCE483}) (Version: 2.0.50217.0 - Microsoft Corporation) Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 Language Pack - DEU (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - DEU) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation) Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.25420 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0000-0000-0000000FF1CE}_WORD_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Business 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Word 2007 (HKLM-x32\...\WORD) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Outlook Hotmail Connector 64-bit (HKLM\...\{95140000-0081-0409-1000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.10.209.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Silverlight 3 SDK - Deutsch (HKLM-x32\...\{91F54E1D-804A-46D8-A56C-53EA9C4B3177}) (Version: 3.0.40818.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK (HKLM-x32\...\{E1FBB3D4-ADB0-4949-B101-855DA061C735}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2008 Native Client (HKLM\...\{1C3F92D0-3EC5-4CD4-9D5E-1E7834B65BB8}) (Version: 10.0.1600.22 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{58FED865-4F13-408D-A5BF-996019C4B936}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{1B876496-B3A2-4D22-9B12-B608A3FD4B8B}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{6C026A91-640F-4A23-8B68-05D589CC6F18}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{2F7DBBE6-8EBC-495C-9041-46A772F4E311}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{43A5C316-9521-49C3-B9B6-FCE5E1005DF0}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{54C5041B-0E91-4E92-8417-AAA12493C790}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{04DD7AF4-A6D3-4E30-9BB9-3B3670719234}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2016 LocalDB (HKLM\...\{C555970C-4C94-4A20-9869-AE7E2F84748F}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft SQL Server 2016 Management Objects (x64) (HKLM\...\{264B070C-82D7-4C9C-B1CE-A0B124BCC787}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft SQL Server 2016 T-SQL Language Service (HKLM-x32\...\{4EFF12AE-599C-42A2-ACFA-0D95C3B11A19}) (Version: 13.0.14500.10 - Microsoft Corporation) Microsoft SQL Server 2016 T-SQL ScriptDom (HKLM\...\{E8F3D249-7DE6-4422-AC86-1CE7D5CCFA0F}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 (Deutsch) (HKLM-x32\...\{FA440BE8-EC2F-4478-A01A-077DA0606501}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (14.0.60519.0) (HKLM-x32\...\{9F367648-EC0C-4F97-B351-D12A51E38F96}) (Version: 14.0.60519.0 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (12.0.30919.1) (HKLM-x32\...\{0D7FCBFB-F478-4D32-901C-83F0BF5A3501}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (14.0.60519.0) (HKLM-x32\...\{4E27B0EF-7BAB-432A-AF3D-3FC8F3F7353F}) (Version: 14.0.60519.0 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) (HKLM-x32\...\{6781FF9B-E87D-4A03-9373-A55A288B83FA}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{A47FD1BF-A815-4A76-BE65-53A15BD5D25D}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{4701DEDE-1888-49E0-BAE5-857875924CA2}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Transact-SQL ScriptDom (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 T-SQL Language Service (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2016 Management Objects (HKLM-x32\...\{35A7B00B-4F9C-4B4D-919C-86FFFEE46AD6}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft Sync Framework Runtime v1.0 SP1 (x64) de (HKLM\...\{7AC5FFA7-6815-4AED-B16D-8E0D7CC4B221}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Framework SDK v1.0 SP1 de (HKLM-x32\...\{08DA8E46-ED67-451A-9246-50E0FF6959C9}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Framework Services v1.0 SP1 (x64) de (HKLM\...\{EF9A1373-9238-4E11-8FF8-7B83996F5BE5}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Services for ADO.NET v2.0 SP1 (x64) de (HKLM\...\{11EB3D68-A5BE-43EA-8D31-43B08ADB0DA4}) (Version: 2.0.3010.0 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (HKLM-x32\...\{070C38AC-05CE-43DF-9A20-141332F6AB2B}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2012 (x64) (HKLM\...\{05FF8209-C4F1-4C77-BC28-791653156D20}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft Team Foundation Server 2010-Objektmodell - DEU (HKLM\...\Microsoft Team Foundation Server 2010 Object Model - DEU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319 (HKLM\...\{95A2AD24-BD44-3E39-A31F-CE928276577E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{85467CBC-7A39-33C9-8940-D72D9269B84F}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM-x32\...\{616C6F39-4CE1-3434-A665-2F6A04C09A7F}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Professional - DEU (HKLM-x32\...\Microsoft Visual Studio 2010 Professional - DEU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Macro Tools - DEU Language Pack (HKLM-x32\...\Microsoft Visual Studio Macro Tools - DEU Language Pack) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Macro Tools (HKLM-x32\...\Microsoft Visual Studio Macro Tools) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Professional 2013 (HKLM-x32\...\{6dff50d0-3bc3-4a92-b724-bf6d6a99de4f}) (Version: 12.0.21005.13 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Language Pack - DEU (HKLM-x32\...\{8E87B944-4815-3C5E-947F-5035C9F64362}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server*2016 (HKLM\...\{FEC926D4-785B-4ED7-B35D-3FA37DD29F8B}) (Version: 13.0.1601.5 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server*2016 (HKLM-x32\...\{A37BE9D7-EAAE-4C6B-9D7E-DBD8B8D88681}) (Version: 13.0.1601.5 - Microsoft Corporation) Mobipocket Reader 6.2 (HKLM-x32\...\{342126E1-173C-4585-BFBE-3EBDD20E3E9E}) (Version: 6.2.608 - Mobipocket.com) Mozilla Firefox 50.0 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 50.0 (x86 en-US)) (Version: 50.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.0.6152 - Mozilla) MSI Afterburner 4.2.0 (HKLM-x32\...\Afterburner) (Version: 4.2.0 - MSI Co., LTD) Multiple Image Resizer .NET 4 (HKLM-x32\...\Multiple Image Resizer .NET 4) (Version: 4.0.0.6 - Acumen Business Systems Ltd) Multiple Image Resizer .NET 4 (x32 Version: 4.0.0.6 - Acumen Business Systems Ltd) Hidden Nexon Game Manager (HKLM-x32\...\{289AC7E0-0AEE-4a7b-913C-709D9803D23E}) (Version: - ) Nightly 35.0a1 (x64 en-US) (HKLM\...\Nightly 35.0a1 (x64 en-US)) (Version: 35.0a1 - Mozilla) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.9.2 - Notepad++ Team) Nv GPU Pro (HKLM-x32\...\{B5958559-A6F9-4963-8434-FCD4312FE3FD}_is1) (Version: 1.0.0.30 - Nv GPU Pro) NVIDIA 3D Vision Controller-Treiber 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.81 - NVIDIA Corporation) NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Grafiktreiber 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.81 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 0.15.4 - OBS Project) Octodad (HKLM-x32\...\Octodad) (Version: - ) OnTopReplica (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\OnTopReplica) (Version: 3.4 - Lorenz Cuno Klopfenstein) Open XML SDK 2.5 for Microsoft Office (x32 Version: 2.5.5631 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice.org 3.4.1 (HKLM-x32\...\{2303AEEA-0FA8-4AFD-80A9-8F86BA4B44D2}) (Version: 3.41.9593 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.4.12.2807 - Electronic Arts, Inc.) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden PDF24 Creator 6.9.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) PreEmptive Analytics Visual Studio Components (x32 Version: 1.2.3197.1 - PreEmptive Solutions) Hidden Prerequisites for SSDT (HKLM-x32\...\{35C1D9D6-87C0-46A3-B1B4-EDBCC063221C}) (Version: 11.1.3000.0 - Microsoft Corporation) Project64 1.6 (HKLM-x32\...\{9559F7CA-5E34-4237-A2D9-D856464AD727}) (Version: 1.6 - Project64) Python Tools Redirection Template (x32 Version: 1.1 - Microsoft Corporation) Hidden QuickTime Alternative 3.2.2 (HKLM-x32\...\QuicktimeAlt_is1) (Version: 3.2.2 - ) RealDownloader (x32 Version: 1.3.2 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (x32 Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (x32 Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM-x32\...\RealPlayer 16.0) (Version: 16.0.2 - RealNetworks) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.46.531.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (x32 Version: 1.1.0 - RealNetworks, Inc.) Hidden RivaTuner Statistics Server 6.4.1 (HKLM-x32\...\RTSS) (Version: 6.4.1 - Unwinder) RollerCoaster Tycoon 2 (HKLM-x32\...\{72DF62BD-FF36-424E-AA5F-D89BAFF2C249}) (Version: - ) Roslyn Language Services - x86 (x32 Version: 14.0.25421 - Microsoft Corporation) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-003D-0000-1000-0000000FF1CE}_Office14.SingleImage_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (Version: - Microsoft) Hidden SharePoint Client Components (Version: 15.0.4481.1505 - Microsoft Corporation) Hidden SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Sigil 0.8.6 (HKLM\...\Sigil_is1) (Version: - John Schember) SketchUp 2013 (HKLM-x32\...\{2C0777B8-E91F-45AA-976B-7EB6B40E5400}) (Version: 13.0.4812 - Trimble Navigation Limited) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation) Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.) Smart View (HKLM-x32\...\{C7B50A89-F1D6-41C1-9375-0AF0C4CFE66F}) (Version: 1.0.0.0 - Samsung ) SmartFTP Client (HKLM\...\{3CC12A3E-C882-44AD-89CE-4395336596EE}) (Version: 8.0.2228.0 - SmartSoft Ltd.) SmartFTP Client German (Germany) MUI (HKLM\...\{A77BF35E-243D-48BD-B6E4-DE701A6F0644}) (Version: 8.0.2228.0 - SmartSoft Ltd.) Snap.Do Engine (HKU\S-1-5-21-2131955426-2682777134-591621578-1000\...\{3175d7dd-6577-44fb-8650-599592092fa2}) (Version: 1.67.1.11754 - ReSoft Ltd.) <==== ACHTUNG Sothink Logo Maker (HKLM-x32\...\Sothink Logo Maker_is1) (Version: 3.4 - ) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) SQL-Splitter 1.2.0.1 (HKLM-x32\...\SQL-Splitter_is1) (Version: - CoolFactory) Star Wars Battlefront II (HKLM-x32\...\{3D374523-CFDE-461A-827E-2A102E2AB365}) (Version: 1.0 - LucasArts) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden TeamPlayer 2.2.0 (HKLM-x32\...\TeamPlayer_is1) (Version: 2.2.0 - WunderWorks) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18.2 - TeamSpeak Systems GmbH) TeamViewer 11 (HKLM-x32\...\TeamViewer) (Version: 11.0.66695 - TeamViewer) TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp) Trojan Remover 6.9.4.2946 (HKLM-x32\...\Trojan Remover_is1) (Version: 6.9.4.2946 - Simply Super Software) TSR Watermark Image software version 3.4.1.7 - Free version (HKLM-x32\...\TSR Watermark Image - Free version_is1) (Version: 3.4.1.7 - TSR Software) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-001B-0000-0000-0000000FF1CE}_WORD_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Vegas Pro 12.0 (64-bit) (HKLM\...\{A7C8BBDE-FE98-11E1-87C9-F04DA23A5C58}) (Version: 12.0.367 - Sony) Vindictus EU (HKLM-x32\...\Vindictus EU) (Version: - ) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) WCF Data Services 5.6.0 Runtime (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2013 (x32 Version: 5.6.61587.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (HKLM-x32\...\{5D8DD6A8-C4D7-4554-93F9-F1CC28C72600}) (Version: 4.1.62812.0 - Microsoft Corporation) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) Workflow Manager Client 1.0 (Version: 2.0.30813.2 - Microsoft Corporation) Hidden Workflow Manager Tools 1.0 for Visual Studio (Version: 2.0.30725.1 - Microsoft Corporation) Hidden XAMPP (HKLM-x32\...\xampp) (Version: 5.5.38-1 - Bitnami) XSplit Gamecaster (HKLM-x32\...\{8FE2426D-4C71-4BD6-9483-B6EE48E96817}) (Version: 2.8.1607.2027 - SplitmediaLabs) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2131955426-2682777134-591621578-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0D02DE93-38B8-4476-A704-EC70A91AF2FC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.) Task: {0E18FC46-2082-41ED-B3D0-1596CC52CBF8} - \{9EB140A7-2DBA-4446-8EAC-691C60512F69} -> Keine Datei <==== ACHTUNG Task: {18658A07-6977-4456-B21B-7DCED7E15385} - \DLL-files.com Fixer_MONTHLY -> Keine Datei <==== ACHTUNG Task: {208D49B5-1E2B-4AFF-B00E-F2A8F7E6FEE0} - \{DF32ABD0-FDCD-4003-BF8A-1441C284E72A} -> Keine Datei <==== ACHTUNG Task: {3AA1FB19-73A0-4CF6-9689-D739FAE02321} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-08-14] (Google Inc.) Task: {3DABA7EF-0AA0-446C-A773-0FE6B9195823} - System32\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C} => C:\Users\Marc\Downloads\MultiBrowserSetup.exe [2016-06-19] (TWD Solutions (Pte) Ltd) Task: {43796780-D6F3-40FE-99C7-4279E2969CAC} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe Task: {4BC32568-20AE-41E7-B7DD-708F574DEDED} - \launchspotflux -> Keine Datei <==== ACHTUNG Task: {57821CB5-FCB7-453C-A02F-503844EBF1FF} - System32\Tasks\0214dUpdateInfo => C:\ProgramData\Avg_Update_0214d\0214d_AVG-Secure-Search-Update.exe [2014-03-24] () Task: {653DB7F8-8989-4A19-9F13-CF0E85638D14} - \FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000UA -> Keine Datei <==== ACHTUNG Task: {6B878A79-048F-4079-9BF8-33DA7E3C84A8} - System32\Tasks\{FCB38D9E-C75D-44C6-804E-A93A1153D47E} => Chrome.exe hxxp://ui.skype.com/ui/0/7.24.0.104.272/de/abandoninstall?page=tsMain Task: {70DCED33-8133-470A-A25D-548D2E747C15} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-25] (Adobe Systems Incorporated) Task: {74D1EA1C-BD93-4DAF-9E99-F40B6EDCE8DF} - \SidebarExecute -> Keine Datei <==== ACHTUNG Task: {752595CD-36E9-4B41-A666-0ECB3D67FBD0} - \{4120EA72-FB35-41CB-92F9-7F628F735324} -> Keine Datei <==== ACHTUNG Task: {83FB7A74-500F-4D88-9DB0-39F50B2BB3DE} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2131955426-2682777134-591621578-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {89DF53A7-9EB5-4C69-9591-A93E9F257128} - \AdobeAAMUpdater-1.0-Marc-PC-Marc -> Keine Datei <==== ACHTUNG Task: {8B1F09AB-E4DC-4602-A5CA-2655C44EFC6A} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe Task: {8ED9FFF0-6801-451F-9CE0-48D3E2DAE34B} - \DLL-files.com Fixer_UPDATES -> Keine Datei <==== ACHTUNG Task: {9137F300-7BFE-406A-8E4A-19D22C0B9C97} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {9BC5920B-CFF9-4283-8BC5-3CC036B0AA9F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd) Task: {9E1C3F8E-23D6-4748-9979-103CEFEFEDCF} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2131955426-2682777134-591621578-1000 => C:\Program Files (x86)\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {B1638D31-9BBF-4DD8-9360-570D50890E8F} - \{6ADA8FBE-4602-45AB-AC94-524C675758E6} -> Keine Datei <==== ACHTUNG Task: {B9161B57-5AAA-44CD-B4A3-A12A85D384B8} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\\MpCmdRun.exe [2016-11-14] (Microsoft Corporation) Task: {BAFD57F9-027A-4231-A0B1-47774CB4D6D4} - System32\Tasks\{D0979BE7-D64D-4155-BBD8-8DD038557F4B} => pcalua.exe -a C:\Users\Marc\Downloads\FlyffUsaSetup.060119.404.exe -d C:\Users\Marc\Downloads Task: {C3AE0908-C0A0-4C81-B447-616B4AFD4484} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2016-06-22] (Oracle Corporation) Task: {D7106D72-DCCB-4955-A4B8-F0FDE3873136} - \{41F996BE-8A19-4674-BAAE-569E49F7008A} -> Keine Datei <==== ACHTUNG Task: {E6C7EB3F-8D4D-43E9-A2F4-E1465F46FAD2} - \{D9EC9D6F-8264-449E-B9A5-3FF79759DAF0} -> Keine Datei <==== ACHTUNG Task: {F04C9AFF-254B-4B8D-86DD-51E5732328DB} - \FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000Core -> Keine Datei <==== ACHTUNG (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\0214dUpdateInfo.job => C:\ProgramData\Avg_Update_0214d\0214d_AVG-Secure-Search-Update.exe Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_23_0_0_162_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000Core.job => C:\Users\Marc\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2131955426-2682777134-591621578-1000UA.job => C:\Users\Marc\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\{BC8FE7DD-2DE5-4DE1-BAA9-2452BF2AB06C}.job => C:\Users\Marc\Downloads\MultiBrowserSetup.exe׀/i C:\Users\Marc\AppData\Local\Temp\AIEA9F2.tmp AI_RESUME=1 ADDLOCAL=MultiBrowser,AI64BitFiles,CA62D813A4E74FA2AAE86A7D7B7B1493,EF36CDD6CE40CFA978040EA5CBA799,MicrosoftVisualC,Updater PRIMARYFOLDER=APPDIR ROOTDRIVE=D:\ TRANSFORMS=C:\Users\Marc\AppData\Roaming\TWD Solutions (Pte) Ltd\MultiBrowser 1.3.3.0\install\MultiBrowserSetup.mst;C:\Users\Marc\AppData\Roaming\TWD Solutions (Pte) Ltd\MultiBrowser 1.3.3.0\install\1031 AI_PREREQFILES=C:\Users\Marc\AppData\Roaming\MultiBrowser\prerequisites\vcredist_x86 2010.exe AI_PREREQDIRS=C:\Users\Marc\AppData\Roaming AI_TEMP_FILE_ROLLBACK_INFO=C:\USERS\MARC\APPDATA\LOCAL\TEMP\INSTALL.HTML|C:\USERS\MARC\APPDATA\LOCAL\TEMP\ AITEMPFILESEXTRACTED=YES AI_MISSING_PREREQS=Microsoft Visual C++ 2010 x86 Redistributable AI_FOUND_PREREQS=.NET Framework 4.5|Visual C++ Redistributable for Visual Studio 2012 x64|Visual C++ Redistributable for Visual Studio 2012 x86|Visual C++ Redistributable for Visual Studio 2013 x64|Visual C++ Redistributable for Visual Studio 2013 x86 AI_SETUPEXEPATH=C:\Users\Marc\Downloads\MultiBrowserSetup.exe SETUPEXEDIR=C:\Users\Marc\Downloads\ AI_SETUPEXEPATH_ORIGINAL=C:\Users\Marc\Downloads\MultiBrowserSetup.exe AI_DOTNET45_SEARCH=4.6.01055 TARGETDIR=D:\ AI_INSTALL.HTML=C:\Users\Marc\AppData\Local\Temp\Install.htm <==== ACHTUNG ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ShortcutWithArgument: C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Fair AdBlocker App (by STANDS).lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=dcnofaichneijfbkdkghmhjjbepjmble ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2016-08-14 23:45 - 2016-11-29 20:01 - 00980552 ____N () C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe 2013-10-07 01:55 - 2016-07-11 00:17 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-09-01 18:12 - 2016-09-01 18:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-09-01 18:12 - 2016-09-01 18:12 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2011-12-01 17:11 - 2011-12-01 17:11 - 00743936 _____ () C:\Program Files (x86)\CPUCooL\CooLSrv.exe 2016-08-14 23:19 - 2016-06-14 21:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-08-14 23:19 - 2016-06-14 21:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2015-04-16 16:42 - 2015-04-16 16:42 - 00997536 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2013-02-16 14:45 - 2008-07-11 08:04 - 00200704 ____N () C:\Windows\SysWOW64\HsMgr.exe 2013-02-16 14:45 - 2008-07-11 08:03 - 00282112 ____N () C:\Windows\system\HsMgr64.exe 2016-08-14 23:45 - 2016-11-29 20:01 - 02180680 _____ () C:\Program Files (x86)\AVG Web TuneUp\vprot.exe 2016-08-14 23:19 - 2016-06-14 21:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2013-02-06 17:18 - 2011-06-02 11:12 - 00143360 ____N () C:\Program Files\ASUS Xonar DGX Audio\Customapp\VmixP8.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 03:34 - 2016-09-26 15:32 - 00000853 ____A C:\Windows\system32\Drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Marc\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AdobeUpdateService => 2 MSCONFIG\Services: AODService => 2 MSCONFIG\Services: avgsvc => 2 MSCONFIG\Services: avgwd => 2 MSCONFIG\Services: AVM WLAN Connection Service => 2 MSCONFIG\Services: AxInstSV => 3 MSCONFIG\Services: BEService => 3 MSCONFIG\Services: BstHdAndroidSvc => 3 MSCONFIG\Services: BstHdLogRotatorSvc => 3 MSCONFIG\Services: BstHdPlusAndroidSvc => 2 MSCONFIG\Services: BstHdUpdaterSvc => 3 MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: Fax => 3 MSCONFIG\Services: FlexNet Licensing Service 64 => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: NanoServiceMain => 2 MSCONFIG\Services: NvStreamSvc => 2 MSCONFIG\Services: PSUAService => 2 MSCONFIG\Services: RealNetworks Downloader Resolver Service => 2 MSCONFIG\Services: rpcapd => 3 MSCONFIG\Services: SensrSvc => 3 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: SwitchBoard => 3 MSCONFIG\Services: TeamViewer9 => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Marc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Curse.lnk => C:\Windows\pss\Curse.lnk.Startup MSCONFIG\startupfolder: C:^Users^Marc^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup MSCONFIG\startupreg: 4StoryPrePatch => C:\Program Files (x86)\Gameforge4D\4Story_DE\PrePatch.exe MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: ADSKAppManager => "C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe" -showminimized -checkautorun MSCONFIG\startupreg: Aimersoft Helper Compact.exe => C:\Program Files (x86)\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Marc\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: AVMWlanClient => C:\Program Files (x86)\avmwlanstick\wlangui.exe MSCONFIG\startupreg: BitTorrent => "C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: BrowserPlugInHelper => C:\Program Files (x86)\Aimersoft\YouTube Downloader\BrowserPlugInHelper.exe MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Discord => C:\Users\Marc\AppData\Local\Discord\app-0.0.296\Discord.exe MSCONFIG\startupreg: EADM => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart MSCONFIG\startupreg: Facebook Update => "C:\Users\Marc\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: Ghost Control => "C:\Program Files (x86)\Ghost Control\ghost.exe" -startup MSCONFIG\startupreg: icq => C:\Users\Marc\AppData\Roaming\ICQM\icq.exe -CU MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: LOLReplay Recorder => "C:\Program Files (x86)\LOLReplay\LOLRecorder.exe" -minimize MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" MSCONFIG\startupreg: PSwitch => C:\Program Files (x86)\Proxy Switcher Standard\ProxySwitcher.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: SilverLight for Microsoft Windows => C:\Program Files (x86)\Microsoft Silverlight\Silver.exe MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe MSCONFIG\startupreg: TkBellExe => "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [SPPSVC-In-TCP] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => %SystemRoot%\system32\sppsvc.exe FirewallRules: [{56CDAC4F-DA28-49FA-AE60-2FD8A79E13DC}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{79775C36-B4B7-40E3-97A8-B9F687F4D78C}] => C:\Users\Marc\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{49440624-9595-4329-BE3F-0237750138C5}] => C:\Users\Marc\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{F3DE710F-2D12-4BDF-8249-FA74467E20DD}] => C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{D9984933-2C10-43A9-9B7F-4338BB93C72C}] => C:\ProgramData\NexonEU\NGM\NGM.exe FirewallRules: [{9573DE74-23A3-48EF-A6A3-0558170B81C3}] => %ProgramFiles%\Sony\Vegas Pro 12.0\vegas120.exe FirewallRules: [{33E4CC87-43BE-4C2E-BCFF-10E0A3610179}] => %ProgramFiles%\Sony\Vegas Pro 12.0\vegas120.exe FirewallRules: [{30C62238-64E5-4C95-8DDC-F95FDD92F873}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{A8F25FDF-D306-4EF4-B285-86289D821F05}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{92CC29BA-6397-4465-814D-FF2E009E3655}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{58FC13A4-A49C-4751-9C62-FA54445DDA51}] => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe FirewallRules: [{DFF02556-3664-43D6-BCB4-4DC73DAB9934}] => LPort=15000 FirewallRules: [{1B8972F4-5211-4AA2-979B-B84456072B1B}] => LPort=2099 FirewallRules: [{B135B638-6FCB-4F0A-8B00-1EDDE0E5BFDC}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{E54DE8E7-69C5-46E0-A4D5-358912D5B789}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{A3749EA6-064D-414C-A079-31E6462BE99F}] => C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{D98D6644-4A7B-4E92-9A1C-31B59CF428A5}] => C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{3DE2E660-A8D9-4200-9D59-1BCE594A0D0A}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{76F549CD-B344-4AE7-802D-E2B6BCD365CA}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{A2743CDE-26D8-41D6-87E1-EB4BD5C76DB4}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{8D9F4A23-5600-4E28-97A9-49F3387A4EB9}] => C:\Program Files (x86)\WunderWorks\TeamPlayer\TeamPlayer.exe FirewallRules: [{6665B7B1-E87A-42CC-90F8-37B13D12F3EB}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A966C1E4-8024-49AB-B748-DCFFCE1AE1A7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1C359513-84B6-48BA-A472-84D0A62C2BC5}] => %ProgramFiles%\Adobe\Adobe Illustrator CS6 (64 Bit)\Support Files\Contents\Windows\Illustrator.exe FirewallRules: [{A966F108-50D1-49E1-BB27-B226A76D2B40}] => %ProgramFiles%\Adobe\Adobe Illustrator CS6 (64 Bit)\Support Files\Contents\Windows\Illustrator.exe FirewallRules: [{54441C0F-45D6-410D-878D-CBC5CA5DDB0F}] => D:\Steam\Steam.exe FirewallRules: [{6DE8F4D3-D518-4179-A29B-58092CC7C659}] => D:\Steam\Steam.exe FirewallRules: [TCP Query User{6390E301-00CB-4B72-A676-238C62A9D5EB}C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe] => C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe FirewallRules: [UDP Query User{7FC03B46-2250-4B01-8550-FD0E87020BA8}C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe] => C:\users\marc\appdata\local\amazon\kindle previewer\lib\touchlibs\webreader.exe FirewallRules: [{A9785BA7-1A74-4E8F-85D0-05885E7513F7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{A59CE637-4534-43C5-921E-26D75B2556C7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{160D039E-5B5A-4038-92E4-07809546C6C2}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{2276280C-F0CD-4017-A4D0-51CE5CEE6BB9}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EBDE1DE5-519C-44B0-9503-550FFAC9013A}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{A516C4C9-E616-4281-951D-C2761C504DE9}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{AD3877D4-56BA-495C-A14E-1C3E241E7463}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{3931509B-A75D-4941-BA4A-439AA9D293E0}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{36254DC3-5145-4381-84D8-561CE2B4C724}] => D:\Steam\bin\steamwebhelper.exe FirewallRules: [{D97D21CE-23D7-4D75-85CF-4F536B6C047A}] => D:\Steam\bin\steamwebhelper.exe FirewallRules: [{4842FAB5-6F84-4BB7-BE46-91317932822A}] => D:\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{EABF6D1C-0450-488A-B923-ED7D0891FCC6}] => D:\Steam\SteamApps\common\Counter-Strike Source\hl2.exe FirewallRules: [{36CAF18F-C507-44F9-B849-865E06D9CA86}] => LPort=49260 FirewallRules: [{40CF083D-E46B-4E9F-B0ED-28A68CAB39FD}] => LPort=5000 FirewallRules: [{944735E1-CE69-4FB1-A320-CB4F18598CB4}] => C:\Program Files\SmartFTP Client\SmartFTP.exe FirewallRules: [{C8B7F1D8-5ACB-453B-A280-973FCE306AA6}] => C:\Program Files (x86)\Microsoft Visual Studio 12.0\Common7\IDE\devenv.exe FirewallRules: [{59E27BA8-94A3-4B53-B73D-0ED0F07299B7}] => LPort=12292 FirewallRules: [TCP Query User{1CC1E12F-7784-4651-B343-A3FDA0B8B31E}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe FirewallRules: [UDP Query User{F901CA40-2D17-4CD8-AF96-D5D6B6788902}C:\program files (x86)\brackets\node.exe] => C:\program files (x86)\brackets\node.exe FirewallRules: [{BED7584A-549C-4E51-A698-9B449DF92040}] => C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{7D02F27D-7C39-4B6D-80DC-FAD9AF561DD6}] => C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [TCP Query User{88CC0554-A87D-41B5-9F12-91B8EEC45261}C:\program files\smart view\smart view.exe] => C:\program files\smart view\smart view.exe FirewallRules: [UDP Query User{9F37B007-5B72-47C1-B31C-D33C3AFEFA62}C:\program files\smart view\smart view.exe] => C:\program files\smart view\smart view.exe FirewallRules: [TCP Query User{7FEE7EA2-7BD3-4E06-B37E-7F7C446D9A1C}C:\program files (x86)\smart view\smart view.exe] => C:\program files (x86)\smart view\smart view.exe FirewallRules: [UDP Query User{FAD9DA61-A84A-4EEA-8990-F272515FCA85}C:\program files (x86)\smart view\smart view.exe] => C:\program files (x86)\smart view\smart view.exe FirewallRules: [TCP Query User{95F45B69-8B31-41EB-8042-40B6D5CCFFA0}D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{8802285A-C413-4256-84D9-63B311BFBB45}D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{1E046809-5F88-45B5-B258-7D868BEE1BDD}D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{22CF3FC4-9F15-4488-A7D4-5E2D512FF6B6}D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => D:\alle meine spiele\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{7CB4C2AD-06D8-4CE3-BBB6-D272B4B30A39}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{D84A37D7-16E5-40EE-B2ED-AC804F5E5FEF}] => C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{CAEDD91A-7C37-47BD-824A-4F12DCA2272F}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C941F044-978D-464C-A3F0-F4706439B394}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{665154E9-4AC6-44D5-BBD3-40A8A43E6C9A}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{05ADE69D-B980-4B0E-8BB2-E7DF7829344F}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{E221020F-D0AA-4455-88F0-D1C0D4F1710C}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{FC5A7ED8-41AC-4FDA-B0E6-92E23A0B0F7F}D:\alle meine spiele\tmunitedforever\tmforever.exe] => D:\alle meine spiele\tmunitedforever\tmforever.exe FirewallRules: [UDP Query User{B3A4CB14-958F-4668-B1FA-9AC75098A61E}D:\alle meine spiele\tmunitedforever\tmforever.exe] => D:\alle meine spiele\tmunitedforever\tmforever.exe FirewallRules: [TCP Query User{BFDC9DEF-0CAE-4D86-B07E-06BA4181C9D7}D:\alle meine spiele\tmnationsforever\tmforever.exe] => D:\alle meine spiele\tmnationsforever\tmforever.exe FirewallRules: [UDP Query User{311D2BE6-E613-4CEB-8DF3-A304D3F7666D}D:\alle meine spiele\tmnationsforever\tmforever.exe] => D:\alle meine spiele\tmnationsforever\tmforever.exe FirewallRules: [{38BE569D-4369-442B-96A0-365EC82CA0A1}] => D:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{D570D27E-3254-4386-9CC4-27B8CA146C44}] => D:\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{FBB99F94-2FB5-43C7-83D2-09B7B6D3924E}] => C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe FirewallRules: [{45755EC1-53AD-458A-82B3-A5A3412809F7}] => C:\Program Files (x86)\SplitmediaLabs\XSplit Gamecaster\XSplit.Gamecaster.exe FirewallRules: [TCP Query User{C4F86B11-8C11-4BE4-877A-2648A9F650A5}C:\program files (x86)\real\realplayer\realplay.exe] => C:\program files (x86)\real\realplayer\realplay.exe FirewallRules: [UDP Query User{320C900B-6DAE-4515-A84F-91F4ACCE8F22}C:\program files (x86)\real\realplayer\realplay.exe] => C:\program files (x86)\real\realplayer\realplay.exe FirewallRules: [{2577C077-DADA-41E6-89EB-65301B65EF2C}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4sp.exe FirewallRules: [{3001C221-3273-4CDE-96CD-44C87AE4563C}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4sp.exe FirewallRules: [{658A562B-0603-425F-B9A9-8B9A8C6CFE8D}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{799BA9C5-5C24-48C1-B5BC-2413CBAE0181}] => D:\Steam\SteamApps\common\Call of Duty Modern Warfare 2\iw4mp.exe FirewallRules: [{769AD88F-8D4D-4E14-AE4C-A9582E9BD088}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{8942D7D8-BAFA-4FA3-9E54-11F08EA55E16}] => C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{B1732EA5-7601-48E9-8349-EC964338612A}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{8B9FEB91-4FC3-45C4-8386-548E07172BCA}] => C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{3AFD5681-77FC-4E35-B346-FEC6CFE7CFCD}D:\alle meine spiele\portal 2\portal2.exe] => D:\alle meine spiele\portal 2\portal2.exe FirewallRules: [UDP Query User{E4D84C6C-94A6-44B7-8A99-C367210AF6DE}D:\alle meine spiele\portal 2\portal2.exe] => D:\alle meine spiele\portal 2\portal2.exe FirewallRules: [TCP Query User{A9F07A98-D58C-449A-8E53-BF6F6C680C41}C:\xampp\apache\bin\httpd.exe] => C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{84F96BE3-DA45-4B82-AE38-E8A9CD75B567}C:\xampp\apache\bin\httpd.exe] => C:\xampp\apache\bin\httpd.exe FirewallRules: [{779CE7A6-53D3-4064-AA2E-60265305ED87}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{32A1CF37-5DE2-4F49-B064-C9F58D77FF4F}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{544527F7-E7E9-47D7-92A2-8ADF01409B21}] => C:\Program Files\iTunes\iTunes.exe FirewallRules: [{AF8F2448-4A9F-4BD5-987C-C8C8375B5A3E}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= 28-11-2016 22:04:50 Geplanter Prüfpunkt 29-11-2016 20:11:30 Windows Update 30-11-2016 03:00:11 Windows Update 03-12-2016 22:52:23 Windows Update 05-12-2016 17:53:16 Removed AVG 05-12-2016 17:58:18 Removed AVG 2016 ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (12/05/2016 06:05:32 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/05/2016 05:58:18 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2131955426-2682777134-591621578-1012.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {ab0a37e7-feb1-4317-9f77-3bc5f5369ce5} Error: (12/05/2016 05:53:16 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2131955426-2682777134-591621578-1012.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {044a49dd-4e4d-4230-9653-de377b84e620} Error: (12/05/2016 05:38:40 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/03/2016 10:52:23 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "ConvertStringSidToSid(S-1-5-21-2131955426-2682777134-591621578-1012.bak)" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070539, Die Struktur der Sicherheitskennung ist unzulässig. . Vorgang: OnIdentify-Ereignis Generatordaten werden gesammelt Kontext: Ausführungskontext: Shadow Copy Optimization Writer Generatorklassen-ID: {4dc3bdd4-ab48-4d07-adb0-3bee2926fd7f} Generatorname: Shadow Copy Optimization Writer Generatorinstanz-ID: {3d955d34-8c1a-4469-b9f3-abb797f6f803} Error: (12/03/2016 10:39:58 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (12/02/2016 10:31:37 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Windows\Temp\AvgSetup\da9277e7-eeed-47cf-b09c-81ac0f20b3bb\install\fmw\avgrdsttestx.exe". Die abhängige Assemblierung "AVG.VC140.CRT,processorArchitecture="x86",publicKeyToken="f92d94485545da78",type="win32",version="14.0.23918.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (12/02/2016 10:31:33 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Windows\Temp\AvgSetup\da9277e7-eeed-47cf-b09c-81ac0f20b3bb\install\fmw\avgrdsttesta.exe". Die abhängige Assemblierung "AVG.VC140.CRT,processorArchitecture="amd64",publicKeyToken="f92d94485545da78",type="win32",version="14.0.23918.0"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (12/02/2016 10:17:52 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Error: (11/30/2016 03:21:08 AM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: Marc-PC) Description: Sie konnten nicht angemeldet werden, da das lokal gespeicherte Profil nicht geladen werden konnte. Überprüfen Sie, ob eine Netzwerkverbindung besteht und das Netzwerk ordnungsgemäß funktioniert. Details - Zugriff verweigert Systemfehler: ============= Error: (12/05/2016 06:06:14 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (12/05/2016 06:05:32 PM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/05/2016 05:40:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (12/05/2016 05:38:40 PM) (Source: Service Control Manager) (EventID: 7005) (User: ) Description: Der Aufruf "LoadUserProfile" ist aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/05/2016 05:38:25 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/05/2016 05:38:11 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/04/2016 01:19:32 AM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert Error: (12/03/2016 10:45:43 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Windows Update" wurde nicht richtig gestartet. Error: (12/03/2016 10:40:43 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: cdrom Error: (12/03/2016 10:40:07 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "FailureActions" aufgrund folgenden Fehlers fehlgeschlagen: Zugriff verweigert CodeIntegrity: =================================== Date: 2016-12-05 18:03:26.685 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-05 18:03:26.591 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-05 17:37:18.114 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-05 17:37:18.021 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-03 22:39:20.639 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-03 22:39:20.592 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-02 22:16:48.802 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-12-02 22:16:48.709 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-30 03:19:31.164 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2016-11-30 03:19:31.055 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ATITool64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Speicherinformationen =========================== Prozessor: AMD FX(tm)-6100 Six-Core Processor Prozentuale Nutzung des RAM: 14% Installierter physikalischer RAM: 16365.24 MB Verfügbarer physikalischer RAM: 13956.18 MB Summe virtueller Speicher: 33028.67 MB Verfügbarer virtueller Speicher: 30562.7 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:134.78 GB) NTFS Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:391.93 GB) NTFS ==================== MBR & Partitionstabelle ================== ==================== Ende von Addition.txt ============================ Geändert von Froschmann (05.12.2016 um 19:07 Uhr) |
05.12.2016, 23:02 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10 extrem langsam geworden 1. Schritt: Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers 2. Schritt: Kaspersky TDSS-Killer Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ Logfiles bitte immer in CODE-Tags posten |
06.12.2016, 23:25 | #11 |
| Windows 10 extrem langsam geworden Anti Rootkit Log Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2016.12.05.14 rootkit: v2016.11.20.01 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 11.0.9600.18524 Marc :: MARC-PC [administrator] 05.12.2016 23:36:42 mbar-log-2016-12-05 (23-36-42).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 594439 Time elapsed: 59 minute(s), 6 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) Code:
ATTFilter 23:20:40.0185 0x14b0 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01 23:20:43.0303 0x14b0 ============================================================ 23:20:43.0303 0x14b0 Current date / time: 2016/12/06 23:20:43.0303 23:20:43.0303 0x14b0 SystemInfo: 23:20:43.0303 0x14b0 23:20:43.0303 0x14b0 OS Version: 6.1.7601 ServicePack: 1.0 23:20:43.0303 0x14b0 Product type: Workstation 23:20:43.0303 0x14b0 ComputerName: MARC-PC 23:20:43.0304 0x14b0 UserName: Marc 23:20:43.0304 0x14b0 Windows directory: C:\Windows 23:20:43.0304 0x14b0 System windows directory: C:\Windows 23:20:43.0304 0x14b0 Running under WOW64 23:20:43.0304 0x14b0 Processor architecture: Intel x64 23:20:43.0304 0x14b0 Number of processors: 6 23:20:43.0304 0x14b0 Page size: 0x1000 23:20:43.0304 0x14b0 Boot type: Normal boot 23:20:43.0304 0x14b0 CodeIntegrityOptions = 0x00000001 23:20:43.0304 0x14b0 ============================================================ 23:20:45.0660 0x14b0 KLMD registered as C:\Windows\system32\drivers\38366481.sys 23:20:45.0660 0x14b0 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.23569, osProperties = 0x1 23:20:45.0962 0x14b0 System UUID: {0BF382B6-1DA4-015F-E4E2-2F66C7555879} 23:20:46.0371 0x14b0 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xFC59, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000040 23:20:52.0561 0x14b0 Drive \Device\Harddisk1\DR1 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 23:20:52.0568 0x14b0 ============================================================ 23:20:52.0568 0x14b0 \Device\Harddisk0\DR0: 23:20:52.0568 0x14b0 MBR partitions: 23:20:52.0568 0x14b0 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 23:20:52.0568 0x14b0 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000 23:20:52.0568 0x14b0 \Device\Harddisk1\DR1: 23:20:52.0568 0x14b0 MBR partitions: 23:20:52.0568 0x14b0 \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705800 23:20:52.0568 0x14b0 ============================================================ 23:20:52.0587 0x14b0 C: <-> \Device\Harddisk0\DR0\Partition2 23:20:52.0616 0x14b0 D: <-> \Device\Harddisk1\DR1\Partition1 23:20:52.0616 0x14b0 ============================================================ 23:20:52.0616 0x14b0 Initialize success 23:20:52.0616 0x14b0 ============================================================ 23:21:01.0159 0x1388 ============================================================ 23:21:01.0159 0x1388 Scan started 23:21:01.0159 0x1388 Mode: Manual; SigCheck; TDLFS; 23:21:01.0159 0x1388 ============================================================ 23:21:01.0159 0x1388 KSN ping started 23:21:01.0260 0x1388 KSN ping finished: true 23:21:03.0168 0x1388 ================ Scan system memory ======================== 23:21:03.0168 0x1388 System memory - ok 23:21:03.0169 0x1388 ================ Scan services ============================= 23:21:03.0329 0x1388 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 23:21:03.0390 0x1388 1394ohci - ok 23:21:03.0442 0x1388 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 23:21:03.0461 0x1388 ACPI - ok 23:21:03.0499 0x1388 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 23:21:03.0514 0x1388 AcpiPmi - ok 23:21:03.0655 0x1388 [ 156D7DBA4807B3AA99DA5A85BB077CAA, 2BAE2E1CDD7748B320FAC2F87CF0A59DDD2995728E6560CC9DCB60F278C221EE ] AdAppMgrSvc C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe 23:21:03.0706 0x1388 AdAppMgrSvc - ok 23:21:03.0847 0x1388 [ B362181ED3771DC03B4141927C80F801, 69514E5177A0AEA89C27C2234712F9F82E8D8F99E1FD4273898C9324C6FF7472 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe 23:21:03.0858 0x1388 AdobeARMservice - ok 23:21:03.0949 0x1388 [ C473A0D5192A55C838361ACF804DEF6D, 710503ADA9801DF04D58D9032FA2DF880DE0AA5F59E90F5E962C749D2F231E47 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 23:21:03.0964 0x1388 AdobeFlashPlayerUpdateSvc - ok 23:21:04.0125 0x1388 [ 2DF17D2CECC26A57BAF3B7835E710252, 5E5AAF2A18F0EF4020519B967EF8D500AC6CD6FE779B2EC1CCEA3CEBCC33BC17 ] AdobeUpdateService C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe 23:21:04.0160 0x1388 AdobeUpdateService - ok 23:21:04.0205 0x1388 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 23:21:04.0240 0x1388 adp94xx - ok 23:21:04.0267 0x1388 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 23:21:04.0285 0x1388 adpahci - ok 23:21:04.0296 0x1388 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 23:21:04.0311 0x1388 adpu320 - ok 23:21:04.0356 0x1388 [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 23:21:04.0377 0x1388 AeLookupSvc - ok 23:21:04.0438 0x1388 [ 9A4A1EEE802BF2F878EE8EAB407B21B7, 177EB7DF4B35FE4C0E45E775A0FD5D48D39B410052E3EE18BDEEC809E152D9D8 ] AFD C:\Windows\system32\drivers\afd.sys 23:21:04.0473 0x1388 AFD - ok 23:21:04.0532 0x1388 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 23:21:04.0544 0x1388 agp440 - ok 23:21:04.0571 0x1388 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 23:21:04.0586 0x1388 ALG - ok 23:21:04.0640 0x1388 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 23:21:04.0650 0x1388 aliide - ok 23:21:04.0690 0x1388 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 23:21:04.0700 0x1388 amdide - ok 23:21:04.0724 0x1388 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 23:21:04.0736 0x1388 AmdK8 - ok 23:21:04.0753 0x1388 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 23:21:04.0764 0x1388 AmdPPM - ok 23:21:04.0826 0x1388 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 23:21:04.0839 0x1388 amdsata - ok 23:21:04.0910 0x1388 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 23:21:04.0924 0x1388 amdsbs - ok 23:21:04.0949 0x1388 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 23:21:04.0959 0x1388 amdxata - ok 23:21:05.0062 0x1388 [ 5F44A01CCC530B34051B9D0CCB5BB842, F4DC11B7922BF2674CA9673638E7FE4E26ACEB0EBDC528E6D10C8676E555D7B2 ] AODDriver4.2.0 C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys 23:21:05.0075 0x1388 AODDriver4.2.0 - ok 23:21:05.0140 0x1388 [ 0AC2C9E7EDABE22BF2A088F8627C93EA, 25EAADF51B437B13959E19987662AE298D8A8EBEE87B3D9C997C0326628A64C8 ] AODService C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe 23:21:05.0152 0x1388 AODService - ok 23:21:05.0200 0x1388 [ 0CD7BFDE151223C6976C5D1B3D49EB84, A16FAB4F77D03C0664CCE8082E40A7673BC7FA4E89854F9027D478CD99EB2088 ] AppID C:\Windows\system32\drivers\appid.sys 23:21:05.0213 0x1388 AppID - ok 23:21:05.0261 0x1388 [ F9842669B31F20B8B157D33CCC457820, AC8FA65F0A3C479D3CFE10EFE9B3EC5BAE48059F57A12D8C2D7963A22EB043B8 ] AppIDSvc C:\Windows\System32\appidsvc.dll 23:21:05.0273 0x1388 AppIDSvc - ok 23:21:05.0311 0x1388 [ B46099A534B7989D80330EA82D9092D6, 0CAC09732FAFAE805E55428B6BE001DCC39EBC599539FADE7AA68571A8A554E5 ] Appinfo C:\Windows\System32\appinfo.dll 23:21:05.0333 0x1388 Appinfo - ok 23:21:05.0463 0x1388 [ 885888F8AAD89108A5EE2D0174690220, 9B148C117EBE400F40BF7F32B66B20AA4628BA9E233D707DFA2EB4A8A65E7C52 ] Apple Mobile Device Service C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 23:21:05.0475 0x1388 Apple Mobile Device Service - ok 23:21:05.0498 0x1388 [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt C:\Windows\System32\appmgmts.dll 23:21:05.0523 0x1388 AppMgmt - ok 23:21:05.0551 0x1388 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 23:21:05.0562 0x1388 arc - ok 23:21:05.0571 0x1388 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 23:21:05.0583 0x1388 arcsas - ok 23:21:05.0716 0x1388 [ 660D597B7A78256734D7F3230B21B355, CAA19E8EFAD63B8975A4CD8EFD5CE5F21E056856D36BC5A9E48517F1E574ABBA ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 23:21:05.0729 0x1388 aspnet_state - ok 23:21:05.0751 0x1388 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 23:21:05.0783 0x1388 AsyncMac - ok 23:21:05.0830 0x1388 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 23:21:05.0840 0x1388 atapi - ok 23:21:05.0869 0x1388 [ B07E6681D303A612680223C729B021E2, DEF063A2A45B5FAF3B676AD5025417B9437A073D9BB2A47F57A0FCCBC78C2FEE ] ATITool C:\Windows\system32\DRIVERS\ATITool64.sys 23:21:05.0873 0x1388 ATITool - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:05.0963 0x1388 Detect skipped due to KSN trusted 23:21:05.0963 0x1388 ATITool - ok 23:21:06.0024 0x1388 [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 23:21:06.0063 0x1388 AudioEndpointBuilder - ok 23:21:06.0082 0x1388 [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioSrv C:\Windows\System32\Audiosrv.dll 23:21:06.0109 0x1388 AudioSrv - ok 23:21:06.0160 0x1388 [ C6F4C466B654C1BE98AF31418BB5AC30, 62AA4456F8E22A6E508EB44DE4309615057117AAF923C13BBED15AA39630E76B ] AVM WLAN Connection Service C:\Program Files (x86)\avmwlanstick\WlanNetService.exe 23:21:06.0173 0x1388 AVM WLAN Connection Service - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:06.0285 0x1388 Detect skipped due to KSN trusted 23:21:06.0286 0x1388 AVM WLAN Connection Service - ok 23:21:06.0316 0x1388 [ 1DC2F715792CF33428AD7993ACBD224D, 129FBD517E016914CD61C35894C0B9B2074E680F1EB21201597E5C13CAF4529F ] avmeject C:\Windows\system32\drivers\avmeject.sys 23:21:06.0326 0x1388 avmeject - ok 23:21:06.0393 0x1388 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 23:21:06.0412 0x1388 AxInstSV - ok 23:21:06.0444 0x1388 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 23:21:06.0472 0x1388 b06bdrv - ok 23:21:06.0505 0x1388 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 23:21:06.0524 0x1388 b57nd60a - ok 23:21:06.0554 0x1388 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 23:21:06.0572 0x1388 BDESVC - ok 23:21:06.0581 0x1388 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 23:21:06.0614 0x1388 Beep - ok 23:21:06.0715 0x1388 [ 34E728ACD12ACC3C8502F437DF4D6601, 025B8A3C463ADEA72FB0A3F70B148547E45091F54A2040E3B07E82EC37430D7E ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe 23:21:06.0775 0x1388 BEService - ok 23:21:06.0857 0x1388 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 23:21:06.0912 0x1388 BFE - ok 23:21:06.0988 0x1388 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 23:21:07.0077 0x1388 BITS - ok 23:21:07.0093 0x1388 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 23:21:07.0106 0x1388 blbdrive - ok 23:21:07.0182 0x1388 [ B5C2F92EE1106DFE7BB1CCE4D35B6037, E399C390687589194D8AAD385055F0CFA7D52AD9E837D8FF95008B8EB2B34E50 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 23:21:07.0201 0x1388 Bonjour Service - ok 23:21:07.0250 0x1388 [ ABA3984C822E4D3F889699912D85D6C5, 2251FA135CC290DA13DAE4743F393C7CC9E6A737C054707CB8D72C369D1FFACB ] bowser C:\Windows\system32\DRIVERS\bowser.sys 23:21:07.0265 0x1388 bowser - ok 23:21:07.0292 0x1388 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 23:21:07.0306 0x1388 BrFiltLo - ok 23:21:07.0310 0x1388 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 23:21:07.0324 0x1388 BrFiltUp - ok 23:21:07.0379 0x1388 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 23:21:07.0403 0x1388 Browser - ok 23:21:07.0425 0x1388 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 23:21:07.0444 0x1388 Brserid - ok 23:21:07.0457 0x1388 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 23:21:07.0472 0x1388 BrSerWdm - ok 23:21:07.0480 0x1388 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 23:21:07.0494 0x1388 BrUsbMdm - ok 23:21:07.0504 0x1388 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 23:21:07.0516 0x1388 BrUsbSer - ok 23:21:07.0627 0x1388 [ 57F267C0299427A6DC4C5533D1ED01DB, 6D005F994987D491E8E9FD2AEE5A3635CD2E521EDE2C28406E45556DD7A6DD42 ] BstHdAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Service.exe 23:21:07.0649 0x1388 BstHdAndroidSvc - ok 23:21:07.0723 0x1388 [ 521F0F928670824951610ABDB05531B5, F28120D3F99129666C7E9CE55943806BFE69415C36F564F5BFD95E61975018DB ] BstHdDrv C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys 23:21:07.0739 0x1388 BstHdDrv - ok 23:21:07.0845 0x1388 [ 7CECE5817BCD4764971B479650BA7DB9, 32C4B8F85787C14C5B176D593FF0EE52020FAA29DB7D7070D93DA7B254CDE783 ] BstHdLogRotatorSvc C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe 23:21:07.0866 0x1388 BstHdLogRotatorSvc - ok 23:21:07.0944 0x1388 [ F837C220F45BC668AD1996FA6B223B3A, 6B15934C24FCBA762977FB914EB0C4D38B2E2B41EB9AB4B1563B1D2B56259563 ] BstHdPlusAndroidSvc C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe 23:21:07.0966 0x1388 BstHdPlusAndroidSvc - ok 23:21:08.0053 0x1388 [ ADDAC56B39B81B84BC47C4DA0289BB57, 02EE703653F0A1375B4B0EC412988ECC5C141935B787F1992BAE7D4CBFACA517 ] BstHdUpdaterSvc C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe 23:21:08.0087 0x1388 BstHdUpdaterSvc - ok 23:21:08.0145 0x1388 [ B6FC31F187DA42B7F3AB036030F82426, 0899A947589DD98B3169C54C3715E16731C2FF38CD159C55028C20741CB58E5E ] BstkDrv C:\Program Files (x86)\BlueStacks\BstkDrv.sys 23:21:08.0164 0x1388 BstkDrv - ok 23:21:08.0177 0x1388 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 23:21:08.0193 0x1388 BTHMODEM - ok 23:21:08.0212 0x1388 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 23:21:08.0246 0x1388 bthserv - ok 23:21:08.0431 0x1388 [ C8D931D734FC0097478CE2583A75C4DF, 60C5F97D7E5A8B81A7123A5DB333577B0C7B9302C1D1C98D47BA96C0A3FB7417 ] c2cautoupdatesvc C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe 23:21:08.0491 0x1388 c2cautoupdatesvc - ok 23:21:08.0588 0x1388 [ 8E1CC0517DE17DF83CF80BFCE9F0C000, 13F7929D531914FA2ED1223977E15A7F45E3FF3DA1392ECC4B15F5619B37B754 ] c2cpnrsvc C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe 23:21:08.0658 0x1388 c2cpnrsvc - ok 23:21:08.0699 0x1388 c2wts - ok 23:21:08.0801 0x1388 [ D2AECC4886D67340188BFC2753A60815, 19B77788084FD36674B4F419E1DFA8896987DB41765EB656A242E6B59DA3828E ] cbfs5 C:\Windows\system32\drivers\cbfs5.sys 23:21:08.0823 0x1388 cbfs5 - ok 23:21:08.0879 0x1388 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 23:21:08.0916 0x1388 cdfs - ok 23:21:08.0975 0x1388 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 23:21:08.0990 0x1388 cdrom - ok 23:21:09.0051 0x1388 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 23:21:09.0086 0x1388 CertPropSvc - ok 23:21:09.0111 0x1388 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 23:21:09.0126 0x1388 circlass - ok 23:21:09.0180 0x1388 [ 3891EA60B84EFE115CE070311FA83BBB, 2A30FB15C8D0C69289C087DFE1F822AB4F9C3F091DBB3FD2E99DC5B562E90DFB ] CLFS C:\Windows\system32\CLFS.sys 23:21:09.0199 0x1388 CLFS - ok 23:21:09.0279 0x1388 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 23:21:09.0290 0x1388 clr_optimization_v2.0.50727_32 - ok 23:21:09.0346 0x1388 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 23:21:09.0358 0x1388 clr_optimization_v2.0.50727_64 - ok 23:21:09.0446 0x1388 [ AB4CD527BEFCC43EE441E6C50CCE54C8, 13B776AE63049FFBA7E35EA0A4C26EBB57B10D973E05C4CF1214249754DC46E4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 23:21:09.0459 0x1388 clr_optimization_v4.0.30319_32 - ok 23:21:09.0512 0x1388 [ 1400C75FF021D6CFACE46AC41B60770E, 3FCB8D7714A79522F2738037D559F1FFFB2F05C5406D2A038EF5DDB4629CA1CE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 23:21:09.0526 0x1388 clr_optimization_v4.0.30319_64 - ok 23:21:09.0550 0x1388 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 23:21:09.0562 0x1388 CmBatt - ok 23:21:09.0602 0x1388 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 23:21:09.0613 0x1388 cmdide - ok 23:21:09.0751 0x1388 [ 6B56A1437913C1DEA2EE1F8B5DB1ED74, 9DAD4084BECAED81F9646960A971496810CCAD2A129743E24A9AA4D63A991BFB ] cmudaxp C:\Windows\system32\drivers\cmudaxp.sys 23:21:09.0886 0x1388 cmudaxp - ok 23:21:09.0948 0x1388 [ 3323F76352B0AF14B2CDC4DFBF3E980A, F8E3C3508C37E647497B6889F26819B1DB30275F48A994D1BBFBAA9454E5FD70 ] CNG C:\Windows\system32\Drivers\cng.sys 23:21:09.0982 0x1388 CNG - ok 23:21:09.0986 0x1388 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 23:21:09.0996 0x1388 Compbatt - ok 23:21:10.0060 0x1388 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 23:21:10.0075 0x1388 CompositeBus - ok 23:21:10.0086 0x1388 COMSysApp - ok 23:21:10.0199 0x1388 [ F4FD82F5D6617A45CC3C4B9D4E7DF2C0, 7FD97E17246F53DC191009BE0B434E89C5B9A937D3909FB1A6C43F64822B7421 ] CPUCooLServer C:\Program Files (x86)\CPUCooL\CooLSrv.exe 23:21:10.0221 0x1388 CPUCooLServer - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:10.0340 0x1388 Detect skipped due to KSN trusted 23:21:10.0341 0x1388 CPUCooLServer - ok 23:21:10.0448 0x1388 cpuz139 - ok 23:21:10.0470 0x1388 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 23:21:10.0481 0x1388 crcdisk - ok 23:21:10.0539 0x1388 [ BB724567892383010B8436DCC0A84628, 2768F5FD7A096CB1CEA33F8818EF16F9F5E3E07BB8442949A49A9CF24B62C6E6 ] CryptSvc C:\Windows\system32\cryptsvc.dll 23:21:10.0555 0x1388 CryptSvc - ok 23:21:10.0615 0x1388 [ 54DA3DFD29ED9F1619B6F53F3CE55E49, 9177C6907A983296BF188892A894B668A09FFA058FD56B50FE12940D54B0FA5E ] CSC C:\Windows\system32\drivers\csc.sys 23:21:10.0651 0x1388 CSC - ok 23:21:10.0720 0x1388 [ 3AB183AB4D2C79DCF459CD2C1266B043, 72B0187EBA9DC74E61EC5CB3DC24058DDB768843E865801894AAEAA211610C56 ] CscService C:\Windows\System32\cscsvc.dll 23:21:10.0863 0x1388 CscService - ok 23:21:10.0942 0x1388 [ 622C96AFB07BB82C8650B47172137AC4, B74CEA5A3F4945E5A3EAE7AF1B1FA75F611C65C6FACE393052A512FA81B0C17C ] DcomLaunch C:\Windows\system32\rpcss.dll 23:21:10.0968 0x1388 DcomLaunch - ok 23:21:10.0997 0x1388 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 23:21:11.0058 0x1388 defragsvc - ok 23:21:11.0115 0x1388 [ 9B38580063D281A99E68EF5813022A5F, D91676B0E0A8E2A090E3E5DD340ABCFC20AE0F55B4C82869D6CFB34239BD27DA ] DfsC C:\Windows\system32\Drivers\dfsc.sys 23:21:11.0129 0x1388 DfsC - ok 23:21:11.0182 0x1388 [ 73BDD44A6088916964945886F9025409, 8E2ECC9AAEF3C6EBA2E61D25F657FDFCC72AB517CC4FD5FFF992E1F9EB942662 ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys 23:21:11.0195 0x1388 dg_ssudbus - ok 23:21:11.0253 0x1388 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 23:21:11.0280 0x1388 Dhcp - ok 23:21:11.0388 0x1388 [ EE9954237F15BE4DD9304D12E4D305ED, F295C9BAF20F0E669B673AFCC16B4969EE31B6A3808980DAB93D9B0F167DA3C0 ] DiagTrack C:\Windows\system32\diagtrack.dll 23:21:11.0443 0x1388 DiagTrack - ok 23:21:11.0470 0x1388 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 23:21:11.0502 0x1388 discache - ok 23:21:11.0551 0x1388 [ 616387BBD83372220B09DE95F4E67BBC, 5E2D5280BB775576E7CDE3FA6BDE494E183123635E5908CF7EBF1FF52966D07D ] Disk C:\Windows\system32\drivers\disk.sys 23:21:11.0563 0x1388 Disk - ok 23:21:11.0622 0x1388 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 23:21:11.0648 0x1388 Dnscache - ok 23:21:11.0704 0x1388 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 23:21:11.0743 0x1388 dot3svc - ok 23:21:11.0784 0x1388 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 23:21:11.0819 0x1388 DPS - ok 23:21:11.0871 0x1388 [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 23:21:11.0893 0x1388 drmkaud - ok 23:21:11.0961 0x1388 [ 3A9D7D464BDB3B70D7ECF689ADABBD4D, B4F5B23705EA1BA453FE30791CA245E1A5F7FBEABAD026E4A8A15A9FC44E8C9C ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 23:21:12.0010 0x1388 DXGKrnl - ok 23:21:12.0044 0x1388 EagleX64 - ok 23:21:12.0069 0x1388 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 23:21:12.0105 0x1388 EapHost - ok 23:21:12.0216 0x1388 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 23:21:12.0337 0x1388 ebdrv - ok 23:21:12.0387 0x1388 [ 92DAF7D21711117B007608CB50FBD2E2, 6C1FBCE3699C76BDACAC37C04002C85A6AF38BF610F579F6FFEC95302D449CDC ] EFS C:\Windows\System32\lsass.exe 23:21:12.0400 0x1388 EFS - ok 23:21:12.0446 0x1388 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 23:21:12.0487 0x1388 ehRecvr - ok 23:21:12.0509 0x1388 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 23:21:12.0524 0x1388 ehSched - ok 23:21:12.0544 0x1388 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 23:21:12.0574 0x1388 elxstor - ok 23:21:12.0616 0x1388 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 23:21:12.0628 0x1388 ErrDev - ok 23:21:12.0676 0x1388 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 23:21:12.0724 0x1388 EventSystem - ok 23:21:12.0757 0x1388 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 23:21:12.0812 0x1388 exfat - ok 23:21:12.0843 0x1388 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 23:21:12.0899 0x1388 fastfat - ok 23:21:13.0075 0x1388 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 23:21:13.0106 0x1388 Fax - ok 23:21:13.0120 0x1388 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys 23:21:13.0133 0x1388 fdc - ok 23:21:13.0146 0x1388 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 23:21:13.0181 0x1388 fdPHost - ok 23:21:13.0189 0x1388 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 23:21:13.0224 0x1388 FDResPub - ok 23:21:13.0237 0x1388 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 23:21:13.0249 0x1388 FileInfo - ok 23:21:13.0254 0x1388 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 23:21:13.0287 0x1388 Filetrace - ok 23:21:13.0407 0x1388 [ 96A89625E34EC8B5F05A9D01AAD04759, B64B7E7AD5D02D4C91A2A45FB9F523A162482A37F784625233FE4AD8B2601453 ] FlexNet Licensing Service 64 C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe 23:21:13.0463 0x1388 FlexNet Licensing Service 64 - ok 23:21:13.0485 0x1388 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 23:21:13.0499 0x1388 flpydisk - ok 23:21:13.0552 0x1388 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 23:21:13.0568 0x1388 FltMgr - ok 23:21:13.0759 0x1388 [ 700A5373FA66F1DAAECBD2CFB88C73ED, D6C1C4C846BC24EB6539ECC701A456FA53BB6679C79391F5B70580D47B6CE395 ] FontCache C:\Windows\system32\FntCache.dll 23:21:13.0834 0x1388 FontCache - ok 23:21:13.0898 0x1388 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 23:21:13.0909 0x1388 FontCache3.0.0.0 - ok 23:21:13.0923 0x1388 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 23:21:13.0937 0x1388 FsDepends - ok 23:21:13.0997 0x1388 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 23:21:14.0010 0x1388 Fs_Rec - ok 23:21:14.0170 0x1388 [ 014195B03B378CFEAA029958CBC53695, 0F069F37CF83234929D618A78A58F369D0D033A4ABBC4AD02D37825E9857B731 ] fussvc C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe 23:21:14.0178 0x1388 fussvc - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:14.0297 0x1388 Detect skipped due to KSN trusted 23:21:14.0297 0x1388 fussvc - ok 23:21:14.0364 0x1388 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 23:21:14.0383 0x1388 fvevol - ok 23:21:14.0469 0x1388 [ 4632BB93B668004965246D7911E2DD05, B4CCFFC488C94A0D82A6CC11A9BA2616B339217164719EABA3CF59913EA899FB ] fwlanusb4 C:\Windows\system32\DRIVERS\fwlanusb4.sys 23:21:14.0526 0x1388 fwlanusb4 - ok 23:21:14.0541 0x1388 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 23:21:14.0553 0x1388 gagp30kx - ok 23:21:14.0599 0x1388 [ F5D15F93007259AFD6FC2DEC420132A1, EB1B5D0478861AC038A7E0CD7317EFA836DDBD66B1419067B5DD75CE924421BA ] GameKB C:\Windows\system32\drivers\GameKB.sys 23:21:14.0604 0x1388 GameKB - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:14.0699 0x1388 Detect skipped due to KSN trusted 23:21:14.0699 0x1388 GameKB - ok 23:21:14.0848 0x1388 [ F78BC07DCED5EDDD6D477E923620F8EA, ABE28155100A38A5E1B58FFC8099EF416145278B440A67B8DAFD7715FE412624 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe 23:21:14.0893 0x1388 GfExperienceService - ok 23:21:15.0015 0x1388 [ E4AE497857409127ED57562AF913A903, 262ADD713B1FBF6200550967D1F8635B55D01BBD8FA2E753536E71A4EC87867B ] gpsvc C:\Windows\System32\gpsvc.dll 23:21:15.0078 0x1388 gpsvc - ok 23:21:15.0291 0x1388 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 23:21:15.0306 0x1388 gupdate - ok 23:21:15.0325 0x1388 [ 750446ED76A5D13E902174DDDDA1A62B, F67355A6659E21D8D97E6982B28F22453F8C298E822E27FADDB440DA4A6DE7C0 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 23:21:15.0338 0x1388 gupdatem - ok 23:21:15.0386 0x1388 [ 1E6438D4EA6E1174A3B3B1EDC4DE660B, F9995CFEC7BBFE10B06EEE04CA6B49658275C43096E57747BFF9C2C31A0F9011 ] hamachi C:\Windows\system32\DRIVERS\hamachi.sys 23:21:15.0397 0x1388 hamachi - ok 23:21:15.0417 0x1388 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 23:21:15.0430 0x1388 hcw85cir - ok 23:21:15.0497 0x1388 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 23:21:15.0522 0x1388 HdAudAddService - ok 23:21:15.0575 0x1388 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 23:21:15.0593 0x1388 HDAudBus - ok 23:21:15.0607 0x1388 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 23:21:15.0624 0x1388 HidBatt - ok 23:21:15.0640 0x1388 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 23:21:15.0657 0x1388 HidBth - ok 23:21:15.0678 0x1388 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 23:21:15.0693 0x1388 HidIr - ok 23:21:15.0761 0x1388 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 23:21:15.0796 0x1388 hidserv - ok 23:21:15.0849 0x1388 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 23:21:15.0875 0x1388 HidUsb - ok 23:21:15.0923 0x1388 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 23:21:15.0959 0x1388 hkmsvc - ok 23:21:16.0017 0x1388 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 23:21:16.0050 0x1388 HomeGroupListener - ok 23:21:16.0101 0x1388 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 23:21:16.0118 0x1388 HomeGroupProvider - ok 23:21:16.0173 0x1388 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 23:21:16.0185 0x1388 HpSAMD - ok 23:21:16.0260 0x1388 [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP C:\Windows\system32\drivers\HTTP.sys 23:21:16.0310 0x1388 HTTP - ok 23:21:16.0352 0x1388 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 23:21:16.0362 0x1388 hwpolicy - ok 23:21:16.0410 0x1388 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 23:21:16.0425 0x1388 i8042prt - ok 23:21:16.0488 0x1388 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 23:21:16.0509 0x1388 iaStorV - ok 23:21:16.0590 0x1388 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 23:21:16.0651 0x1388 idsvc - ok 23:21:16.0683 0x1388 IEEtwCollectorService - ok 23:21:16.0704 0x1388 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 23:21:16.0715 0x1388 iirsp - ok 23:21:16.0816 0x1388 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 23:21:16.0869 0x1388 IKEEXT - ok 23:21:17.0050 0x1388 [ C2F868881D48A568B525255F084EF063, EFB1704AE223CF886EDA5F1411C8178EDE4B5E1F7EE373E3DA89A6EA1A57D91D ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 23:21:17.0213 0x1388 IntcAzAudAddService - ok 23:21:17.0261 0x1388 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 23:21:17.0272 0x1388 intelide - ok 23:21:17.0298 0x1388 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 23:21:17.0312 0x1388 intelppm - ok 23:21:17.0341 0x1388 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 23:21:17.0377 0x1388 IPBusEnum - ok 23:21:17.0422 0x1388 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 23:21:17.0478 0x1388 IpFilterDriver - ok 23:21:17.0540 0x1388 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 23:21:17.0578 0x1388 iphlpsvc - ok 23:21:17.0626 0x1388 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 23:21:17.0640 0x1388 IPMIDRV - ok 23:21:17.0654 0x1388 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 23:21:17.0690 0x1388 IPNAT - ok 23:21:17.0768 0x1388 [ 16A6D49E7698FC6F1730D3FF9F5561A8, 860D2601BA3A71C81A6B21F4D92A5E9C47772C9DE0F047D49000FA4A484D7932 ] iPod Service C:\Program Files\iPod\bin\iPodService.exe 23:21:17.0791 0x1388 iPod Service - ok 23:21:17.0814 0x1388 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 23:21:17.0829 0x1388 IRENUM - ok 23:21:17.0874 0x1388 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 23:21:17.0884 0x1388 isapnp - ok 23:21:17.0933 0x1388 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 23:21:17.0950 0x1388 iScsiPrt - ok 23:21:17.0997 0x1388 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 23:21:18.0008 0x1388 kbdclass - ok 23:21:18.0027 0x1388 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 23:21:18.0040 0x1388 kbdhid - ok 23:21:18.0053 0x1388 [ 92DAF7D21711117B007608CB50FBD2E2, 6C1FBCE3699C76BDACAC37C04002C85A6AF38BF610F579F6FFEC95302D449CDC ] KeyIso C:\Windows\system32\lsass.exe 23:21:18.0066 0x1388 KeyIso - ok 23:21:18.0117 0x1388 [ 1F4B52A496A43C65AB0F26169650FAF2, 6D6F3505997A7DDEE6F127B3FB537AFFDE687D4F34489679674DC12FB12B842C ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 23:21:18.0130 0x1388 KSecDD - ok 23:21:18.0178 0x1388 [ E4A599EDFAAB66C2BC17FB1593DC129B, 13098694B649E9146214D320FB14C3D305FCA155438CB531A8BAA4A70231D1A7 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 23:21:18.0191 0x1388 KSecPkg - ok 23:21:18.0210 0x1388 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 23:21:18.0241 0x1388 ksthunk - ok 23:21:18.0272 0x1388 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 23:21:18.0317 0x1388 KtmRm - ok 23:21:18.0371 0x1388 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll 23:21:18.0412 0x1388 LanmanServer - ok 23:21:18.0464 0x1388 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 23:21:18.0500 0x1388 LanmanWorkstation - ok 23:21:18.0522 0x1388 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 23:21:18.0556 0x1388 lltdio - ok 23:21:18.0586 0x1388 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 23:21:18.0628 0x1388 lltdsvc - ok 23:21:18.0637 0x1388 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 23:21:18.0672 0x1388 lmhosts - ok 23:21:18.0739 0x1388 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 23:21:18.0752 0x1388 LSI_FC - ok 23:21:18.0764 0x1388 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 23:21:18.0776 0x1388 LSI_SAS - ok 23:21:18.0787 0x1388 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 23:21:18.0800 0x1388 LSI_SAS2 - ok 23:21:18.0806 0x1388 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 23:21:18.0820 0x1388 LSI_SCSI - ok 23:21:18.0830 0x1388 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 23:21:18.0869 0x1388 luafv - ok 23:21:18.0945 0x1388 [ 0C85B2B6FB74B36A251792D45E0EF860, 2E04204560C1159ABC25F273B0B7F81FDF9BA5E88C17929FD924C4E945DE5020 ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys 23:21:18.0964 0x1388 LVRS64 - ok 23:21:19.0150 0x1388 [ FF3A488924B0032B1A9CA6948C1FA9E8, 6F05852B75498210926F5CDF49D2A6DD97C39CD93D32E3200D7240AADA3E7BEE ] LVUVC64 C:\Windows\system32\DRIVERS\lvuvc64.sys 23:21:19.0320 0x1388 LVUVC64 - ok 23:21:19.0441 0x1388 [ 6EF327DBB5DC9D6310ADE48CAB14959D, AFDC81E83E9EC9424C14431E531E976C419715754952D92BE2691186C55F0E9B ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.376\McCHSvc.exe 23:21:19.0459 0x1388 McComponentHostService - ok 23:21:19.0502 0x1388 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 23:21:19.0517 0x1388 Mcx2Svc - ok 23:21:19.0535 0x1388 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 23:21:19.0546 0x1388 megasas - ok 23:21:19.0562 0x1388 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 23:21:19.0580 0x1388 MegaSR - ok 23:21:19.0607 0x1388 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 23:21:19.0642 0x1388 MMCSS - ok 23:21:19.0651 0x1388 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 23:21:19.0686 0x1388 Modem - ok 23:21:19.0734 0x1388 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 23:21:19.0749 0x1388 monitor - ok 23:21:19.0773 0x1388 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 23:21:19.0785 0x1388 mouclass - ok 23:21:19.0807 0x1388 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 23:21:19.0819 0x1388 mouhid - ok 23:21:19.0863 0x1388 [ 8ADB5445B29941CB41AF2846FD5C93C7, 689582430FE29EC0845B1DB841D3CC49D5D09DE264586E3999EEFE616986D12B ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 23:21:19.0876 0x1388 mountmgr - ok 23:21:19.0997 0x1388 [ 86320BA9D6A972C79D467931518B165A, 4D7ABD7E5637B9AF98D7F3D4C4DAE595C27C8FEEBAAFF9E6443271C41598FCE1 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 23:21:20.0012 0x1388 MozillaMaintenance - ok 23:21:20.0088 0x1388 [ 3665AB2F67F4024F5F3F80335ED5322A, BE3DC246F176E00D7611A7E16FBC22615199F49EBCB4C90B0C107294E592BF8D ] MpFilter C:\Windows\system32\DRIVERS\MpFilter.sys 23:21:20.0111 0x1388 MpFilter - ok 23:21:20.0159 0x1388 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 23:21:20.0174 0x1388 mpio - ok 23:21:20.0190 0x1388 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 23:21:20.0225 0x1388 mpsdrv - ok 23:21:20.0295 0x1388 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 23:21:20.0360 0x1388 MpsSvc - ok 23:21:20.0409 0x1388 [ 98DB1790F0A584E0A2528B92B052417F, 9AA04CA73AFE599810CD233B9CEC212E16D44DCEDF5C7D0181C7257F498068B5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 23:21:20.0424 0x1388 MRxDAV - ok 23:21:20.0473 0x1388 [ 25F918BB5D57C99FFEB0255143D0DF9A, E4BB656C3AEE19094B0F87828828DC73F248B45B30B678AA759DBAB3087399A2 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 23:21:20.0488 0x1388 mrxsmb - ok 23:21:20.0546 0x1388 [ 8DF2B80510F438CFEC479181BD29C794, ECA5BC17D1DB92B887D468B0FF1D6302518DBD7C3607B14FA291ECDA204D5E85 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 23:21:20.0566 0x1388 mrxsmb10 - ok 23:21:20.0615 0x1388 [ F7622CFE3402A9BF10227BB124901E54, 3EE6BA42E712505AED9D3920163814719FAC591FB5CFF589E230C7005CB598AF ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 23:21:20.0629 0x1388 mrxsmb20 - ok 23:21:20.0681 0x1388 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 23:21:20.0695 0x1388 msahci - ok 23:21:20.0767 0x1388 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 23:21:20.0781 0x1388 msdsm - ok 23:21:20.0791 0x1388 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 23:21:20.0808 0x1388 MSDTC - ok 23:21:20.0837 0x1388 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 23:21:20.0869 0x1388 Msfs - ok 23:21:20.0885 0x1388 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 23:21:20.0918 0x1388 mshidkmdf - ok 23:21:20.0962 0x1388 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 23:21:20.0972 0x1388 msisadrv - ok 23:21:21.0005 0x1388 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 23:21:21.0043 0x1388 MSiSCSI - ok 23:21:21.0046 0x1388 msiserver - ok 23:21:21.0070 0x1388 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 23:21:21.0103 0x1388 MSKSSRV - ok 23:21:21.0206 0x1388 [ 5ADED2C1239D7BD798E2C4EF9EAA1FA3, 6A462DAC110015F3E59610202714120C557674019A0196680B72031C50D7C474 ] MsMpSvc C:\Program Files\Microsoft Security Client\MsMpEng.exe 23:21:21.0220 0x1388 MsMpSvc - ok 23:21:21.0242 0x1388 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 23:21:21.0275 0x1388 MSPCLOCK - ok 23:21:21.0287 0x1388 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 23:21:21.0317 0x1388 MSPQM - ok 23:21:21.0372 0x1388 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 23:21:21.0392 0x1388 MsRPC - ok 23:21:21.0441 0x1388 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 23:21:21.0451 0x1388 mssmbios - ok 23:21:21.0455 0x1388 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 23:21:21.0486 0x1388 MSTEE - ok 23:21:21.0498 0x1388 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 23:21:21.0511 0x1388 MTConfig - ok 23:21:21.0520 0x1388 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 23:21:21.0530 0x1388 Mup - ok 23:21:21.0571 0x1388 [ D2CB4581FFDFE8BE3EEE16649753F4EE, 8EBE734DCEDAB699C0A19E87EFEB3BBDABB534088B0FE3EC71044C7FAEEDF0B0 ] NanoServiceMain C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe 23:21:21.0583 0x1388 NanoServiceMain - ok 23:21:21.0639 0x1388 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 23:21:21.0689 0x1388 napagent - ok 23:21:21.0760 0x1388 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 23:21:21.0784 0x1388 NativeWifiP - ok 23:21:21.0854 0x1388 [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS C:\Windows\system32\drivers\ndis.sys 23:21:21.0904 0x1388 NDIS - ok 23:21:21.0925 0x1388 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 23:21:21.0956 0x1388 NdisCap - ok 23:21:21.0979 0x1388 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 23:21:22.0012 0x1388 NdisTapi - ok 23:21:22.0060 0x1388 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 23:21:22.0093 0x1388 Ndisuio - ok 23:21:22.0138 0x1388 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 23:21:22.0174 0x1388 NdisWan - ok 23:21:22.0202 0x1388 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 23:21:22.0235 0x1388 NDProxy - ok 23:21:22.0262 0x1388 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 23:21:22.0295 0x1388 NetBIOS - ok 23:21:22.0344 0x1388 [ E47D571FEC2C76E867935109AB2A770C, F349D25890B6F476B106FD75BFB081DB737CA9B224D95E44927942FFF2DF82CD ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 23:21:22.0362 0x1388 NetBT - ok 23:21:22.0370 0x1388 [ 92DAF7D21711117B007608CB50FBD2E2, 6C1FBCE3699C76BDACAC37C04002C85A6AF38BF610F579F6FFEC95302D449CDC ] Netlogon C:\Windows\system32\lsass.exe 23:21:22.0382 0x1388 Netlogon - ok 23:21:22.0412 0x1388 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 23:21:22.0456 0x1388 Netman - ok 23:21:22.0565 0x1388 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 23:21:22.0580 0x1388 NetMsmqActivator - ok 23:21:22.0589 0x1388 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 23:21:22.0603 0x1388 NetPipeActivator - ok 23:21:22.0629 0x1388 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 23:21:22.0679 0x1388 netprofm - ok 23:21:22.0783 0x1388 [ 618C55B392238B9467F9113E13525C49, 304A77EF3E1E7A1738E5A4F6A911B4DF736CEF4867C6F07CA71E227048E90370 ] netr28ux C:\Windows\system32\DRIVERS\netr28ux.sys 23:21:22.0828 0x1388 netr28ux - ok 23:21:22.0879 0x1388 [ 81B8D0C1CE44A7FDBD596B693783950C, 9F47ACECFE32E935FE03D0134018A9C03698D9E25E6FC9B8A525A4FE4A880642 ] netr7364 C:\Windows\system32\DRIVERS\netr7364.sys 23:21:22.0922 0x1388 netr7364 - ok 23:21:22.0928 0x1388 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 23:21:22.0942 0x1388 NetTcpActivator - ok 23:21:22.0948 0x1388 [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 23:21:22.0961 0x1388 NetTcpPortSharing - ok 23:21:22.0988 0x1388 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 23:21:22.0999 0x1388 nfrd960 - ok 23:21:23.0062 0x1388 [ CE5F6E635FE4506AE6F2D6EB87425128, 3DB5ECF7CD2F2C3C010AA40CE57F1B3856E284BBA359FBC41A1B340E3180FD5F ] NisDrv C:\Windows\system32\DRIVERS\NisDrvWFP.sys 23:21:23.0078 0x1388 NisDrv - ok 23:21:23.0126 0x1388 [ D630B510E1E3FF6BA12B705F47F115D9, 05D76065D5D9A82E53EA18CD2D0184338681A7BBD3CD5D6C44D1FA5CB1C63640 ] NisSrv C:\Program Files\Microsoft Security Client\NisSrv.exe 23:21:23.0147 0x1388 NisSrv - ok 23:21:23.0194 0x1388 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 23:21:23.0219 0x1388 NlaSvc - ok 23:21:23.0253 0x1388 [ 37B93643A2A003EE25308DDF4EAF8C54, 0643867FE36B5F9691A9FC11C066584CE75C437C53CF17456AA3EEE1998E37D7 ] NNSALPC C:\Windows\system32\DRIVERS\NNSAlpc.sys 23:21:23.0265 0x1388 NNSALPC - ok 23:21:23.0288 0x1388 [ B0FA8C7F0451145C1BDB79484FEC3586, D2D3CACE03259CC5FA85A08F776EB2694393C047740156F1979B5F576E4AA211 ] NNSHTTP C:\Windows\system32\DRIVERS\NNSHttp.sys 23:21:23.0300 0x1388 NNSHTTP - ok 23:21:23.0306 0x1388 [ 1E599DA97D1A09F54969430AAA106BFA, C90D29DEACFC06D130FB0F4F4263EB9C7DDE939D29E57760816CD60896537F4A ] NNSHTTPS C:\Windows\system32\DRIVERS\NNSHttps.sys 23:21:23.0318 0x1388 NNSHTTPS - ok 23:21:23.0325 0x1388 [ 98BDEC322082187674F9764B6C3D3F37, AB02ED80BBA9F5632B09441689F6B806678D472D17F44FC816AC23B9C4E58E4A ] NNSIDS C:\Windows\system32\DRIVERS\NNSIds.sys 23:21:23.0336 0x1388 NNSIDS - ok 23:21:23.0345 0x1388 [ 148616C45CC9AB911049CBC8E2B705E9, D99F2A2AF45BD64DAD503C70D4904309B3EA924ADAB21A2EEEDDA5F7CD60ED1B ] NNSPICC C:\Windows\system32\DRIVERS\NNSPicc.sys 23:21:23.0356 0x1388 NNSPICC - ok 23:21:23.0388 0x1388 [ 47E510F2699F745581184DBBA24D2148, C8A2DF7C7144FBE5DA8E8798BE9E355BD8C8AF0AAB7E6EDA6702BB24FC9E2A1F ] NNSPIHSW C:\Windows\system32\DRIVERS\NNSPihsw.sys 23:21:23.0398 0x1388 NNSPIHSW - ok 23:21:23.0409 0x1388 [ 6CD7D0B3F8F1C1B0CC8D5EA700C16DA5, A4CE2DB19049A8A1B89CFD127B819464D0816BC459E9A0A1F7C29AEF321281D8 ] NNSPOP3 C:\Windows\system32\DRIVERS\NNSPop3.sys 23:21:23.0422 0x1388 NNSPOP3 - ok 23:21:23.0441 0x1388 [ 6D94915B8EB8FF01664C4170D3AAC994, 89F75C3E71EECF4CAA244DEAA618FB7C1D7FD81FA6DC9E7310868DDC638499FF ] NNSPROT C:\Windows\system32\DRIVERS\NNSProt.sys 23:21:23.0457 0x1388 NNSPROT - ok 23:21:23.0468 0x1388 [ 8CDCAD81FB4C3CAA95A6D5F1F189AF4D, 3E55D03D9828CA6137AF1F9ABD563F63C7AEC531BB4DE8161517E6AB31E7E621 ] NNSPRV C:\Windows\system32\DRIVERS\NNSPrv.sys 23:21:23.0479 0x1388 NNSPRV - ok 23:21:23.0510 0x1388 [ 22F8E36B153CD61B5FB2A9FE63D0561A, 7CAF77D2FC526DA5FA78BA3B5B9D98FCEB55E9F4820F8DD6101B0BC7315E101F ] NNSSMTP C:\Windows\system32\DRIVERS\NNSSmtp.sys 23:21:23.0522 0x1388 NNSSMTP - ok 23:21:23.0536 0x1388 [ 64734FB9136A009E15E01125D11A893A, 1AF5610CDEDE04DB519CB7F0F75DBB0EE7D85F9ACB3630236D58A7F514AD3845 ] NNSSTRM C:\Windows\system32\DRIVERS\NNSStrm.sys 23:21:23.0551 0x1388 NNSSTRM - ok 23:21:23.0565 0x1388 [ FA76C90C664963BE96E243E109415717, 61306FAEC6C346D83CECC3F0D50BB4FABBEFA185DAF4EB65E5087D01E008E994 ] NNSTLSC C:\Windows\system32\DRIVERS\NNSTlsc.sys 23:21:23.0577 0x1388 NNSTLSC - ok 23:21:23.0643 0x1388 [ DE7FCC77F4A503AF4CA6A47D49B3713D, 4BFAA99393F635CD05D91A64DE73EDB5639412C129E049F0FE34F88517A10FC6 ] NPF C:\Windows\system32\drivers\npf.sys 23:21:23.0653 0x1388 NPF - ok Geändert von Froschmann (06.12.2016 um 23:31 Uhr) |
06.12.2016, 23:26 | #12 |
| Windows 10 extrem langsam geworden TDS Killer Teil 2: Code:
ATTFilter 23:21:23.0663 0x1388 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 23:21:23.0696 0x1388 Npfs - ok 23:21:23.0735 0x1388 npggsvc - ok 23:21:23.0780 0x1388 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 23:21:23.0829 0x1388 nsi - ok 23:21:23.0878 0x1388 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 23:21:23.0911 0x1388 nsiproxy - ok 23:21:23.0998 0x1388 [ 47B2D0B31BDC3EBE6090228E2BA3764D, 984A4B38300954164BCBF57EC1A09C18B53779E60A26E9618B50E26016735787 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 23:21:24.0067 0x1388 Ntfs - ok 23:21:24.0126 0x1388 [ 69E894C5A09C6A6E6372E35653BB05F3, D377E6D7AF16468559C36D2145FE3AF5D696B57CC9F8A0D47489923D723B8D9D ] ntiopnp C:\Windows\system32\drivers\ntiopnp.sys 23:21:24.0138 0x1388 ntiopnp - ok 23:21:24.0148 0x1388 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 23:21:24.0179 0x1388 Null - ok 23:21:24.0245 0x1388 [ 62CE6D6AA873D2E4AE2F64ED89E6CD83, F4EE019EACB994BE188C7DAE6DD08125F9EA18CF302597BC6DB49E4C70E61783 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 23:21:24.0262 0x1388 NVHDA - ok 23:21:24.0655 0x1388 [ 1C5855A8A7186513BE3E301CEE171496, 629B14222FDAECC294D2D8FA372CE0AD6F76BBDE13B6B4168977EF6E30D22562 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 23:21:25.0115 0x1388 nvlddmkm - ok 23:21:25.0294 0x1388 [ 020F45E362D3B57CCC5735582BB1A6EC, E2D953CEF208528382153D06FED8394BEB52657C547E4D2D2954E537C9A382DC ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe 23:21:25.0349 0x1388 NvNetworkService - ok 23:21:25.0366 0x1388 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 23:21:25.0380 0x1388 nvraid - ok 23:21:25.0433 0x1388 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 23:21:25.0448 0x1388 nvstor - ok 23:21:25.0541 0x1388 [ F82BCEB9F57B2959F6AAE2A3DDA892A8, 5B02C74BAF0E12B84F239B1449DAA955B28BD5BA7D35D315DB57F45E042E0DB3 ] NvStreamKms C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys 23:21:25.0552 0x1388 NvStreamKms - ok 23:21:25.0659 0x1388 [ 9209D57C1AA24841EF8D5DE6A5B2AAEB, C1A53621F5361DCE9C962A9B9B586D1904901C9EC20EFCA76C40ADCD98BEDF3C ] NvStreamNetworkSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe 23:21:25.0763 0x1388 NvStreamNetworkSvc - ok 23:21:25.0848 0x1388 [ 0EDF9504CA5174075BA5902AFC1F57C8, 8E210E71BA91813D3BB6B59E5F6AD0889711336AD12B1B1C67CCC882A6ED3E53 ] NvStreamSvc C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe 23:21:25.0919 0x1388 NvStreamSvc - ok 23:21:26.0023 0x1388 [ FCD26AED0772830BE5934B902BC67030, BA0F1AF9148B371174BE7CED9C1706458E9AA5BFC04304E2880D15EA8A2AA143 ] nvsvc C:\Windows\system32\nvvsvc.exe 23:21:26.0066 0x1388 nvsvc - ok 23:21:26.0210 0x1388 [ 005E474630A7AA05A617C574B702FEED, E7B8181232DAA787EE8B98DDB5775E4B33C82B4D2E4A27D3DCD9FBAA6663BD97 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe 23:21:26.0273 0x1388 nvUpdatusService - ok 23:21:26.0323 0x1388 [ F37FE6B15A987AEEC08EEF531F2FAED7, CC768E7DE80C7A8CB2392F9BC528212B8A3A35A30A222ED0B0B959051E6F8065 ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys 23:21:26.0337 0x1388 nvvad_WaveExtensible - ok 23:21:26.0476 0x1388 [ 785F487A64950F3CB8E9F16253BA3B7B, 02445344BD214370A6D48B1CA04921D8EFCB13E676B5648266DD0E076C0822B6 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 23:21:26.0501 0x1388 odserv - ok 23:21:26.0557 0x1388 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 23:21:26.0570 0x1388 ohci1394 - ok 23:21:26.0651 0x1388 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 23:21:26.0665 0x1388 ose - ok 23:21:26.0726 0x1388 [ 4965B005492CBA7719E82B71E3245495, 52AD72C05FACC1E0E416A1FA25F34FDD3CB274FAB973BEAAE911A2FACA42B650 ] ose64 C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE 23:21:26.0739 0x1388 ose64 - ok 23:21:27.0045 0x1388 [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 23:21:27.0174 0x1388 osppsvc - ok 23:21:27.0217 0x1388 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 23:21:27.0245 0x1388 p2pimsvc - ok 23:21:27.0279 0x1388 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 23:21:27.0307 0x1388 p2psvc - ok 23:21:27.0458 0x1388 [ DD3AE0D88C03BD4310960C66820BCEC8, 77FC2D60062B4724900C7E08D4DCFAFE23DA71A0BD3D6A81D7C984787FE4336C ] PaceLicenseDServices C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe 23:21:27.0563 0x1388 PaceLicenseDServices - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:27.0753 0x1388 PaceLicenseDServices ( UnsignedFile.Multi.Generic ) - warning 23:21:38.0366 0x1388 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys 23:21:38.0380 0x1388 Parport - ok 23:21:38.0425 0x1388 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 23:21:38.0436 0x1388 partmgr - ok 23:21:38.0479 0x1388 [ 3CD83692C43D87088E85E3C916146FFB, 9E812535E8FBA045FDA30F68E9EB2031132C37721D542A2DC9D4C33E2B137FCF ] PcaSvc C:\Windows\System32\pcasvc.dll 23:21:38.0506 0x1388 PcaSvc - ok 23:21:38.0558 0x1388 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 23:21:38.0573 0x1388 pci - ok 23:21:38.0619 0x1388 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 23:21:38.0629 0x1388 pciide - ok 23:21:38.0641 0x1388 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 23:21:38.0657 0x1388 pcmcia - ok 23:21:38.0669 0x1388 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 23:21:38.0680 0x1388 pcw - ok 23:21:38.0704 0x1388 [ EA4D67448BE493D543F1730D6CD04694, 24717C5E41B7CA522F3330EF2228B6685E710A5259396E9887A1C1E7A413F8CA ] PEAUTH C:\Windows\system32\drivers\peauth.sys 23:21:38.0742 0x1388 PEAUTH - ok 23:21:38.0799 0x1388 [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 23:21:38.0861 0x1388 PeerDistSvc - ok 23:21:38.0917 0x1388 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 23:21:38.0931 0x1388 PerfHost - ok 23:21:39.0022 0x1388 [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 23:21:39.0100 0x1388 pla - ok 23:21:39.0164 0x1388 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 23:21:39.0196 0x1388 PlugPlay - ok 23:21:39.0221 0x1388 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 23:21:39.0235 0x1388 PNRPAutoReg - ok 23:21:39.0251 0x1388 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 23:21:39.0270 0x1388 PNRPsvc - ok 23:21:39.0331 0x1388 [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 23:21:39.0369 0x1388 PolicyAgent - ok 23:21:39.0383 0x1388 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 23:21:39.0422 0x1388 Power - ok 23:21:39.0480 0x1388 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 23:21:39.0514 0x1388 PptpMiniport - ok 23:21:39.0538 0x1388 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys 23:21:39.0551 0x1388 Processor - ok 23:21:39.0625 0x1388 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 23:21:39.0651 0x1388 ProfSvc - ok 23:21:39.0673 0x1388 [ 92DAF7D21711117B007608CB50FBD2E2, 6C1FBCE3699C76BDACAC37C04002C85A6AF38BF610F579F6FFEC95302D449CDC ] ProtectedStorage C:\Windows\system32\lsass.exe 23:21:39.0685 0x1388 ProtectedStorage - ok 23:21:39.0746 0x1388 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 23:21:39.0779 0x1388 Psched - ok 23:21:39.0802 0x1388 [ 201F907C39AC583EB2A36F6CC38AF683, B1E455810DF23474FAB4A1034EA8D2864CF9E0669F160DD6CDA803EC87533C3D ] PSINAflt C:\Windows\system32\DRIVERS\PSINAflt.sys 23:21:39.0815 0x1388 PSINAflt - ok 23:21:39.0837 0x1388 [ 21EA387741A29F20CA9F9009D5AF6109, 0CABB89CFE5BA889B63FCAE6B63916AF7970ECDC3772D629BE5B45FE9797B60F ] PSINFile C:\Windows\system32\DRIVERS\PSINFile.sys 23:21:39.0848 0x1388 PSINFile - ok 23:21:39.0889 0x1388 [ 21B20706576D006954ABD601F1CA68A8, 2457DF703B056369610381D7588A92C6ED16858F46F1D20E720D19DEC55C2423 ] PSINKNC C:\Windows\system32\DRIVERS\psinknc.sys 23:21:39.0904 0x1388 PSINKNC - ok 23:21:39.0918 0x1388 [ 75C064F6AACFE6E2786C8128EC0A0B4F, 90A72A071E87EB8984BA23536F8C5435BAAA04196441F98148DF76225FC64AEA ] PSINProc C:\Windows\system32\DRIVERS\PSINProc.sys 23:21:39.0930 0x1388 PSINProc - ok 23:21:39.0945 0x1388 [ 47A171CEAC14628390F3DACA9C20D9C3, C6D17519F87AD38240885720B820983E9A2DC0E6A06B88C9D82D3441F6FFB92F ] PSINProt C:\Windows\system32\DRIVERS\PSINProt.sys 23:21:39.0957 0x1388 PSINProt - ok 23:21:39.0977 0x1388 [ 0F9171CFB4D6A0179A13C951A9ACEA47, EB0663497555C9E32A2B4C5200D842068F7BF0FC0D325028BCB335141FEC7677 ] PSINReg C:\Windows\system32\DRIVERS\PSINReg.sys 23:21:39.0988 0x1388 PSINReg - ok 23:21:40.0052 0x1388 [ D6C6BAE38CFEDCF3F7E046A5A72528FD, B012699571ED38E2BE909CEC81674C563C2DAAA18701AC03AE96176BA57BCF47 ] PSKMAD C:\Windows\system32\DRIVERS\PSKMAD.sys 23:21:40.0062 0x1388 PSKMAD - ok 23:21:40.0088 0x1388 [ 06F5EFBE02C40E3BE7E916EBAB387F6D, 21741628F307387C42FAB8B37C8F9D58E02533AA4D96004B166455CBCDF117A1 ] PSUAService C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe 23:21:40.0097 0x1388 PSUAService - ok 23:21:40.0152 0x1388 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 23:21:40.0219 0x1388 ql2300 - ok 23:21:40.0249 0x1388 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 23:21:40.0262 0x1388 ql40xx - ok 23:21:40.0291 0x1388 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 23:21:40.0312 0x1388 QWAVE - ok 23:21:40.0321 0x1388 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 23:21:40.0335 0x1388 QWAVEdrv - ok 23:21:40.0344 0x1388 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 23:21:40.0376 0x1388 RasAcd - ok 23:21:40.0408 0x1388 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 23:21:40.0442 0x1388 RasAgileVpn - ok 23:21:40.0454 0x1388 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 23:21:40.0489 0x1388 RasAuto - ok 23:21:40.0544 0x1388 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 23:21:40.0577 0x1388 Rasl2tp - ok 23:21:40.0628 0x1388 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 23:21:40.0670 0x1388 RasMan - ok 23:21:40.0694 0x1388 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 23:21:40.0727 0x1388 RasPppoe - ok 23:21:40.0733 0x1388 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 23:21:40.0764 0x1388 RasSstp - ok 23:21:40.0812 0x1388 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 23:21:40.0847 0x1388 rdbss - ok 23:21:40.0856 0x1388 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 23:21:40.0873 0x1388 rdpbus - ok 23:21:40.0915 0x1388 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 23:21:40.0946 0x1388 RDPCDD - ok 23:21:41.0053 0x1388 [ 1B6163C503398B23FF8B939C67747683, 339A5AA7970FF34FAAB213B655860C5B0DEC5F983A4A11A088017D849F320ACE ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 23:21:41.0075 0x1388 RDPDR - ok 23:21:41.0086 0x1388 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 23:21:41.0117 0x1388 RDPENCDD - ok 23:21:41.0122 0x1388 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 23:21:41.0154 0x1388 RDPREFMP - ok 23:21:41.0200 0x1388 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 23:21:41.0217 0x1388 RDPWD - ok 23:21:41.0269 0x1388 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 23:21:41.0285 0x1388 rdyboost - ok 23:21:41.0390 0x1388 [ B2D01290C0E0465ACA54C2088E947823, 6FB6E6CFAF3F2F948B753A0CFF6F9058BF3ED0E421204EE58848F0DFD694A747 ] RealNetworks Downloader Resolver Service C:\Program Files (x86)\RealNetworks\RealDownloader\rndlresolversvc.exe 23:21:41.0400 0x1388 RealNetworks Downloader Resolver Service - ok 23:21:41.0421 0x1388 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 23:21:41.0456 0x1388 RemoteAccess - ok 23:21:41.0479 0x1388 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 23:21:41.0515 0x1388 RemoteRegistry - ok 23:21:41.0573 0x1388 [ 83A6C2CAFE236652D1559640594A0EA8, 52360F17C9C70C9CEA3316560B40C4D89FD705ED7E6B6088C99FC54D4CC35EB5 ] rpcapd C:\Program Files (x86)\WinPcap\rpcapd.exe 23:21:41.0585 0x1388 rpcapd - ok 23:21:41.0596 0x1388 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 23:21:41.0630 0x1388 RpcEptMapper - ok 23:21:41.0654 0x1388 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 23:21:41.0667 0x1388 RpcLocator - ok 23:21:41.0726 0x1388 [ 622C96AFB07BB82C8650B47172137AC4, B74CEA5A3F4945E5A3EAE7AF1B1FA75F611C65C6FACE393052A512FA81B0C17C ] RpcSs C:\Windows\system32\rpcss.dll 23:21:41.0749 0x1388 RpcSs - ok 23:21:41.0781 0x1388 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 23:21:41.0814 0x1388 rspndr - ok 23:21:41.0846 0x1388 [ 0039DE6A0A1293889A3F21ECC473263D, 43B5049BFF9CFB5AF8E842E8B6C10B848B9636CFC15B3464E296CF3B717AC8AA ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 23:21:41.0876 0x1388 RTL8167 - ok 23:21:41.0915 0x1388 [ E60C0A09F997826C7627B244195AB581, E8630ED74B38B98BF584E353D992C1311BC36AB7F20A1BB66C9CD65CE1E46F8D ] s3cap C:\Windows\system32\drivers\vms3cap.sys 23:21:41.0926 0x1388 s3cap - ok 23:21:41.0936 0x1388 [ 92DAF7D21711117B007608CB50FBD2E2, 6C1FBCE3699C76BDACAC37C04002C85A6AF38BF610F579F6FFEC95302D449CDC ] SamSs C:\Windows\system32\lsass.exe 23:21:41.0948 0x1388 SamSs - ok 23:21:41.0997 0x1388 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 23:21:42.0009 0x1388 sbp2port - ok 23:21:42.0029 0x1388 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 23:21:42.0066 0x1388 SCardSvr - ok 23:21:42.0116 0x1388 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 23:21:42.0148 0x1388 scfilter - ok 23:21:42.0220 0x1388 [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule C:\Windows\system32\schedsvc.dll 23:21:42.0287 0x1388 Schedule - ok 23:21:42.0340 0x1388 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 23:21:42.0372 0x1388 SCPolicySvc - ok 23:21:42.0418 0x1388 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 23:21:42.0444 0x1388 SDRSVC - ok 23:21:42.0474 0x1388 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 23:21:42.0495 0x1388 secdrv - ok 23:21:42.0537 0x1388 [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon C:\Windows\system32\seclogon.dll 23:21:42.0557 0x1388 seclogon - ok 23:21:42.0583 0x1388 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 23:21:42.0617 0x1388 SENS - ok 23:21:42.0629 0x1388 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 23:21:42.0654 0x1388 SensrSvc - ok 23:21:42.0672 0x1388 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 23:21:42.0683 0x1388 Serenum - ok 23:21:42.0737 0x1388 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 23:21:42.0750 0x1388 Serial - ok 23:21:42.0798 0x1388 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 23:21:42.0810 0x1388 sermouse - ok 23:21:42.0857 0x1388 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 23:21:42.0892 0x1388 SessionEnv - ok 23:21:42.0912 0x1388 [ A48B9F81D3C2BA989AE2D566747B4623, F1A6AE83173A32C49E261AF7A6F15BCB560A2D2D8D907225E2C115517C8EB906 ] sfdrv01 C:\Windows\system32\drivers\sfdrv01.sys 23:21:42.0918 0x1388 sfdrv01 - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:43.0014 0x1388 sfdrv01 ( UnsignedFile.Multi.Generic ) - warning 23:21:43.0152 0x1388 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 23:21:43.0166 0x1388 sffdisk - ok 23:21:43.0179 0x1388 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 23:21:43.0192 0x1388 sffp_mmc - ok 23:21:43.0203 0x1388 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 23:21:43.0216 0x1388 sffp_sd - ok 23:21:43.0228 0x1388 [ 9E0ECDA6C72C5D0D8CF3F0FBA076422B, 32E1433B528AD9C11BCCCDA987E8F7E6103E27A9B70C60126F312B0778F51606 ] sfhlp02 C:\Windows\system32\drivers\sfhlp02.sys 23:21:43.0232 0x1388 sfhlp02 - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:43.0348 0x1388 sfhlp02 ( UnsignedFile.Multi.Generic ) - warning 23:21:43.0453 0x1388 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 23:21:43.0465 0x1388 sfloppy - ok 23:21:43.0474 0x1388 [ F65D13175EBF3FA49B1F7F948926A16E, 48DAB84C88B0DA4015581DF4F4A48280E8E3522A43A2966D4C37EE2E84C61D6F ] sfvfs02 C:\Windows\system32\drivers\sfvfs02.sys 23:21:43.0480 0x1388 sfvfs02 - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:43.0571 0x1388 sfvfs02 ( UnsignedFile.Multi.Generic ) - warning 23:21:43.0732 0x1388 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 23:21:43.0773 0x1388 SharedAccess - ok 23:21:43.0828 0x1388 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 23:21:43.0870 0x1388 ShellHWDetection - ok 23:21:43.0875 0x1388 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 23:21:43.0886 0x1388 SiSRaid2 - ok 23:21:43.0894 0x1388 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 23:21:43.0906 0x1388 SiSRaid4 - ok 23:21:44.0009 0x1388 [ F3AAB7DF6408431C762D8721B68F46E4, 56ED764AA660955B8B06322703D086B3A52106625A83CCAF195B08BCBDEDA88F ] SkypeUpdate C:\Program Files (x86)\Skype\Updater\Updater.exe 23:21:44.0027 0x1388 SkypeUpdate - ok 23:21:44.0047 0x1388 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 23:21:44.0082 0x1388 Smb - ok 23:21:44.0117 0x1388 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 23:21:44.0143 0x1388 SNMPTRAP - ok 23:21:44.0225 0x1388 [ 0FFE35F0B0CD5A324BBE22F02569AE3B, F4EE803EEFDB4EAEEDB3024C3516F1F9A202C77F4870D6B74356BBDE32B3B560 ] speedfan C:\Windows\SysWOW64\speedfan.sys 23:21:44.0297 0x1388 speedfan - ok 23:21:44.0359 0x1388 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 23:21:44.0369 0x1388 spldr - ok 23:21:44.0426 0x1388 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 23:21:44.0464 0x1388 Spooler - ok 23:21:44.0610 0x1388 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 23:21:44.0730 0x1388 sppsvc - ok 23:21:44.0765 0x1388 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 23:21:44.0799 0x1388 sppuinotify - ok 23:21:44.0948 0x1388 [ E8276BE984738AA44070CFDE6EFC9300, F0B09D3E08BDB1B8AEBA97A700271E97AB2506793B42D96415B23DB68DA99FA8 ] SQLWriter C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe 23:21:44.0962 0x1388 SQLWriter - ok 23:21:45.0018 0x1388 [ EC666682FE8344CF7E6ED69E74FA9F4F, DCD2A1C046425630689E2C9A6A6E356FE5A2A6664D12C20CFE236FCB32240DF9 ] srv C:\Windows\system32\DRIVERS\srv.sys 23:21:45.0058 0x1388 srv - ok 23:21:45.0113 0x1388 [ E450C0318DCE8ED28ED272C8806B8495, D2FD459F8C5E42103EF2F71421FA175A4F0821F8C2A3763093122D433D1C50FB ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 23:21:45.0135 0x1388 srv2 - ok 23:21:45.0186 0x1388 [ 9C12C78AD36C23D925711A4640228225, FF72C23F2A08EDF0C41BAF1EB0245AB44FF91365C5466F09C47A8F0928D20994 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 23:21:45.0201 0x1388 srvnet - ok 23:21:45.0216 0x1388 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 23:21:45.0255 0x1388 SSDPSRV - ok 23:21:45.0270 0x1388 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 23:21:45.0303 0x1388 SstpSvc - ok 23:21:45.0361 0x1388 [ 5252D7BC56E5E0ED715AEA8FE173A455, 1408B3E98B35A449434718777EE70595F0D306197A428279C6281D2F1953F259 ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys 23:21:45.0376 0x1388 ssudmdm - ok 23:21:45.0435 0x1388 [ EF806D212D34B0E173BAEB3564D53E37, 6EF229A7B7AFF0268CDF47B77F961BD44335C3B35499BB00CBA494A22B2BA39E ] ss_bbus C:\Windows\system32\DRIVERS\ss_bbus.sys 23:21:45.0448 0x1388 ss_bbus - ok 23:21:45.0463 0x1388 [ 08B1B34ABEBEB6AC2DEA06900C56411E, 928EF9B9F194DB07049BA2D7127756B021C2729F562E54F7FECD0F2B2FF5A209 ] ss_bmdfl C:\Windows\system32\DRIVERS\ss_bmdfl.sys 23:21:45.0473 0x1388 ss_bmdfl - ok 23:21:45.0493 0x1388 [ 71A9DA6BEAA4CB54DFB827FB78600A5D, 6393CA17CF6A6F30447FF599B2D27CAB44BA1A709D986AC5E14463303094BE5F ] ss_bmdm C:\Windows\system32\DRIVERS\ss_bmdm.sys 23:21:45.0506 0x1388 ss_bmdm - ok 23:21:45.0653 0x1388 [ 90E22D7CDE08E07446D238A569BCAB7C, 3D4F413D0B0C9CF28D06E0476F24AC6441C8678DF786D9971B39C91C9F9B8020 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 23:21:45.0697 0x1388 Steam Client Service - ok 23:21:45.0809 0x1388 [ 89CD10E913267061D7E68FDE70362755, D38BEC07132AEC8D14CDCFE9A63C240FC7B4BB7394DDC0A3158C7A4C1548B245 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvscpapisvr.exe 23:21:45.0829 0x1388 Stereo Service - ok 23:21:45.0853 0x1388 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 23:21:45.0864 0x1388 stexstor - ok 23:21:45.0933 0x1388 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 23:21:45.0977 0x1388 stisvc - ok 23:21:46.0037 0x1388 [ 7785DC213270D2FC066538DAF94087E7, F09CB2895241719CA5147B2EE9F7ECBD0303AFFB5CD896F06D4D29BAAAFC207B ] storflt C:\Windows\system32\drivers\vmstorfl.sys 23:21:46.0048 0x1388 storflt - ok 23:21:46.0116 0x1388 [ C40841817EF57D491F22EB103DA587CC, 5FAA2DE43BADC16A898C0C290C44C41E4411D919A95FE8C6FF45EA7A34495079 ] StorSvc C:\Windows\system32\storsvc.dll 23:21:46.0243 0x1388 StorSvc - ok 23:21:46.0257 0x1388 [ D34E4943D5AC096C8EDEEBFD80D76E23, 1DD7F6F97060B5F763A04ACA1F75E59DAB09EF824FD09B83FC3C192837D006DE ] storvsc C:\Windows\system32\drivers\storvsc.sys 23:21:46.0268 0x1388 storvsc - ok 23:21:46.0314 0x1388 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 23:21:46.0324 0x1388 swenum - ok 23:21:46.0459 0x1388 [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 23:21:46.0485 0x1388 SwitchBoard - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:46.0570 0x1388 Detect skipped due to KSN trusted 23:21:46.0571 0x1388 SwitchBoard - ok 23:21:46.0629 0x1388 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 23:21:46.0687 0x1388 swprv - ok 23:21:46.0786 0x1388 [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain C:\Windows\system32\sysmain.dll 23:21:46.0869 0x1388 SysMain - ok 23:21:46.0920 0x1388 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 23:21:46.0940 0x1388 TabletInputService - ok 23:21:46.0995 0x1388 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 23:21:47.0036 0x1388 TapiSrv - ok 23:21:47.0127 0x1388 [ B2875D7ABB82867DC3AA03D991940201, F954C33FBA912A517B59330F6438C1953F9F1D8F4D8FD25945EB836A1DB07ABB ] Tcpip C:\Windows\system32\drivers\tcpip.sys 23:21:47.0184 0x1388 Tcpip - ok 23:21:47.0255 0x1388 [ B2875D7ABB82867DC3AA03D991940201, F954C33FBA912A517B59330F6438C1953F9F1D8F4D8FD25945EB836A1DB07ABB ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 23:21:47.0308 0x1388 TCPIP6 - ok 23:21:47.0359 0x1388 [ 7FE5586314EE7D6AA8483264A089E5AF, 4E3EA68713A45C22F1B9A1AA125E15D06D0C5E637B815537431ADFB6D7563879 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 23:21:47.0370 0x1388 tcpipreg - ok 23:21:47.0392 0x1388 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 23:21:47.0414 0x1388 TDPIPE - ok 23:21:47.0435 0x1388 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 23:21:47.0447 0x1388 TDTCP - ok 23:21:47.0497 0x1388 [ AA77EB517D2F07A947294F260E3ACA83, B7A5DF3066830C0C2302B059778A67419792058A0D300C471DE40AB245EA7E58 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 23:21:47.0509 0x1388 tdx - ok 23:21:47.0612 0x1388 [ 950AD1AE7498A492126FB9F9B2E27DB5, C4C9A972015F567FC87A4094C86835B2DD3476426AB8B40CD4872A725CA89CFC ] Te.Service C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe 23:21:47.0620 0x1388 Te.Service - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:47.0717 0x1388 Detect skipped due to KSN trusted 23:21:47.0717 0x1388 Te.Service - ok 23:21:48.0070 0x1388 [ F2F02E436BA56A96A06E4427C5787B6E, 1562FF264011A15AC69808CB74F387917C4E8ED3B91546B12933BE10B6E20B3A ] TeamViewer C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe 23:21:48.0265 0x1388 TeamViewer - ok 23:21:48.0324 0x1388 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 23:21:48.0336 0x1388 TermDD - ok 23:21:48.0393 0x1388 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 23:21:48.0429 0x1388 TermService - ok 23:21:48.0443 0x1388 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 23:21:48.0461 0x1388 Themes - ok 23:21:48.0482 0x1388 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 23:21:48.0518 0x1388 THREADORDER - ok 23:21:48.0571 0x1388 [ D154DD00C8F12D94C9CC94027356B6E4, 501026564147DC43D0764521816B8D20576DA8F5D9DB0D2D8D3A16AA48A534A3 ] Tpkd C:\Windows\system32\drivers\Tpkd.sys 23:21:48.0583 0x1388 Tpkd - ok 23:21:48.0614 0x1388 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 23:21:48.0650 0x1388 TrkWks - ok 23:21:48.0718 0x1388 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 23:21:48.0754 0x1388 TrustedInstaller - ok 23:21:48.0798 0x1388 [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 23:21:48.0809 0x1388 tssecsrv - ok 23:21:48.0876 0x1388 [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 23:21:48.0902 0x1388 TsUsbFlt - ok 23:21:48.0970 0x1388 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 23:21:49.0003 0x1388 tunnel - ok 23:21:49.0056 0x1388 [ A070ABB9D85582B2BECADBE6FCD12350, 3EBFA349F87933E20C4EADA2FA2E64206CCAC70DFB8B52C2E41670FFB16D7336 ] t_mouse.sys C:\Windows\system32\DRIVERS\t_mouse.sys 23:21:49.0066 0x1388 t_mouse.sys - ok 23:21:49.0085 0x1388 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 23:21:49.0097 0x1388 uagp35 - ok 23:21:49.0153 0x1388 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 23:21:49.0193 0x1388 udfs - ok 23:21:49.0223 0x1388 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 23:21:49.0238 0x1388 UI0Detect - ok 23:21:49.0254 0x1388 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 23:21:49.0266 0x1388 uliagpkx - ok 23:21:49.0300 0x1388 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\drivers\umbus.sys 23:21:49.0312 0x1388 umbus - ok 23:21:49.0338 0x1388 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 23:21:49.0349 0x1388 UmPass - ok 23:21:49.0396 0x1388 [ A293DCD756D04D8492A750D03B9A297C, 203600ED0B7F8BA4C6D6F4ED810F4DF5AB70928B06EC4131C5D8ADF628444ED1 ] UmRdpService C:\Windows\System32\umrdp.dll 23:21:49.0415 0x1388 UmRdpService - ok 23:21:49.0491 0x1388 [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe 23:21:49.0514 0x1388 UMVPFSrv - ok 23:21:49.0547 0x1388 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 23:21:49.0590 0x1388 upnphost - ok 23:21:49.0625 0x1388 [ F957092C63CD71D85903CA0D8370F473, 4DEC2FC20329F248135DA24CB6694FD972DCCE8B1BBEA8D872FDE41939E96AAF ] USBAAPL64 C:\Windows\system32\Drivers\usbaapl64.sys 23:21:49.0652 0x1388 USBAAPL64 - ok 23:21:49.0710 0x1388 [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 23:21:49.0725 0x1388 usbaudio - ok 23:21:49.0745 0x1388 [ 28B81917A195B67617AF7DCF4DFE5736, 40A4D2AAE1BDE5ABA8708ED150396E913C566ECD5CDA40D6C6DB256F1B9FD4A9 ] usbccgp C:\Windows\system32\drivers\usbccgp.sys 23:21:49.0758 0x1388 usbccgp - ok 23:21:49.0801 0x1388 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 23:21:49.0815 0x1388 usbcir - ok 23:21:49.0843 0x1388 [ B626F048318DAE65A3317F0592BE592C, 284D8FFE1D35F852EFDA182A72288AC3A10D6ED825FE2CC5812497D3FE291AF1 ] usbehci C:\Windows\system32\drivers\usbehci.sys 23:21:49.0855 0x1388 usbehci - ok 23:21:49.0904 0x1388 [ 504901430B6E03B99EBB6BF26E0868C6, D00C0904B7008305DCA5D1E6FED153DD8875CAD14D80348E59F42A182FA7E832 ] usbfilter C:\Windows\system32\DRIVERS\usbfilter.sys 23:21:49.0914 0x1388 usbfilter - ok 23:21:49.0945 0x1388 [ 390109E8E05BA00375DCB1ED64DC60AF, B8628502590B423BEFB6F7C8C69FAD0667AD0746FF6B444EE02016E8E1052B78 ] usbhub C:\Windows\system32\drivers\usbhub.sys 23:21:49.0964 0x1388 usbhub - ok 23:21:49.0979 0x1388 [ B4DF0F4C1D9D25DFE1DAD1D8670F1D4F, 4317C2DEDC639527B53864BAEC46CBE022D298C0503E29E1072DD1C851D92BFC ] usbohci C:\Windows\system32\drivers\usbohci.sys 23:21:49.0990 0x1388 usbohci - ok 23:21:50.0009 0x1388 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 23:21:50.0023 0x1388 usbprint - ok 23:21:50.0076 0x1388 [ 2C42E595E7E381596B9A14F88F5AE027, 948C2AD7FA0B01184312D1ABE43F2F3D85A934CF0658A8B2BDF9F0919568377B ] usbrndis6 C:\Windows\system32\DRIVERS\usb80236.sys 23:21:50.0087 0x1388 usbrndis6 - ok 23:21:50.0135 0x1388 [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 23:21:50.0149 0x1388 USBSTOR - ok 23:21:50.0158 0x1388 [ CFEAAF96E666E3DCBD8F6DFF516784AE, 006218A3DB5851790CC0A7F3DCD7B3AF82F624DA679296DE507AFD36C5468317 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 23:21:50.0170 0x1388 usbuhci - ok 23:21:50.0190 0x1388 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 23:21:50.0225 0x1388 UxSms - ok 23:21:50.0269 0x1388 [ 92DAF7D21711117B007608CB50FBD2E2, 6C1FBCE3699C76BDACAC37C04002C85A6AF38BF610F579F6FFEC95302D449CDC ] VaultSvc C:\Windows\system32\lsass.exe 23:21:50.0282 0x1388 VaultSvc - ok 23:21:50.0337 0x1388 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 23:21:50.0349 0x1388 vdrvroot - ok 23:21:50.0406 0x1388 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 23:21:50.0450 0x1388 vds - ok 23:21:50.0471 0x1388 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 23:21:50.0486 0x1388 vga - ok 23:21:50.0501 0x1388 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 23:21:50.0534 0x1388 VgaSave - ok 23:21:50.0581 0x1388 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 23:21:50.0597 0x1388 vhdmp - ok 23:21:50.0641 0x1388 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 23:21:50.0652 0x1388 viaide - ok 23:21:50.0697 0x1388 [ 86EA3E79AE350FEA5331A1303054005F, 7E7D6027EB41E591633C7383A5D29A3BA8ECFC08C177D2BCF741EE27686B1691 ] vmbus C:\Windows\system32\drivers\vmbus.sys 23:21:50.0713 0x1388 vmbus - ok 23:21:50.0764 0x1388 [ 7DE90B48F210D29649380545DB45A187, 09522F84285D62B961868DA98C40B82E746CA4D24A9780905673A2349D6B07F4 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 23:21:50.0775 0x1388 VMBusHID - ok 23:21:50.0788 0x1388 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 23:21:50.0799 0x1388 volmgr - ok 23:21:50.0852 0x1388 [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 23:21:50.0873 0x1388 volmgrx - ok 23:21:50.0890 0x1388 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 23:21:50.0908 0x1388 volsnap - ok 23:21:51.0021 0x1388 [ 9B4F6978628D07FAEBF77FF6F8F2960D, FC36FE6BE77445D55E4E92CE3EAF172E253EC8CF8D2EBCA204969CF21FFA5600 ] VsEtwService120 C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe 23:21:51.0034 0x1388 VsEtwService120 - ok 23:21:51.0059 0x1388 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 23:21:51.0073 0x1388 vsmraid - ok 23:21:51.0164 0x1388 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 23:21:51.0232 0x1388 VSS - ok 23:21:51.0513 0x1388 [ 8A46AEE1438647F7288106EC11832508, 412F544C87DA75BA7B22DDC2D47EC5E517D6B1CB9F05FF455D78E8F2C03842A8 ] vToolbarUpdater40.3.6 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\40.3.6\ToolbarUpdater.exe 23:21:51.0554 0x1388 vToolbarUpdater40.3.6 - ok 23:21:51.0566 0x1388 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 23:21:51.0580 0x1388 vwifibus - ok 23:21:51.0588 0x1388 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 23:21:51.0605 0x1388 vwififlt - ok 23:21:51.0627 0x1388 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 23:21:51.0642 0x1388 vwifimp - ok 23:21:51.0679 0x1388 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 23:21:51.0727 0x1388 W32Time - ok 23:21:51.0749 0x1388 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 23:21:51.0761 0x1388 WacomPen - ok 23:21:51.0817 0x1388 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 23:21:51.0849 0x1388 WANARP - ok 23:21:51.0854 0x1388 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 23:21:51.0886 0x1388 Wanarpv6 - ok 23:21:51.0968 0x1388 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 23:21:52.0017 0x1388 wbengine - ok 23:21:52.0050 0x1388 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 23:21:52.0072 0x1388 WbioSrvc - ok 23:21:52.0129 0x1388 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 23:21:52.0161 0x1388 wcncsvc - ok 23:21:52.0172 0x1388 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 23:21:52.0193 0x1388 WcsPlugInService - ok 23:21:52.0205 0x1388 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\DRIVERS\wd.sys 23:21:52.0216 0x1388 Wd - ok 23:21:52.0274 0x1388 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 23:21:52.0313 0x1388 Wdf01000 - ok 23:21:52.0363 0x1388 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 23:21:52.0388 0x1388 WdiServiceHost - ok 23:21:52.0393 0x1388 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 23:21:52.0407 0x1388 WdiSystemHost - ok 23:21:52.0460 0x1388 [ EE841B6D1F2B9508D3ABAE52AC05A94F, F1AE981FCDBFC4672A4EABABD41382E93762EFC2EDAD96E75530E7ACA5AF1FD8 ] WebClient C:\Windows\System32\webclnt.dll 23:21:52.0480 0x1388 WebClient - ok 23:21:52.0499 0x1388 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 23:21:52.0538 0x1388 Wecsvc - ok 23:21:52.0554 0x1388 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 23:21:52.0588 0x1388 wercplsupport - ok 23:21:52.0643 0x1388 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 23:21:52.0678 0x1388 WerSvc - ok 23:21:52.0714 0x1388 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 23:21:52.0747 0x1388 WfpLwf - ok 23:21:52.0751 0x1388 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 23:21:52.0762 0x1388 WIMMount - ok 23:21:52.0774 0x1388 WinDefend - ok 23:21:52.0790 0x1388 WinHttpAutoProxySvc - ok 23:21:52.0845 0x1388 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 23:21:52.0887 0x1388 Winmgmt - ok 23:21:52.0989 0x1388 [ EBDA1B0F15CB9B2CBCC6C94824E4E054, C51314F7D611E4903DA00EFA8EB99365414436324D256083CE0B5A8E055E8E06 ] WinRM C:\Windows\system32\WsmSvc.dll 23:21:53.0077 0x1388 WinRM - ok 23:21:53.0155 0x1388 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 23:21:53.0171 0x1388 WinUsb - ok 23:21:53.0216 0x1388 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 23:21:53.0268 0x1388 Wlansvc - ok 23:21:53.0315 0x1388 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 23:21:53.0327 0x1388 WmiAcpi - ok 23:21:53.0353 0x1388 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 23:21:53.0369 0x1388 wmiApSrv - ok 23:21:53.0391 0x1388 WMPNetworkSvc - ok 23:21:53.0404 0x1388 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 23:21:53.0418 0x1388 WPCSvc - ok 23:21:53.0467 0x1388 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 23:21:53.0484 0x1388 WPDBusEnum - ok 23:21:53.0505 0x1388 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 23:21:53.0535 0x1388 ws2ifsl - ok 23:21:53.0544 0x1388 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 23:21:53.0563 0x1388 wscsvc - ok 23:21:53.0567 0x1388 WSearch - ok 23:21:53.0666 0x1388 [ E20FC4FC2F02A37CCE9ACC2ACB9BA668, 7E86E72E8717198DCBD56EA8FB8D95493E51C2D89E73870E7E64CA32F877C805 ] WtuSystemSupport C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe 23:21:53.0700 0x1388 WtuSystemSupport - ok 23:21:53.0823 0x1388 [ 31F32E0C1A8BA9A37EEC23DE5F27F847, 0180832BC6172C9A4C32B5B222BB3F91EA615A5EBDA98DB79ED4FED258C2D257 ] wuauserv C:\Windows\system32\wuaueng.dll 23:21:53.0933 0x1388 wuauserv - ok 23:21:53.0980 0x1388 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 23:21:53.0993 0x1388 WudfPf - ok 23:21:54.0025 0x1388 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 23:21:54.0042 0x1388 WUDFRd - ok 23:21:54.0095 0x1388 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 23:21:54.0110 0x1388 wudfsvc - ok 23:21:54.0168 0x1388 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 23:21:54.0194 0x1388 WwanSvc - ok 23:21:54.0262 0x1388 X6va011 - ok 23:21:54.0273 0x1388 X6va012 - ok 23:21:54.0297 0x1388 ================ Scan global =============================== 23:21:54.0344 0x1388 [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll 23:21:54.0392 0x1388 [ A5794B1E3ACEF48E716F0A89C83C1AEA, B904C861CBDAF00341F8697BD05C2E66C23CF4D6C94E19AF464D898436F34D73 ] C:\Windows\system32\winsrv.dll 23:21:54.0409 0x1388 [ A5794B1E3ACEF48E716F0A89C83C1AEA, B904C861CBDAF00341F8697BD05C2E66C23CF4D6C94E19AF464D898436F34D73 ] C:\Windows\system32\winsrv.dll 23:21:54.0437 0x1388 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 23:21:54.0492 0x1388 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 23:21:54.0500 0x1388 [ Global ] - ok 23:21:54.0500 0x1388 ================ Scan MBR ================================== 23:21:54.0513 0x1388 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 23:21:54.0749 0x1388 \Device\Harddisk0\DR0 - ok 23:21:54.0758 0x1388 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1 23:21:54.0816 0x1388 \Device\Harddisk1\DR1 - ok 23:21:54.0816 0x1388 ================ Scan VBR ================================== 23:21:54.0819 0x1388 [ 1F74C7FEEDD57D9D436F74E5A6729A72 ] \Device\Harddisk0\DR0\Partition1 23:21:54.0820 0x1388 \Device\Harddisk0\DR0\Partition1 - ok 23:21:54.0822 0x1388 [ 16FF14AE449AFFD9205CCC81D0AD2D69 ] \Device\Harddisk0\DR0\Partition2 23:21:54.0823 0x1388 \Device\Harddisk0\DR0\Partition2 - ok 23:21:54.0826 0x1388 [ B6A74B394D89E191E1DE9A3CAA3CF25C ] \Device\Harddisk1\DR1\Partition1 23:21:54.0827 0x1388 \Device\Harddisk1\DR1\Partition1 - ok 23:21:54.0827 0x1388 ================ Scan generic autorun ====================== 23:21:54.0864 0x1388 [ 51138BEEA3E2C21EC44D0932C71762A8, 5AD3C37E6F2B9DB3EE8B5AEEDC474645DE90C66E3D95F8620C48102F1EBA4124 ] C:\Windows\syswow64\RunDll32.exe 23:21:54.0881 0x1388 Cmaudio8788 - ok 23:21:54.0925 0x1388 [ 0740D338A42F7778760F2B0CB6DA5830, C6D275B4993502A155F85D8DE26B119866DEE106C98CF29CDAACBAF11484C94A ] C:\Windows\syswow64\HsMgr.exe 23:21:54.0934 0x1388 Cmaudio8788GX - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:56.0513 0x1388 Detect skipped due to KSN trusted 23:21:56.0513 0x1388 Cmaudio8788GX - ok 23:21:56.0581 0x1388 [ BEF1B23AD0BBF805F02FAA01EAE0AF4E, 65CCFEC1F61E475A1F6759ECCA8DE1844A26AB7F827BC1F63339A0DFF554B039 ] C:\Windows\system\HsMgr64.exe 23:21:56.0590 0x1388 Cmaudio8788GX64 - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:56.0687 0x1388 Detect skipped due to KSN trusted 23:21:56.0687 0x1388 Cmaudio8788GX64 - ok 23:21:56.0811 0x1388 [ 7A727248EBC065BD2BB94A9B2892D190, B1E12ED3D07963EF0FA09B3ECD8AC3FBD316733D968A99C958DF7026B1BDFD99 ] c:\Program Files\Microsoft Security Client\msseces.exe 23:21:56.0857 0x1388 MSC - ok 23:21:57.0026 0x1388 [ 94A8196066774252DF015EEDF02CCA44, AD2DFDA427E3CCB5C8404F0AFAFE71C64B862D2E26A67E1BFC2B40738FD0B873 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe 23:21:57.0093 0x1388 NvBackend - ok 23:21:57.0121 0x1388 [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe 23:21:57.0140 0x1388 ShadowPlay - ok 23:21:57.0208 0x1388 [ 9C3F26DCA9142F16ED3D7EE8AB4E417D, 867AD96CB5738266E5BC93E424EA1673881C5F5FBF19C7B699F800C7206CA929 ] C:\Program Files\iTunes\iTunesHelper.exe 23:21:57.0221 0x1388 iTunesHelper - ok 23:21:57.0366 0x1388 [ 0CB4194DE0C4AC0FB2C6B4997CDA7074, 671CCE14302A1F40AED98240A59740342AA4F4E2F1F41529475EABACE9BA6C04 ] C:\Program Files (x86)\Trojan Remover\Trjscan.exe 23:21:57.0468 0x1388 TrojanScanner - ok 23:21:57.0534 0x1388 [ 6EACC43D0542EF88226FB34B0B12EDB0, 6345E4B49D7F804F6DE042F981AB172822B6AB74C42209BEFB0582B019430884 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 23:21:57.0556 0x1388 SunJavaUpdateSched - ok 23:21:57.0652 0x1388 [ 090D95190F02F5BC351C97CFD560AA20, ACEB05D30B73D9DCC1C9CC8A1A7938BED8C008FF2E07C1F50AF858E6600BB922 ] C:\Program Files (x86)\AVG Web TuneUp\vprot.exe 23:21:57.0714 0x1388 vProt - ok 23:21:57.0810 0x1388 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 23:21:57.0888 0x1388 Sidebar - ok 23:21:57.0904 0x1388 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 23:21:57.0929 0x1388 mctadmin - ok 23:21:57.0959 0x1388 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 23:21:57.0999 0x1388 Sidebar - ok 23:21:58.0005 0x1388 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 23:21:58.0023 0x1388 mctadmin - ok 23:21:58.0077 0x1388 [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe 23:21:58.0120 0x1388 Sidebar - ok 23:21:58.0222 0x1388 Skype - ok 23:21:58.0409 0x1388 [ 94E1B8F2AA2BAAE6BFC1E4CDB0490B81, 9968F4BEAE5BE07DFE27540D5082C843F21A2EEA983BDFEACB9D53E94AAAFEE2 ] C:\Users\Marc\AppData\Roaming\BitTorrent\BitTorrent.exe 23:21:58.0469 0x1388 BitTorrent - ok 23:21:58.0503 0x1388 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 23:21:58.0543 0x1388 Sidebar - ok 23:21:58.0655 0x1388 [ 390679F7A217A5E73D756276C40AE887, 3EDFB645B2F58864E653C66516D6D48C4F9D691CFD51D91D4D88E316EE7B7177 ] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe 23:21:58.0738 0x1388 SpybotSD TeaTimer - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:58.0843 0x1388 Detect skipped due to KSN trusted 23:21:58.0843 0x1388 SpybotSD TeaTimer - ok 23:21:58.0845 0x1388 Steam - ok 23:21:58.0853 0x1388 Facebook Update - ok 23:21:58.0855 0x1388 Skype - ok 23:21:58.0857 0x1388 LOLReplay Recorder - ok 23:21:58.0872 0x1388 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 23:21:58.0890 0x1388 mctadmin - ok 23:21:58.0922 0x1388 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 23:21:58.0964 0x1388 Sidebar - ok 23:21:59.0022 0x1388 [ 390679F7A217A5E73D756276C40AE887, 3EDFB645B2F58864E653C66516D6D48C4F9D691CFD51D91D4D88E316EE7B7177 ] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe 23:21:59.0081 0x1388 SpybotSD TeaTimer - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:59.0081 0x1388 Detect skipped due to KSN trusted 23:21:59.0081 0x1388 SpybotSD TeaTimer - ok 23:21:59.0084 0x1388 Steam - ok 23:21:59.0086 0x1388 Facebook Update - ok 23:21:59.0089 0x1388 Skype - ok 23:21:59.0091 0x1388 LOLReplay Recorder - ok 23:21:59.0098 0x1388 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 23:21:59.0115 0x1388 mctadmin - ok 23:21:59.0145 0x1388 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 23:21:59.0184 0x1388 Sidebar - ok 23:21:59.0190 0x1388 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 23:21:59.0207 0x1388 mctadmin - ok 23:21:59.0235 0x1388 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 23:21:59.0274 0x1388 Sidebar - ok 23:21:59.0330 0x1388 [ 390679F7A217A5E73D756276C40AE887, 3EDFB645B2F58864E653C66516D6D48C4F9D691CFD51D91D4D88E316EE7B7177 ] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe 23:21:59.0390 0x1388 SpybotSD TeaTimer - detected UnsignedFile.Multi.Generic ( 1 ) 23:21:59.0390 0x1388 Detect skipped due to KSN trusted 23:21:59.0390 0x1388 SpybotSD TeaTimer - ok 23:21:59.0392 0x1388 Steam - ok 23:21:59.0393 0x1388 Facebook Update - ok 23:21:59.0396 0x1388 Skype - ok 23:21:59.0398 0x1388 LOLReplay Recorder - ok 23:21:59.0405 0x1388 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 23:21:59.0423 0x1388 mctadmin - ok 23:21:59.0591 0x1388 [ 86E7B43D60B16FCEB967FA089111F796, C32F8BA0BC253C7049ED6D160EFD657C47698A23EBEA11BBDEFEF59C2DC14059 ] C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe 23:21:59.0688 0x1388 Application Restart #0 - ok 23:21:59.0717 0x1388 [ 4A3CDCEF8ED41B221F3DBEF5792FB52D, 6BB5F3A7147660DB416B838893C7D0734872ADA9F7DB68B1D019043A1CB89397 ] C:\Windows\SysWOW64\ctfmon.exe 23:21:59.0735 0x1388 Application Restart #1 - ok 23:21:59.0735 0x1388 Waiting for KSN requests completion. In queue: 221 23:22:00.0749 0x1388 AV detected via SS2: Microsoft Security Essentials, C:\Program Files\Microsoft Security Client\msseces.exe ( 4.10.209.0 ), 0x60000 ( disabled : updated ) 23:22:00.0752 0x1388 Win FW state via NFP2: enabled ( trusted ) 23:22:00.0849 0x1388 ============================================================ 23:22:00.0849 0x1388 Scan finished 23:22:00.0849 0x1388 ============================================================ 23:22:00.0856 0x1344 Detected object count: 4 23:22:00.0857 0x1344 Actual detected object count: 4 23:22:23.0646 0x1344 PaceLicenseDServices ( UnsignedFile.Multi.Generic ) - skipped by user 23:22:23.0646 0x1344 PaceLicenseDServices ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:22:23.0647 0x1344 sfdrv01 ( UnsignedFile.Multi.Generic ) - skipped by user 23:22:23.0647 0x1344 sfdrv01 ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:22:23.0648 0x1344 sfhlp02 ( UnsignedFile.Multi.Generic ) - skipped by user 23:22:23.0648 0x1344 sfhlp02 ( UnsignedFile.Multi.Generic ) - User select action: Skip 23:22:23.0649 0x1344 sfvfs02 ( UnsignedFile.Multi.Generic ) - skipped by user 23:22:23.0649 0x1344 sfvfs02 ( UnsignedFile.Multi.Generic ) - User select action: Skip |
06.12.2016, 23:51 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10 extrem langsam geworden Adware/Junkware/Toolbars entfernen Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop! Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren! 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
__________________ Logfiles bitte immer in CODE-Tags posten |
07.12.2016, 19:28 | #14 |
| Windows 10 extrem langsam geworden ADW [C2]: Code:
ATTFilter # AdwCleaner v6.040 - Bericht erstellt am 07/12/2016 um 05:37:20 # Aktualisiert am 02/12/2016 von Malwarebytes # Datenbank : 2016-12-06.1 [Server] # Betriebssystem : Windows 7 Professional Service Pack 1 (X64) # Benutzername : Marc - MARC-PC # Gestartet von : C:\Users\Marc\Desktop\AdwCleaner_6.040.exe # Modus: Löschen # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** [-] Dienst gelöscht: vToolbarUpdater40.3.6 [-] Dienst gelöscht: WtuSystemSupport ***** [ Ordner ] ***** [-] Ordner gelöscht: C:\Users\Marc\AppData\Local\avg web tuneup [-] Ordner gelöscht: C:\Program Files\Common Files\AVG Secure Search [-] Ordner gelöscht: C:\ProgramData\avg web tuneup [#] Ordner mit Neustart gelöscht: C:\ProgramData\Application Data\avg web tuneup [-] Ordner gelöscht: C:\Program Files (x86)\avg web tuneup [-] Ordner gelöscht: C:\Program Files (x86)\Common Files\AVG Secure Search ***** [ Dateien ] ***** [-] Datei gelöscht: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\extensions\Avg@toolbar.xpi [-] Datei gelöscht: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\avg-secure-search.xml ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd.1 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi.1 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj.1 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd.1 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi.1 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj.1 [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} [-] Schlüssel gelöscht: HKLM\SOFTWARE\AVG Tuneup [-] Daten wiederhergestellt: HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Daten wiederhergestellt: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Daten wiederhergestellt: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] [-] Schlüssel gelöscht: HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Daten wiederhergestellt: HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [#] Schlüssel mit Neustart gelöscht: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Daten wiederhergestellt: HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} [-] Daten wiederhergestellt: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt] [-] Schlüssel gelöscht: HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh [-] Schlüssel gelöscht: HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin [-] Schlüssel gelöscht: HKLM\SOFTWARE\Google\Chrome\Extensions\npdicihegicnhaangkdmcgbjceoemeoo [-] Schlüssel gelöscht: HKLM\SOFTWARE\Google\Chrome\Extensions\fknfdieimobmimhdkfkheeejenmdjhoe ***** [ Browser ] ***** [-] Firefox Einstellungen bereinigt: "browser.search.defaultenginename" - "AVG Secure Search" [-] Firefox Einstellungen bereinigt: "browser.search.hiddenOneOffs" - "Firefox Add-ons,Amazon.com,AVG Secure Search,Bing,DuckDuckGo,eBay,Google Images,Google Maps,Twitter,Wikipedia (en),Yahoo" [-] [C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Gelöscht: taskrunner.en.softonic.com [-] [C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Gelöscht: gs-auto-clicker.en.softonic.com [-] [C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default] [extension] Gelöscht: npdicihegicnhaangkdmcgbjceoemeoo ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [10711 Bytes] - [14/08/2016 18:26:26] C:\AdwCleaner\AdwCleaner[C2].txt - [6728 Bytes] - [07/12/2016 05:37:20] C:\AdwCleaner\AdwCleaner[R0].txt - [38795 Bytes] - [09/09/2014 14:25:13] C:\AdwCleaner\AdwCleaner[S0].txt - [37449 Bytes] - [09/09/2014 14:27:08] C:\AdwCleaner\AdwCleaner[S1].txt - [10079 Bytes] - [14/08/2016 13:39:28] C:\AdwCleaner\AdwCleaner[S2].txt - [6996 Bytes] - [07/12/2016 05:36:16] ########## EOF - C:\AdwCleaner\AdwCleaner[C2].txt - [7096 Bytes] ########## Code:
ATTFilter # AdwCleaner v6.040 - Bericht erstellt am 07/12/2016 um 05:36:16 # Aktualisiert am 02/12/2016 von Malwarebytes # Datenbank : 2016-12-06.1 [Server] # Betriebssystem : Windows 7 Professional Service Pack 1 (X64) # Benutzername : Marc - MARC-PC # Gestartet von : C:\Users\Marc\Desktop\AdwCleaner_6.040.exe # Modus: Suchlauf # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** Dienst Gefunden: vToolbarUpdater40.3.6 Dienst Gefunden: WtuSystemSupport ***** [ Ordner ] ***** Ordner Gefunden: C:\Users\Marc\AppData\Local\avg web tuneup Ordner Gefunden: C:\Program Files\Common Files\AVG Secure Search Ordner Gefunden: C:\ProgramData\avg web tuneup Ordner Gefunden: C:\ProgramData\Application Data\avg web tuneup Ordner Gefunden: C:\Program Files (x86)\avg web tuneup Ordner Gefunden: C:\Program Files (x86)\Common Files\AVG Secure Search ***** [ Dateien ] ***** Datei Gefunden: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\extensions\Avg@toolbar.xpi Datei Gefunden: C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\searchplugins\avg-secure-search.xml ***** [ DLL ] ***** Keine infizierten DLLs gefunden. ***** [ WMI ] ***** Keine schädlichen Schlüssel gefunden. ***** [ Verknüpfungen ] ***** Keine infizierten Verknüpfungen gefunden. ***** [ Aufgabenplanung ] ***** Keine schädlichen Aufgaben gefunden. ***** [ Registrierungsdatenbank ] ***** Schlüssel Gefunden: HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd Schlüssel Gefunden: HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd.1 Schlüssel Gefunden: HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi Schlüssel Gefunden: HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi.1 Schlüssel Gefunden: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Schlüssel Gefunden: HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Schlüssel Gefunden: HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj Schlüssel Gefunden: HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj.1 Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.GenericWnd.1 Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.NativeApi.1 Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1 Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj Schlüssel Gefunden: [x64] HKLM\SOFTWARE\Classes\WtuServer.WtuServerObj.1 Schlüssel Gefunden: HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3} Schlüssel Gefunden: HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden: HKLM\SOFTWARE\Classes\CLSID\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} Schlüssel Gefunden: HKLM\SOFTWARE\Classes\CLSID\{CA3A5461-96B5-46DD-9341-5350D3C94615} Schlüssel Gefunden: HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6} Schlüssel Gefunden: HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94} Schlüssel Gefunden: HKLM\SOFTWARE\Classes\TypeLib\{4BC8AD89-AC5F-4DBD-A38F-C355C7DD33D7} Schlüssel Gefunden: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233} Schlüssel Gefunden: HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} Schlüssel Gefunden: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{B2BC04DF-EFBD-409A-95CA-36874E5AB92A} Schlüssel Gefunden: HKLM\SOFTWARE\AVG Tuneup Daten Gefunden: HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://mysearch.avg.com/?cid=%7B16661E11-BD6B-4822-8FE3-CF705E5F293D%7D&mid=c8fc4dcec91347d2 Daten Gefunden: HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://mysearch.avg.com/?cid=%7B16661E11-BD6B-4822-8FE3-CF705E5F293D%7D&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a3b Daten Gefunden: [x64] HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] - hxxps://mysearch.avg.com/?cid=%7B16661E11-BD6B-4822-8FE3-CF705E5F293D%7D&mid=c8fc4dcec91347d2a60a81ac0f20b3bb-bb2ae1cc7e83b811f39161a69a Schlüssel Gefunden: HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Daten Gefunden: HKU\S-1-5-21-2131955426-2682777134-591621578-1000\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - Schlüssel Gefunden: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Daten Gefunden: HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - Schlüssel Gefunden: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233} Daten Gefunden: [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes [DefaultScope] - Wert Gefunden: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt] Schlüssel Gefunden: HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\avgsh Schlüssel Gefunden: HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin Schlüssel Gefunden: HKLM\SOFTWARE\Google\Chrome\Extensions\npdicihegicnhaangkdmcgbjceoemeoo Schlüssel Gefunden: HKLM\SOFTWARE\Google\Chrome\Extensions\fknfdieimobmimhdkfkheeejenmdjhoe ***** [ Internetbrowser ] ***** Firefox pref Gefunden: [C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\prefs.js] - "browser.search.defaultenginename" - "AVG Secure Search" Firefox pref Gefunden: [C:\Users\Marc\AppData\Roaming\Mozilla\Firefox\Profiles\lcd83zj0.default\prefs.js] - "browser.search.hiddenOneOffs" - "Firefox Add-ons,Amazon.com,AVG Secure Search,Bing,DuckDuckGo,eBay,Google Images,G Chrome pref Gefunden: [C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Web data] - taskrunner.en.softonic.com Chrome pref Gefunden: [C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Web data] - gs-auto-clicker.en.softonic.com Chrome pref Gefunden: [C:\Users\Marc\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences ] - npdicihegicnhaangkdmcgbjceoemeoo ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [10711 Bytes] - [14/08/2016 18:26:26] C:\AdwCleaner\AdwCleaner[R0].txt - [38795 Bytes] - [09/09/2014 14:25:13] C:\AdwCleaner\AdwCleaner[S0].txt - [37449 Bytes] - [09/09/2014 14:27:08] C:\AdwCleaner\AdwCleaner[S1].txt - [10079 Bytes] - [14/08/2016 13:39:28] C:\AdwCleaner\AdwCleaner[S2].txt - [6800 Bytes] - [07/12/2016 05:36:16] ########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [6873 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.9 (09.30.2016) Operating System: Windows 7 Professional x64 Ran by Marc (Administrator) on 07.12.2016 at 5:47:52,82 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 0 Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 07.12.2016 at 13:19:23,46 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
07.12.2016, 22:14 | #15 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 10 extrem langsam geworden Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Windows 10 extrem langsam geworden |
antivirus, bonjour, cid, desktop, flash player, format, ftp, google, homepage, langsam, mozilla, problem, programm, prozesse, registry, rundll, scan, secure search, security, server, software, stick, super, svchost.exe, updates, usb, windows |